Infosec Analyst Project Advisory

Details of the offer

Be a part of a revolutionary change!
At PMI, we've chosen to do something incredible.
We're totally transforming our business and building our future on smoke-free products with the power to improve the lives of a billion smokers worldwide.
With huge change, comes huge opportunity.
So, wherever you join us, you'll enjoy the freedom to dream up and deliver better, brighter solutions and the space to move your career forward in endlessly different directions.
PMI's journey to a smoke-free future is fueled by technology.
The total transformation we're going through means that there are unique IT projects here to match all levels of skills and ambitions - from pace-setting global pilot projects to vital local updates.
Whether you want to pursue a personal passion or build an international career, there's space here to develop in any number of directions.
Join us in this role and you'll be part of our Infosec Project Advisory Team.
Your "day to day" - Identify cybersecurity gaps in PMI applications and systems using a wide variety of methods, e.g.
compliance assessments, architecture review, access model review, interfaces and configuration reviews - Evaluate security posture of the third party solutions using TPRM methodologies with cybersecurity focus - Describe identified issues in the form of reports and ensure that relevant stakeholders understand the risk that those vulnerabilities pose to the Company - Analyze the scope, methodology and results of cybersecurity activities (e.g.
ethical hacking) performed by third parties around the presence of vulnerabilities in systems used or to be used by PMI - Partner with other Information Security experts to ensure that PMI follows best practices in the application security testing domain by continuously optimizing tools, techniques and methodologies - Keep up to date with the constantly evolving cyber threat landscape and the latest developments in IT risk management and contribute to PMI's security standards Who we're looking for - Minimum 2 years of experience in IT security, IT risk management, IT audit or IT controls, preferably in a large organization or consulting companies - Professional certifications in IT systems security and auditing (e.g.
CISA, CISSP, CRISC, CISM) (preferred not required) - Proven track record in performing IT security assessments or IT audits for large scale solutions - Experience with industy-leading practices in cyber security and regulatory compliance (e.g.
SOX, GDPR, GxP, HIPAA) - Good knowledge of typical application design patterns (e.g.
web, mobile, thick client, etc.)
- Strong understanding of modern application architectures including microservices, containers, APIs, serverless technologies and cloud environment (AWS) - Knowledge of basic identity and access management concepts (e.g.
single-sign on, identity federation) and standards (e.g.
SAML, OAuth 2.0, OpenID) - Sound knowledge of impact and remediation techniques for vulnerabilities from and outside of OWASP Top 10 - Considerable technical writing proficiency and oral presentation skills, in English - Practical experience in Agile/DevOps organizations and cultures - Familiarity with Salesforce and Mulesoft platforms (preferred but not required) What we offer Our success depends on the men and women who come to work every single day with a sense of purpose and an appetite for progress.
Join PMI and you too can: - Seize the freedom to define your future and ours - we'll empower you to take risks, experiment and explore - Be part of an inclusive, diverse culture, where everyone's contribution is respected; collaborate with some of the world's best people and feel like you belong - Pursue your ambitions and develop your skills with a global business - our staggering size and scale provides endless opportunities to progress - Take pride in delivering our promise to society: to deliver a smoke-free future To join our growing team


Nominal Salary: To be agreed

Source: Whatjobs_Ppc

Requirements

Software Engineer Ii - Backend

Mekari is Indonesia's no. 1 Software-as-a-Service (SaaS) company. Our mission is to empower businesses and professionals to progress effortlessly. Our produc...


Mekari (Pt. Mid Solusi Nusantara) - Jakarta

Published a month ago

Middle Security Analyst

**Role Description** This is a contract role for a Middle Security Analyst at PT Platinumetrix Global Inovasi. As a Middle Security Analyst, you will be res...


Pt Platinumetrix Global Inovasi - Jakarta

Published a month ago

Data Privacy Specialist

-Job Advert Details **Some careers shine brighter than others.** If you're looking for a role that will help you stand out at HSBC, take a look at how you ...


Hsbc - Jakarta

Published a month ago

Digital Platform Program Specialist

At AIA we've started an exciting movement to create a healthier, more sustainable future for everyone. - As pioneering innovators for over 100 years, we're n...


Aia - Jakarta

Published a month ago

Built at: 2025-01-09T11:39:13.168Z