- No elements found. Consider changing the search query.
Skills:
Teamwork, Teaching
Job type:
Full-time
Salary:
negotiable
- Cognitive Architectures.
- Machine Learning.
- Computer Vision.
- Natural Language Processing.
- Human-centered Design for AI applications.
- Data Science & Data Engineering.
- Cyber security.
- We are interested in applicants who are committed and have a passion for a culturally diverse environment in research and/or teaching, and demonstrate a willingness to nurture a uniquely inclusive environment. By partnering with public & private partners, our researches are focused towards practical AI applications in logistics, retail, agriculture, finance and entertainment technology. We are collaborating with Carnegie Mellon University and leading universities in Thailand in providing top-tier collaborative research and engineering degree programs in Thailand.
- Our core faculty carry a moderate teaching load that allows time for quality research and close involvement with students. We expect you to establish and grow a strong research program, contribute to our teaching mission, and show your passion for mentoring and advising students. We are seeking individuals who have demonstrated commitment to our core values: creativity, quality, innovation, and engineering solutions, all within a diverse and tight-knit community guided by respect and joy of doing.
- Provide a continuing high level of personal commitment to, and achievement in, a particular scholarly area and asa result, generating high level research outcomes.
- Leading research projects and secured supporting resources for research teams.
- Contribute to developing, mentoring and providing feedback to junior researchers.
- Make an effective contribution to teaching and learning in their discipline, modeling teamwork and flexibility to ensure the pedagogical and commercial success of the Faculty and University.
- Contribute to curriculum, resource, program and subject design, development, management and review as required to ensure that learning and teaching in the Faculty and across disciplines reflect best practice and a command of the field.
- Conduct lectures, tutorials, workshops, practical classes, demonstrations, field excursions, clinical sessions and other appropriate learning activities as required.
- Act as a subject coordinator and/or area or discipline coordinator including: managing the area/discipline including providing feedback and contributing to performance management; supervising tutors; carrying out related planning and coordination responsibilities; organizing the preparation and marking of assignments and all examinations; invigilating examinations; and submitting grades.
- Continuously improve their own teaching and learning, including developing a comprehensive teaching portfolio, and contributing to the continuous development and improvement of learning and teaching across the university.
- Ensure that the graduate attributes of the University are embedded in subjects or discipline areas for which they are responsible and that there is explicit relationship between learning and teaching to University objectives.
- Comply with all policies and procedures relating to teaching and learning, making every effort to contribute to the continuous improvement and effectiveness of the administration of teaching and learning.
- Flexible Work Schedule.
- Five-day work per week.
- Group-based health insurance plan.
- Provident Fund.
- Paid Time Off (10 days - annual leave).
Experience:
No experience required
Skills:
Java, Full Stack, node.js, Angular.js, Thai, English, Mandarin
Job type:
Full-time
Salary:
฿18,000 - ฿25,000, negotiable
- หากมีประสบการณ์ด้าน IT หรือ Software Development อย่างน้อย 2 ปี จะรับพิจารณาพิเศษ
- ยินดีรับเด็กจบใหม่.
Experience:
5 years required
Skills:
Windows Server, Architecture, Automation, Kubernetes, Python, DevOps, Oracle, Linux
Job type:
Full-time
Salary:
negotiable
- Develop and maintain technical security hardening baselines for all major platforms Windows Server, RHEL/Ubuntu, databases (Oracle, MSSQL, PostgreSQL), and cloud services across GCP, Azure, AWS.
- Translate security architecture decisions into implementable standards documents with clear acceptance criteria, configuration examples, and validation scripts.
- Run proof-of-concept testing for new security controls and technologies, documenting performance impact, integration requirements, and operational considerations.
- Build and maintain automated compliance scanning ensuring hardening baselines are continuously validated against deployed configurations using tools like Tenable, Qualys, or cloud-native benchmarks.
- Conduct technical security configuration reviews for new infrastructure deployments, cloud landing zones, and major application releases before go-live.
- Manage the security standards lifecycle regular reviews, version control, exception management, and sunset processes for deprecated standards.
- Partner with infrastructure and DevOps teams to embed security baselines into golden images, Terraform modules, and CI/CD templates.
- Produce technical testing reports for firewall rule reviews, network segmentation validation, and access control configuration assessments.
- Maintain a standards adoption dashboard tracking which teams have implemented which baselines and where gaps exist.
- TECHNICAL REQUIREMENTS.
- Hardening frameworks: CIS Benchmarks (Windows, Linux, cloud), NIST SP 800-123, vendor-specific security guides.
- Scanning and compliance: Tenable Nessus/Tenable.io, Qualys VMDR, cloud-native compliance tools.
- Operating systems: Windows Server 2016/2019/2022, RHEL 8/9, Ubuntu deep configuration knowledge.
- Cloud platforms: GCP, Azure, AWS security configuration and baseline management at the service level.
- Scripting: PowerShell, Bash, Python for compliance validation, automated checks, and reporting.
- IaC familiarity: Terraform, Ansible understanding security integration points.
- MUST-HAVE REQUIREMENTS.
- These are non-negotiable. If you do not meet all of these, this role is not the right fit.
- 5+ years in information security with hands-on experience in infrastructure hardening, security configuration, and technical standards development.
- Deep knowledge of CIS Benchmarks or DISA STIGs you've implemented these on real systems, not just read the PDFs.
- Hands-on experience with at least two: Windows Server hardening, Linux hardening, database security configuration, or cloud security baselines.
- Experience with vulnerability scanning and compliance tools Tenable, Qualys, or cloud-native equivalents (AWS Config, Azure Policy, GCP Security Health Analytics).
- Ability to write clear technical documentation that infrastructure teams can implement without hand-holding.
- Working proficiency in scripting (PowerShell, Bash, or Python) for configuration validation and automation.
- NICE-TO-HAVE.
- Experience with infrastructure-as-code security writing security-hardened Terraform modules or Ansible playbooks.
- Familiarity with container and Kubernetes security hardening (CIS Kubernetes Benchmark, pod security standards).
- CompTIA Security+, CIS Benchmarks certification, or relevant cloud security certifications (AZ-500, GCP Professional Cloud Security Engineer).
- Experience in retail or high-availability environments where security hardening must balance with uptime requirements.
Skills:
CompTIA Security+
Job type:
Full-time
Salary:
negotiable
- Security Analyst (SOC), Monitoring and analysis of cyber security events with the use of security tools.
- Escalating significant security incidents and conducting cyber investigations.
- Collaborating with engineering, security, and management teams on issue resolution and reporting.
- Managing operational tasks according to service level agreements (SLAs).
- Operating on a 24/7 rotating schedule with 12-hour daily shifts.
- Bachelor's degree in Computer Science, Computer Engineering, Information Technology, or related fields.
- Fresh graduates are welcome to apply.
- Some experience in technical analysis of computer system, network, email headers, links, and attachments.
- Ability to identify malicious emails and execute protective remediation techniques.
- Strong analytical and problem-solving capabilities.
- Knowledge of SIEM, Network Security, Application Security, Data Security, and Endpoint/User Security.
- Team-oriented approach with strong work ethic.
- High sense of responsibility and punctuality.
- Discretion and perseverance.
- CompTIA Security+, Network+, or CySA+ credentials provide competitive advantage.
Experience:
5 years required
Skills:
Electrical Engineering, Network Infrastructure, Revit, BIM, English
Job type:
Full-time
Salary:
negotiable
- Designing Electrical, Communication and Electronic Security Systems (ESS) for buildings and infrastructure projects, including but not limited to CCTV, Access Control, Intrusion Detection Systems (IDS), Intercom, Visitor Management Systems, and Security Management Systems.
- Preparing detailed calculations of Electrical & Communication systems.
- Preparing & developing detailed Revit models.
- Developing & publishing construction documentation.
- Updating and modifying existing models and construction documents.
- Assist with creating and maintaining standard regional BIM templates.
- Participate in design coordination meetings with other trades for clash detection and resolution and be the lead and work with a team with information exchange processes between internal & external customers.
- Provide coordination support for the requests during construction phases.
