Manage and provide guidance / best practices on IT risk and security management.
Develop and maintain IT security policies, procedures and standards. Ensure that all policies, procedures and standards are compliant with regulatory requirements.
Assist with the IT Risk Assessment and Audit Plan development activities.
...
Familiar and able to design Security System and other ELV System such as BMS, Intercom etc.
Establish and maintain appropriate relationships with customers, enabling the company to be active & leading, speedy response time, highly profitable, excellent payment collection position at all time.
External communication with customers, consultants, general contractor, supervision, design institute and other construction units, manage site activities to ensure compliance to quality standards.
...
Security Framework Alignment: Define and maintain the Bank’s technical security standards, aligning them with industry frameworks (e.g., NIST, PCI-DSS, ISO/IEC 27001, SOC 2, CIS Benchmarks).
Policy & Standard Engineering: Review and update technical security policies, baselines, and procedures for Web Application Firewalls (WAF), Web Proxies, Enterprise VPNs, and Network Access Control (NAC) systems and other security devices.
Audit & Compliance Remediation: Lead technical readiness for internal and external audits. Work directly with teams to track, prioritize, and validate the remediation of security findings and vulnerabilities.
...
Security Framework Alignment: Define and maintain the Bank’s technical security standards, aligning them with industry frameworks (e.g., NIST, PCI-DSS, ISO/IEC 27001, SOC 2, CIS Benchmarks).
Policy & Standard Engineering: Review and update technical security policies, baselines, and procedures for Web Application Firewalls (WAF), Web Proxies, Enterprise VPNs, and Network Access Control (NAC) systems and other security devices.
Audit & Compliance Remediation: Lead technical readiness for internal and external audits. Work directly with teams to track, prioritize, and validate the remediation of security findings and vulnerabilities.
...
Certification: Active OSCP certification is mandatory. Candidates without a valid OSCP or an equivalent hands-on certification (e.g., OSEP, CPTS) will not be considered.
Experience: 5+ years in offensive security, penetration testing, or vulnerability management.
Autonomy: Proven track record of building security processes from scratch in environments where they were the sole security expert.
...
Lead deployment, configuration, and optimization of Microsoft Defender XDR, ensuring strong endpoint protection, threat detection, device hardening, and integration across the Microsoft security ecosystem.
Administer and maintain Microsoft Defender for Cloud, including security recommendations, posture management, and hybrid/cloud workload protection.
Manage and maintain ThreatLocker or other application‑control platforms, including allowlisting, policy enforcement, ringfencing, and operational troubleshooting.
...
Conduct Vulnerability Assessments and Penetration Testing (VAPT) for web applications, APIs, internal/external networks, wireless environments, cloud platforms, Active Directory, and infrastructure.
Perform security architecture reviews, configuration reviews, and security hardening assessments.
Identify security vulnerabilities, assess risks, and provide practical remediation recommendations.
...
7+ years of experience in one or more of the following areas: security program management, security operations, operational risk, compliance/assurance, or client-facing security roles.
Demonstrated experience supporting a high-stakes or low-risk-tolerance environment (regulated industry, high integrity programs, safety/security-critical services, or high-visibility client engagements).
Proven ability to lead across multiple teams without direct authority, using influence, clarity, and follow-through to drive work to closure.
...
Validate and support deployment of Microsoft Defender for Endpoint (MDE), ensuring protection, EDR, and hardening requirements are met.
Assist in planning, deploying, and maintaining Microsoft Intune policies for secure device management, compliance enforcement, and configuration baselines.
Support integration and continuous improvement of Intrusion Prevention Systems (IPS) across on‑premises and cloud network environments.
...
Security Maturity & Roadmaps: Evaluate organizational security maturity, compliance gaps and threat models to deliver actionable, business-aligned security roadmaps.
Architecture & Secure Design: Assess and guide secure architecture patterns across cloud, hybrid environments, zero-trust frameworks, network defense, and IAM systems.
Architecture Review Board (ARB) Alignment: Serve as the primary security engineering liaison to the ARB, ensuring proposed solutions align smoothly with enterprise architecture standards.
...
Security Maturity & Roadmaps: Evaluate organizational security maturity, compliance gaps and threat models to deliver actionable, business-aligned security roadmaps.
Architecture & Secure Design: Assess and guide secure architecture patterns across cloud, hybrid environments, zero-trust frameworks, network defense, and IAM systems.
Architecture Review Board (ARB) Alignment: Serve as the primary security engineering liaison to the ARB, ensuring proposed solutions align smoothly with enterprise architecture standards.
...
Senior Security Engineer (Data Loss Prevention) will be responsible to manage, tune and expand the global Data Loss Prevention service that protects ZEISS information assets across cloud, endpoint, email, and collaboration platforms using Microsoft Purview. The engineer will also provide escalation support and resolution for complex incidents that cannot be resolved at the L2 level to ensure reliable and compliant service delivery in collaboration with internal stakeholders and external providers.
Primary duties and responsibilities :-
DLP Lifecycle Management: Manage the end-to-end lifecycle of DLP policies across Endpoint, Exchange, SharePoint, OneDrive, and Teams using Microsoft Purview.
...