Epicareer Might not Working Properly
Learn More

Information Security Engineer

Salary undisclosed

Apply on


Original
Simplified

B2B Commerce is rapidly expanding its business in Enterprise with a focus on software services.
We are the Information Security team, responsible for managing security and regulatory compliance within
the company.

Assist and support the Head of Dept in the day-to-day activities of the Information Security functions which includes advisory, risk assessment, monitoring, and reporting.


Key Responsibilities
Incident Handling

  • Respond to and manage cyber and information security incidents.
  • Investigate security breaches to mitigate the impact and analyse root causes
  • Develop strategies to prevent future security breaches and implement appropriate countermeasures
  • Collaborate with cross-functional teams to address and resolve security issues
  • Document findings and recommend corrective actions

Mitigation Strategies

  • Develop and implement strategies to mitigate the impact of security breaches.
  • Collaborate with IT teams to enhance existing security measures.

Security Assessment

  • Conduct regular vulnerability assessments and coordinate pen test till completion
  • Identify and assess security risks in the organization's systems and applications
  • Assist in the preparation and execution of security audits and assessments
  • Assist in the preparation of compliance reports and documentation.

Security Monitoring

  • Monitor and analyse security logs and alerts from various sources, including AWS Guard Duty and work closely Cloud Engineer.
  • Identify and investigate suspicious activities and potential security threats
  • Stay updated with the latest trends in cybersecurity technologies and tools & implement and maintain security monitoring tools and processes

Policy Development

  • Assist in the development and enforcement of security policies, standards, and procedures to safeguard organizational information.

Training and Awareness

  • Develop and deliver security awareness training to employee on security best practices
  • Provide security guidance and support to various department
  • Safeguard against cyber threats and ensure compliance with security standards and regulations.


In this role, you will be involved in an exciting new opportunity, working with other B2B subsidiaries in the delivery of security services and management of cyber security risk.


Assist in other applicable tasks or projects within the B2B department scope assigned by Head of Department of Information Security.


Involved and assist in Risk Assessment conducted on yearly basis to evaluate on the risk level of our critical assets.
Support in Information Security projects as and when needed (e.g., Business Continuity activities etc.)

Qualifications & Skills

  • Bachelor’s degree in computer science, Information Technology, or a related field.
  • 2 - 4 years of experience in information security or related field.
  • Proven experience in cybersecurity incident response and management.
  • Strong understanding of network security principles, threat detection, vulnerability assessment, and risk management.
  • Familiarity with cybersecurity frameworks (e.g., NIST, ISO 27001)
  • Proficiency in using various cybersecurity tools for incident detection, analysis, and reporting.
  • Strong communication and collaboration skills
  • Candidate who has experience and knowledge in Service Management process and Cloud Services will have an added advantage