Assist with integration and operations of Nozomi OT Security or other OT/ICS network‑visibility platforms, enabling anomaly detection, asset discovery, and monitoring of industrial network traffic.
Provide secondary support for Check Point Firewalls, including rule base updates, policy optimization, and troubleshooting using Smart Console and traffic logs.
Assist in configuration and management of Azure Firewall, including DNAT/SNAT rules, network/application rules, threat‑intelligence filtering, and traffic‑monitoring capabilities.
...
Attend end-of-audit discussions with auditees to confirm findings, root causes, and agreed recommendations
Review draft audit reports to ensure all significant findings, their underlying risks, and impacts are properly reported with effective recommendations to strengthen internal controls
Monitor and follow up with auditees on the timely implementation of audit recommendations and address matters arising from deliberations at Management Audit Committee (MAC) meetings
...
Audit: Drive audit readiness by acting as a point of contact for all internal and external IT security audits and regulatory reviews (including BNM, HKMA, and MAS), ensuring the bank demonstrates high maturity levels and audit readiness at all times. Drive the end-to-end audit lifecycle including PCI-DSS and PwC engagements by coordinating evidence collection, justifying control effectiveness, and tracking all findings to verified closure to minimize compliance risks.
Projects & Change: Enable strategic IT security integration by participating in IT and Business project meetings. Conduct security reviews, risk assessments, and review User Acceptance Testing (UAT) to ensure all deliverables meet necessary security requirements with proper sign-off before deployment.
Housekeeping: Ensure a timely deletion and housekeeping of resigned, dormant, or unused user IDs based on HR cessation notifications to minimize the attack surface.
...
Monitor and respond to the team’s ticket queue, resolving routine operational issues and escalating complex problems as needed.
Operate systems that detect new devices connecting to manufacturing networks, working with site personnel to authorize, classify, and inventory devices.
Prepare and maintain asset inventory worksheets for manufacturing sites to assist with accurate identification and documentation of assets.
...
Monitor and respond to the team’s ticket queue, resolving routine operational issues and escalating complex problems as needed.
Operate systems that detect new devices connecting to manufacturing networks, working with site personnel to authorize, classify, and inventory devices.
Prepare and maintain asset inventory worksheets for manufacturing sites to assist with accurate identification and documentation of assets.
...
Implement and optimize endpoint governance using Microsoft Intune, including configuration profiles, compliance policies, security baselines, and device‑lifecycle management.
Support directory, identity, and device policy integration using Entra ID (Azure AD), ensuring secure authentication, conditional access, and identity‑driven device posture.
Apply and tune Group Policy Objects (GPO) and MECM (Microsoft Endpoint Configuration Manager) for on‑premises and hybrid Windows endpoint management.
...
Provide insights into areas of potential vulnerability and recommend corrective action.
Keep up to date with industry trends, regulatory changes and emerging cybersecurity threats.
Plan, execute and manage the risk-based audit assignments as per the Audit Plan to ensure the audit fulfil the approved audit objectives and audit scope and the standards as prescribed in the Audit Methodology.
...
Audit: Drive audit readiness by acting as a point of contact for all internal and external IT security audits and regulatory reviews (including BNM, HKMA, and MAS), ensuring the bank demonstrates high maturity levels and audit readiness at all times. Drive the end-to-end audit lifecycle including PCI-DSS and PwC engagements by coordinating evidence collection, justifying control effectiveness, and tracking all findings to verified closure to minimize compliance risks.
Projects & Change: Enable strategic IT security integration by participating in IT and Business project meetings. Conduct security reviews, risk assessments, and review User Acceptance Testing (UAT) to ensure all deliverables meet necessary security requirements with proper sign-off before deployment.
Housekeeping: Ensure a timely deletion and housekeeping of resigned, dormant, or unused user IDs based on HR cessation notifications to minimize the attack surface.
...
Assess vulnerabilities, lead system hardening, and design compensating controls for ICS/SCADA platforms
Collaborate with engineering, plant, and IT security teams to integrate OT security into operational processes
Bachelor’s degree in Engineering, Information Technology, Industrial Automation, or Cybersecurity; Master’s and/or relevant certifications are a plus: GICSP, GRID, ISA/IEC 62443 Cybersecurity Expert, CISSP
...
Assess vulnerabilities, lead system hardening, and design compensating controls for ICS/SCADA platforms
Collaborate with engineering, plant, and IT security teams to integrate OT security into operational processes
Bachelor’s degree in Engineering, Information Technology, Industrial Automation, or Cybersecurity; Master’s and/or relevant certifications are a plus: GICSP, GRID, ISA/IEC 62443 Cybersecurity Expert, CISSP
...
Assist with integration and operations of Nozomi OT Security or other OT/ICS network‑visibility platforms, enabling anomaly detection, asset discovery, and monitoring of industrial network traffic.
Provide secondary support for Check Point Firewalls, including rule base updates, policy optimization, and troubleshooting using Smart Console and traffic logs.
Assist in configuration and management of Azure Firewall, including DNAT/SNAT rules, network/application rules, threat‑intelligence filtering, and traffic‑monitoring capabilities.
...