- Location
- Hong Kong
- Type
- Full-time
- Department
- Education
- Closing date
- Today
- Source
- Vincere
Description
Overview
Our client is a well-known organization in educarion sector and they are seeking a Systems & Security Engineer to supports day-to-day cybersecurity operations and IT infrastructure. The position is responsible for administering security controls across firewalls, Microsoft 365, Azure and endpoint systems, monitoring security alerts and assisting with the protection of sensitive user data.
This is a hands-on role suitable for an experienced system or infrastructure professional who has developed practical cybersecurity experience and would like to move further into information security.
Key Responsibilities
- Administer and regularly review firewall rules, access policies and network-security configurations.
- Monitor Microsoft 365 email security, suspicious login activities, security alerts and potential data-loss incidents.
- Support Microsoft 365, Azure, Entra ID, Microsoft Defender, endpoint security and identity-access controls.
- Assist with the configuration and monitoring of Data Loss Prevention, email-protection and endpoint-protection policies.
- Perform hands-on system administration, including user accounts, permissions, security patches and system-health checks.
- Investigate security alerts and coordinate with external vendors or the SOC on incident response and remediation.
- Conduct regular vulnerability reviews and follow up on security patches and identified risks.
- Maintain practical security procedures, system records and incident documentation.
- Support security-awareness activities, including phishing simulations and user communications.
- Assist the Head of IT with security assessments, audits and continuous improvement initiatives.
Requirements
- Degree in Information Technology, Computer Science, Cybersecurity or a related discipline.
- Minimum 3–5 years of combined experience in system administration, infrastructure support or cybersecurity operations.
- Hands-on experience with Microsoft 365, Azure or Entra ID administration.
- Practical knowledge of firewall administration, endpoint protection, email security and access control.
- Basic understanding of DLP, vulnerability management, incident response and security monitoring.
- Able to investigate technical issues and work independently with vendors and internal users.
- Good communication skills and a practical, service-oriented mindset.
- Good command in both English and Chinese
Certification:
- One relevant certification such as Security+, AZ-500, SC-200, SC-300, Microsoft Security certification or an equivalent qualification is preferred.
- Candidates currently pursuing a relevant certification may also be considered.
Advantage:
- Experience with Fortinet, Sangfor, Juniper or similar firewall products.
- Familiarity with Microsoft Defender, Intune, SentinelOne, JAMF or other endpoint-management platforms.
- Exposure to Apple devices, including macOS and iPadOS.