← Pharmacity
[SSC] IT Security Manager
Pharmacity · Ho Chi Minh City, Hồ Chí Minh
Apply on official site ↗
Type
Full-time
Work mode
On-site
Level
Manager
Industry
IT - Software
Salary
Thương lượng
Location
Ho Chi Minh City, Hồ Chí Minh
Overview
- Cybersecurity & IT Security Governance
- Develop and enforce security policies, standards, and procedures to protect company systems and data.
- Ensure compliance with regulatory and industry security standards (e.g., ISO 27001, PCI-DSS, GDPR).
- Conduct regular security risk assessments and audits, reporting findings to executive leadership.
- Security Operations & Incident Response
- Lead security operations, including threat detection, vulnerability management, and security monitoring.
- Establish and manage incident response procedures to handle security breaches effectively.
- Work closely with the infrastructure and network teams on security-related operational matters and purchasing decisions.
- Oversee endpoint security, network security, and cloud security measures.
- Identity & Access Management (IAM)
- Implement and maintain secure access controls, authentication mechanisms, and role-based access policies.
- Monitor and enforce best practices for user privileges, single sign-on (SSO), and multi-factor authentication (MFA).
- Security Awareness & Training
- Conduct security awareness programs to educate employees on security best practices.
- Provide security training for IT teams, leadership, and end-users.
- Security Architecture & Technology
- Evaluate and recommend security tools and technologies to enhance IT security posture.
- Collaborate with IT teams to ensure secure system design and application security.
- Advise the infrastructure and network teams on security requirements and best practices when evaluating and purchasing IT solutions.
Requirements
- 5+ years of experience in information security, cybersecurity, or related fields.
- Proven leadership experience in managing IT security teams and initiatives.
- Strong knowledge of security frameworks (ISO 27001, NIST, CIS Controls).
- Experience in security operations, risk management, and incident response.
- Familiarity with network security, on-premises & cloud security (GCP/Azure preferred), and endpoint protection.
- Excellent problem-solving, communication, and stakeholder management skills.
- Relevant certifications (CISSP, CISM, CEH) are a plus.
Benefits
Training
Summary of facts from the official posting. View original ↗
Interested in this role?
You'll be taken to the employer's official application page.
Apply on official site ↗
Is this your business?
Claim this page, request edits or removal
→