Network Security Analyst
Ho Chi Minh City - Vietnam
Job Summary
The Network Security Analyst is a key member of the global Infrastructure Services team responsible for supporting and maturing CESs network and information security program across domestic and international locations. This position will be based in our Ho Chi Minh office. This is a growth-oriented role suited to a motivated security professional with a solid foundation ready to take on broader ownership over time.
Working from the HCMC office you will collaborate closely with a co-located Senior Network Engineer and partner with U.S.-based IT leadership on security priorities escalations and strategic initiatives. You will operate within an established security environment contributing to vulnerability management incident response policy governance and security monitoring while developing into CESs primary security subject matter expert in the region.
Responsibilities
Security Monitoring & Incident Response
- Oversee security event platforms leverage EDR tools and review alerts for anomalous activity intrusion indicators and policy violations across Windows and Linux servers to mitigate threats and protect business operations.
- Triage and investigate EDR alerts and endpoint detections escalating confirmed incidents to US-based IT leadership and supporting containment and remediation efforts.
- Maintain and execute incident response plans and playbooks; participate in post-incident reviews and contribute to lessons-learned documentation to drive continuous improvement.
- Monitor threat intelligence advisories and convert emerging risks into actionable recommendations to help the team proactively reduce security vulnerabilities and protect operations.
Vulnerability Management
- Leverage vulnerability scanning tools to perform regular assessments across a substantial server fleet running mixed Windows and Linux workloads.
- Engage with infrastructure teams to optimize patch management and software deployment workflows enabling timely remediation of identified vulnerabilities.
- Monitor remediation progress and communicate status updates against defined SLAs and risk thresholds.
- Facilitate information sharing and response efforts with vendors and third-party partners during vulnerability disclosure exercises to support effective remediation.
- Coordinate remediation efforts with both infrastructure and application development teams translating vulnerability findings into actionable guidance appropriate for each audience and tracking progress through to closure.
Security Policy & Governance
- Play a vital role in developing maintaining and sharing network and data security policies standards and procedures aligned with industry frameworks (NIST CSF CIS Controls or similar).
- Proactively review policies to help maintain relevance and keep ahead of changing regulatory requirements.
- Inspire a culture of security awareness across the organization by designing engaging training materials and dynamic internal communications.
Network Security Standards
- Drive the consistent enforcement of network security standards across firewalls VPNs segmentation and access controls in partnership with the Senior Network Engineer and the US team.
- Conduct security reviews for new projects system changes and cloud migrations ensuring guidance aligns with organizational standards.
- Embed security practices into DevOps workflows and cloud-based environments (AWS and Azure).
Reporting & Documentation
- Prepare weekly security reports that summarize monitoring findings incident activity vulnerability posture and remediation progress for IT leadership.
- Maintain thorough documentation for security configurations processes runbooks and incident records.
- Develop security metrics and KPIs to communicate the organizations risk posture over time.
Qualifications :
Required
- Demonstrate 3 years of experience in network security information security or a related cybersecurity role.
- Use EDR to triage detections investigate alerts and drive remediation.
- Operate vulnerability tools and manage remediation workflows at scale.
- Manage enterprise patch management and deploy software in mixed Windows and Linux environments.
- Apply network security fundamentals: configure firewalls establish VPNs implement IDS/IPS segment networks and enforce access controls.
- Implement at least one recognized security framework (NIST CSF CIS Controls ISO 27001 or similar).
- Apply cloud security concepts in AWS and/or Azure hybrid environments.
- Demonstrate strong written and verbal communication skills; document clearly and translate technical risk into plain language for non-technical stakeholders.
- Independently manage day-to-day responsibilities while proactively sharing knowledge coordinating and collaborating with a globally distributed team to achieve joint objectives.
- Demonstrate a bachelors degree in Cybersecurity Information Technology Computer Science or equivalent experience.
Preferred Certifications
- CompTIA CySA or higher
- GCIA or GCIH (GIAC Intrusion Analyst / Incident Handler)
- CEH (Certified Ethical Hacker)
- AWS Certified Security (Specialty)
- Microsoft SC-200
Nice to Have
- Design implement and oversee SIEM platforms ensuring efficient management of log aggregation and correlation workflows to enable effective detection and response capabilities.
- Apply CI/CD pipeline security or implement DevSecOps practices.
- Utilize a major EDR platform tune alerts hunt threats and investigate incidents.
- Oversee enterprise patch management or administer software deployment tooling in a Windows-heavy environment.
- Lead or actively support third-party security audits and penetration testing engagements clearly defining responsibilities and outcomes.
Additional Information :
CES offers a competitive salary commensurate with experience a performance-based annual bonus a year-end bonus in accordance with company policy premium health insurance for employees and eligible family members and statutory insurance and benefits in accordance with Vietnamese law. Associates also receive applicable allowances 12 days of annual leave paid sick leave public holidays additional company-designated leave and access to professional development and unlimited online training opportunities.
Beyond the benefits package heres what you can expect at CES:
- Meaningful responsibility and the opportunity to make a real impact in dynamic energy markets.
- The chance to learn from and collaborate with experienced professionals across our teams in Vietnam India and the United States.
- Ongoing opportunities to strengthen your technical analytical and leadership skills.
- Annual performance evaluations and clear opportunities for professional and career development.
- A supportive culture that values initiative accountability collaboration and continuous growth.
- Team-building activities employee engagement events and company celebrations.
Customized Energy Solutions provides equal employment opportunities to all applicants without regard to race color religion sex sexual orientation gender identity national origin disability or status as a protected veteran.
Remote Work :
No
Employment Type :
Full-time
About Company
Customized Energy Solutions (CES), a privately-held company, is a leading service provider of market intelligence and operational support services to companies participating in the retail and wholesale electric and natural gas markets. Utilizing deep know-how developed since the incep ... View more