OverviewInformation Security Officer is responsible for delivering end-to-end IT Security Administration, IT Risk Management, being our threat intelligence to help Upbit build and run successful security programs.
Responsibilities:
- In charge of the Company's overall network administration and access control, including log monitoring, conducting vulnerability assessments-penetration tests across the company's products, services and infrastructure.
- Assist in IT Risk Management
- Create, review, revise, and keep record of all Company's policy and standard for Board of IT and Board of Directors to review and approve, and provide these formal documentation for Company's staff to comply with the protocol.
- Enhance system security measures in response to any regulation changes.
- Handle security operations, Compliance and Awareness, and conduct a routine review of network design and secure network operations.
- Coordinate with SEC and other regulators as required.
- Oversee the IT auditing process
- Monitor and periodically evaluate the efficiency and effectiveness of IT Security Policy and IT Standard and stay up-to-date on the industry IT Security framework.
- Conduct the Company's IT Asset Management and coordinate with internal parties to comply with IT Asset Management Policy.
- Provide guidance to internal and external stakeholders on blockchain security innovation and related technologies.
- Collaborate with system developers to implement system updates and developments.
- Confident working directly with software developers on source code as well as internal executives for requirements gathering.
- Generate actionable findings from review activities.
- Create an up-to-date communications plan and give periodic training on all IT Security measures to Company's staff and relevant stakeholders.
- Manage security network devices and office access control devices.
Qualifications:
- Bachelor's degree or higher in IT, computer science, computer engineering, information security or related field of study.
- Minimum of 1-3 years of IT industry or relevant experience in IT security and/or risk management.
- Strong knowledge of programming languages, able to give a code review.
- Strong working knowledge of IT security policy/regulations, security concepts and secure architectures.
- Knowledge of cryptography and weaknesses in cryptographic implementations.
- Strategic thinker, and ability to align IT security system with regulatory / SEC standards.
- Interpersonal and collaborative skills and the ability to communicate security and risk-related concepts to technical and non-technical audiences.
- Strong written and verbal communication skills in Thai and English.
- Strong sense of responsibility and a good team player.
- Have a positive attitude and willingness to learn.
Bonus Points for:
- Proven experience in blockchain and cryptocurrency, such as published source code, blog posts, contribution to blockchain organizations, etc.
- Security certificates are a plus.
Compensation & Benefits:
- Competitive salary
- Annual paid holidays
- Health insurance
- Provident Fund
- Fast-track your career in the blockchain & crypto industry
- Flexible work environment
Office location: Pier 111 (Ratchaprasong/Pratunam, Bangkok)