Overview
Senior Information Technology Security Officer Jobs in Ho Chi Minh City, Vietnam at Shinhan Securities Vietnam
Title: Senior Information Technology Security Officer
Company: Shinhan Securities Vietnam
Location: Ho Chi Minh City, Vietnam
Job summary
Responsible for operating security infrastructure, monitoring network threats, and ensuring organizational compliance. This role balances hands-on security operations (SecOps) with risk management to protect digital assets and coordinate effective incident response.
Responsibilities and accountabilities
– Configure and optimize Firewalls, VPNs, Switches, Routers, and Access Points in accordance with approved guidelines.
– Perform periodic reviews and maintain logs of configuration changes.
– Operate and monitor Anti-virus/EDR and DLP systems.
– Deploy and track security patches across internal systems.
– Prepare and submit periodic data protection status reports.
– Implement PAM, WAF, and DDoS protection solutions under the direction of the Information Security Manager.
– Monitor privileged access activities and report potential internal security risks.
– Support the development and update of security policies and procedures.
– Conduct security awareness training sessions and assess employee awareness levels.
– Participate in research, testing, and deployment of new security solutions.
– Support project progress reporting to the Information Security Manager.
– Perform periodic risk assessments and system vulnerability scans.
– Assist in preparing detailed risk assessment reports for management review.
– Monitor security logs, system alerts, and security events.
– Coordinate incident handling according to established procedures and ensure detailed documentation and reporting.
– Support monitoring of security SLAs with MSSPs and ISPs.
– Perform reviews and tracking of external devices and services in accordance with information security standards.
Knowledge, Skills and Experience
Knowledge
- Technical Foundations: Deep understanding of L2/L3 networking, Firewalls, VPNs, and security protocols.
- Security Solutions: Advanced knowledge of EDR/XDR, DLP, PAM, WAF, and vulnerability management tools.
- Frameworks: Familiarity with international standards such as ISO 27001, NIST, or SOC2.
Skills
- Technical Execution: Proficiency in configuring network/security appliances (e.g., Fortinet, Cisco, Palo Alto).
- Analysis: Strong ability to analyze security logs, investigate incidents, and perform risk assessments.
- Documentation: Skilled in drafting technical reports, security policies, and Standard Operating Procedures (SOPs).
- Communication: Ability to conduct security awareness training and present risks to stakeholders.
Experience
- Years of Experience: Minimum 2–4 years in Information Security or Network Security roles.
Certifications: Preferred certifications include CompTIA Security+, CEH, CCNA, CCNP Security, NSE4 or CISSP.