- Prepare detailed calculations, load assessments and system designs for Electrical, Communication and Security Systems.
- Develop security system layouts, schematics, riser diagrams, equipment schedules and specifications in compliance with relevant international and local standards.
- Coordinate security systems design with client stakeholders, specialist security consultants, ICT, mechanical and architectural disciplines.
- Conduct multidisciplinary design reviews to ensure security systems are fully integrated with building services and operational requirements.
- Support security system design during tender, construction and commissioning phases, including technical reviews, RFIs and site coordination.
- We know today's complex challenges can only be solved through bringing together diverse teams of people from across our business, so there will be opportunities for you to apply your skills and creativity to projects in other geographies and markets.
- What can you bring to the team?.
- Bachelor/Master's degree in Electrical Engineering.
- At least 5-6 years of experience in the design of Electrical, Communication and Electronic Security Systems for building and infrastructure projects.
- Demonstrated experience in the design and coordination of Electronic Security Systems, including CCTV, Access Control, Intrusion Detection, Intercom and related security technologies.
- Knowledge of security design principles, risk-based security planning and relevant industry standards and codes.
- Experience preparing security system drawings, specifications, equipment schedules and technical documentation.
- Familiarity with security systems integration platforms and coordination with ICT/network infrastructure requirements.
- Experience using BIM/Revit and Bluebeam for security systems modelling and coordination is highly desirable.
- Proficient in English communication skills and computer literate.
- Familiarity with the BIMForum LOD Specification, plus AIA and NBIMS standards and best practices for BIM collaboration.
- Good knowledge of construction technology and construction practices.
- Keen to learn new BIM tools, procedures, best practices.
- Possess a Professional Engineer License certified by the Council of Engineers, Thailand.
- Our Aurecon Attributes define our way of being - they are a collection of qualities that makes us who we are. Individually and collectively, they unleash the true power of Aurecon, they make us stand out from the crowd and are critical to our success. We don't expect you to have all eight of the attributes, but one that is unique to you. To find out what your key attribute is, take the test here.
- Finally, we value that each of our team members brings something different to Aurecon. We look for people who have had a broad range of experiences throughout their career and can demonstrate how they have worked as part of a team to bring ideas to life. Does that sound like you?.
- About Us.
- Headquartered in Australia, Aurecon is one of the leading international engineering, design and advisory company that brings vital engineering experience, technical capabilities, and design expertise to an extensive range of markets.
- Over the last 85 years, our team of more than 5 000 experts located in 11 locations across the globe have collaborated with our clients and partners to reimagine, shape and engineer clever, innovative and sustainable solutions to solve some of the world's most complex challenges.
- In Asia, where the region is undergoing rapid transformation in areas of sustainability, digital and infrastructure, we lead by being innovative, flexible and nimble. We embrace design-led thinking - an approach that is guided by digital engineering, the user experience and sustainability - ensuring that the work we do is future ready and leaves a legacy for the next generation.
- Think engineering. Think again.
- Want to know more?.
- You can learn more about what it's like to work at Aurecon by visiting the careers section of our website.
- If you are intrigued or excited by what you have read, then we want to hear from you. Apply now!.
Experience:
3 years required
Skills:
Architecture, Recruitment, Automation, Kubernetes, TypeScript, YouTube, Python
Job type:
Full-time
Salary:
negotiable
- At Agoda, we bridge the world through travel. Our story began in 2005, when two lifelong friends and entrepreneurs, driven by their passion for travel, launched Agoda to make it easier for everyone to explore the world.
- Today, we are part of Booking Holdings [NASDAQ: BKNG], with a diverse team of over 7,000 people from 90 countries, working together in offices around the globe. Every day, we connect people to destinations and experiences, with our great deals across our millions of hotels and holiday properties, flights, and experiences worldwide.
- No two days are the same at Agoda. Data and technology are at the heart of our culture, fueling our curiosity and innovation. If you're ready to begin your best journey and help build travel for the world, join us.
- We are looking for a hands on Senior Security Engineer to secure our cloud and platform environments. This role works closely with engineering teams and focuses on building, reviewing, and operating security controls using Infrastructure as Code, Kubernetes, and custom security services written in Go and TypeScript.
- Design, implement, and manage secure cloud deployments across AWS and GCP environments using Terraform.
- Kubernetes & GitOps Security: Deploy and manage both internal and third party security products within the Kubernetes ecosystem.
- Work with GitOps workflows using tools like Argo CD and Flux, and Helm charts.
- Security Automation & Tooling: Design and build security tooling and services using Go and TypeScript.
- Misconfiguration Management: Proactively identify, analyze, and remediate cloud misconfigurations.
- Cloud Architecture Guidance: Provide guidance to Engineering teams on secure architecture.
- Threat Detection & Response: Build and optimize cloud-native detection rules and alerting pipelines to monitor for suspicious activities within the cloud and container workloads.
- 8+ years of experience in security engineering, cloud security, or platform engineering roles.
- Hands-on experience securing production workloads in AWS and GCP.
- Strong experience designing and securing Infrastructure as Code using Terraform.
- Deep understanding of Kubernetes security, including troubleshooting Helm deployments and GitOps-based workflows.
- Strong programming skills in Go and TypeScript, with Python used for automation where appropriate.
- Experience embedding security controls into CI/CD pipelines.
- Certifications (Required) Certified Kubernetes Administrator (CKA) Certified Kubernetes Security Specialist (CKS) Certifications (Preferred) AWS Certified Security.
- Specialty Google Professional Cloud Security Engineer HashiCorp Certified: Terraform Associate.
- Nice-to-Have Experience with Policy-as-Code frameworks such as Open Policy Agent (OPA).
- Experience securing service mesh environments (Istio). Background in software engineering or platform engineering before moving into security.
- sanfrancisco.
- Please review our Hiring Process Guidelines before your interview click.
- here.
- to learn how interviewing at Agoda works.
- Discover more about working at Agoda.
- Agoda Careers.
- https://careersatagoda.com.
- Facebook.
- https://www.facebook.com/agodacareers/.
- LinkedIn.
- https://www.linkedin.com/company/agoda.
- YouTube.
- https://www.youtube.com/agodalife.
- Equal Opportunity Employer.
- At Agoda, we pride ourselves on being a company represented by people of all different backgrounds and orientations. We prioritize attracting diverse talent and cultivating an inclusive environment that encourages collaboration and innovation. Employment at Agoda is based solely on a person's merit and qualifications. We are committed to providing equal employment opportunity regardless of sex, age, race, color, national origin, religion, marital status, pregnancy, sexual orientation, gender identity, disability, citizenship, veteran or military status, and other legally protected characteristics.
- We will keep your application on file so that we can consider you for future vacancies and you can always ask to have your details removed from the file. For more details please read our.
- privacy policy.
- Disclaimer.
- We do not accept any terms or conditions, nor do we recognize any agency's representation of a candidate, from unsolicited third-party or agency submissions. If we receive unsolicited or speculative CVs, we reserve the right to contact and hire the candidate directly without any obligation to pay a recruitment fee.
Experience:
5 years required
Skills:
Negotiation, Big Data
Job type:
Full-time
Salary:
negotiable
- Cisco Security delivers intelligent cybersecurity for the real world, providing one of the industry's most comprehensive advanced threat protection portfolio that is integrated, pervasive, continuous and open. Cisco's threat-centric approach to security reduces complexity while providing unmatched visibility, continuous control and Advanced threat protection across the entire attack continuum -- before, during and after an attack. Fused into the network, Cisco security helps customers to achieve granular and consistent security policies pervasively across the entire network.
- You will engage key customers, and develop the sales strategy and plan to drive Cisco Security Products & Solutions, while executing Cisco's strategy and meeting Cisco's financial targets. Products & Solutions include Cisco NGFW, NGIPS, SSE, XDR, Identity/MFA, Email, Web Security, Cloud Security, Secure Networking and SIEM/SOAR.
- Be an integral part of the business planning process, ensure close interaction and collaboration with worldwide solutions groups, regional Enterprise Networks, Data Center and Services leads, and account teams on all aspects of running the Security business for Thailand customers.
