Skip to content

General information

Location:
KR_Seongnam_10 Seongnam-daero
Additional Location:
Seongnam-si, Korea, Republic Of
Job Family:
Digital
Worker Type Reference:
Regular - Permanent
Pay Rate Type:
Salary
JOB ID:
R-30379-2023

Description & Requirements

Responsibilities

The Security Engineer will provide support in the establishing of enterprise-wide security initiatives as required by various applications that compose our corporate and public network. They must have strong oral and written documentation and communication skills, to work with management, auditors and regulators concerning IT business controls and procedures. This position should bring prior analytical problem-solving skills, sound judgement, knowledge and expertise in all areas of IT Security. In addition, demonstrate a technical background and knowledge of system security processes, such as authentication practices, security administration and familiarity with industry standard hardware and software systems.

  • Architect, develop and document industry best practices to support company initiatives while meeting performance and availability requirements.
  • Collaborate with Product, Operations and Engineering organizations to understand requirements and develop security specifications around project initiatives.
  • Research new security technologies and adopt suitable best practices to solve industry obstacles and security threats.
  • Provide technical leadership within the area of expertise and mentor security staff.
  • Insuring confidentiality, availability and integrity of cloud information systems and processes across the cloud infrastructure.
  • Audit all existing security standards: to include engineering designs, implementation, and guidelines.
  • Handles operational problem escalations and vendor concerns related to security.
  • Deploy and maintain internal security systems such as IDS/IPS, SIEM, WAF, FIM, DDOS, Threat Intel, SOAR and vulnerability scanners.
  • Work with business colleagues to review RFPs, RFIs etc., and provide security and risk-related input into proposals.
  • Monitor the external threat environment and information security trends while keeping business leadership informed about information security-related issues and activities potentially affecting the organization.
  • Serve as one of the information security subject matter experts for the Incident Response team and handle escalations of any possible incidents impacting the company.
  • Provide guidance on prioritization and remediation of security issues.
  • Some travel may be required.

Qualifications and Requirements

  • Must have a solid overall understanding of information technology and information security practices and trends.
  • Hands-on Public Cloud experience – One or more of AWS, Azure, GCP.
  • Provide expertise and guidance to junior engineers in the deployment of security tools.
  • Passionate about automation, performance, reliability, visibility, and finding creative solutions to complex security issues.
  • Must be an intelligent, articulate and persuasive leader who can serve as an effective member of the team and who is able to communicate security-related concepts to a broad range of technical and non-technical staff.
  • Understanding of networking concepts such as BGP, VRF and MPLS.
  • Ability to work with cross-functional, interdisciplinary teams to achieve tactical and strategic information security goals.
  • Experience with security frameworks to include ISO, HIPAA, PCI, HITRUST and NIST
  • Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate security and risk-related concepts to technical and nontechnical audiences.
  • Demonstrable knowledge of cryptographic concepts and techniques, including encryption, hashing, and key management.
  • Knowledge of Cloud-unique security risks, API security vulnerabilities and remediation measures.
  • Experience with Kubernetes
  • Solid understanding of network routers, switches and firewalls. Experience Juniper and Arista equipment preferred.
  • Well versed in security hardening for Linux hosts, services, applications, web applications, and database applications.
  • Experience using a scripting language for administration, monitoring and automation such as python and bash.
  • Proficient in Linux.
  • Experience with ansible.
  • Experience with open source tooling used to secure resources.
  • Strong attention to detail, organizational skills, problem solving, troubleshooting and documentation skills.
  • Bilingual in Korean and English-at least working knowledge.
  • Due to the nature of global infrastructure, Flexibility on the working hours is required.
  • Commuting to the Suwon office will be required weekly as this is a hybrid role. Ideally the candidate should live near to Suwon.

HARMAN is proud to be an Equal Opportunity / Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.