ACB Insurance - Security Lead

Nơi làm việc
TP. Hồ Chí Minh
Hạn nộp
30/11/2026còn 52 ngày
Ngày đăng
05/10/20264 ngày trước
Bộ phận
Khối Công nghệ Thông tin

U&Bank không nhận hồ sơ, không thu phí.

Mô tả công việc

Security Lead is responsible for developing, implementing, and managing the organization‘s cybersecurity strategy, policies, and operations. This role ensures the confidentiality, integrity, and availability of company information assets, systems, networks, and applications. The Security Lead will lead security initiatives, oversee risk management activities, manage incident response processes, and ensure compliance with relevant security standards and regulations.

Key Responsibilities

Security Strategy & Governance

  • Develop and maintain the organization‘s information security roadmap aligned with business objectives.
  • Establish cybersecurity policies, standards, procedures, and best practices.
  • Lead security governance initiatives and ensure security controls are effectively implemented.
  • Conduct regular security assessments and gap analyses.
  • Provide strategic security recommendations to executive leadership.

Risk Management & Compliance

  • Identify, assess, and mitigate cybersecurity risks across the organization.
  • Ensure compliance with regulatory requirements and industry frameworks including ISO 27001, NIST, CIS Controls, PCI-DSS, GDPR, and local regulations where applicable.
  • Coordinate internal and external security audits.
  • Maintain risk registers and remediation plans.

Security Operations

  • Oversee Security Operations Center (SOC) functions and security monitoring activities.
  • Manage security tools such as:
  • SIEM
  • EDR/XDR
  • IDS/IPS
  • Web Application Firewall (WAF)
  • Data Loss Prevention (DLP)
  • Vulnerability Management platforms
  • Ensure continuous monitoring and threat detection capabilities.

Incident Response & Threat Management

  • Lead cybersecurity incident response, investigation, containment, and recovery efforts.
  • Develop and maintain Incident Response Plans and Playbooks.
  • Coordinate forensic investigations when necessary.
  • Conduct post-incident reviews and implement corrective actions.
  • Monitor emerging threats and vulnerabilities.

Security Architecture & Engineering

  • Review and approve secure architecture designs for infrastructure, cloud, and applications.
  • Collaborate with IT, DevOps, and development teams to implement security-by-design principles.
  • Support cloud security initiatives across AWS, Azure, and Google Cloud environments.
  • Oversee vulnerability assessments and penetration testing activities.

Team Leadership

  • Lead and mentor security engineers, analysts, and consultants.
  • Establish security KPIs, performance objectives, and development plans.
  • Manage vendor relationships and third-party security services.
  • Promote cybersecurity awareness programs across the organization.

Required Qualifications

Education

  • Bachelor‘s degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or related field.
  • Master‘s degree is preferred.

Experience

  • 7+ years of experience in cybersecurity or information security.
  • 3+ years of leadership or team management experience.
  • Proven experience managing enterprise security programs.
  • Hands-on experience with security monitoring, incident response, and risk management.

Technical Skills

  • Strong understanding of:
  • Network Security
  • Cloud Security
  • Application Security
  • Identity and Access Management (IAM)
  • Security Architecture
  • Threat Intelligence
  • Vulnerability Management
  • Security Operations (SOC)
  • Experience with AWS, Microsoft Azure, or Google Cloud security services.
  • Knowledge of Zero Trust Architecture and modern cybersecurity frameworks.
  • Familiarity with DevSecOps practices and CI/CD security integration.