- Collaborate and build partnerships within Cisco as well as externally with partners and ecosystem partners to drive the agreed commercial strategy, have regular dialogue with local and regional teams to ensure support with the go to market and sales solution strategy overall.
- Drive partner engagements, as well as anticipate new types of partners required to build future pipeline.
- You love being a part of an overall team responsible for the complete strategy, executing in conjunction with other sales specialists, solutions architects and account team members.
- Who You'll Work With.
- The Internet of Everything is a phenomenon driving new opportunities for Cisco and it's transforming our customers' businesses worldwide. We are pioneers and have been since the early days of connectivity. Today, we are building teams that are rapidly growing our technology solutions in the mobile, cloud, security, IT, and big data spaces, including software and consulting services. Collaborate with like-minded innovators in a fun and flexible culture that has earned Cisco global recognition as a Great Place To Work.
- Cisco is a game changer in the security industry. We're working to deliver technology that not only safeguards customer's data but doesn't become an obstacle when they need to access it. We're developing next gen firewall and cloud security solutions that are able to adapt to constantly changing threats to the network.
- Global Security Sales Organization (GSSO) is taking big steps to position Cisco as the IT Security provider in the industry. In addition to having the right market conditions, capabilities, products and services, we need the right people to take us there.
- Who You Are.
- You have a minimum 5+ years of sales or pre-sales experience.
- You have at least 3+ years in Security specialization.
- Experience with security technologies like IDS/IPS, NGFW, SSE, XDR, Cloud Security, MFA/Identity and SIEM/SOAR solutions is highly preferred.
- Experience in selling software is beneficial.
- You have proven successful quota achievement.
- You have experience in building a business around security solutions.
- Positive relationships with Enterprise and Public Sector customers (cybersecurity domain) in the Thailand market.
- In depth understanding of cybersecurity trends and evolution, market trends and challenges.
- You have a deep understanding of key Cisco competitors in Cybersecurity.
- Work in teams to achieve both individual and group success, working across various segments of the Thailand market.
- You have a true love and passion for cybersecurity.
- Business Insight.
- Develops an insightful view of the overall business landscape, including customer and partner business drivers.
- Possesses deep understanding of complex technical sales engagements, partner profitability models and take action accordingly to ensure mutual success.
- Financial Acumen.
- Understands how to evaluate, interpret, and incorporate financial data in daily decisions to understand the organization's financial goals and focus the efforts in solving complex customer and partner needs.
- Executive Communication and Negotiation Skills.
- Build and maintain executive level relationships at customers, partners and within Cisco.
- Ability to negotiate large and complex deals.
- Ability to present in customer/partner events.
- Operationalizing Strategy.
- Experience building actionable long and short-term account plans based on a deep understanding of the impacts of business and technology trends.
- Ability to build and pitch programs for funding, as well as execution and governance for scale and repeatability across relevant segments of customers in Thailand.
- Building Capability.
- Strong skills in identifying and leading the appropriate resources (internal and external) required to develop and execute major solution strategic initiatives.
- Working across Boundaries - Ability to work cross-functionally with multiple business units, partners and solution teams in complex business engagements to use multiple IT domains in creating vertical/segment specific solutions for our customers.
- Strategic Vision - Develops short and long-term strategy for commercial model within the country.
- Why Cisco?.
- At Cisco, we're revolutionizing how data and infrastructure connect and protect organizations in the AI era - and beyond. We've been innovating fearlessly for 40 years to create solutions that power how humans and technology work together across the physical and digital worlds. These solutions provide customers with unparalleled security, visibility, and insights across the entire digital footprint.
- Fueled by the depth and breadth of our technology, we experiment and create meaningful solutions. Add to that our worldwide network of doers and experts, and you'll see that the opportunities to grow and build are limitless. We work as a team, collaborating with empathy to make really big things happen on a global scale. Because our solutions are everywhere, our impact is everywhere.
- We are Cisco, and our power starts with you.
Experience:
1 year required
Skills:
Leadership Skill
Job type:
Full-time
Salary:
negotiable
- Provide recommendations and participate in planning to ensure the security of customers, employees, buildings, and assets of the Siam Piwat Group and its affiliates, in accordance with overall policies.
- Participate in planning and provide guidance in supervising and overseeing the work of subcontractors to ensure they perform according to the work plan.
- Security Management: Develop and implement comprehensive security plans to protect the mall, its patrons, and employees.
- Safety Protocols: Participate in setting standards for security, traffic management, and the management of parking facilities within the shopping center.
- Crisis Response: Provide recommendations and participate in developing security standards to be prepared for various potential emergencies.
- Team Leadership: Supervise and mentor the security team, providing training and development opportunities to enhance their skills and performance.
- Surveillance and Monitoring: Oversee the operation of surveillance systems and ensure continuous monitoring of the premises.
- Incident Reporting: Manage the documentation and investigation of security incidents, accidents, and breaches, and implement corrective actions.
- Collaboration: Work closely with local law enforcement, emergency services, and other relevant agencies to coordinate security efforts and response plans.
- Budget Management: Prepare and manage the security departments budget, ensuring cost-effective use of resources.
- Customer Service: Maintain a visible presence within the mall, addressing security concerns of customers and staff promptly and professionally.
- Bachelors degree in Security Management, Criminal Justice, or a related field.
- Minimum of 15 years of experience in security management, with at least 10 years in a leadership role.
- Strong knowledge of safety regulations, crisis management, and emergency response protocols.
- Excellent leadership, communication, and interpersonal skills.
- Ability to remain calm and make quick decisions in high-pressure situations.
- Proficiency in security technology and surveillance systems.
- Candidates with experience in the.
- luxury shopping mall.
- or.
- luxury hotel industry.
- will be given special consideration.
- Has a background in the military will be given special consideration.
Experience:
2 years required
Skills:
Risk Management, Enthusiastic, Assurance, English
Job type:
Full-time
Salary:
negotiable
- We're committed to bringing passion and customer focus to the business.*.
- If you like wild growth and working with happy, enthusiastic over-achievers, you'll enjoy your career with us!*.
- Security monitoring and alert triage.
- Monitor Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR), anti-malware, email security, web security and cloud security alerts.
- Validate, triage and prioritise security events using agreed playbooks, business impact and risk context.
- Create accurate incident records, preserve relevant evidence and escalate incidents through the agreed incident management process.
- Support containment, eradication and recovery activities under the direction of the incident owner.
- Incident response and operational support.
- Follow documented incident response procedures for malware, phishing, account compromise, data exposure, suspicious network activity and lost or stolen devices.
- Assist with post-incident actions, including evidence capture, timeline building, lessons learned and remediation tracking.
- Maintain security operations knowledge base articles and playbooks for repeatable response tasks.
- Vulnerability and configuration management.
- Run or support scheduled vulnerability scanning across servers, endpoints, network devices, applications and cloud services.
- Validate scan findings, remove false positives where evidence supports this, assign remediation tickets and monitor progress against agreed service levels.
- Support secure configuration checks against approved baselines, including endpoint hardening, logging configuration and privileged account controls.
- Provide clear remediation guidance to infrastructure, application and service teams.
- Identity, access, Data Loss Prevention and Multi-Factor Authentication.
- Support identity and access management processes, including joiners, movers, leavers, privileged access reviews and evidence collection for access recertification.
- Monitor and investigate Data Loss Prevention (DLP) alerts, applying agreed classification, privacy and escalation rules.
- Support Multi-Factor Authentication (MFA) administration, user enrolment, exception handling, break-glass access checks and failed authentication investigations.
- Assist with user access investigations where suspected compromise, misuse or policy breach is identified.
- Security controls and tooling.
- Operate security tools in line with documented procedures and change controls.
- Support maintenance of alert rules, watchlists, endpoint policies, email filtering rules and data protection controls under approved guidance.
- Record control issues, service defects and improvement opportunities.
- Carry out routine security checks for backup alerts, logging gaps, certificate expiry, secure configuration and monitoring coverage.
- Policy, compliance and assurance support.
- Gather evidence for audits, risk assessments, supplier checks and compliance reviews.
- Apply relevant internal policies, standards and data handling requirements.
