하만커넥티드서비시즈인크
Sr. Security Engineer (경력)
 

하만커넥티드서비시즈(DTS Korea) HARMAN 소프트웨어 개발 또는 반도체 설계 사업부로 SoC 설계/검증, Front/Back-end 개발파운드리 협업디자인 서비스 제공  반도체 설계 관련  분야 사업을 진행 중입니다. 

삼성 SoC 관련하여 AP(Exynos), Automotive, modem 프로젝트에서 검증과 PI/PD, LSI 쪽으로는 DDI, TCON, DTV 검증 등을 주로 하고 있습니다.

Harman Connected Services, often abbreviated to HCS, is an American subsidiary of Samsung Electronics through Harman International Industries. The Connected Services Division supplies software services to the mobile communications industry. HCS is a technology company leader in Cloud, Mobile, Analytics Capabilities, Design, and Software Services.

홈페이지: https://info.services.harman.com/korea.html


매출액 200 

직원 : 200명+ (한국 )

위치분당 야탑역

* 당사는 선택적 근로시간제를 운영하고 있습니다.



Sr. Security Engineer

 

Responsibilities 


The Security Engineer will provide support in the establishing of enterprise-wide security initiatives as required by various applications that compose our corporate and public network. They must have strong oral and written documentation and communication skills, to work with management, auditors and regulators concerning IT business controls and procedures. 


This position should bring prior analytical problem-solving skills, sound judgement, knowledge and expertise in all areas of IT Security. In addition, demonstrate a technical background and knowledge of system security processes, such as authentication practices, security administration and familiarity with industry standard hardware and software systems.


Architect, develop and document industry best practices to support company initiatives while meeting performance and availability requirements.

Collaborate with Product, Operations and Engineering organizations to understand requirements and develop security specifications around project initiatives.

Research new security technologies and adopt suitable best practices to solve industry obstacles and security threats.

Provide technical leadership within the area of expertise and mentor security staff.

Insuring confidentiality, availability and integrity of cloud information systems and processes across the cloud infrastructure.

Audit all existing security standards: to include engineering designs, implementation, and guidelines.

Handles operational problem escalations and vendor concerns related to security.

Deploy and maintain internal security systems such as IDS/IPS, SIEM, WAF, FIM, DDOS, Threat Intel, SOAR and vulnerability scanners.

Work with business colleagues to review RFPs, RFIs etc., and provide security and risk-related input into proposals.

Monitor the external threat environment and information security trends while keeping business leadership informed about information security-related issues and activities potentially affecting the organization.

Serve as one of the information security subject matter experts for the Incident Response team and handle escalations of any possible incidents impacting the company.

Provide guidance on prioritization and remediation of security issues.

Some travel may be required.

 

Qualifications and Requirements

Must have a solid overall understanding of information technology and information security practices and trends.

Hands-on Public Cloud experience - One or more of AWS, Azure, GCP.

Provide expertise and guidance to junior engineers in the deployment of security tools.

Passionate about automation, performance, reliability, visibility, and finding creative solutions to complex security issues.

Must be an intelligent, articulate and persuasive leader who can serve as an effective member of the team and who is able to communicate security-related concepts to a broad range of technical and non-technical staff.

Understanding of networking concepts such as BGP, VRF and MPLS.

Ability to work with cross-functional, interdisciplinary teams to achieve tactical and strategic information security goals.

Experience with security frameworks to include ISO, HIPAA, PCI, HITRUST and NIST

Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate security and risk-related concepts to technical and nontechnical audiences.

Demonstrable knowledge of cryptographic concepts and techniques, including encryption, hashing, and key management.

Knowledge of Cloud-unique security risks, API security vulnerabilities and remediation measures.

Experience with Kubernetes

Solid understanding of network routers, switches and firewalls. Experience Juniper and Arista equipment preferred.

Well versed in security hardening for Linux hosts, services, applications, web applications, and database applications.

Experience using a scripting language for administration, monitoring and automation such as python and bash.

Proficient in Linux.

Experience with ansible.

Experience with open source tooling used to secure resources.

Strong attention to detail, organizational skills, problem solving, troubleshooting and documentation skills.

Bilingual in Korean and English-at least working knowledge.

Due to the nature of global infrastructure, Flexibility on the working hours is required.

Commuting to the Suwon office will be required weekly as this is a hybrid role. Ideally the candidate should live near to Suwon.



[주의사항]

영문 이력서 제출 필수(자사 이력서 또는 자유 형식)