Role: IT and Security Manager
Company: IT and E-Commerce company
Period: 1 Year contract
Location: BTS Saladaeng
Purpose of Role:
Ensure to achieve and maintain compliance with BOT requirements, act as liaison between PIPO global team and TH regulators for IT/IS audits.
Responsibilities:
- Build the technical and functional requirements to configure and deploy tools that support the Global Payments mission.
- Architect and continuously improve technology stack, process and procedures, support model and cross-function interactions.
- Provide oversight and management of outsourced service providers for IT and ensuring they meet or exceed agreed technical, security and operational SLAs/KPIs and regulatory requirements.
- Identify and deploy improvements and new functionality to be incorporated into systems, including new product compatibility.
- Work closely with stakeholders to ensure that business goals are achieved and lead projects to deliver system upgrades.
- Monitor management of all hardware (including cloud technology), software, databases and licenses, maintenance, access control and projections of future needs.
- Lead information security control management and governance, Major Incident Reporting, risk assessments and controls certifications, lead and support audits.
- Define technological strategies and ensure that processes meet regulatory requirements, from business continuity and disaster recovery to data protection.
- Contribute guidance to the Board in respect of all IT matters, updates and developments that could impact the business to guide strategic decisions and resource allocations.
- Oversee IT system integration with third parties.
Knowledge and Skills
Strong understanding of:
- TH Personal Data Protection Act, Cybersecurity Act, ensuring adherence & compliance
- Industry standard frameworks (including PCI DSS, ISO 27k)
- Operating and maintaining tools across a range of security domains
- Excellent analytical and problem-solving skills. Able to achieve targets in a hands-on manner.
- Excellent communication skills (verbal and written), ability to influence. Able to communicate technical concepts to a broad range of technical and non-technical staff.
- Works well under pressure within time/budget constraints to solve problems, adjust quickly to shifting priorities, and make decisions with limited information
- Ability to manage risks in ambiguous and complex situations
- Demonstrated teamwork and collaboration skills, in particular contributing to global and cross-functional teams
- Highly motivated to contribute and grow within a complex area of emerging importance
Minimum requirements:
- 8-10 years of experience designing, deploying and managing a range of IT infrastructure, including; Cloud architecture, application stack including CloudNative, Microservices, Kubernetes, AWS, GCP, or OCI
- High degree of integrity and trustworthiness and the ability to lead and inspire change
- Strong Leadership, Communication and People Management skills
- Demonstrated ability to quickly assimilate new knowledge and remain current on new developments in cybersecurity capabilities and industry knowledge
In-depth experience in the following:
- Vulnerability management
- Change management
- Disk, file, device, and database encryption
- Microservice architecture
- Logging, monitoring, and security event management
- Database management and administration
- Product management and support.
Preferred skills:
- In-depth experience in Data Security, Privacy and Protection, ideally in a FinTech or payment related industry
- Experience in deploying and managing standard certification frameworks (including PCI DSS, ISO 27k)
- Previously approved as an Authorised Officer by the Central Bank of TH/VN or by any other supervisory authority of the financial sector.
- Experience using one or more programming/scripting languages (e.g., Python, Go, Java, etc.)
- Familiarity with source code management tools (e.g., Github, Bitbucket)
- Familiarity with securing data across SaaS and IaaS cloud platforms (e.g., AWS, Google Cloud Platform)
- Familiarity with securing data across multiple database technologies (e.g., MySQL, Redis, Hive)
- Familiarity with identifying potential opportunities to Automate and optimize IT controls
- Be able to handle ambiguity and collaborate with a global team
- Be comfortable communicating with business executives and technical teams
- Be able to motivate junior staff and contractors
**All applications will be treated in strict confidence. All material submitted in connection with your application will become part of our confidential recruitment files. We regret that only shortlisted candidates will be notified.
**By submitting your curriculum vitae or personal data to us in connection with your job application, you are deemed to have read and agreed to the terms of our Privacy Policy, and consented to the collection, use and disclosure of your personal data by us and our affiliates, in accordance with our Privacy Policy. Please visit http://persolthailand.com/ for a copy of our Privacy Policy. If you wish to withdraw your consent, please drop us an email to let us know.
PERSOL Thailand
Human Resources Department
21st Floor, Bangkok City Tower, Unit 2101-02, 179 South Sathorn Road, Thungmahamek, Sathorn, Bangkok 10120