- Support regular checks against security standards, control requirements and business processes.
- Identify policy exceptions or control gaps and raise them through the agreed risk management process.
- Awareness and stakeholder support.
- Provide practical security advice to users and technical teams.
- Support phishing exercises, security awareness activities and targeted communications.
- Explain security requirements in a clear, proportionate and helpful way.
- Promote secure behaviours, including reporting suspicious activity, protecting credentials and handling sensitive data correctly.
- Reporting and documentation.
- Maintain accurate incident, alert, remediation and evidence records.
- Prepare routine operational reports on alerts, incidents, vulnerabilities, Data Loss Prevention (DLP), Multi-Factor Authentication (MFA), control exceptions and remediation progress.
- Contribute to dashboards and management information using agreed metrics.
- Keep procedures, playbooks and technical notes up to date.
- Bachelor Degree in Computer Science, Information Technology, Cybersecurity, or related fields.
- At least 1-2 years of experience in IT governance, IT audit, risk, or compliance.
- Experience in cybersecurity risk assessment, threat modeling, control testing, or security governance.
- Good command of spoken and written in English.
- Strong analytical and problem-solving skills.
- Good documentation and report-writing abilities.
- Attention to detail and organizational skills.
- We are an equal opportunity employer and value diversity at our company. *.
- We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, veteran status, or disability status. *.
- We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. *.
- Please contact us to request accommodation.*.
Experience:
3 years required
Skills:
Risk Management, Procurement, Recruitment, ISO 27001, English, Thai
Job type:
Full-time
Salary:
negotiable
- Drive end-to-end sales cycle for cybersecurity solutions (SIEM, incident response, threat intelligence, governance & compliance, cloud security) to banking clients.
- Develop and execute account plans targeting C-level stakeholders (CISO, CRO, CFO) and key decision makers in banking institutions.
- Conduct discovery workshops and assessments to understand security posture, regulatory requirements (Basel III, PCI-DSS, GDPR, STR), and organizational risk profile.
- Collaborate with presales architects and solution consultants to design tailored cybersecurity roadmaps addressing compliance, operational risk, and cyber resilience.
- Build and present business cases, ROI models, and executive briefings articulating security maturity improvements and risk mitigation value.
- Lead RFP/RFI responses and competitive evaluations against solutions from Accenture, DXC, Infosys, TCS, and Deloitte.
- Establish and nurture relationships with bank security teams, procurement, and governance bodies to expand share of wallet.
- Achieve and exceed sales targets, quota, and pipeline coverage metrics; forecast accurately and report on pipeline health.
- Serve as product evangelist and thought leader, attending banking industry events and building brand presence in the APAC financial services market.
- 7+ years of direct sales experience selling cybersecurity, security services, or risk management solutions.
- 3+ years of proven success in Banking, Financial Services, or highly regulated industry verticals (insurance, healthcare, government).
- Demonstrated ability to close enterprise deals ($500K-$5M+ ACV) with complex stakeholder environments and long sales cycles.
- Deep working knowledge of cybersecurity frameworks, risk management, and threat landscape (NIST, ISO 27001, COBIT, threat intelligence, incident response).
- Understanding of banking regulatory requirements: Basel III, PCI-DSS, GDPR, STR, AML, and audit/compliance frameworks.
- Strong knowledge of core cybersecurity solution categories: SIEM, firewalls, endpoint detection & response (EDR), identity & access management (IAM), data loss prevention (DLP), and cloud security.
- Excellent consultative selling skills; ability to translate security challenges into business outcomes and quantifiable ROI.
- Proven track record of pipeline generation, forecasting accuracy, and consistent quota attainment.
- Ability to influence and build consensus across technical and business stakeholders at all levels.
- Strong communication skills (presentation, written, and interpersonal) in English; Thai language is a plus.
- On-site Working.
- About NTT DATA.
- NTT DATA is a $30+ billion business and technology services leader, serving 75% of the Fortune Global 100. We are committed to accelerating client success and positively impacting society through responsible innovation. We are one of the world's leading AI and digital infrastructure providers, with unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and application services. Our consulting and industry solutions help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more than 50 countries. We also offer clients access to a robust ecosystem of innovation centers as well as established and start-up partners. NTT DATA is part of NTT Group, which invests over $3 billion each year in R&D.
- Equal Opportunity Employer.
- NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.
- Third parties fraudulently posing as NTT DATA recruiters.
- NTT DATA recruiters will never ask job seekers or candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties who may attempt to impersonate NTT DATA recruiters whether in writing or by phone in order to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will come from an @ nttdata.com email address. If you suspect any fraudulent activity, please _contact us_.
Experience:
3 years required
Skills:
Recruitment
Job type:
Full-time
Salary:
negotiable
- ตรวจพื้นที่ส่วนกลาง.
- ตรวจอุปกรณ์ดับเพลิงภายในอาคารให้อยู่ในสภาพพร้อมใช้ได้ตลอดเวลา.
- ดูแลผู้เช่าและผู้มาติดต่อให้ปฏิบัติตามกฎระเบียบของอาคาร.
- แนะนำพื้นที่การสูบบุหรี่แก่ผู้เช่าและผู้มาติดต่อ เพื่อหลีกเลี่ยงอัคคีภัย.
- ดูแลและประสานงานด้านความปลอดภัยที่เกี่ยวข้องกับงานผจญเพลิง Fire Man ให้เป็นไปตามมาตรฐานของอาคาร.
- เข้าร่วมซ้อมอพยพหนีไฟประจำปี.
- ตรวจสอบอุปกรณ์ดับเพลิง อุปกรณ์ระบบป้องกันอัคคีภัยให้พร้อมใช้อยู่เสมอ โดยการตรวจสอบรายวัน รายสัปดาห์ และรายเดือน พร้อมทั้งจัดทำรายงานส่งผู้บังคับบัญชา และประสานงานกับหน่วยงานราชการภายนอก.
- ประสานงานการป้องกันและระงับอัคคีภัยภายในอาคาร.
- ให้คำแนะนำ หรือให้การอบรมเรื่องการป้องกันและดับเพลิงเบื้องต้นแก่ผู้เช่า.
- ร่วมฝึกซ้อมการใช้อุปกรณ์ดับเพลิงชนิดต่างๆ เช่น ถังดับเพลิง ท่อ สายและหัวฉีดดับเพลิง.
- ร่วมฝึกซ้อมการใช้อุปกรณ์ผจญเพลิงและฝึกซ้อมการสวมใส่ชุดผจญเพลิง.
- ร่วมจัดทำแผนการอพยพหนีไฟ.
- ร่วมกิจกรรมฝึกซ้อมอพยพหนีไฟประจำปี.
- ร่วมฝึกซ้อมสมมติเหตุการณ์ฉุกเฉิน และฝึกซ้อมการรับสถานการณ์ฉุกเฉินต่างๆ.
- สำรวจความปลอดภัยด้านอัคคีภัยภายในอาคารของพื้นที่ศูนย์.
- เดินตรวจสอบจุดเสี่ยงจุดอับในพื้นที่อาคารและลานจอดรถ.
- ตรวจสอบจุดเสี่ยงจุดอับต่างๆ ผ่าน CCTV รวมถึงเหตุการณ์สำคัญที่เกิดขึ้นภายในศูนย์.
- จัดทำรายงานสภาพการทำงานที่ไม่ปลอดภัยเกี่ยวกับจุดเสี่ยงที่จะเกิดอัคคีภัยนำเสนอผู้บังคับบัญชา.
- ทำการประสานงานผู้เกี่ยวข้องเพื่อดำเนินการซ่อมแซม หรือปรับปรุงตามลักษณะงาน.
- ออกเอกสารใบแจ้งการปรับปรุงแก้ไข.
- งานอื่นๆ.
- ร่วมจัดทำแผนสถานการณ์ฉุกเฉินประเมินความเสี่ยงเพื่อรักษาความปลอดภัยและความสงบเรียบร้อย.
- จัดตั้งกองอำนวยการฉุกเฉินกรณีมีการจัดกิจกรรมภายในอาคาร.
