Ir à oferta completa

DIRECTOR OF SECURITY OPERATIONS

Descrição da oferta de emprego

About WSP WSP is a global leader in engineering and professional services.
We pride ourselves on delivering innovative solutions to our clients and maintaining a robust IT operation to support our employees worldwide.
WSPs vast global network is today comprised of over offices, 29 data centers, data circuits, and used by over users.
Position Summary WSP's Security Engineering and Operations Team is responsible for managing the global organization's security technologies and systems.
The role of Director Security Operations reports directly to the Global Vice President Security Engineering and Operations and is responsible for leading our Security Operations Centre and working with the Manager of Incident Response and Manager of SOC Tools and Operations.
This is primarily an internally facing role, although some interaction with clients and third parties may be required.
Specific areas of responsibility may fall into any one of the following areas of Security Operations, as assigned by the staff's management.
· Security Analysis · Threat and Vulnerability Management · Network, Database, Server and Endpoint, and Application Security · Penetration Testing · Antivirus and Antimalware analysis · Event Analysis · Incident Response · Ethical Hacking · Management · Privileged access management The Director of Security Operations will have multiple security-related roles within the organization.
Their main goal will be to provide a secure computing environment for the organization to conduct their business.
The global security operations team will have overlapping duties however each role will have more specifically focused duties.
As such, the role and essential duties will fit into the below classifications most closely.
The director will be responsible for the overall direction and planning for both the incident response and tools team, liaising with our contracted partner for Level 1 and 2 Security Operations, 24/7 incident response, Security tool management, etc.
Incident Management Process and Forensics - assist in providing forensic capabilities for the incident management process when needed.
Monitor and manage infrastructure logging for security, including perimeter network devices, malware prevention, and intrusion prevention.
Definition and implementation of controls - Defines security configuration and operations standards for security systems and applications, including policy assessment and compliance tools, network security appliances, and host-based security systems.
Develops and validates baseline security configurations for operating systems, applications, and networking and telecommunications equipment.
Endpoint Protection Strategy - Formulate the companies' Endpoint protection strategy, including but not exclusive to malware, host intrusion, encryption, browser protection and hardware level security controls.
Network infrastructure security - responsible for determining and maintaining the technical standards for configurations of routers, switches, firewalls, IPS and IDS devices.
Privileged access management - responsible for maintaining our PAM toolset, ensuring least based privilege across the organization, including secret management and elevated account management.
· Director of two separate managers within the security organization, 2nd level management of Incident response and tools teams.
· Displays leadership and independence in performing their role, with an ability to make complex decisions with limited input and review from senior staff.
· High level of personal integrity, and the ability to professionally handle confidential matters and exude the appropriate level of judgment and maturity.
· Assist in the hiring, training, and coaching of new and existing staff, and provide coaching to staff executing all aspects of information security and risk assessment and support.
· Develop positive working relationships with other team members and business partners and partner across teams to align with WSP internal and external client demands.
· Capable of rapidly assimilating and internalizing new complex business, technology, and risk management concepts and dependencies.
· Capable of clearly defining, presenting, and selling recommended strategies to senior management teams in a business or technical context as appropriate.
· Critical thinker with strong problem-solving skills, project management skills; financial/budget management, scheduling, and resource management.
· Able to interpret and apply laws, regulations, policies, and guidance relevant to the organization information security objectives.
· Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate between specialized groups of business unit and IT professionals.
· Accommodation of schedule for international conference calls, limited travel within the regions you are responsible for.
· Ability to work with people from different backgrounds and cultures across the region and the world.
· Provide review feedback for analyst and other direct reports.
· Capacity Management within the SOC teams, including growth expectations, M&A onboarding etc.
Finance/Budgetary Responsibilities · Support the Global Vice President Security Engineering and Operations in developing the budget projections based on short-and long-term goals and objectives.
Ir à oferta completa

Detalhes da oferta

Empresa
  • WSP
Localidade
  • Em todo o Brasil
Endereço
  • Indeterminado - Indeterminado
Data de publicação
  • 22/04/2024
Data de expiração
  • 21/07/2024
LEGAL ADVISOR
Oman Jobs

Risk management:•identify and assess legal risks associated with real estate transactions and operations... •assess the legal implications of property titles, easements, encumbrances, and other relevant factors... •conduct legal research to stay updated on relevant laws, regulations, and industry standards......

Cloud Engineer
JP&F Consultoria de RH e Gestão de Pessoas

Implementation of continuous compliance and security in the organization and the cloud... implementation of ci/cd in the application development process... serverless solutions development in the cloud, leveraging services such as s3, dynamodb, lambda, cloudformation, among others......

Leasing Executive - Outdoor
Oman Jobs

O develop and maintain a comprehensive database of potential tenants... o contribute to the development and implementation of effective marketingand leasing strategies... o understand and cater to the specific needs and requirements of eachclient... cold calling, networking, online platforms)......

Backend Software Engineer – Java
JP&F Consultoria de RH e Gestão de Pessoas

Solid understanding of api design, particularly principles of rest in highly scalable environments strong sql skills: sql server, mysql, and specifically with postgresql, including pros/cons of various approaches to access, and ability to recognize and address potential performance issues......

CUSTOMER CARE
Oman Jobs

Requirements:any graduateslocation: oman, muscatminimum 2 years of experience whatsapp cv - +96893556809 or email - *****@*****... excellent customer service communication*identify and contact current and potential customers*promoting services of the company through telle calling*maintaining good customer......

Functional Analyst
JP&F Consultoria de RH e Gestão de Pessoas

Net, pl/sql unix/linux and windows environments knowledge of oracle databases developer (jira, gitlab, jenkins, nexus, checkmarx, cucumber, etc... descrição: 7+ years’ experience as project techno-functional lead within a similar technical environment financial services industry experience financial......