Security Certifications (Preferred)

One or more of the following:

  • CISSP (Certified Information Systems Security Professional)
  • CISM (Certified Information Security Manager)
  • GIAC Certifications
  • CEH (Certified Ethical Hacker)
  • CCSP (Certified Cloud Security Professional)
  • ISO 27001 Lead Implementer / Lead Auditor

Nộp đơn ứng tuyển công việc này

Họ & tên bạn *

Địa chỉ email *

Số điện thoại *

Ngày tháng năm sinh *

Trình độ học vấn (Education) *

  • - Trình độ học vấn (Education) --Chưa tốt nghiệp (No degree)Phổ thông (High school)Trung cấpCao đẳng (College)Đại học (University/Academy)Thạc sỹ (Master)Tiến sỹ (PhD)Sau đại học (Postgraduate)Khác (Others)

Bạn biết đến cơ hội ứng tuyển này qua kênh nào? *

  • - Bạn biết đến cơ hội ứng tuyển này qua kênh nào? --Website tuyển dụng ACBFacebook ACBLinkedIn ACBWebsite việc làmQuảng cáo onlineNgười giới thiệuKhác
    • Thông tin thêm

CV của bạn *
Click để chọn & tải lên CV của bạn

Nộp đơn ứng tuyển

Bỏ qua

  • ->

{
"@context": "http://schema.org",
"@type": "JobPosting",

"datePosted":"2026-10-05",
"description":"Security Lead is responsible for developing, implementing, and managing the organization's cybersecurity strategy, policies, and operations. This role ensures the confidentiality, integrity, and availability of company information assets, systems, networks, and applications. The Security Lead will lead security initiatives, oversee risk management activities, manage incident response processes, and ensure compliance with relevant security standards and regulations.

Key Responsibilities

Security Strategy & Governance

  • Develop and maintain the organization's information security roadmap aligned with business objectives.
  • Establish cybersecurity policies, standards, procedures, and best practices.
  • Lead security governance initiatives and ensure security controls are effectively implemented.
  • Conduct regular security assessments and gap analyses.
  • Provide strategic security recommendations to executive leadership.

Risk Management & Compliance

  • Identify, assess, and mitigate cybersecurity risks across the organization.
  • Ensure compliance with regulatory requirements and industry frameworks including ISO 27001, NIST, CIS Controls, PCI-DSS, GDPR, and local regulations where applicable.
  • Coordinate internal and external security audits.
  • Maintain risk registers and remediation plans.

Security Operations

  • Oversee Security Operations Center (SOC) functions and security monitoring activities.
  • Manage security tools such as:
  • SIEM
  • EDR/XDR
  • IDS/IPS
  • Web Application Firewall (WAF)
  • Data Loss Prevention (DLP)
  • Vulnerability Management platforms
  • Ensure continuous monitoring and threat detection capabilities.

Incident Response & Threat Management

  • Lead cybersecurity incident response, investigation, containment, and recovery efforts.
  • Develop and maintain Incident Response Plans and Playbooks.
  • Coordinate forensic investigations when necessary.
  • Conduct post-incident reviews and implement corrective actions.
  • Monitor emerging threats and vulnerabilities.

Security Architecture & Engineering

  • Review and approve secure architecture designs for infrastructure, cloud, and applications.
  • Collaborate with IT, DevOps, and development teams to implement security-by-design principles.
  • Support cloud security initiatives across AWS, Azure, and Google Cloud environments.
  • Oversee vulnerability assessments and penetration testing activities.

Team Leadership

  • Lead and mentor security engineers, analysts, and consultants.
  • Establish security KPIs, performance objectives, and development plans.
  • Manage vendor relationships and third-party security services.
  • Promote cybersecurity awareness programs across the organization.

Required Qualifications

Education

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or related field.
  • Master's degree is preferred.

Experience

  • 7+ years of experience in cybersecurity or information security.
  • 3+ years of leadership or team management experience.
  • Proven experience managing enterprise security programs.
  • Hands-on experience with security monitoring, incident response, and risk management.

Technical Skills

  • Strong understanding of:
  • Network Security
  • Cloud Security
  • Application Security
  • Identity and Access Management (IAM)
  • Security Architecture
  • Threat Intelligence
  • Vulnerability Management
  • Security Operations (SOC)
  • Experience with AWS, Microsoft Azure, or Google Cloud security services.
  • Knowledge of Zero Trust Architecture and modern cybersecurity frameworks.
  • Familiarity with DevSecOps practices and CI/CD security integration.

