Title: Senior Data Security Engineer.
Location: Bay Area, CA - hybrid!
Compensation: $160,000 - $200,000 base + bonus + equity + benefits.
Glocomms are partnered with a FinTech firm in the Bay Area who are searching for a Senior Data Security Engineer who is fluent in Mandarin at a professional level to focus on security incident management, forensic testing, DLP, monitoring, threat/risk/vulnerability management, automation, and security compliance.
Key responsibilities:
- Perform security incident event, threat, and vulnerability research including triage, remediation, and documentation.
- Collaborate with corporate stakeholders, conduct forensic testing, evaluate test results, and create long-term resolution strategies for gaps, vulnerabilities, and control shortcomings.
- Further develop the organization's overall security posture by evaluating, validating, reviewing, and auditing security as well as privacy controls.
- Secure the privacy, availability, and integrity of information assets.
- Cultivate data security awareness whilst keeping up with emerging technologies and security trends, and ensure security best practices are carried out.
- Enhance overall operations, strategy, and risk management for Data Security.
- Continuously strengthen data governance, participate in the establishment of security policies, security standards, and risk governance reporting procedures in conjunction with cross-functional teams.
Required experience:
- In depth knowledge of regulatory frameworks such as ISO27001, NYDFS 500, PCI DSS, GDPR, etc.
- Hands-on experience working with threat intelligence platforms, SIEM, SOAR, IDS/IPS, DLP, FIM, and networking monitoring tools.
- Strong understanding of emerging security threats, risks, vulnerabilities, TTP's, and how to defend against them.
- Experience with various vulnerabilities and carrying out remediation actions.
- Scripting experience (Python, Java, Perl, Bash, SQL, etc.) for automation.
- Knowledge and experience with DLP, Security Assurance, Data Security.
- Ability to assess, design, implement and configure security tools/products.
- Fluent in Mandarin and English.