Blue Team Engineer

Thu nhập hấp dẫn Toàn Thời gian Hạn nộp: 30/11/2025

Introduction

Con Cung is the biggest omni-channel company for mom & baby with 600 retail stores in Vietnam in 2021 and plan to have 1,000 stores by 2023 with 1 billion USD revenue. Con Cung's annual growth rate is more than 70%. With the vision of providing good quality products for children, Con Cung is strongly investing into Product Research and Development in order to manufacture and provide products that are suitable to the local market in terms of pricing and quality. We also invest into technology in order to manage the network and online channel efficiently.

Con Cung Corporation also develops in-house cutting-edge automation and intelligence technologies. We are seeking for young, smart & dynamic talents to grow your career together with us.

Job Description

The company is seeking its first Blue Team Engineer to design, build, and operate its Security Operations capability. This role will be responsible for implementing monitoring, detection, and response processes while laying the foundation for a future SOC team. The engineer will be both hands-on and strategic, combining deep technical expertise with the ability to shape security operations and guide future hires.


Key Responsibilities
1. SOC Development & Operations

  • Support the design, implementation, and day-to-day operation of the company’s SOC capabilities (SIEM, EDR, log management, network security (IDS/IPS), monitoring pipelines, SOAR).
  • Develop and maintain detection rules, alert logic, and security monitoring use cases.
  • Integration of AI solutions into the SOC system. 

2. Threat Detection, Response & DFIR

  • Monitor and investigate security events, conduct root cause analysis, and participate in containment and remediation activities.
  • Contribute to the development of DFIR processes, playbooks, escalation paths, and evidence-handling procedures.
  • Engage in proactive threat hunting aligned with MITRE ATT&CK and threat intelligence feeds.

3. Security Operations Support

  • Contribute to vulnerability management, patch management, and secure configuration management initiatives.
  • Support privileged access management (PAM) implementation and monitoring.
  • Participate in business continuity and disaster recovery planning, including testing and improvement of response processes.
  • Provide input into threat intelligence collection, analysis, and operational integration.

4. Continuous Improvement & Collaboration

  • Assist in tabletop exercises, simulations, and training activities to validate incident response readiness.
  • Collaborate with IT, AppSec, and Red Team functions to improve defenses and close security gaps.
  • Document findings, lessons learned, and recommendations for enhancing overall security posture.
  • Partially contribute to security policies, standards, and compliance initiatives (ISO 27001, SOC2, etc.) and collaborate with the GRC team.
  • Integrating AI solutions into the proactive defense system.

Job Requirements

We are looking for a highly motivated person with:

  • 2-3+ years of experience in security operations, blue team engineering, or incident response.
  • Strong experience with SIEM platforms (e.g., ELK Stack, Wazuh, Splunk, Graylog), EDR tools, IDS/IPS, and network security.
  • Hands-on expertise in log analysis, network traffic analysis, memory and application forensics, and endpoint forensics.
  • Foundation skills in malware analysis.
  • Experience with scripting/automation (Python, PowerShell, Bash, etc.).
  • A proactive attitude & the ability to think outside of the box
  • Works in an organised, structured manner
  • Can do attitude, gets things done
  • Excellent communication skills with diverse audiences
  • Strong critical thinking and analytical skills

Nice-to-have:

  • Solid understanding of security frameworks and methodologies (MITRE ATT&CK, NIST CSF).
  • English communication.
  • Experience leading or mentoring SOC analysts or security engineers.
  • Relevant certifications: CompTIA Security+, GCIA, GCIH, GCFA, CHFI, CCD, BTL1 or equivalent.

Benefit

  • Annual bonus: 2 - 3 months under minimum KPI requirement
  • Fast promotion opportunities based on personal ability
  • Work in a dynamic, open, creative environment
  • Regular training, company team building, birthday bonus

About Concung.com

  • Working time: 8:30 - 17:30 Monday - Friday
  • Working place: 5th Floor, Con Cưng Super Center, 09 Nguyen Trai Street, Ben Thanh Ward, Dist. 1, HCMC
Ứng Tuyển Ngay
Chia sẻ:
Liên Quan
GRC Engineer
Thu nhập hấp dẫn Hạn nộp: 30/04/2026
The company is seeking a GRC Engineer to build and formalize its Governance, Risk, and Compliance. This role will be responsible for designing security policies, managing risk assessments, driving com
Chi tiết
AppSec (DevOps/DevSecOps) Engineer
Thu nhập hấp dẫn Hạn nộp: 30/04/2026
We are seeking an AppSec/DevSecOps Engineer to help establish and mature our application security and secure development practices. This role will initially focus on standardizing our DevOps pipelines
Chi tiết
DevOps Engineer
Thu nhập hấp dẫn Hạn nộp: 30/04/2026
We are seeking a DevOps Engineer to build and scale our infrastructure and developer platform. This role will take end-to-end ownership of cloud infrastructure, CI/CD systems, platform reliability, an
Chi tiết
Careers Con Cưng
Văn phòng: Tầng 14 Tòa nhà Phú Mỹ Hưng Tower, 08 Hoàng Văn Thái, phường Tân Mỹ, Thành phố Hồ Chí Minh
Điện thoại: (028) 7300 6609
Email: careers@concung.com
Tìm Hiểu Thêm
Văn Hoá - Tầm Nhìn - Sứ Mệnh
Việc làm khối Siêu Thị Chính sách bảo mật
Theo Dõi Chúng Tôi
Giải Thưởng Và Thành Tựu
Careers Con Cưng 2021 Careers Con Cưng 2022 Careers Con Cưng 2023
FB Careers Con Cưng