Security Certifications (Preferred)

One or more of the following:

  • CISSP (Certified Information Systems Security Professional)
  • CISM (Certified Information Security Manager)
  • GIAC Certifications
  • CEH (Certified Ethical Hacker)
  • CCSP (Certified Cloud Security Professional)
  • ISO 27001 Lead Implementer / Lead Auditor

",
"employmentType":"Toàn thời gian",
"hiringOrganization": {
"@type": "Organization",
"name": "Ngân hàng Á Châu - ACB",
"sameAs" : "http://www.acbjobs.com.vn"
},
"identifier": {
"@type": "PropertyValue",
"name": "ACB Insurance - Security Lead",
"value": "56063"
},
"title": "ACB Insurance - Security Lead",
"validThrough":"2026-11-30"
}

Cách nộp

Nơi nộp
acbjobs.com.vn (mở trong thẻ mới)

Lấy từ trang tuyển dụng của ACB (acbjobs.com.vn) · kiểm tra 09/10/2026Báo cáo tin

Hỏi đáp về tin này

Đặt câu hỏi về tin này…

Chưa có câu hỏi về tin này.

Chia sẻ kinh nghiệm

  1. kể về lần thi ACB ·

    ACB chính thức tuyển dụng Tập trung đầu năm 2020

    Ngân hàng TMCP Á Châu (ACB) chính thức thông báo Tuyển dụng Tập trung trên Khu vực Toàn quốc ngay thời điểm đầu năm 2020. Xét về quy mô & khu vực, đợt tuyển…

    Đọc tiếp
  2. kể về lần thi ACB ·

    Tổng hợp Tuyển dụng - Ngân hàng TMCP Á Châu (ACB) Thông báo Tuyển dụng Vị trí Giao dịch viên trên toàn quốc đầu năm 2020

    U&Bank xin gửi đến ứng viên tổng hợp Thông tin Tuyển dụng của Ngân hàng TMCP Á Châu (ACB) vị trí Giao dịch viên trên Toàn quốc đầu năm 2020. Giao dịch viên là…

    Đọc tiếp
  3. kể về lần thi ACB ·

    Tổng hợp Tuyển dụng - Ngân hàng TMCP Á Châu (ACB) Thông báo Tuyển dụng các Vị trí yêu cầu kinh nghiệm làm việc từ 03 năm trở lên

    U&Bank xin gửi đến ứng viên tổng hợp Thông tin Tuyển dụng của Ngân hàng TMCP Á Châu (ACB) các vị trí yêu cầu kinh nghiệm làm việc từ 03 năm trở lên. Chi tiết…

    Đọc tiếp

Mọi bài về ACB

Thảo luận về ACB

  1. Đề thi nghiệp vụ Teller khóa K.07.11 của ACB

    Ngocquy1712 trả lời 18/05

  2. Kinh nghiệm Thi tuyển và phỏng vấn vào Ngân hàng Á Châu - ACB

    nguyenngoc1 trả lời 13/07

  3. Xin bộ KPI của QUAN HỆ KHDN ngân hàng TPbank, Techcombank,ACB...

    Huonglan1910 trả lời 06/10

  4. Quá trình đào tạo tại ACB

    hocon84 trả lời 02/04

  5. Phỏng vấn ACB Đông Đô- 20/08

    bhxhaztax trả lời 26/03

Xem mọi thảo luận về ACB

Tin khác của ACB

Mọi tin của ACB

Tin tương tự

Mọi tin An ninh thông tin

Người làm ngân hàng đã xác thực qua email công việc.

Dấu tích xanh là gì

Người làm ngân hàng đã được U&Bank xác minh.

Dấu tích xanh là gì

Chuyên gia do U&Bank mời, đã xác minh chính chủ.

Dấu tích xanh là gì