Overview
Senior Specialist, Cybersecurity (Gia Bình International Airport) Jobs in Gia Bình district, Bac Ninh, Vietnam at Masterise Group
Title: Senior Specialist, Cybersecurity (Gia Bình International Airport)
Company: Masterise Group
Location: Gia Bình district, Bac Ninh, Vietnam
About Gia Binh
Gia Binh International Airport is a nationally strategic aviation infrastructure project, envisioned to shape the future of Vietnam’s aviation sector and serve as a driving force for the development of the aviation economy, contributing to the country’s overall economic growth in the era of global integration. The project has been entrusted by the Government and the Ministry of Public Security to Masterise Group—one of Vietnam’s leading developers in real estate and infrastructure—to act as the investor partnering with the State in creating a landmark of national significance.
With the ambition to achieve international five-star airport service standards and be ranked among the world’s Top 10 airports, Gia Binh International Airport is planned according to a next-generation airport city model. The project is developed as a world-class dual-use aviation hub, playing a strategic role in connecting key economic corridors, enhancing national competitiveness, and making a substantive contribution to the development of Vietnam’s economy.
Working alongside Gia Binh International Airport represents a unique opportunity for outstanding individuals to take part directly in a historic national undertaking—where professional expertise, international-standard thinking, and a strong sense of service to the nation are recognized and affirmed, together with broad opportunities for career advancement and long-term professional growth.
Join Masterise Group from the very beginning to build the foundations, define new standards, and create lasting value and legacy for your career, and for the pride of Vietnam.
JOB PURPOSE
Own the cyber hygiene, security monitoring coordination, access governance, and incident readiness for the VVIP terminal. The role bridges local operations with centralized Security Operations Center (SOC) monitoring, ensuring that the terminal's critical infrastructure is protected while practically balancing security protocols with the fast-paced operational realities of VIP aviation. Ensure local SOC monitoring coordination during business hours, while maintaining seamless alignment with central or outsourced SOC providers for after-hours handovers — providing continuous 24/7/365 coverage for terminal infrastructure.
JOB DESCRIPTION
I. SOC Monitoring & Incident Response
- Provide in-hours SOC monitoring coordination, threat response, and escalation for the VVIP terminal. Ensure seamless alignment with central or outsourced SOC providers for after-hours handovers and escalation, adhering to established operational protocols.
- Act as the primary local liaison with central or outsourced SOC providers – Guaranteeing seamless shift handovers, context transfer, and continuous alert monitoring across operational cycles.
- Support the complete lifecycle of security incidents including triage, containment, investigation, and reporting.
- Conduct proactive threat hunting across terminal systems during business hours, utilizing SIEM analytics and EDR telemetry to identify potential risks.
II. SIEM & Log Management
Manage and maintain SIEM platform integration for the VVIP terminal — onboarding log sources from firewalls, servers, Active Directory/IAM, EDR, cloud services, and OT systems where feasible.
Develop and tune detection rules, correlation policies, and alert thresholds specific to VVIP terminal systems and aviation threat patterns.
Oversee and coordinate SIEM health monitoring — ensuring continuous log source connectivity, parsing accuracy, and alert pipeline integrity with a targeted uptime exceeding 99%.
Develop and maintain periodic security reports and dashboards for the IT Operations Manager and Central CISO — capturing incident trends, alert fatigue metrics, and overall compliance status.
III. Cyber Hygiene & Vulnerability Management
- Coordinate and enforce local cyber controls, endpoint hygiene, logging, vulnerability follow-up, and patch tracking across ICT systems.
- Maintain comprehensive cyber documentation, audit evidence, exception logs, and ensure vendors follow up on security mandates.
- Oversee vulnerability remediation within an OT context — identifying IEC 62443 patching constraints for SDA, BMS, and building automation systems where standard maintenance cycles must be balanced against critical operational availability windows.
- Conduct periodic vulnerability assessments and coordinate penetration testing schedules with the Central CISO and approved security vendors.
IV. Access Governance & Security Awareness
- Manage user access reviews, enforce privileged access controls, and execute strict joiner/mover/leaver security checks across all VVIP terminal systems.
- Drive security awareness and embed practical cyber discipline among terminal staff and third-party vendors, and concession operators – covering phishing, social engineering, physical security, clean desk, aviation-specific threat scenarios.
- Drive practical security governance — embedding cyber discipline into daily terminal operations through coaching, tabletop exercises, and incident simulation drills.
- Manage third-party vendor security compliance — ensuring all contractors and service providers operating within the VVIP terminal meet minimum security requirements and sign appropriate security agreements.
JOB REQUIREMENTS
- 4+ years in cyber operations, security engineering, SOC, or IT security governance.
- Prior experience within critical infrastructure, aviation, banking, or MSSP environments preferred; specifically, aviation or airport security expertise is strongly preferred.
- Certifications & Licenses: GCIH,GCIA, CISSP, CISM, CompTIA Security+, or relevant SOC analyst certifications preferred.