- รายงานเหตุผิดปกติที่รุนแรงให้ผู้บังคับบัญชารับทราบโดยเร็ว เพื่อขอรับการตัดสินใจหรือขอรับการสนับสนุน.
- จัดทำรายงานประจำวัน สรุปรายงานประจำสัปดาห์ และรายงานประจำเดือน เข้าร่วมประชุมกับผู้บังคับบัญชา.
- On-site -Bangkok, THA.
- If this job description resonates with you, we encourage you to apply even if you don't meet all of the requirements. We're interested in getting to know you and what you bring to the table!.
- At JLL, we harness the power of artificial intelligence (AI) to efficiently accelerate meaningful connections between candidates and opportunities. Using AI capabilities, we analyze your application for relevant skills, experiences, and qualifications to generate valuable insights about how your unique profile aligns with the specific requirements of the role you're pursuing.
- _JLL Privacy Notice_.
- Jones Lang LaSalle (JLL), together with its subsidiaries and affiliates, is a leading global provider of real estate and investment management services. We take our responsibility to protect the personal information provided to us seriously. Generally the personal information we collect from you are for the purposes of processing in connection with JLL's recruitment process. We endeavour to keep your personal information secure with appropriate level of security and keep for as long as we need it for legitimate business or legal reasons. We will then delete it safely and securely.
- For more information about how JLL processes your personal data, please view our Candidate Privacy Statement.
- For additional details please see our career site pages for each country.
- Jones Lang LaSalle ("JLL") is an Equal Opportunity Employer and is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process - including the online application and/or overall selection process - you may email us at [email protected]. This email is only to request an accommodation. Please direct any other general recruiting inquiries to our Contact Us page > I want to work for JLL.
Experience:
5 years required
Skills:
Recruitment, Automation, YouTube
Job type:
Full-time
Salary:
negotiable
- At Agoda, we bridge the world through travel. Our story began in 2005, when two lifelong friends and entrepreneurs, driven by their passion for travel, launched Agoda to make it easier for everyone to explore the world.
- Today, we are part of Booking Holdings [NASDAQ: BKNG], with a diverse team of over 7,000 people from 90 countries, working together in offices around the globe. Every day, we connect people to destinations and experiences, with our great deals across our millions of hotels and holiday properties, flights, and experiences worldwide.
- No two days are the same at Agoda. Data and technology are at the heart of our culture, fueling our curiosity and innovation. If you're ready to begin your best journey and help build travel for the world, join us.
- Senior Security Operations Engineer.
- We are seeking a hands-on Senior Security Operations Engineer to operate and improve key enterprise security platforms across endpoint, server, network, and secure access environments. This role will work closely with infrastructure, network, IT, and engineering teams to strengthen security operations, improve service reliability, and drive automation across critical security technologies.
- Design, build, and optimize CrowdStrike across user devices and server environments; define and enforce sensor policies, detection tuning, and response playbooks.
- Administer and support Zscaler ZIA, ZDX, and ZPA. Manage policy lifecycles, tunnel configurations, app connector health, and user experience monitoring.
- Troubleshoot and resolve issues related to network connectivity, VPN, secure access, and SASE services.
- Support security operations activities, incident handling, and root cause analysis across managed platforms.
- Use APIs and scripting to automate routine tasks, reporting, and platform integrations.
- Deploy and manage security platform configurations through Terraform and CI/CD pipelines, following IaC best practices and change management processes.
- Apply generative AI use cases to improve operational workflows, troubleshooting, and team productivity.
- Required Skills and Experience.
- 7+ years of experience in security operations, endpoint security, network security, or security engineering roles.
- Hands-on experience with CrowdStrike for both user devices and servers.
- Strong knowledge of Zscaler ZIA, ZDX, and ZPA or other SASE solutions.
- Experience in troubleshooting network, VPN, and SASE-related issues in enterprise environments.
- Familiarity with APIs, scripting, Terraform, and CI/CD pipelines.
- Strong problem-solving skills and the ability to collaborate across multiple technical teams.
- sanfrancisco.
- Please review our Hiring Process Guidelines before your interview click.
- here.
- to learn how interviewing at Agoda works.
- Discover more about working at Agoda.
- Agoda Careers.
- https://careersatagoda.com.
- Facebook.
- https://www.facebook.com/agodacareers/.
- LinkedIn.
- https://www.linkedin.com/company/agoda.
- YouTube.
- https://www.youtube.com/agodalife.
- Equal Opportunity Employer.
- At Agoda, we pride ourselves on being a company represented by people of all different backgrounds and orientations. We prioritize attracting diverse talent and cultivating an inclusive environment that encourages collaboration and innovation. Employment at Agoda is based solely on a person's merit and qualifications. We are committed to providing equal employment opportunity regardless of sex, age, race, color, national origin, religion, marital status, pregnancy, sexual orientation, gender identity, disability, citizenship, veteran or military status, and other legally protected characteristics.
- We will keep your application on file so that we can consider you for future vacancies and you can always ask to have your details removed from the file. For more details please read our.
- privacy policy.
- Disclaimer.
- We do not accept any terms or conditions, nor do we recognize any agency's representation of a candidate, from unsolicited third-party or agency submissions. If we receive unsolicited or speculative CVs, we reserve the right to contact and hire the candidate directly without any obligation to pay a recruitment fee.
Skills:
System Security
Job type:
Full-time
Salary:
negotiable
- extensive computer skills and an.
- understanding of networking are the most important fundamental skills.
- penetration testers possess. The Penetration testers are experienced with.
- cryptography, reverse engineering, web applications, databases, and wireless.
- technologies.
- Computer and information security.
- penetration testers use their exceptional.
- computer skills to attempt to hack into systems. The Penetration testers.
- keep up to date on security software packages and are always learning new.
- security protocols and computer technologies that could be exploited.
- Scripting and programming.
- a variety of computer programming and.
- scripting skills are important for penetration testers because some employers.
- require knowledge of a specific programming language or operating system.
- Report writing.
- penetration testers utilize strong written.
- and oral communication skills to write reports on their assessments to.
- communicate potential weaknesses to the IT team and management.
- Problem-solving skills.
- to protect networks and data from potential.
- serious risks, penetration testers use problem-solving skills to determine the.
- most effective way to correct issues that arise.
- Data analytics.
- penetration testers can review data and.
- analyze the processes needed to correct security issues.
- Education requirement.
- Bachelor's degree in.
- information technology, information security, or computer science.
Experience:
10 years required
Skills:
Architecture, Recruitment, Negotiation, Automation, English
Job type:
Full-time
Salary:
negotiable
- Our client is a rapidly growing, venture-backed B2B SaaS company headquartered in Bangkok, Thailand, serving thousands of businesses across more than 100 countries. They develop AI-powered software solutions that help organizations streamline critical business processes and are recognized as one of the leading technology companies in the region.
- With a highly international team and a strong engineering culture, the company values innovation, ownership, and collaboration. As they continue expanding globally, the ...
- About the Role.
- Reporting directly to the Chief Technology Officer (CTO), the Head of Security, Trust & Compliance will lead the organization's security, trust, and compliance initiatives. This strategic leadership role oversees Trust & Safety operations, security compliance, IT management, and enterprise security support throughout the customer lifecycle.
- Managing a team of three, you will serve as the primary bridge between security operations and engineering, driving automation projects, strengthening security processes, and ensuring the organization maintains a strong security posture while supporting business growth.
- Trust & Safety.
- Own the end-to-end account verification workflow (KYB) after subscription, ensuring legitimate use of the platform.
- Define and continuously improve fraud detection processes: fraudulent job postings and general abuse and misuse.
- Act as the project manager for fraud detection automation: define requirements, timelines, and deliverables in collaboration with the Engineering team.
- Establish and maintain Trust & Safety policies, escalation paths, and response playbooks.
- Security & Compliance.
- Own and drive SOC 2 Type 2 compliance, including audit preparation, evidence collection, control monitoring, and remediation tracking.
- Orchestrate the penetration testing program end-to-end: vendor selection, scoping, tooling setup, intake of findings into Jira, report negotiation, and remediation coordination with engineering teams.
