13 дней назад
Security Operations Analyst (Aerospace)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Operations Analyst (Aerospace): Monitoring and securing Moog’s cybersecurity operations in Baguio with an accent on EASA Part-IS compliance, incident response, risk assessment, and security control implementation. Focus on operating an aviation information security management system, analyzing security events, deploying security platforms, and coordinating regulatory audits and cyber risks.
Location: Baguio City, Philippines; hybrid with 75% onsite presence required. Travel to other Asia Pacific locations is required.
Company
develops and supports advanced aerospace and industrial technologies.
What you will do
- Act as the EASA Part-IS lead in Baguio and operate the compliant information security management system.
- Monitor and analyze security events, investigate incidents, identify vulnerabilities, and coordinate remediation strategies.
- Conduct vulnerability assessments, risk analyses, security audits, and cybersecurity risk coordination affecting aviation safety.
- Prepare, test, and maintain incident response procedures, playbooks, root cause analyses, and after-action reports.
- Deploy, manage, and maintain endpoint security, intrusion detection, cryptography, privileged account management, and related security systems.
- Coordinate with EASA regulators, auditors, and regional Part-IS leads on compliance and security controls.
Requirements
- Hybrid work in Baguio City with at least 75% onsite presence is required.
- Bachelor’s degree in Information Security, Information Technology, Computer Science, or a related field is preferred.
- More than 3 years of security experience and more than 5 years of IT administration experience.
- 1–3 years of experience with EDR/XDR or endpoint security, SIEM, email security, privileged account management, and vulnerability management tools.
- Strong knowledge of enterprise security architecture, security concepts, policies, standards, procedures, research, and log analysis.
- Flexible availability for non-traditional working hours and willingness to travel within the Asia Pacific region.
Nice to have
- Security certifications such as CompTIA Security+, CEH, GSEC, CISM, CISSP, or related credentials.
- Experience with Cyber Essential Plus, CMMC, NIST SP 800-53/171, ISO, MITRE ATT&CK, or Cyber Kill Chain frameworks.
- Familiarity with Python or other scripting languages.
- Experience with cloud security in Azure, AWS, or GCP; attack surface management; vulnerability management; or endpoint encryption.
Culture & Benefits
- Performance-oriented environment focused on solving technical challenges.
- Collaboration with technical and non-technical stakeholders across regional locations.
- Opportunity to work on aviation cybersecurity, regulatory compliance, and enterprise security infrastructure.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →