Security Monitoring and Incident Analysis: Robustly monitor cyber security events, triage alerts effectively and identify intrusion attempts. Requires working knowledge of cyber security practices, threat and vulnerability management.
Incident Remediation: Collaborate with remediation teams to orchestrate incident mitigation. Requires advanced skills in incident management within a large-scale environment.
Threat Hunting and Vulnerability Assessment: Proactively seek vulnerabilities and assess the associated risks. Requires proficiency in threat hunting, vulnerability risk assessment, and understanding of diverse operating systems and cloud environments.
Security Tools Enhancement: Identify improvement opportunities for security tools and reduce false positives. Requires expertise in security tools.
Playbook Optimization and Creation: Enhance current playbooks and develop new ones to address evolving threats. Requires ability in developing alert triage playbooks.
Security Consultancy: Offer expertise to other teams and help resolve issues. Requires excellent English communication skills and ability to provide professional security consultancy.
Research and Development: Conduct research into emerging threats and develop new capabilities. Requires skills in conducting research and developing countermeasures.
Penetration Testing and Security Audit: Perform tests and audit cloud infrastructures for misconfigurations. Requires advanced experience in penetration testing and auditing.
Cyber Security Investigation: Investigate incidents and perform forensic analysis. Requires skills in investigating incidents, reverse-engineering, and testing vulnerabilities.
Threat Intelligence and Reporting: Conduct long-term retrospective analysis and provide recommendations. Requires proficiency in conducting analysis, researching threats, writing reports, and making recommendations.
Other Security Tasks: Carry out other security-related tasks as assigned. Requires high-level analytical, lateral thinking and problem-solving skills.
On-Call Duties: Participate in on-call rotation during weekends daytime to ensure 24/7 incident response capabilities. Requires ability to effectively respond to after-hours incidents.
Yêu cầu công việc
The Vietnamese is preferred.
Working knowledge of cyber security practices, threat and vulnerability management.
Advanced skills in incident management within a large-scale environment.
Proficiency in threat hunting, vulnerability risk assessment, and understanding of diverse operating systems and cloud environments.
Expertise in security tools.
Ability to develop alert triage playbooks.
Excellent English communication skills and ability to provide professional security consultancy.
Skills in conducting research and developing countermeasures.
Advanced experience in penetration testing and auditing.
Skills in investigating incidents, reverse-engineering, and testing vulnerabilities.
Proficiency in conducting analysis, researching threats, writing reports, and making recommendations.
High-level analytical, lateral thinking and problem-solving skills.
Ability to effectively respond to after-hours incidents.
Tại sao bạn sẽ yêu thích làm việc tại đây
Health: people-centric culture, Global Wellbeing Programme, onsite session for nutrition and psychotherapy, sports allowance;
Family: work from home and flexible working hours, childbirth gift
Community: We care Programme, Endava is growing rapidly and responsibly.
Finance: Share Plan, Company Performance Bonus, Your Zone Award, Your Team Award, Referral bonus
Workspace: space for collaboration, creativity, learning, socializing, Inclusion & Diversity Programme, multicultural environment, working with colleagues and clients across different regions