กลุ่มงาน : เทคโนโลยีสารสนเทศ
รายละเอียดการจ้างงาน :
คุณสมบัติ
1. ความรู้และประสบการณ์ด้าน Cyber Security
- มีประสบการณ์ด้าน Cyber Security / Information Security 4–7 ปี
- มีประสบการณ์ด้าน Incident Response, SOC/CSOC Coordination หรือ Managed Security Service
- มีประสบการณ์ประสานงานหลายทีมเพื่อแก้ไข Cyber Security Incident และมีความรู้/ประสบการณ์ ISO/IEC 27001
- มีประสบการณ์ด้าน Vulnerability Management / Penetration Test และ Security Policy
- NIST CSF 2.0, ISO/IEC 27001, PDPA, พ.ร.บ.การรักษาความมั่นคงปลอดภัยไซเบอร์, พ.ร.บ.คอมพิวเตอร์,พ.ร.บ.การรักษาความมั่นคงปลอดภัยไซเบอร์
2. ทักษะทางเทคนิค
- Operating System: มีความรู้ Windows Server / Windows Client และ Linux ในระดับตรวจสอบ Log, Service, Process และ Security Configuration ได้
- Scripting / Automation: สามารถใช้ PowerShell และ/หรือ Python เพื่อช่วยงาน Automation, Log Processing, API Integration หรือ Security Operation ได้
- Virtualization: มีความเข้าใจ VMware / Virtual Machine / Hypervisor / Container และ Security ที่เกี่ยวข้องกับ Virtual Machine
- Cloud: มีความเข้าใจ Microsoft Azure, AWS หรือ Google Cloud รวมถึง Cloud Security, IAM, Logging และ Network Security
- Network: เข้าใจ TCP/IP, DNS, DHCP, Routing, VLAN, VPN, NAT, Proxy, Load Balancer และ Network Segmentation
- Security Tools: มีความรู้ Firewall, WAF, EDR/XDR, Email Security Gateway, SIEM/Log, IDS/IPS และ Vulnerability Scanner, การเข้ารหัสข้อมูล
- Identity & Access: เข้าใจ Active Directory, Entra ID/Azure AD, IAM, MFA, SSO, Privileged Account และ Least Privilege
- Web / API: เข้าใจ HTTP/HTTPS, REST API, Authentication, Web Security (OWASP)
- Database: มีความรู้พื้นฐาน SQL และ Database Security เพื่อใช้ตรวจสอบหรือประสานงานกรณี Security Incident
- Endpoint / Server Security: เข้าใจ Hardening, Patch Management, Antivirus/EDR (CrowdStrike, SentinelOne, Cortex), Local/Domain Policy และ Security Baseline
- Backup / Recovery: เข้าใจหลักการ Backup, Restore, Ransomware Recovery และ Business Continuity ในระดับที่ใช้ประสาน Incident ได้
- Monitoring / Logging: สามารถอ่าน Log และวิเคราะห์ Timeline เบื้องต้นจาก Windows, Linux, Firewall, WAF, EDR, Email และ Cloud
3. ทักษะการสื่อสารและการประสานงาน
- สามารถจัดทำรายงาน สรุปความเสี่ยง และนำเสนอข้อมูลต่อผู้บริหารได้
- มีทักษะบริหาร Vendor / Outsource และติดตาม SLA
- มีทักษะการวิเคราะห์ การประสานงาน และสามารถทำงานในสถานการณ์เร่งด่วนได้ดี
- สื่อสารภาษาไทยได้ดี และสามารถอ่าน Technical Report / Documentation ภาษาอังกฤษได้
4. การศึกษา
- ปริญญาตรีขึ้นไป สาขา Computer Science, Computer Engineering, Information Technology, Cyber Security
5. คุณสมบัติที่พิจารณาเป็นพิเศษ
- มีประสบการณ์ทำงานในธุรกิจโรงพยาบาล / Healthcare
- มีประสบการณ์ใช้ Python / PowerShell สำหรับงาน Automation หรือ Security Operation
- มีประสบการณ์ดูแลหรือทำงานร่วมกับ VMware, Azure, AWS หรือ Cloud Platform
- มีประสบการณ์จัด/บริหารจัดการ Cyber Security Tabletop Exercise หรือ Incident Simulation /
- มีประสบการณ์ด้าน Phishing Simulation / Cyber Security Awareness Program
- มี Certification เช่น CISSP, CISM, CISA, ISO/IEC 27001, CEH, Security+, Microsoft/AWS Security หรือด้าน Incident Response