崗位職責:
1. Security System Planning and Management:
· Develop and refine the university's cybersecurity management systems and processes to ensure effective implementation.
· Oversee the planning, execution, and optimization of cybersecurity projects to maintain the security and stability of the network environment.
2. Security Monitoring and Emergency Response:
· Monitor the cybersecurity status, promptly detect and handle security incidents, and conduct emergency response and forensic investigations.
· Develop emergency response plans for security incidents and organize regular drills to enhance the ability to respond to unexpected events.
3. Risk Assessment and Hardening:
· Conduct regular cybersecurity risk assessments to identify potential vulnerabilities and implement hardening measures.
· Perform security configuration and optimization of network devices, servers, and application systems.
4. Technical Support and Training:
· Provide cybersecurity technical support to faculty and students, addressing daily issues.
· Organize cybersecurity training programs to enhance the security awareness and skills of faculty and students.
5. Security Device Management:
· Be responsible for the installation, debugging, maintenance, and upgrade of cybersecurity devices (such as firewalls, intrusion detection systems, vulnerability scanning tools, etc.).
6. Compliance and Auditing:
· Ensure that the university's cybersecurity operations comply with relevant laws, regulations, and standards.
· Assist in completing cybersecurity-related audit tasks.
7. Other Duties:
· Complete other temporary tasks assigned by the leadership.
1、安全體系規劃與管理:
· 制定和完善大學的網絡安全管理制度和流程,推動網絡安全體系的落地執行。
· 負責網絡安全項目的規劃、實施和優化,確保網絡環境的安全性和穩定性。
2、安全監控與應急響應:
· 監控網絡安全狀態,及時發現并處理安全事件,進行應急響應和調查取證。
· 制定安全應急預案,定期組織演練,提升應對突發事件的能力。
3、風險評估與加固:
· 定期開展網絡安全風險評估,發現潛在漏洞并進行加固。
· 對網絡設備、服務器、應用系統等進行安全配置和優化。
4、技術支持與培訓:
· 為師生提供網絡安全技術支持,解決日常遇到的問題。
· 組織網絡安全培訓,提升師生的安全意識和技能。
5、安全設備管理:
· 負責網絡安全設備(如防火墻、入侵檢測系統、漏洞掃描工具等)的安裝、調試、維護和升級。
6、合規與審計:
· 確保大學的網絡安全工作符合相關法律法規和標準要求。
· 協助完成網絡安全相關的審計工作。
7、其他工作:
· 完成上級領導交辦的其他臨時性工作任務。
任職要求:
Educational background: Bachelor degree or above
Major: Computer Science, Network Engineering, Telecommunications, Information Security, or related fields
Language preference: Possess strong English listening, speaking, reading, and writing skills.
Others:
1. At least 8 years of relevant work experience in university network security, with experience in the implementation and management of network security projects.
2. Familiar with network security technologies, including firewalls, intrusion detection, vulnerability scanning, and Web application protection.
3. Proficient in the configuration and management of mainstream operating systems (such as Linux, Windows) and network security devices.
4. Knowledgeable in network security attack and defense techniques, and familiar with common attack methods (such as SQL injection, XSS, DDoS attacks) and their prevention methods.
5. Familiar with information security management systems (such as ISO27001) and cybersecurity regulations.
6. Strong problem analysis and resolution skills, with the ability to handle sudden security incidents.
7. Good communication skills, teamwork spirit, and a strong sense of responsibility.
8. Preference will be given to candidates holding relevant professional certifications (such as CISP, CISSP).
This position requires an English interview and a written test.
學歷要求:大學本科及以上
專業要求:計算機、網絡、通信、信息安全等相關專業
語言要求:具備良好的英語聽說讀寫能力。
其他:
1、至少8年以上高校網絡安全相關工作經驗,具備網絡安全項目實施、管理經驗;
2、熟悉網絡安全技術,包括防火墻、入侵檢測、漏洞掃描、Web應用防護等
3、熟悉主流操作系統(如Linux、Windows)和網絡安全設備的配置與管理
4、掌握網絡安全攻防技術,了解常見的攻擊手段(如SQL注入、XSS、DDoS攻擊)及防范方法
5、熟悉信息安全管理體系(如ISO27001)和網絡安全法規
6、具有較強的問題分析和解決能力,能夠應對突發安全事件
7、具備良好的溝通能力、團隊合作精神和責任心
8、持有相關專業認證(如CISP、CISSP)者優先
此崗位需要英文面試+筆試。