IT Security Analyst - APAC
10 months ago
Reporting to the Director of Corporate Security, the Security Analyst provides technology leadership and hands-on management of key security related I.....
Reporting to the Director of Corporate Security, the Security Analyst provides technology leadership and hands-on management of key security related IT operations and infrastructure items for the internal corporate systems. The Information Security Analyst will ensure compliance of overall security program and policies. Additionally, provides a cyber secure environment and security posture that fosters a high-trust relationship between Dynatrace, its employees, partners, and customers.
This role will be responsible for Threat response, Vulnerability management, executing strategies and ensuring organizational and client IT security expectations are being satisfied. There will be an expectation of collaborating with various cross organizational teams to identify the approach, deliverables, schedule, and tools to deliver within established constraints.
- Location: Australia or APAC region.
- Remote or virtual work is possible if located in the Asia Pacific region.
Responsibilities
- Examine and respond to reported security incidents and phishing attempts, determining the root cause, and escalating as needed.
- Manage and track remediation activities discovered through vulnerability management and scanning tools. Ensure vulnerability management policy is followed.
- Become subject matter expert (SME) and make recommendations for improvements in security monitoring and compliance tools such as SIEM, Scanning Tools, Firewalls, Microsoft E5 Security Suite, etc.
- Develop and deploy pragmatic solutions, practices, and procedures to ensure Dynatrace meets internal and customer security requirements.
- Provide operational efficiency within the security team by providing and analyzing key metrics, performance indicators and threat assessments in accordance with security policies and procedures.
- Uncover, categorize, track and close security loopholes to maintain a secure environment.
- Maintain and validate security evidence repository with required documentation for compliance with security policies and audit requests.
- Generate dashboard and scorecards to articulate the current security posture and threat level.
- Reduce time to complete customer security RFIs while improving accuracy and quality of responses.
- Obtain 100% compliance with IT security awareness policy both annually and for new hire training within the specified training windows.
- Maintain SOC2 Type 2 attestation on an annual basis, pursue and facilitate additional certifications as required by business (FedRAMP, ISO 27002:2013, etc.).
- Review Dynatrace vendor’s security posture to ensure they meet Dynatrace requirements.
- Work with third-party security vendor, ensure they have high quality responses and review all RFI responses for accuracy. Ensure security controls and question bank are updated and accurate.
Official account of Jobstore.