← Timo
Senior Cyber Defence Engineer SIEM, Cloud Security
Timo · Hồ Chí Minh
Apply on official site ↗
Type
Full-time
Work mode
On-site
Level
Staff
Industry
Engineering / Mechanical
Salary
Thương lượng
Location
Quận 3, Hồ Chí Minh, Hồ Chí Minh
Overview
- Monitor and respond to all security alerts, triage Alerts, Investigate and Incident trigger
- Operate and manage security controls (EDR, IDS/IPS, WAF, DLP) and review system configurations to recommend security improvements.
- Drive vulnerability and patch management: Perform vulnerability assessments and recommend remediation measures.
- Implement CIS hardening standards across laptops, desktops, network appliances, Servers, containers, and cloud environments.
- Participate in security incident response: investigation, containment, and post-incident review.
- Partner with the Threat Detection team: tune existing detections and develop new rules.
- Apply threat intelligence: turn emerging threat data into stronger detection, containment, and response.
- Threat Hunting: Conduct periodic threat hunting to identify hidden threats, suspicious activities, and IOCs within the enterprise environment.
- Automation: Develop scripts and automation tools to streamline repetitive security operations and workflows.
- Support for periodic information security reviews, such as firewall rule review, account review, and Regulation compliance support, such as PCI DSS/ SBV & MPS regulation/ISO 27001 framework familiarity.
- 4+ years in information security, with hands-on experience in two or more areas: SOC Analysis, cyber defence, incident response, threat hunting, threat intelligence, and vulnerability management.
- Experience operating in production environments at a meaningful scale.
- Comfortable working in cross-functional, regulated environments.
- Hands-on with: WAF, CDN, Firewall, SIEM, EDR, Cloud.
- Working knowledge of EDR, DLP, and SIEM platforms.
- Solid understanding of network security: firewalls, IDS/IPS, segmentation, system security (VM, Windows, Linux, Container), and cloud security.
- Basic malware analysis and suspicious file behaviour investigation.
- Experience with vulnerability and patch management workflows.
- Familiarity with CIS hardening standards.
- Good knowledge of modern adversary tactics, techniques, and procedures (MITRE ATT&CK or similar)
- Professional working English: regular collaboration with Kredivo’s regional Cyber Defense team and Timo’s local teams.
- Define the infrastructure foundations behind one of Vietnam's leading digital banks
- Work alongside Kredivo Group's regional DevOps and Platform Engineering teams (Vietnam, Indonesia, Singapore)
- Set the technical bar for how Timo builds, deploys, and operates at scale
- Hybrid model: 4 days HCMC office, 1 day work from home
Benefits
Laptop / equipment
Summary of facts from the official posting. View original ↗
Interested in this role?
You'll be taken to the employer's official application page.
Apply on official site ↗
Is this your business?
Claim this page, request edits or removal
→