Information Security Lead

As our Information Security Lead for Mapan, you'll be leading the information security engineer team to build design information security architecture. You'll also conduct security reviews of core corporate and production infrastructure by implementing security tools . You will take the wheel to drive enterprise focused security improvements to Mapan products and services.

What You'll Do

  • Build and manage high performance Information Security team

  • Design information security architecture and process, and drive its implementation to protect Mapan product and users

  • Act as domain expert for information security domain, provide security expertise and best practices guidance to a diverse set of Mapan engineering and business teams

  • Conduct security reviews of core corporate and production infrastructure

  • Implement security tools such as policy generation, auditing, and detection pipelines

  • Drive enterprise focused security improvements to Mapan products and services

  • Plan, execute, and document the result of white box and black box testing periodically

Requirements

  • Coding experience in one or more general purpose languages (Java, Ruby, Python, etc)

  • Minimum of 5 years of practical experience in Information Security role, with at least have 1 year of experience in managing Information Security team

  • One or more active certificate of expertise in information security (Ethical Hacker, ISC2, etc.)

  • Experience with attacks and mitigation methods, with experience working in two or more of the following:

    • Network protocols and secure network design

    • Operating system internals and hardening (e.g. Windows, Linux, OS X, Android)

    • Web application and Mobile apps security

    • Security assessments and penetration testing

    • Authentication and access control

    • Applied cryptography and security protocol

    • Security monitoring and intrusion detection, Incident response and forensics

    • Development of information security tools, automation or frameworks