Assist Cyber Security Lab team in attack surface management, threat hunting and detection, site take down, brand protection, incident response, compromise assessment
Graduates majoring in cyber security or computer forensics or of related course
...
Translate technical risks into business impact and process resilience, to support decision-making at operational (engineering, maintenance, etc.) and management levels
Assess vulnerabilities, lead system hardening, and design compensating controls for ICS/SCADA platforms
Collaborate with engineering, plant, and IT security teams to integrate OT security into operational processes
...
Manage and perform IT Audits including planning, scheduling, work paper review, management discussion, and report preparation.
Research & implement IT security measures. Conduct security research in keeping abreast of latest security issues.
Manage, coordinate and execute Disaster Recovery (DR) Planning and Testing. Oversee the regular testing of the plan and update for major changes in hardware, applications, business and regulatory requirements accordingly.
...
Risk, policy and third party. Run the information security risk register as a decision-making tool, own the policy lifecycle and exception register, and assess the vendors and partners we integrate with.
Incident response and regulatory notification. Own breach assessment and the notification decision across the jurisdictions we operate in, alongside Legal. In healthcare this is the highest consequence judgement in the role.
Finding what is broken before someone else does. Go looking. Read the infrastructure code, pull the access review output, check that the alert a policy promises is actually configured. When you find a gap, bring it quantified, costed and sequenced.
...