Job Description
Senior Cyber Security Engineer
Posting Start Date:  04/08/2025
Job Function:  Information Technology
Company:  PTT Global Chemical Plc.
Work Location:  Bangkok

Job Summary

• Responsible for initiating,managing and monitoring all Security Engineering and Asset Security domains, including but not exhaustive- Security Engineering, Security Architecture, Host and Network Security, Secure Software Development, Identity and Access Management, Secure Solution Implementation, Data and Information Asset Security.

• Lead cybersecurity projects to archieve/drive GC’s cyber resiliency.

Job Description

- Define, implement, assess, and maintain controls necessary to protectthe network/internet perimeter in accordance with security requirements(E.g., Firewalls, DMZ, Network connections, Third-party connectivity, Remote access, VPNs) - Manage team resources, including facilitating activities allocation, tracking and adjusting utilization, and ensuring project team members under own project areas understand and accept their project roles and responsibilities. - Lead and manage project backlog under responsibilities - Manages the reporting and documentation on quality, standards, and cost of projects under responsibility. - Coach junior engineers regarding project management and technical issues. - Address security throughout the development and acquisition lifecycle - Develop and maintain a security architecture. - Define, implement, manage and maintain identities and access controlsbased on identities (e.g., Password management, Single Sign-On, Multi-factor authentication, PIN management, Digital signatures, Smart cards, Biometrics, AD) - Ensures that system access is maintained in accordance with company policies - Administer and supports all access management control activities across all infrastructure systems (systems, equipment, hosts, and networks) - Lead and drive cybersecurity technology projects to achieve results interms of quality, time and cost - Ensure planning to go-live and deployment activities and facilitate their execution as well as post launch success and continuously identifying key improvement areas - Provide technical advice on technological innovations and alignment with the cybersecurity strategic objectives of GC and future architecturalstandards to enhance cybersecurity quality - Define, implement, assess, and maintain controls necessary to protectsoftware and applications in accordance with security requirements (operating systems, applications, database management systems, web-based applications, COTS , maintenance) - Identify potential flaws in application and design countermeasures ormitigations against potential exploitations of programming language weaknesses and vulnerabilities in system and elements - Define, implement, assess, and maintain controls necessary to protectinformation and vital assets (including media) in accordance with security requirements (includes privacy requirements, PII, DLP, encryption) - Ensure data lifecycle is secured

Job Description (Cont. 2)

Job Description (Cont. 3)

Job Qualification

Education

Bachelor's degree or higher in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering or related fieldPrefer Certification - CISSP or CISM Success Profile-Knowledge • Business, Marketing and Financial Tools • Marketing Strategy / Planning and Sales Management • Global Acumen

Experience

- Minimum of 5 year experience in information security, security solution implementation, security architecture, security management, data security, cloud and/or OT security - Minimum of 3 year experience in overall management within a large enterprise environment