Position
Senior Analyst – Security Operations
Department
Information Technology
Working Location
Macau Peninsula
Post Date
26/02/2024
Requirements
• Degree holder in Computer Science, Electrical / Electronic Engineering, Information Technology related fields or Cyber Security related experience is a minimum
• CISSP / CISP/ CISM / CISA / GCIH / SSCP / OSCP/ ISO27001 / SSCP (or other industry recognized security certification) is strongly preferred
• Minimum of 4 years of relevant experience in Information Technology
• Minimum of 2 years of relevant experience in Cyber Security
• Experience in Information / IT Security Architecture Design, Metric Dashboard
• Experience in Security Controls Implementation, Security Policy / Standard / Procedure / Guideline writing
• Experience in assessment of security controls, application security, security exposure risk, network segmentation, network perimeter defense
• Experience in applications and associated security risks management
• Experience in vendor management
• Experience in amendment and risk monitoring is preferred
• Hospitality or gaming industry experience is preferred
• Knowledge in information, data, network and cyber security technologies
• Knowledge of IT infrastructure including multiple operating systems and basic system administration skills
• Proficient in spoken and written English and Chinese
• Good presentation skill and able to explain technology strategic to non-IT use
Responsibilities
• Continuously monitoring, analyzing, triaging and reporting on security event/alerts, including investigation of anomalous network activity and responds to cyber incidents
• Perform event correlation, trend analysis of security logs, network traffic, security alerts, events and incidents
• Ensure that security alerts are correctly handled, reported and documented in accordance to SOP
• Continuously work on fine-tuning security tools to minimize false positives and maximize detection and prevention effectiveness
• Prepare daily security reports for upper level management review
• Monitor healthiness of security tools for company
• Work closely with Security Operations Centre (SOC) Leader towards the continuous improvement of the SOC service
• Strictly follow all company Cyber Security policies, standards and procedures
• Maintain and develop Security Information and Event Management (SIEM) solution
• Respond to security alert and request from users
• Handle security event or incident, assist on security threat analysis and research
• Offer all the necessary support to Cyber Security initiative through predictive and reactive analysis
• Integrate valid Indicator of Compromises (IOC)s and threat intelligence into the detection / prevention measures
• Effectively lead indirect resource teams, including contractors and other third-party resources
• Keep current on new, cutting edge security technics and technologies
• Installation, implementation, configuration, troubleshooting, fine-tuning, diagnostics and maintenance of Cyber security related applications/tools
• Collaborates with the IT Infrastructure Team on Cyber security project implementation and troubleshooting