Chi tiết công việc Security Consultant tại The Code Talent Co,. Ltd
Key Responsibilities
Security Consulting
Provide security consultancy to business and project teams throughout solution planning and delivery.
Advise stakeholders on security risks, controls, and compliance requirements for new or changing technology solutions.
Act as a trusted security advisor, helping project teams understand the security implications of business and technical decisions.
Influence solution outcomes while balancing business objectives and security requirements.
Security Risk Assessment
Review proposed systems, applications, and solution designs to identify security risks, threats, and vulnerabilities.
Perform security risk assessments and recommend appropriate mitigation strategies and security controls.
Evaluate the impact of technology changes on the organization's security posture.
Recommend compensating controls where standard security controls cannot be fully implemented.
Security Governance & Compliance
Ensure solutions comply with enterprise security standards, policies, and governance frameworks.
Support security assurance activities throughout the project lifecycle.
Participate in architecture governance and security review processes.
Assist in maintaining compliance with regulatory and organizational security requirements.
Security Design Support
Support Security Architects by providing security recommendations during solution design.
Contribute to security reference patterns, reusable security controls, and best practices.
Assist in developing secure integration approaches and enterprise security standards.
Promote security-by-design principles across technology initiatives.
Stakeholder Management
Build strong relationships with business owners, solution architects, developers, and project managers.
Communicate technical security risks effectively to both technical and non-technical audiences.
Facilitate discussions to resolve security-related issues and support informed decision-making.
Collaborate with cross-functional teams to deliver secure business solutions.
Continuous Improvement
Contribute to the development and improvement of enterprise security frameworks and standards.
Identify opportunities to enhance security governance and risk management processes.
Stay current with emerging cyber security threats, technologies, and industry best practices.
Qualifications
Mandatory
Bachelor's Degree in Computer Science, Information Systems, Cyber Security, Information Technology, or a related discipline.
Minimum 5 years of experience in Information Technology.
At least 3 years of experience in Information Security, Security Consulting, GRC, Security Audit, Security Analysis, or Cyber Security.


