VIS

Senior Engineer (IT Security) (Ref: 260100150)

VIS
Foundry OperationsSingaporeOnsitePosted 2 months ago

About the role

AI summarised

The Senior Engineer (IT Security) is responsible for designing, operating, and maintaining an organization's security infrastructure, including firewalls, intrusion detection/prevention systems, SIEM, endpoint protection, identity management, and encryption. The role involves leading incident response, conducting vulnerability assessments and penetration tests, developing security policies, and driving security architecture reviews for IT systems and cloud services. The position requires collaboration across IT, network, application, and compliance teams, as well as mentoring junior staff and improving security processes.

FoundryOnsiteManufacturing

Key Responsibilities

  • Design and operate security infrastructure, including firewalls, IDS/IPS, SIEM, end point protection, identity management, and encryption systems
  • Lead incident detection, investigation, mitigation, and post-incident analysis to reduce security risks
  • Conduct vulnerability assessments, penetration tests, and security audits to identify and close security gaps
  • Develop and maintain security policies, standards, and procedures aligned with business and regulatory requirements
  • Drive security architecture reviews for new IT systems, cloud services, and applications
  • Collaborate with IT, network, application, and compliance teams to ensure secure system design and operation
  • Provide mentorship to junior team members and contribute to continuous improvement of security processes

Requirements

  • Bachelor’s degree in Information Security, Computer Science, Information Technology, or related field
  • Professional certifications such as CISSP, CISM, CEH, or equivalent are preferred
  • 4+ years of hands-on experience in IT security engineering, cybersecurity operations, or enterprise security management
  • Strong expertise with SIEM, firewalls, IDS/IPS, IAM solutions, endpoint security, and network security technologies
  • Proven experience handling security incidents, threat hunting, or enterprise-scale vulnerability management
  • Familiarity with cloud security and security frameworks such as ISO 27001, NIST, or CIS Controls