- Orchestrate the bug bounty program: vendor management, triage workflow, severity assessment coordination, and remediation tracking.
- Own security incident response for non-product incidents (reported data breaches, unauthorized access, credential compromise). Product availability incidents remain with the Engineering Team.
- Proactively identify security risks across the organization and implement mitigation strategies that balance security with operational velocity.
- Sales Enablement.
- Directly answer complex or non-standard questions that require deep knowledge of Manatal's security posture.
- Lead the technical response for security questionnaires, RFIs and RFPs, acting as the subject matter expert to support enterprise sales cycles.
- IT Management.
- Manage the IT function (helpdesk, device management, access control, internal tooling).
- Define and oversee the lifecycle management of all company IT assets, ensuring hardware and software inventory is secure, tracked, and compliant.
- Ensure IT-related policies and operations align with SOC 2 and broader security requirements.
- Culture & Cross-Functional Collaboration.
- Partner with Engineering to scope and prioritize security and trust-related automation projects.
- Provide security input during product and architecture reviews when trust or compliance implications exist.
- Foster a culture of security awareness across all departments through training and clear policy definitions.
- Report on trust, security, and compliance posture to the CTO on a regular cadence.
- 6+ years of experience in information security, trust & safety, or GRC, with at least 2 years in a leadership role within a technology company.
- Hands-on experience owning a SOC 2 Type 2 program (audit preparation, evidence collection, remediation tracking).
- Experience managing external security vendors (penetration testing firms, auditors, or bug bounty platforms).
- Ability to define security and trust workflows and translate them into actionable projects for engineering teams.
- Strong understanding of cloud infrastructure security and web application security.
- People management experience.
- Excellent English communication skills, written and verbal. You will negotiate with vendors, write policies, and interface with clients.
- Technical fluency: you can read a vulnerability report, understand API-level risks, and write requirements that engineers can act on.
- Nice to Have.
- Experience with KYB/KYC processes.
- Familiarity with privacy regulations (GDPR, PDPA, CCPA).
- Professional certifications (CISM, CISSP, CISA).
- Familiarity with compliance automation tools (Vanta, Drata, or similar).
- Background in recruitment technology or HR tech.
- Language Proficiency.
- Fluent in English.
- Social Security.
- Comprehensive health insurance + Telemedicine service.
- 15 days of paid annual leaves (Pro-rated).
- 13 days of national holiday.
- 2 weeks/year to work from anywhere (After probation).
- Monthly new hire & birthday lunches.
- Personal development allowance.
- Working Conditions.
- Full-time position based in Bangkok, Thailand.
- On-site working environment with flexibility to collaborate across global time zones.
- Standard office hours with occasional flexibility depending on business needs.
- Opportunity to work alongside an international, high-performing technology team.
- Learn More About the Company.
- Please send your resume or enquiries to.
- [email protected].
- or connect with us on.
- LinkedIn.
Skills:
Recruitment
Job type:
Full-time
Salary:
negotiable
- Provides operational leadership team to a team of individuals accountable for service offer management.
- Sets the standard for client satisfaction and assists with the development of client service policies, procedures and standards that will ensure the continued satisfaction of our clients.
- Investigates and solves client problems which have been escalated by the team.
- Assists with the preparation of bids and proposals to clients and remains up to date with deals in the pipeline to ensure a smooth transition from Sales to Delivery.
- Ensures that assigned infrastructure at the client site is configured, installed, tested and operational.
- Investigates all line support calls and identifies the root cause of incidents, events and problems to ensure proactive future management.
- Takes full ownership for managing the escalated incidents, requests, events and/or problems to resolution within the service level conditions.
- Provides continuous feedback to clients and affected parties and updates all systems and/or portals as prescribed by company procedures.
- Follows the required handover procedures for shift changes to ensure service continuity and manages resource allocation to achieve service level agreements.
- Assists with the analysis of statistics and other data to determine the level of client service provided.
- Contributes to and assists with the maintenance of the information technology site plan.
- Assists with the identification of user and employee training requirements.
- Seasoned knowledge of technical services, IT service management, and related technologies.
- Ability to stay up to date with industry trends, emerging technologies, and best practices.
- Seasoned knowledge of technical services concepts, IT service management (ITSM) practices, and industry best practices.
- Seasoned understanding of various information technology domains, including infrastructure, cloud services, cybersecurity, application management, networks, data center and collaboration.
- Good client-facing and communication skills, with the ability to build and maintain strong client relationships.
- Developing management qualities, including the ability to learn the skills to inspire and mentor a team.
- Displays the ability to facilitate presentation of technical and complex matters to a diverse audience.
- Ability to analyze data and produce reports on issues and recommend resolutions.
- Ability to multi-task, set priorities and meet deadlines.
- Seasoned knowledge of ITIL (Information Technology Infrastructure Library) practices is desirable.
- Ability to work collaboratively with cross-functional teams and stakeholders.
- Bachelor's degree or equivalent in Business or Information Technology or related field.
- Master's degree or equivalent in Information Technology or Business Administration preferred.
- ITIL certification is desirable.
- Relevant technical certifications as required.
- Solid experience in similar role within a related global technology environment.
- Moderate level of experience operationally managing a technical team.
- Solid experience dealing with clients and managing service levels.
- Solid stakeholder engagement experience at all levels in the organization.
- Hybrid Working.
- About NTT DATA.
- NTT DATA is a $30+ billion business and technology services leader, serving 75% of the Fortune Global 100. We are committed to accelerating client success and positively impacting society through responsible innovation. We are one of the world's leading AI and digital infrastructure providers, with unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and application services. Our consulting and industry solutions help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more than 50 countries. We also offer clients access to a robust ecosystem of innovation centers as well as established and start-up partners. NTT DATA is part of NTT Group, which invests over $3 billion each year in R&D.
- Equal Opportunity Employer.
- NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.
- Third parties fraudulently posing as NTT DATA recruiters.
- NTT DATA recruiters will never ask job seekers or candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties who may attempt to impersonate NTT DATA recruiters whether in writing or by phone in order to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will come from an @ nttdata.com email address. If you suspect any fraudulent activity, please _contact us_.
Experience:
8 years required
Skills:
Enthusiastic, English
Job type:
Full-time
Salary:
negotiable
- Head of Security Advisory, is the managerial position that leads the team to continuously establish and enforce security baseline, security standard and security policy for the bank, to ensure that all stakeholders are continuously aware, prepared and having necessary security control in place for both existing and emerging technology component supporting the organization roadmap, organization security certification and regulatory security requirements.
- The unit also leads on security design, security assessment and approval of Data sha ...
- The unit lead on security assessment of the new Solution acquisition.
- Cybersecurity knowledge in Banking.
- Fast -Learner for new IT and security technology and practice.
- Comprehensive Security control & security organization assessment experience.
- Technology Security consultation skill.
- English skill / Security certification.
- We're committed to bringing passion and customer focus to the business.
- If you like wild growth and working with happy, enthusiastic over-achievers, you'll enjoy your career with us.
Experience:
5 years required
Skills:
Electrical Engineering, Analytical Thinking, Project Management, Financial Analysis, Data Analysis, English
Job type:
Full-time
Salary:
negotiable
- Drive strategic management of building facilities and security systems with a strong emphasis on.
- Access Control & CCTV and advanced security technologies.
- The role focuses on compliance with PTTEP rules/regulations, SSHE policy, and service quality standards while leveraging data-driven insights for continuous improvement. The officer will lead in developing TOR, monitoring contractors, and providing strategic technical guidance. In case of onshore/offshore travel, the officer should ex ...
- Key Accountabilities.
- Lead and optimize Access Control & CCTV and security systems for building and office facilities, ensuring operational reliability and alignment with organizational security objectives.
- Review and formulate TOR and contracts for security system projects with a focus on cost-effectiveness, compliance, and risk mitigation.
- Collect, analyze, and interpret performance data of security systems to identify trends, benchmark efficiency, and propose innovative solutions.
- Plan and implement enhancements for security operations, integrating advanced surveillance technologies and predictive maintenance strategies.
