logo company

EMIT - Global Security Monitoring Analyst

Posted on:

Full Time

Company

EXXONMOBIL MALAYSIA

location

Malaysia : WP - Kuala Lumpur

Jalan Kia Peng, Kuala Lumpur City Centre, 50450 Kuala Lumpur, Wilayah Persekutuan Kuala Lumpur, Malaysia

Get Direction

Deadline

Job Scope

We are seeking a Global Security Monitoring Analyst to ensure the integrity and security of our IT systems by monitoring privileged access usage, enforcing compliance with company policies and procedures, and identifying and mitigating risks. The ideal candidate will be detail-oriented, proactive, and possess strong analytical and communication skills.

As a Global Security Monitoring Analyst, you will play a critical role in safeguarding the integrity and security of our IT systems. Your primary responsibility will be to monitor and enforce compliance with company policies and procedures, particularly regarding privileged access management. You will analyze audit trail reports, ensuring adherence to standard GSM Best Practice guidelines and review frameworks. Additionally, you will collaborate with various stakeholders to identify and mitigate risks, develop new policies, and implement automation solutions to enhance IT risk management and controls compliance. Key deliverables include:

  • Monitor audit trail reports on the use of Privileged Access, as per standard GSM Best Practice guidelines, Factsheets and established review framework.
  • Responsible to complete the Privileged Access monitoring within the stipulated Service Level Objective (SLO) time frame.
  • Ensure compliance with all company policies and procedures.
  • Ensure reported events are supported by valid and authorized requests.

Follow-up on any observations:

  1. Ensure appropriate measures are taken to correct identified unauthorized activities or misuse of Privileged Access.
  2. Classify the identified observations as per established guidelines into the GSM Incident Management Tool.
  3. Ensure established escalation process is followed for unresolved observations.
  4. Once the observation is confirmed, communicate to respective management appropriately.
  • Document evidence of review performed into the GSM Incident Management Tool and steps taken on identified observations (if any).
  • Coordinate feedback and responses (including complaints) to ensure continuous improvement.
  • Responsible for escalating to respective Service Delivery Organization (SDO) if audit trail report is not generated.
  • Work closely with Cyber Security team to develop new policies on the supported and new technologies/platforms.
  • Investigate potential unauthorized software installed by users detected on ExxonMobil.
  • Perform risk mitigation to have the software removed from the environment.
  • Work closely with Cyber Security for any potential malicious software detected in ExxonMobil environment.
  • Identify and design new automation solutions related with IT Risk Management and Controls Compliance.
  • Develop & support IT Risk Management and Controls Compliance tools (e.g., IT System Information Request tool, information for Risk Advisor Dashboard)

Job Requirement

To be eligible for this role, you must have:

  1. Skills:
  • Bachelor’s degree in computer science, Information Technology, or any other related field.
  • Proven experience in IT compliance, risk management, or related fields.
  • Strong understanding of privileged access management and audit trail monitoring.
  • Knowledge of IT policies, procedures, and best practices.
  • Experience with incident management tools and escalation processes.
  • Excellent analytical and problem-solving skills.
  • Meticulous attention to detail, sound analytical conclusions and the ability to recognize trends/patterns in data.
  1. Technical Skills: (includes systems knowledge needed and process knowledge)
  • Proficiency in the Microsoft Access, MS SQL, Microsoft Office (Excel Macro) , Outlook, ServiceNow
  • Possession of in-depth knowledge and behaviors of Network, applications or IT infrastructure would be an added advantage
  • Possess strong technical knowledge especially in SQL database queries with minimum basic working experience / knowledge on SPLUNK queries, dashboard, correlation events activities
  • Knowledgeable in development discipline e.g.: RPA, Python, C, Nintex Workflow
  • Knowledgeable in any Analytics Tools e.g. Tableau, Power BI, SPLUNK
  • Basic knowledge about systems such as SAP, UNIX, ORACLE, SQL, AS400, Network Security (CISCO knowledge) and key system applications e.g. Windows Active Directory, Microsoft Exchange
  • Possession of in-depth knowledge about Cloud Computing e.g. Microsoft Azure, AWS, GitHub, Openshift, etc would be an added advantage
  • Possession of relevant certifications (e.g., CISSP, CISA) are a plus.

Please find out more about these vacancies and submit your application online at jobs.exxonmobil.com

We thank you for your interest in ExxonMobil

Minimum Year of Working Experience

3 Years

Minimum Qualification

Bachelor's Degree

Minimum Grade

Not Specified

Field Of Study

Not Specified

Success

This job application require you to continue application to an external site.