About this role
<div><div style="padding:10.0px 0.0px;border:1.0px solid transparent"><div style="word-wrap:break-word"><H2 style="margin:0.0px"><b>Job Summary</b></H2> </div><div><p style="text-align:justify;margin:0.0in 0.0in 8.0pt;line-height:115%"><span style="line-height:115%">The Cyber Security Manager will oversee the security of the organization’s digital infrastructure and information systems. This role is responsible for developing, implementing, and maintaining security strategies, policies, and procedures to protect data and systems from cyber threats, including data breaches, hacking, malware, and other risks. The Cyber Security Manager will lead a team of cybersecurity professionals both inhouse and outsourced as well as work closely with IT and other departments, and stay up-to-date with industry best practices and compliance requirements.</span></p></div></div><div style="padding:10.0px 0.0px;border:1.0px solid transparent"><div style="word-wrap:break-word"><H2 style="margin:0.0px"><b>Job Description</b></H2> </div><div><ul style="margin-bottom:0.0in;margin-top:0.0px"> <li style="margin:0.0in 0.0in 8.0pt 0.0px;line-height:115%"><span style="line-height:115%">Develop and implement a comprehensive cybersecurity strategy to protect data and systems within the One Bangkok project.</span></li> <li style="margin:0.0in 0.0in 8.0pt 0.0px;line-height:115%"><span style="line-height:115%">Oversee and manage the organization’s cybersecurity infrastructure, including firewalls, intrusion detection systems, endpoint protection, and other security technologies.</span></li> <li style="margin:0.0in 0.0in 8.0pt 0.0px;line-height:115%"><span style="line-height:115%">Identify, assess, and mitigate risks through vulnerability assessments and penetration testing.</span></li> <li style="margin:0.0in 0.0in 8.0pt 0.0px;line-height:115%"><span style="line-height:115%">Manage incident response, including detection, investigation, and mitigation of cybersecurity incidents.</span></li> <li style="margin:0.0in 0.0in 8.0pt 0.0px;line-height:115%"><span style="line-height:115%">Ensure compliance with relevant industry standards, laws, and regulations (e.g., GDPR, HIPAA, ISO 27001, ISO Series, ISMR support).</span></li> <li style="margin:0.0in 0.0in 8.0pt 0.0px;line-height:115%"><span style="line-height:115%">Design and conduct regular cybersecurity training and awareness programs for employees.</span></li> <li style="margin:0.0in 0.0in 8.0pt 0.0px;line-height:115%"><span style="line-height:115%">NBTC, NCSC, PDPC, TTC-CERT point of contact</span></li> <li style="margin:0.0in 0.0in 8.0pt 0.0px;line-height:115%"><span style="line-height:115%">Collaborate with IT and other departments to enforce security best practices and ensure alignment with organizational goals.</span></li> <li style="margin:0.0in 0.0in 8.0pt 0.0px;line-height:115%"><span style="line-height:115%">Prepare and present cybersecurity reports to senior management, detailing risks, incidents, and improvement plans.</span></li> <li style="margin:0.0in 0.0in 8.0pt 0.0px;line-height:115%"><span style="line-height:115%">BCP, Crisis management, Incident Management documentation support </span></li> <li style="margin:0.0in 0.0in 8.0pt 0.0px;line-height:115%"><span style="line-height:115%">Stay up-to-date on the latest cybersecurity trends, threats, and technology solutions.</span></li> </ul></div></div><div style="padding:10.0px 0.0px;border:1.0px solid transparent"><div style="word-wrap:break-word"><H2 style="margin:0.0px"><b>Key Qualification</b></H2> </div><div><p style="margin:0.0in;line-height:normal"><strong><span style="">Experience</span></strong></p> <ul style="margin-bottom:0.0in;margin-top:0.0px"> <li style="margin:0.0in 0.0in 8.0pt 0.0px;line-height:115%"><span style="line-height:115%">5 - 10 years of experience in cybersecurity, with at least 2 years in a managerial or leadership role.</span></li> <li style="margin:0.0in 0.0in 8.0pt 0.0px;line-height:115%"><span style="line-height:115%">Proven track record in developing and implementing cybersecurity strategies and policies.</span></li> <li style="margin:0.0in 0.0in 8.0pt 0.0px;line-height:115%"><span style="line-height:115%">Hands-on experience with cybersecurity technologies (e.g., firewalls, IDS/IPS, SIEM, endpoint protection).</span></li> <li style="margin:0.0in 0.0in 8.0pt 0.0px;line-height:115%"><span style="line-height:115%">Experience in Vulnerability Management, Network Security, Security Awareness & Training, SOC, Incident Management, DAST</span></li> </ul> <p style="margin:0.0in 0.0in 8.0pt;line-height:115%"><strong><span style="line-height:115%">Certifications :</span></strong><span style="line-height:115%">Industry-recognized certifications such as CISSP, CISM, CEH, or CISA are highly desirable.</span></p> <p style="margin:0.0in 0.0in 0.0in 0.25in;line-height:normal"> </p> <p style="margin:0.0in 0.0in 8.0pt;line-height:115%"><strong><span style="line-height:115%">Preferred Background</span></strong></p> <ul style="margin-bottom:0.0in;margin-top:0.0px"> <li style="margin:0.0in 0.0in 8.0pt 0.0px;line-height:115%"><span style="line-height:115%">Experience in a specific industry (e.g., real estate, retail, hospitality, residential) with applicable regulatory knowledge.</span></li> <li style="margin:0.0in 0.0in 8.0pt 0.0px;line-height:115%"><span style="line-height:115%">Advanced technical knowledge of encryption, PKI, and data loss prevention methods.</span></li> <li style="margin:0.0in 0.0in 8.0pt 0.0px;line-height:115%"><span style="line-height:115%">Good command in both Thai and English will be given special consideration.</span></li> </ul> <p style="margin:0.0in 0.0in 8.0pt;line-height:115%"><strong><span style="line-height:115%">Education : </span></strong><span style="line-height:115%">Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field (Master’s degree preferred).</span></p></div></div><div style="padding:10.0px 0.0px;border:1.0px solid transparent"><div style="word-wrap:break-word"><H2 style="margin:0.0px">Skills</H2> </div><div></div></div></div>