Deskripsi Pekerjaan
Are you a cybersecurity enthusiast looking to elevate your career with a global industry leader? CMC Global is seeking a talented and proactive IT Security Officer / Cybersecurity Engineer to join our expanding team at the Associate or Consultant level. In this pivotal role, you will be at the forefront of protecting our digital infrastructure and ensuring the highest standards of data integrity and system security.
As part of our dynamic team, you will collaborate with cross-functional groups to implement security frameworks, monitor network health, and respond to emerging threats in real-time. We provide a collaborative environment that encourages continuous learning and professional development, making this an ideal opportunity for those passionate about building a resilient and secure IT future.
Tanggung Jawab
- Implement and maintain robust security measures to protect internal and client-facing infrastructure.
- Conduct regular vulnerability assessments and penetration testing to identify and mitigate potential threats.
- Configure and manage security software, including firewalls, endpoint protection, and intrusion detection/prevention systems (IDS/IPS).
- Support the incident response team by analyzing security alerts and investigating potential breaches.
- Ensure organizational compliance with ISO 27001, NIST, and other relevant cybersecurity standards and frameworks.
- Assist in the development and documentation of security policies, standard operating procedures, and incident response plans.
- Participate in security audits and ensure all systems remain compliant with corporate governance policies.
Kualifikasi
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field.
- 1-4 years of professional experience in an IT Security or Cybersecurity Engineering role.
- Strong understanding of network protocols, operating systems (Linux/Windows), and cloud security fundamentals (AWS/Azure/GCP).
- Hands-on experience with security tools such as SIEM platforms, firewalls, and vulnerability scanners (e.g., Nessus, Burp Suite).
- Proven ability to troubleshoot complex security issues and communicate technical findings to stakeholders.
- Industry-recognized certifications are highly preferred (e.g., CompTIA Security+, CEH, CISSP, or CISM).
- Strong analytical mindset with a passion for staying updated on the latest cybersecurity threats and defense technologies.