The Position
Lead Cybersecurity Operations team in APAC to collaboratively prevent, detect and especially respond to information security incidents as well as outages involving CSP technologies. Operational Management: Ensure the compliance, performance, stability, and cost efficiency of all IT processes and services provided for this L4 organization from the IT function.Accountable to manage security incidents, including Major Security Incidents and coordinate response with other teams. Activities include analysis and interpretation of security-related events, identifying trends and taking corrective action. Oversee the talent management of employees, ensuring the availability of appropriate resources and skills for continuous high-quality service delivery to business departments. Collaborate, influence, empower, build a vision and inspire to deliver maximum value for BIBe responsible for the operational excellence of all Cybersecurity and Processes Enablement services provided by this L4 unit both locally and functionally. This includes ticket handling, optimization of support services, and process automation. Assume responsibility for all program/project management activities performed in and related to the function, specifically to build and run efficient and effective standard services. Provide strategic leadership for this L4 function, driving strategic alignment with other IT INF departments and supporting global harmonization of IT services and IT processes.Seek and implement innovative solutions in the field of responsibility and beyond to create business value. The position will report to the L3 for CSP The ideal candidate will increase the efficiency and effectiveness of IT processes by providing direction in the secure implementation and use of state-of-the-art IT technologies and methodologies.
Duties & Responsibilities
- Contribute to improvement of efficiency and effectiveness of IT processes by applying adequate Strategies, IT methods and technologies.
- Responsible for leading and managing all program/project management activities at all BI OPU's in compliance with all PMO guidelines.
- Responsible for the provisioning and continuous improvement of the service portfolio, life cycle management and unit cost of all services in the CSP domain and the delivery of these services according to defined global SLAs.
- Responsible for proper communication with IS functions and to meet IT needs and goals. Act as global internal IT business partner.
- Responsible for compliance of IT processes and services in Cyber Security & Processes Enablement with laws, regulations and SOPs with consideration to global requirements and impacts.
- Manage and develop the IT employees in Unified Cyber Security & Processes Enablement team to provide excellence in performance, organizational flexibility, diversity, succession planning, coaching, change management and personal growth.
- Creates a culture of innovation to foster a competitive advantage with Cyber Security & Processes Enablement technologies.
Requirements
- Leader with large IT and Business experience.
- At least 2-5 years of leadership experience is preferred.
- Must be a strategic thinker and motivator, and understands what delivers true value operational excellence to the business.
- Leadership skills, strong customer focus, vendor management and negotiation skills.
- Must have an excellent understanding of building and operating IT systems and services.
- Must be highly creative, curious and a strong networker.
- Must have a track record in implementing technologies in a global environment (incl different cultures).
- Dealing with ambiguity.
- Dealing with sourcing/shoring.
- Solid understanding of Linux or Windows operating systems, common networking and authentication protocols, vulnerability analysis and deep packet inspection technologies.
- Experience in some of the following areas: Security Incident Response (live triage, memory analysis, disk analysis and network traffic analysis), Malware analysis (Understanding of malware Kill Chain, Exploit kit, download, install, call back, C&C…).
- Experience in the principals of network and endpoint security, current threat, and attack trends, and working knowledge of security principals such as defense in depth and causes of security events.
- Knowledge of common system exploits, network attacks, web protocols, phishing techniques and malware.
- Advanced knowledge of security incident handling concepts.
- Programming experience, preferred but not mandatory in scripting languages like (Python, PowerShell or Bash)
- Experience working in a virtual, international and multicultural environment.
- Analytical thinking, good communication, problem solving, results oriented, agility and teamwork skills.
- SIEM usage experience (Splunk, Qradar, DEVO...) is a plus but not mandatory
- Security certifications like GCIH, E|CIH, IHRP or OSCP, CEH are desired but not mandatory.
- Knowledge in OT (Operational Technologies) / ICS (Industrial Control Systems) is a plus, but not mandatory