- Monitor and evaluate contractor performance using KPIs and compliance metrics to ensure service quality and contractual adherence.
- Establish and update security standards, procedures, and guidelines in alignment with PTTEP SSHE policy and international best practices.
- Prepare and manage budgets for security systems and CCTV projects, applying financial analysis to optimize resource allocation.
- Act as focal point for ISO standards related to security and facility management (ISO41001, ISO45001), ensuring audit readiness and continuous compliance.
- Oversee security operations across 4 sites under FFM responsibility (PTTEP H.O., PTIC, RASC, PSRC) with strategic alignment and resource optimization.
- Lead initiatives for security system enhancement, process improvement, and technology integration to strengthen organizational resilience.
- Professional Knowledge & Experiences.
- Bachelor's Degree in Electrical Engineering, Security Technology, or related fields.
- Minimum 5 years' experience in security systems management with proven ability in strategic planning and performance analysis.
- Strong knowledge of Access Control/ CCTV systems, networking fundamentals, and risk-based troubleshooting.
- Proficiency in English and advanced computer skills for data analysis and reporting.
- Demonstrated analytical thinking, decision-making, and project management capabilities.
- Ability to travel onshore/offshore and resolve technical issues with strategic judgment.
- Work Location.
- Bangkok-Thailand.
Experience:
5 years required
Skills:
Software Development, Architecture, ISO 27001, Linux
Job type:
Full-time
Salary:
negotiable
- Continuously monitor network traffic and system logs for security incidents, analyzing anomalies and investigating potential data breaches.
- Implement, configure, and manage enterprise security tools (Firewalls, SIEM, DLP, Endpoint Security) to protect the organization's infrastructure.
- Develop and execute Incident Response (IR) plans to rapidly contain and mitigate security events.
- Proactively simulate sophisticated cyberattacks on corporate networks, web applications, APIs, and cloud environments (AWS, Azure, GCP).
- Perform regular vulnerability scans, identify security gaps, and exploit weaknesses before malicious actors do.
- Provide detailed remediation reports, technical guidance, and secure coding practices to software development teams.
- Conduct comprehensive internal IT audits, risk assessments, and gap analyses on technological processes and data management practices.
- Ensure full compliance with legal regulations (e.g., PDPA, GDPR) and international security frameworks (e.g., ISO 27001, NIST, PCI-DSS).
- Design and enforce IT security policies, procedures, and disaster recovery (DR) protocols across the organization.
- Strong foundational knowledge of network protocols, operating systems (Linux/Windows), and basic risk assessment. Eager to learn the latest threat landscapes, with hands-on academic or foundational experience in security tools.
- Capable of executing complex penetration tests, managing SIEM platforms, or leading internal IT audits independently. Can clearly translate and communicate technical security risks to non-technical stakeholders and management.
- Master-level expertise in enterprise security architecture or IT governance. Capable of driving organizational-wide security strategies, mentoring technical teams, and managing high-stakes compliance audits.
- SIEM (Splunk, QRadar, ELK), EDR/MDR, IDS/IPS, WAF, DLP, IAM.
- Burp Suite, Metasploit, Nessus, Nmap, Wireshark, Kali Linux, Fortify, SonarQube.
- ISO 27001, NIST Cybersecurity Framework, GDPR/PDPA, ITIL, COBIT, PCI-DSS.
- CEH (Certified Ethical Hacker), OSCP (Offensive Security Certified Professional), CompTIA Security+, CISSP (Certified Information Systems Security Professional), CySA+.
- CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), CRISC, ISO 27001 Lead Auditor / Implementer.
- All applications will be treated with the strictest confidentiality. If your qualifications and experience align with the requirements of the role, our talent acquisition team will reach out to you directly. In the event that there is not an immediate fit, we will securely retain your profile for consideration against future suitable opportunities.
- https://www.careers-page.com/gosoftthailandcoltd.
Experience:
5 years required
Skills:
Risk Management, ISO 27001
Job type:
Full-time
Salary:
negotiable
- การวางแผนกลยุทธ์ด้านความปลอดภัยทางไซเบอร์.
- พัฒนา นโยบาย, มาตรฐาน, และแนวทางปฏิบัติ ด้านความปลอดภัยสารสนเทศ.
- กำหนดแนวทางปฏิบัติให้สอดคล้องกับกฎหมายและมาตรฐานสากล.
- จัดทำโปรแกรมฝึกอบรมความปลอดภัยทางไซเบอร์ ให้พนักงาน.
- การบริหารความเสี่ยงด้านความปลอดภัยทางไซเบอร์.
- วิเคราะห์ ความเสี่ยงทางไซเบอร์ (Cyber Risk Assessment).
- กำกับดูแลแนว นโยบาย, มาตรฐาน, และแนวทางปฏิบัติทางปฏิบัติให้สอดคล้องกับกฎหมายและมาตรฐานสากลและเป็นตามกฎระเบียบของบริษัท อาทิเช่น นโยบายสารสนเทศ, ISO 27001, PDPA, NIST และนโยบายด้านความปลอดภัยทางไซเบอร์อื่น ๆ ที่บริษัทได้นำมาใช้ภายในบริษัท.
- การปฏิบัติการด้านความปลอดภัยและการตอบสนองต่อเหตุการณ์.
- วิเคราะห์ ความเสี่ยงทางไซเบอร์ (Cyber Risk Assessment).
- บริหารจัดการ เหตุการณ์ด้านความปลอดภัยทางไซเบอร์ (Incident Response) อาทิเช่น การโจมตีจากแฮกเกอร์, Ransomware, Data Breach,etc.
- การตรวจจับและป้องกันภัยคุกคามทางไซเบอร์.
- บริหารจัดการกำกับดูแลและควบคุม Firewall, IDS/IPS, SIEM, Endpoint Security เพื่อตรวจสอบภัยคุกคาม.
- วิเคราะห์และบริหารจัดการ ภัยคุกคามทางไซเบอร์แบบเชิงรุก.
- ตรวจสอบและนำเทคโนโลยีใหม่ ๆ มาใช้เพื่อเพิ่มความปลอดภัย.
- ตรวจสอบและประเมินความเสี่ยงของ Third-Party Vendors ที่เกี่ยวข้องกับข้อมูลบริษัท.
- การสนับสนุนกิจกรรมด้านความปลอดภัยทางไซเบอร์.
- รับผิดชอบ, ติดตาม และแก้ไขปัญหาที่เกี่ยวข้องกับระบบ Cyber Security.
- กำกับดูแลการป้องกันต่างๆ ตามที่ได้รับมอบหมาย เช่น update Cyber Security.
- สนับสนุน, จัดทำเอกสารประกอบ และดูแลรักษาระบบ Cyber Security.
- กำกับดูแลการจัดทำข้อมูล Cyber Security ที่ได้รับมอบหมาย.
- กำกับดูแลดำเนินการบริหารจัดการทะเบียนความเสี่ยงต่าง ๆามที่ได้รับการอนุมัติ.
- กำกับดูแลการรวบรวมและจัดทำข้อมูลรายงาน Risk Management.
- กำหนดแนวทางพัฒนาทักษะของทีมงานด้าน Cyber Security.
- วางแผนการลงทุนในระบบฐานข้อมูลให้รองรับต่อเหตุการการโจมตีทาง Cyber Security โดยตัดสินใจจากข้อมูลเกี่ยวกับข้อมูล และผลวิเคราะห์แนวโน้มของข้อมูล.
- บริหารโครงการติดตั้งระบบด้าน Cyber Security.
- มอบหมายงาน ติดตามงาน ทบทวน และประเมินผลงานของทีมงาน.
- จัดทำรายงานกิจกรรม และความคืบหน้าของโครงการต่างๆ ที่ทีมงาน.
- Educations Background(การศึกษา).
- ปริญญาตรีทางวิศวกรรม หรือ วิทยาศาสตร์ สาขาคอมพิวเตอร์ หรือเทียบเท่า.
- Professional Experiences(ประสบการณ์การทำงาน).
- มีประสบการณ์ทำงานอย่างน้อย 10 ปี.
- มีประสบการณ์มากกว่า 6 ปีในงานดูแล Cyber Security.
