At ABB, we help industries run leaner and cleaner—and every person here makes that happen. You’ll be empowered to lead, supported to grow, and proud of the impact we create together. Join us and help run what runs the world.
Lead deployment, configuration, and optimization of Microsoft Defender XDR, ensuring strong endpoint protection, threat detection, device hardening, and integration across the Microsoft security ecosystem.
Administer and maintain Microsoft Defender for Cloud, including security recommendations, posture management, and hybrid/cloud workload protection.
Manage and maintain ThreatLocker or other application‑control platforms, including allowlisting, policy enforcement, ringfencing, and operational troubleshooting.
...
Familiar and able to design Security System and other ELV System such as BMS, Intercom etc.
Establish and maintain appropriate relationships with customers, enabling the company to be active & leading, speedy response time, highly profitable, excellent payment collection position at all time.
External communication with customers, consultants, general contractor, supervision, design institute and other construction units, manage site activities to ensure compliance to quality standards.
...
Certification: Active OSCP certification is mandatory. Candidates without a valid OSCP or an equivalent hands-on certification (e.g., OSEP, CPTS) will not be considered.
Experience: 5+ years in offensive security, penetration testing, or vulnerability management.
Autonomy: Proven track record of building security processes from scratch in environments where they were the sole security expert.
...
The Network Security Department is responsible for protecting the organisation’s network infrastructure from cyber threats while ensuring availability, performance, and compliance. The department works at the intersection of network engineering and cybersecurity, implementing security controls across on premises, cloud, and hybrid environments.
The team designs, deploys, and operates network security technologies such as firewalls, intrusion prevention systems, secure access solutions, and network monitoring tools. In close partnership with the Network Engineering and Cybersecurity teams, the department proactively identifies vulnerabilities, remediates security findings, and continuously improves the organisation’s overall security posture.
...
Assess security practices across the Software Development Lifecycle.
Participate in application design, architecture, and data flow reviews for new and existing systems.
Perform secure code reviews to identify vulnerabilities such as injection flaws, authentication weaknesses, insecure data handling, exposed secrets, and insecure API usage.
...
Plan, execute, and manage risk-based audit assignments as outlined in the Audit Plan, ensuring adherence to approved objectives, scope, and Audit Methodology standards
Monitor audit progress to ensure completion within budgeted timelines, manpower resources, and cost allocation
Review draft audit findings, root causes, and recommendations to ensure relevance and accuracy before discussion with line management
...
P&L Ownership : Own the profitability of Digital Safety and Protection services by tracking performance metrics, managing budgets, and achieving financial targets
Customer Engagement : Promote activation and consistent usage of safety products, ensuring seamless integration into customers’ lives
Issue Resolution : Oversee customer escalations, improving resolution times and reducing complaint volumes
...
Maintaining of security solution including Splunk, Imperva and etc. (Task including compliance to patch and obsolescence framework requirement, UAMR etc.)
Ensure events / logs from all relavant devices are sending to SIEM solution in a complete and accurate manner
To produce monthly SIEM system health report (completeness and accurate)
...
Assess security practices across the Software Development Lifecycle.
Participate in application design, architecture, and data flow reviews for new and existing systems.
Perform secure code reviews to identify vulnerabilities such as injection flaws, authentication weaknesses, insecure data handling, exposed secrets, and insecure API usage.
...
Access Governance: Establish and govern a comprehensive access control baseline by reviewing and granting access authorities based on approved User Access Matrices (UAM). Ensure strict adherence to the Principle of Least Privilege across all environments and critical systems.
Privileged Access: Enforce strict governance over super-user and privileged accounts by ensuring IDs are split, lodged securely, and that all usage is properly documented, controlled, and reviewed to prevent abuse of administrative powers.
Compliance: Act as the primary coordinator for the periodic review of User Access Matrix (UAM)and User ID listings with Business Owners/Departments to ensure ongoing compliance. Execute annual Security Risk and Control Self-Assessments (RCSA) to identify gaps and enforce control effectiveness.
...