Security Engineering Manager
Indexed description
Company Description Ngern Hai Jai Co., Ltd. is a financial services company established in 2023 and fully owned by Kasikorn Inventure Co., Ltd., a holding company focused on agile and proactive business operations. Operating under the brand “Ngern Hai Jai,” the company provides loans secured by vehicle titles and vehicle leasing loans, serving customers through Kasikorn Bank branches nationwide, online channels, and partner networks. As part of the financial services group of Kasikorn Bank Public Company Limited, a leading commercial bank in Thailand, Ngern Hai Jai benefits from extensive industry experience and expertise. The collaboration between Ngern Hai Jai and Kasikorn Bank enables the delivery of efficient, convenient, and fast loan products with transparent and fair customer service, aimed at building trust and long-term customer relationships.
Security Engineer Manager
1. Strategic Security Leadership & Governance:
•Lead the design, implementation, and continuous improvement of security systems, monitoring, and alert mechanisms.
•Direct the development and evolution of information security policies, standards, processes, and operational procedures.
•Ensure continued compliance with all applicable laws and regulations, including specific requirements for VA Scans, Security Hardening Reviews, High Privilege/Services Accounts Management, Key Management, Digital Certificate Management, MDM, DLP and Cloud Security Management.
•Work closely with the 2nd line of defense (Risk and Compliance) and support periodic security audits, including those related to NIST Series Framework, and other relevant security frameworks.
•Provide thought leadership and represent Ngernhaijai at industry events, staying ahead of the IT threat landscape for the financial industry.
2. Security Operations & Incident Management:
•Lead the cybersecurity team to manage and operate all security protection and detection systems such as WAF, Anti-DDoS, DLP, SIEM, SOAR, EDR, Anti-Virus, Web Filtering, and E-Mail Filtering.
•Incorporate and organize the 3rd party for SOC team to maintain and ensure to get appropriate services, including Real-Time Security Monitoring, Threat Intelligence and Research, and Security Incident Response and Investigation activities.
•Ensure that cyber drills and cyber incident response planning are rigorously in place, regularly tested, and mature.
•Track, manage to resolution the closure of all identified security risks, including reviewing remediation plans and monitoring progress.
•Oversee vulnerability management, including vulnerability scanning, reporting, and providing expert consultation on remediation strategies.
•Manage hardening management, including creating and maintaining standard hardening guidelines for all platforms and overseeing hardening reports.
3. Risk, Compliance & Awareness:
•Conduct security awareness testing and champion a strong security culture across the organization.
•Perform comprehensive and authoritative technical analysis of the security readiness and compliance of applications.
•Quantify risks associated with different IT architectures and effectively communicate strategies to manage these risks to executives.
•Collaborate with data scientists to enhance threat detection and response capabilities.
•Oversee penetration testing to identify vulnerabilities across all elements of the security system, understanding and guiding remediation efforts.
•Develop and refine disaster recovery strategies, including the ability to detect, isolate, and neutralize intrusions.
•Manage data and information lifecycle, including classification, retention, and destruction, ensuring privacy and security of corporate and personal data.
•Conduct digital forensics to determine root causes of intrusions and implement preventative measures.
•Maintain knowledge of all applicable laws, compliance requirements, and policies that impact security operations and services.
4. Team Leadership & Collaboration:
•Manage the performance and development of Ngernhaijai employees, subsidiary staff, and third parties involved in IT security, including alignment with NGERN HAI JAI-Business and IT initiatives.
•Demonstrate strong leadership, collaboration, and conflict resolution skills.
•Possess the ability to perform Security Planning and strategic management, including effective supervision and management of the IT Security Team.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search