- มีประสบการณ์ในการบริหาร / บังคับบัญชาทีมงาน.
- มีความรู้ด้านระบบ Cyber Security ดังต่อไปนี้.
- o ความรู้ทางเทคนิค (Technical Knowledge) Network Security, Endpoint Security & Malware Protection, Cloud Security, Application Security และ Incident Response เป็นต้น.
- o ความรู้ด้านกฎหมายและมาตรฐานความปลอดภัย GDPR, PDPA, ISO/IEC 27001 หรือ NIST.
- o ทักษะการบริหารจัดการ (Management Skills) Risk Management, Communication & Training หรือ Policy Development.
- o ความรู้เกี่ยวกับแนวโน้มภัยคุกคามและเทคโนโลยีใหม่ Cyber Threats และ Zero-Day Attacks ความเข้าใจ AI และ Machine Learning ใน Cyber Security, Threat Intelligence Tools เช่น MITRE ATT&CK, Cyber Threat Feeds.
- HUMAN RELATIONS SKILLS (คุณลักษณะที่จำเป็น).
- ทักษะด้านมนุษยสัมพันธ์ที่จำเป็นต่อการปฏิบัติงาน.
- ทักษะในการทำงานเป็นทีม.
- ทำงานร่วมกับผู้อื่นได้อย่างมีประสิทธิภาพ และ ให้ความร่วมมือกับทีมงานทุกฝ่าย.
- มีมนุษยสัมพันธ์ที่ดี และ มุ่งเน้นการให้บริการที่เป็นมิตรและสร้างสรรค์.
- ทักษะการสื่อสารและการประสานงาน.
- สามารถ อธิบายเรื่องเทคนิคที่ซับซ้อนให้เข้าใจง่าย สำหรับผู้ใช้ที่ไม่มีพื้นฐานด้าน IT.
- มีความสามารถในการ ประสานงานทั้งภายในและภายนอกองค์กร อย่างมีประสิทธิภาพ.
- แจ้งข้อมูลเกี่ยวกับ ปัญหาของระบบกลางหรือปัญหาทางเทคนิค ที่อาจส่งผลกระทบต่อผู้ใช้.
- ให้ข้อมูลอัปเดตเกี่ยวกับ สถานะของปัญหาที่กำลังดำเนินการแก้ไข.
- การจัดการข้อร้องเรียนและการควบคุมอารมณ์.
- สามารถ รับมือกับข้อร้องเรียนของผู้ใช้ ได้อย่างเป็นมืออาชีพ.
- มีความสามารถในการจัดการกับ พฤติกรรมเชิงลบหรือพฤติกรรมก้าวร้าวของผู้ใช้บริการ.
- DESCISION MAKING RESPONSIBILITY (ความรับผิดชอบในการตัดสินใจ).
- การวิเคราะห์และการตัดสินใจในการแก้ไขปัญหา.
- ศึกษา, วิเคราะห์, และตรวจสอบปัญหาด้าน Cyber Security ในระบบที่รับผิดชอบ.
- ตัดสินใจเกี่ยวกับการ แก้ไขปัญหาด้านเทคนิค อย่างรวดเร็วและมีประสิทธิภาพ.
- สามารถตัดสินใจ แก้ไขปัญหาพื้นฐานในระบบที่รับผิดชอบได้ด้วยตนเอง.
- การออกแบบระบบและแนวทางการรักษาความปลอดภัย.
- มีความสามารถในการ ออกแบบระบบ Cyber Security เพื่อป้องกันภัยคุกคามทางไซเบอร์.
- ตัดสินใจเกี่ยวกับการเลือก เครื่องมือและเทคโนโลยี ที่เหมาะสมเพื่อเสริมสร้างความปลอดภัยในองค์กร.
- การให้คำแนะนำและการประเมินผลกระทบ.
- ให้คำแนะนำเกี่ยวกับ ผลกระทบด้านความปลอดภัยทางไซเบอร์ ต่อระบบและการดำเนินธุรกิจ.
- ตัดสินใจในเรื่อง การจัดการความเสี่ยงทางไซเบอร์ และการลงทุนในเทคโนโลยีความปลอดภัย.
Experience:
5 years required
Skills:
Architecture, Recruitment, Automation, Kubernetes, TypeScript, YouTube, Python
Job type:
Full-time
Salary:
negotiable
- At Agoda, we bridge the world through travel. Our story began in 2005, when two lifelong friends and entrepreneurs, driven by their passion for travel, launched Agoda to make it easier for everyone to explore the world.
- Today, we are part of Booking Holdings [NASDAQ: BKNG], with a diverse team of over 7,000 people from 90 countries, working together in offices around the globe. Every day, we connect people to destinations and experiences, with our great deals across our millions of hotels and holiday properties, flights, and experiences worldwide.
- No two days are the same at Agoda. Data and technology are at the heart of our culture, fueling our curiosity and innovation. If you're ready to begin your best journey and help build travel for the world, join us.
- We are looking for a hands on Senior Security Engineer to secure our cloud and platform environments. This role works closely with engineering teams and focuses on building, reviewing, and operating security controls using Infrastructure as Code, Kubernetes, and custom security services written in Go and TypeScript.
- Design, implement, and manage secure cloud deployments across AWS and GCP environments using Terraform.
- Kubernetes & GitOps Security: Deploy and manage both internal and third party security products within the Kubernetes ecosystem.
- Work with GitOps workflows using tools like Argo CD and Flux, and Helm charts.
- Security Automation & Tooling: Design and build security tooling and services using Go and TypeScript.
- Misconfiguration Management: Proactively identify, analyze, and remediate cloud misconfigurations.
- Cloud Architecture Guidance: Provide guidance to Engineering teams on secure architecture.
- Threat Detection & Response: Build and optimize cloud-native detection rules and alerting pipelines to monitor for suspicious activities within the cloud and container workloads.
- 8+ years of experience in security engineering, cloud security, or platform engineering roles.
- Hands-on experience securing production workloads in AWS and GCP.
- Strong experience designing and securing Infrastructure as Code using Terraform.
- Deep understanding of Kubernetes security, including troubleshooting Helm deployments and GitOps-based workflows.
- Strong programming skills in Go and TypeScript, with Python used for automation where appropriate.
- Experience embedding security controls into CI/CD pipelines.
- Certifications (Required) Certified Kubernetes Administrator (CKA) Certified Kubernetes Security Specialist (CKS) Certifications (Preferred) AWS Certified Security.
- Specialty Google Professional Cloud Security Engineer HashiCorp Certified: Terraform Associate.
- Nice-to-Have Experience with Policy-as-Code frameworks such as Open Policy Agent (OPA).
- Experience securing service mesh environments (Istio). Background in software engineering or platform engineering before moving into security.
- sanfrancisco.
- Please review our Hiring Process Guidelines before your interview click.
- here.
- to learn how interviewing at Agoda works.
- Discover more about working at Agoda.
- Agoda Careers.
- https://careersatagoda.com.
- Facebook.
- https://www.facebook.com/agodacareers/.
- LinkedIn.
- https://www.linkedin.com/company/agoda.
- YouTube.
- https://www.youtube.com/agodalife.
- Equal Opportunity Employer.
- At Agoda, we pride ourselves on being a company represented by people of all different backgrounds and orientations. We prioritize attracting diverse talent and cultivating an inclusive environment that encourages collaboration and innovation. Employment at Agoda is based solely on a person's merit and qualifications. We are committed to providing equal employment opportunity regardless of sex, age, race, color, national origin, religion, marital status, pregnancy, sexual orientation, gender identity, disability, citizenship, veteran or military status, and other legally protected characteristics.
- We will keep your application on file so that we can consider you for future vacancies and you can always ask to have your details removed from the file. For more details please read our.
- privacy policy.
- Disclaimer.
- We do not accept any terms or conditions, nor do we recognize any agency's representation of a candidate, from unsolicited third-party or agency submissions. If we receive unsolicited or speculative CVs, we reserve the right to contact and hire the candidate directly without any obligation to pay a recruitment fee.
- 1
- 2
- 3
- 4
- 5
- 6
