信息安全经理
夏晖物流(上海)有限公司
- 公司规模:500-1000人
- 公司性质:外资(欧美)
- 公司行业:交通/运输/物流
职位信息
- 发布日期:2021-01-14
- 工作地点:上海
- 招聘人数:1人
- 工作经验:8-9年经验
- 学历要求:本科
- 职位类别:IT经理/IT主管
职位描述
Define security strategy & action plans, apply, interpret and develop Information Security policy and standards
According to the requirements of the company's informatization development strategy, plan the company's information security development, and organize the implementation of the information security management system
Responsible for assisting in the formulation and updating of the company’s information security management system and conducting audits and audits on a regular or irregular basis.
Identify opportunities to improve the security posture of company by developing close relationships with the development and infrastructure operations teams
Lead and implement information security program including the action plan and scorecard from a technical perspective.
Provide advice, capability, governance, oversight and risk management to ensure that Information Security policy and standards are complied with for business processes and systems.
Refine processes and standards for the identification, risk assessment and remediation of vulnerabilities
Conduct security assessment for IT projects and/or IT vendors and ascertain the incorporation of appropriate security controls.
Ensure new IT vendors are compliant with all Company Information Security and Privacy requirements.
Provide support on security operation services
Responsible to security incidents and provide guidance and/or capability for Information Security issue resolution
Drive Compliance of company policy and ensure information confidential
Qualification:
Bachelor or above in Computer Science, IT Security, Information Technology, Information System with at least 5 years of relevant working experience in Information Security field.
Broad security knowledge across common industry security standards
Expert knowledge of local Data Privacy legislation and how this impacts business operations
Expert knowledge of IT Security controls and industry best practices in IT security
Broad knowledge of potential information risks for the country organization, its co-workers, customers and suppliers and how Information Security can mitigate these risks
Professional certifications from ISACA (CISA, CISM), (ISC)2 (CISSP), PMP, or SANS strongly preferred.
Strong analytical, interpersonal, communication, writing and presentation skills.
High level of proficiency with vulnerability management, including network, infrastructure and code level vulnerabilities
Demonstrable experience in the following: risk management, project management, and business process management, vendor and outsourced services management experience
Experienced skills relative to security and policy legalities
职能类别:IT经理/IT主管
公司介绍
联系方式
- 公司地址:上海市嘉定区陈宝路58号218-220 (邮编:201801)
- 电话:13816606485