Epicareer Might not Working Properly
Learn More

SR-34610-ET-C(A35) Security Operations and Maintenance (nightshift) Fully remote

Salary undisclosed

Apply on


Original
Simplified
34610- ET-C(A35)

Security Operations and Maintenance (Fully night shift, open for Fresh Graduate)

Fully remote

IT Service Provider

Basic: MYR4,000 - MYR20,000

5.5 days

Mon-Fri 0900-1900 (2 hours lunch break, 1230-1430) Sat 1430-1930 (without lunch break)

(AL - 30 days, no Malaysia public holiday as staff can make use of this 30 days leave for flexible holiday planning)

Job Description:

"1. Responsible for security reinforcement of the company's production environment and OA environment, and regular inspections.

2. Responsible for baseline testing and security reinforcement of the production environment OS, services, database and other software versions.

3. Responsible for security event troubleshooting and analysis, with regular preparation of security analysis reports, focusing on industry security events.

4. Tracking the latest vulnerability information and conducting security checks of business products.

5. Responsible for the development of information security strategy/process, security training/publicity and promotion.

6. Responsible for the relevant system vulnerability repair work to promote, track the solution, problem collection.

7. Responsible for system security monitoring and emergency response.

8. Working on shifts basis to handle tasks.

Requirements:

1. Familiar with the mainstream Web security technologies, including SQL injection, XSS, CSRF and other OWASP TOP 10 security risks.

2. Familiar with the security configuration and reinforcement of systems and software under Linux/Windows.

3. Familiar with common security products and principles, such as IDS, IPS, firewalls and others.

4. Familiar with the architecture, principles and maintenance of common monitoring and logging systems, such as Grafana, Prometheus, Wazuh, Graylog, ELK, Zabbix and others.

5. Familiar with the basic principles, deployment and maintenance of common VPN, application agent, such as OpenVPN, IpSec, WireGuard, Trojan, Shadowsocks and others.

6. Master the common system, application log analysis methods and have security event mining, investigation and forensics experience.

7. Master Go/Python/Shell and other 1 or more languages.

8. Has solid network fundamentals, familiar with TCP/IP protocols, the principles of Layer 2 forwarding and Layer 3 routing, dynamic routing protocols, common application layer protocols.

9. Has strong comprehensive analysis and problem solving ability, strong psychological quality and independent work ability, good teamwork ability, good document writing ability and good communication ability.