DT

InfoSec Ops Analyst/Specialist - Remote

Hiring from
Vietnam
Work type
Remote
Posted
Sep 29, 2026
Is this job info correct?

Requirement focus slightly more GRC-related experience, manage compliance and hands on security tasks. Specifically things like vendor security reviews, access certifications, and software patching.


"Their likely duties would include:

- CrowdStrike Triage & Containment: Monitor off-hours alerts, filter false positives, and isolate compromised endpoints per playbook.

Phishing & Email Remediation: Review user-reported phish, purge malicious emails via Gmail/Okta, and block malicious domains.

- Off-Hours Incident Response: Serve as primary emergency contact during US nights to contain threats before US teams log on.

- Okta & Log Auditing: Conduct monthly log dumps across Okta, Google Workspace, and AWS to flag anomalous sign-ins or access drift.

- Vulnerability & Patch Tracking: Pull CrowdStrike Spotlight and Intune/NinjaOne reports to identify and track unpatched endpoints.

- Third-Party Risk Reviews: Assess new vendor SOC 2 reports and security questionnaires, flagging risks for US lead sign-off.

- Audit Evidence Collection: Gather recurring compliance evidence (access reviews, patch logs) for SOC 1/2, TX-RAMP, and ISO 27001.

- Security Queue SLA Management: Own and resolve daily incoming security and compliance tickets within target resolution times.

- CrowdStrike Rule Tuning: Fine-tune detection policies and exclusions to drastically reduce the high volume of false positives.

- Security Playbook Authoring: Convert tribal knowledge into step-by-step SOPs for email phish handling, laptop quarantine, and offboarding.

- Endpoint Gap Auditing: Cross-reference Okta, CrowdStrike, and MDM rosters to catch unmanaged devices missing security agents"

Similar jobs

Apply on LinkedIn