Các trách nhiệm chính
1. Emulate advanced persistent threats (APTs) and adversary tactics, techniques, and procedures (TTPs) to identify weaknesses in our systems, networks, applications, and employee awareness
2. Implement security program to security development
3. Develop/implement/apply security by design to Projects
Trình độ đào tạo
Các yêu cầu công việc
• Bachelor's or Technical Degree Required (IT, Cryptography, computer science, information systems, business administration or other industry-related curriculum)
• 3 years or more of working experience in offensive security, penetration testing, or Red Team operations
good knowledge international IT security standards (ISO 270001, PCI-DSS,…)
• Strong knowledge of TTPs used by APT groups (e.g., MITRE ATT&CK framework).
• Have good knowledge about: network security, system security, application security and virus/malwares, secure coding
• Good using some tools for cyber attacks/hacking: Metasploit, APPScan, VA, kali linux
• Have good knowledge with secure coding with some languages: Python, Shell, PHP and have good knowledge with encryption, cryptography techniques
• Have ability to read and understand the professional documents in English.
• Strong interpersonal and communication skill
• Be able to catch up and manage works quickly and effectively
• Be able to work independently with high pressure, good in teamwork
• Careful, responsible, and secure in protecting information/data belong to Bank
• Good knowledge of risk management principles, methodology and practice
• Preferred Fluent in English