Responsibilities
- Develop and implementprehensive security architectures aligned with business and technology goals.
- Create a strategic roadmap for security enhancements across cloud infrastructure, web applications, and network services.
- Lead initiatives involving advanced security technologies such as cloud security, web application security, anti-bot solutions, Web Application Firewalls (WAF), application-layer firewalls, IDS / IPS, SIEM, and cryptographic protocols.
- Oversee the analysis and enhancement of security controls involving stateful inspection, TCP / IP, authentication, , and PCI DSSpliance.
- Ensure robust vulnerability assessment programs and conduct regular application penetration testing.
- Evaluate and rmend improvements to the networking architecture to bolster security resilience.
- Maintain and enforce security best practices by aligning with frameworks such as ISMS, ISO27000 series, OWASP Top 10, MITRE, and other industry-standard guidelines.
- Ensurepliance with regulatory and industry standards through proactive security policy development and auditing processes.
- Partner with DevSecOps, cloud engineering, and development teams to integrate security within the software development lifecycle.
- Provide technical guidance, mentorship, and leadership within cross-functional teams regarding secure coding practices and risk mitigation strategies.
Required Skills and Qualifications
Demonstrated experience in advanced security technologies, including cloud security, web application security, anti-bot solutions, WAF, IDS / IPS, SIEM, stateful inspection, TCP / IP, and cryptography.Proven exposure to vulnerability assessment and application penetration testing methods.Sound knowledge of ISMS, ISO27000 series, OWASP Top 10, and MITRE frameworks.Familiarity with security regulatory standards such as PCI DSS.Experience with programming languages such as C, C++, J2EE, .NET.Additional experience with Flash / Flex, Web services, and website development is a strong advantage.Broad security and technology knowledge, with a strong understanding of DevSecOps practices and cloud infrastructure management.Excellent analytical, problem-solving, andmunication skills.Bachelor’s degree in Information Security,puter Science, or a related field, or equivalent work experience.Professional certifications (, CISSP, CISM) are preferred.Preferred Qualifications
Advanced degree or further certifications in relevant fields.Extensive experience working within a large enterprise environment with aplex security landscape.Demonstrated leadership in designing and implementing enterprise-level security initiatives.Data provided is for recruitment purposes only.
Headquartered in Hong Kong, Pinpoint Asia is the go-to Specialist Firm for Technology Recruitment
We are a team of specialist tech recruiters (many of our recruiterse from an IT background) and we serve a wide range of clients, all the way from tech startups (especially FinTech) to some of the top Financial Institutions on Wall Street and several other large scale enterprises in other industries.
Our significant market reputation and status as the leading search firm for many of our clients is a direct result of our strong industry relationships, intimate understanding of the marketplace and proven ability to deliver results.
Our vision is to helppanies hire smarter and help job seekers get closer to their career aspirations.
We are also seeking top-calibre candidates for the following exciting roles :
1) Python Quant Developer-World Class Buy Side Firm
2) React / React Native Developer - Leading Insurance Group
3) Cyber Security Operations (SOC) Manager - Leading Professional Firm