Panasonic Information Systems Company Asia Pacific (PISCAP) is an IT solutions partner which provides IT Professional Services to 63 Panasonic Group companies in APAC Region, comprising of 7 Main Business Lines. PISCAP is an integral part of Panasonic Transformation journey. It is responsible for IT Leadership, Portfolio Management, Solutions Delivery and IT Operations with its Centre of Excellence in Singapore, Malaysia, Thailand, and Vietnam. By leveraging on Panasonic’s merit of scale, PISCAP innovates and generate sustained value to the APAC business group.
Role Summary
The Security Operation Support Engineer is responsible for daily security operations, monitoring various security systems, and analyzing security events to identify potential threats1. They lead efforts in detection, analysis, containment, eradication, and recovery for security incidents, and perform root cause analysis and post-incident reporting2. The role involves managing security weaknesses, working with teams to address vulnerabilities, and evaluating security tools and best practices3. They enforce security policies, conduct security awareness training, and ensure compliance with industry standards4. Additionally, they guide and mentor IT and security operation teams, maintaining detailed documentation and preparing regular reports.
Role & Responsibilities
- Involve in daily security operations, continuously monitor various security systems, including SOC, AV, EDR, ITD, Endpoint security, IDS/IPS, SIEM and other security technologies, analyse security events and incidents to identify potential threats and vulnerabilities.
- Lead the detection, analysis, containment, eradication and recovery efforts for security incidents. Perform root cause analysis and post incident reporting.
- Taking part in leading security operation on security notice response, managing vulnerability notice, involve in assessments and penetration testing whenever is needed.
- Identifying and managing security weakness in the organization’s systems and networks. Works with system and application and operation teams and the vendor to prioritize and address these vulnerabilities. Evaluate and implement security tools, processes, and best practices to improve overall security posture.
- Managing and maintaining security tools and technologies, recommends of security practices to the system, network and application teams to ensure that the tools, the system, network and the applications are properly setup and configured and updated to mitigate potential risks.
- Enforces security policies and procedures across the organization, to ensure that employees follow security best practices, conduct security awareness training programs, and ensure compliance with relevant security requirements and standards.
- Stay updated on the latest cybersecurity with external security organizations to proactively defend against emerging threats.
- Ensure compliance with industry standards and regulation, e.g., ISM, ISO, SOX, NIST,GDPR, etc.
- Guide and mentor the IT and security operation teams, providing knowledge sharing and training session when needed.
- Maintain detailed documentation or security process and procedure, incident records, investigation reports, and remediation efforts. Prepare regular reports for management and stakeholders to communicate the organization’s security posture and any ongoing security issues or concerns.
Job Requirements
- Bachelor’s degree in computer science, Information Technology, or a related field preferred.
- Min 5 years’ experience in security operation role.
- Proven experience in leading and managing security incidents.
- Experience within security workforce, security operations, or any IT security exposures.
- Familiar with SIEM tools, such as LogRhythm, Microsoft Defender, and common tools like Antivirus, EDR, Monitoring, etc.
- Strong understanding of common cyber-attack techniques.
- Excellent communication skills, able to communicate technical information effectively to both technical and non-technical audiences.
- Able to work collaboratively in a team environment, and independently when necessary.
- Relevant certification a plus, e.g., Azure Security, ISC, GCIA/IH, OSCP.
Desirable traits to be successful in this role:
- Attention to Detail: This role requires meticulous attention to detail to identify potential threats and vulnerabilities in security systems.
- Strong Communication Skills: Effective communication is crucial for coordinating with various teams and stakeholders.
- Problem-Solving Skills: The ability to analyze security incidents and perform root cause analysis is essential.
- Technical Proficiency: A deep understanding of security technologies and tools, such as SOC, AV, EDR, and SIEM, is necessary.
- Adaptability: The ability to stay updated on the latest cybersecurity trends and adapt to new security challenges.
We regret that only shortlisted candidates will be contacted.