Work with stakeholders to acquire SOC 2 / 3, ISO 27001 certificates
Develop and implement security policies, protocols, and procedures.
Perform penetration-test for the whole system & plan to fix and prevent security issues.
Oversight of intrusion / data leak prevention and proactive investigation processes.
Oversight of all strategy, security, investigations, staff training, auditing, and risk management.
Work with teams to build a security monitor / alert system.
Build and run a Security Awareness training course company-wide.
REQUIRED QUALIFICATIONS
We are an international company, so English is a must.
We love crafting software that provides value for our customers, not just writing code or policies. We want people who come up with ideas for improving our application and turning them into reality.
Strong knowledge in security regarding AWS ecosystem and AWS product specifics.
Proven solid understanding of information security standards, technics, tools & methodologies
Proven records of architecting, implementing security, audit and compliance solutions
Solid understanding of web application security (OWASP)
Experience in defining and rolling out company-wide security policy standards.
Knowledge of SOC2, EU General Data Protection Regulation (GDPR), Thailand Personal Data Protection Act (PDPA)
WHAT WE OFFER
Competitive salary package
20 days of vacation + 6 days of personal leave
Life insurance + Group health insurance + Dental treatment fee
Working hour : Mon-Fri with flexible working hour
Work from home policy
Variable bonus
Company activities e.g. team building, outing, party, etc.
International working environment with the professional working culture