安全专家(010382) (职位编号:vivo010382)
vivo
- 公司规模:10000人以上
- 公司性质:民营公司
- 公司行业:通信/电信/网络设备
职位信息
- 发布日期:2021-06-03
- 工作地点:深圳-福田区
- 招聘人数:若干人
- 工作经验:10年以上经验
- 学历要求:本科
- 职位月薪:5-8万/月
- 职位类别:网络安全工程师
职位描述
1、作为网络安全领导团队的成员,在体内安全性的持续转变,围绕结构,工具和流程做出战略决策并执行所需的变更方面发挥关键作用;
2、主要通过项目交付管理,团队管理和客户服务负责产品安全;
3、担任领导者和网络安全主题专家,参与高调创新的网络安全计划;
4、为移动/ IoT网络风险治理和管理方法提供咨询;
5、制定与vivo业务和产品策略一致的网络安全策略;
6、调整和/或开发安全框架,产品安全架构,企业安全标准;
7、领导移动/ IOT环境中的安全漏洞评估和渗透测试,并撰写可操作的报告;
8、使用行业标准工具和技术来评估移动/ IoT设备(包括移动应用程序设计,嵌入式软件,固件,Web应用程序,连接的云服务和移动设备)的威胁建模以及风险和安全性评估,以评估这些解决方案的安全状况,并识别漏洞;
9、领导威胁情报收集,风险评估和风险排名计划,以优先考虑缓解和补救活动;
10、领导2C环境中网络和系统安全的高级安全技术的设计,实施和管理;
11、与其他体内网络安全和隐私专业人员积极合作,以解决其他所有相关服务产品中的网络安全问题;
12、参与相关行业团体并领导vivo贡献,以进一步发展移动/ IoT安全领域;
Responsibilities and skills:
?As a member of the Cyber Security Leadership Team, play a critical role in the ongoing transformation of security within vivo, making strategic decisions around structure, tools, and processes and executing required change
?Primarily responsible for the product security through project delivery management, team management and client care
?Serve as leader and cybersecurity subject matter expert for high profile, innovative cyber security initiatives
?Advise on mobile/IoT cyber risk governance and management approaches
?Develop cybersecurity strategies aligned with vivo’s business and product strategies
?Adapt and/or develop security frameworks, product security architecture, enterprise security standards
?Lead safe vulnerability assessment and penetration testing engagements in mobile/IOT environments and take ownership in writing actionable reports
?Lead threat modelling and risk and security assessments of mobile/IoT devices, including mobile application design, embedded software, firmware, web applications, connected cloud services and mobile devices using industry-standard tools and techniques to evaluate the security posture of these solutions and identify vulnerabilities
?Lead threat intelligence collection, risk assessment, and risk ranking initiatives to prioritize mitigation and remediation activities
?Lead design, implementation and management of advanced security technologies for network and systems security within 2C environments
?Actively work with other vivo cybersecurity and privacy professionals to help cyber security concerns in every other relevant service offering
?Participate in relevant industry groups and lead vivo contributions in order to further the fields of mobile/ IoT security
任职资格:
1、至少需要10年以上的工作经验;先前有漏洞评估和pen测试领导经历;
2、对用于API,Web和移动应用程序安全评估,渗透测试和源代码审查的各种工具有丰富的经验和丰富的知识;
3、对移动/ IoT技术架构,移动与物联网系统和网络使用的安全框架有深入的了解;
4、具有移动/ IoT整个生命周期的经验,包括设备供应,调试和远程设备管理层;
5、了解在软件和硬件中实施的物理和逻辑安全方法;
6、表现出致力于评估差异,发展和指导多元化团队以及确保听到不同观点的坚定承诺;
7、优秀的书面和口头表达能力,并具有向非技术人员解释复杂技术和安全概念的能力。具体的相关经验应包括撰写和提出安全评估报告和建议书;
8、拥有业内认可的安全证书者优先考虑;
9、能够与主要利益相关者一起应对高压情况;
10、良好的分析能力,问题解决能力和人际交往能力。
Qualifications:
?Minimum of 10+ years of work experience required; previous vulnerability assessment pen testing leadership required
?Experience and strong knowledge of a wide variety of tools used for API, Web & Mobile Application Security Assessments, Penetration Testing and Source Code Reviews
?Strong understanding of mobile/IOT technical architectures, security frameworks used by mobile & IoT systems and networks
?Experience with the full lifecycle of Mobile/IoT including, device provisioning, commissioning, and remote device management layers
?Knowledge of physical and logical security methods implemented in software and hardware
?A demonstrated commitment to valuing differences, developing and coaching diverse teams, and ensuring diverse perspectives are heard
?Excellent written and verbal skills with proven ability to explain complex technical and security concepts to a non-technical audience. Specific relevant experience should include writing and present security assessment reports and proposals writing
?Recognized security certifications are preferred
?Ability to handle high pressure situations with key stakeholders
?Good Analytical skills, Problem solving and Interpersonal skills
职能类别:网络安全工程师
公司介绍
目前,已推出vivo,iQOO及NEX三大品牌。vivo的海外版图逐渐扩大,截至2020年2月,vivo已进驻亚洲、欧洲、非洲、北美洲、南美洲、大洋洲全球超过50个国家和地区。2017年以来,vivo全球出货量始终保持在1亿台以上,并逐年提升。2019年Q4季度,vivo全球手机销量位列TOP5,vivo在印度及印尼市场,份额分别位居TOP2 及TOP3。
联系方式
- 公司地址:vivo 大厦