Jobs and Careers
NO

Senior Manager, Cyber Defence Centre

Norsk Hydro
Székesfehérvár, Hungaryfull_timeVerifiedPosted 3 Apr 2024

About the role

<p>Hydro Global Business Services (GBS) is an organizational area that operates as an internal service provider for the Hydro group. Its ultimate purpose is to deliver relevant IT, financial and HR business services to all business areas within the company.<br/>  </p> <p> </p> <p>Role Purpose</p> <p> </p> <p>The Senior Manager of Cyber Defence Center is the strategic leader of the SOC services both for Enterprise IT and for ICS, as well as the Security Engineering function within GBS. He/She is the direct manager of the SOC Manager, and the Security Engineering Manager.</p> <p> </p> <p>Responsibilities</p> <p>            </p> <ul> <li>Strategic leadership of the SOC and Security Engineering functions within GBS IT <ul> <li>Develop, set and maintain strategy for the Cyber Defence Center (SOC and Security Engineering) organization, services and technology</li> <li>Work closely, own continuous improvement strategic activities in Cyber Security Services related to the Cyber Defence Center, including automation (SOAR), vulnerability management improvement, threat management improvement, log managemen improvement, etc.</li> <li>Continuously optimize the platform, tool portfolio for security operations management, lead the program on centralizing processes to Splunk, and other strategic tools</li> <li>Lead program on optimizing team setup, oncall coverage, internal-external resource balance in CDC</li> <li>Relationship management with all stakeholders of the CDC services (e.g. GRIT management, other cyber security team management, GBS IT management)</li> </ul> </li> <li>Operation, reporting <ul> <li>Overall responsibility of the operation of EIT and ICS SOC, Security Engineering teams, and their KPI-s </li> <li>Responsible for the senior management reporting on the relevant cyber security area (in collaboration with the reporting team)</li> </ul> </li> </ul> <ul> <li>Vendor management <ul> <li>Manages relationship with the vendors serving CDC in GBS</li> <li>Sets KPI, SLA, requirements towards vendors and continuously optimizes the setup for his/her functions</li> </ul> </li> <li>Escalation point <ul> <li>Higher level escalation point on all EIT and ICS SOC and Security Engineering related processes, performance, operation</li> </ul> </li> </ul> <ul> <li>Project Management <ul> <li>Overall ownership responsibility on all CDC related projects</li> </ul> </li> <li>Business Relationship Management <ul> <li>Continuous business relationship management with BA and GRIT owners, customers of CDC services</li> <li>Commercial, marketing mindset driven communication to the customers and/or potential customers of the CSC services</li> </ul> </li> </ul> <ul> <li>Organization, Team, People <ul> <li>Overall ownership responsibility on the right staffing of the EIT and ICS SOC and Security Engineerting teams in capacity and skillset</li> <li>Direct manager of the SOC Manager and Security Engineering Manager</li> </ul> </li> </ul> <p> </p> <p>Qualifications</p> <p> </p> <p>In depth knowledge on:</p> <ul> <li>Methods and motivations adopted by hackers to attack IT platforms and automated information systems</li> <li>IT security incident management processes and tools</li> <li>IT operations and support organizations</li> <li>IT security risk assessment</li> <li>IT security forensic techniques, tools and procedures</li> <li>Vulerability management end-to-end</li> <li>Threat management end-to-end</li> <li>Log management end-to-end</li> <li>Mitre killchain for EIT and ICS</li> <li>ICS-OT Security Management</li> <li>Cloud and application security </li> </ul> <p> </p> <p>The following experience is considered essential experience:</p> <ul> <li>In-depth experience in security management processes and tools</li> <li>10+ years of technology experience, including troubleshooting and performing root cause analysis of complex IT solutions</li> <li>5+ years of demonstrated leadership experience building consensus across IT domains</li> <li>5+ years of demonstrated experience managing a high-performing, cohesive security teams</li> <li>Significant experience in working in the manufacturing industry</li> <li>Experience in working with the Forum of Incident Response and Security Teams (FIRST) or an equivalent organization</li> <li>Experience in working with law enforcement or other relevant government agencies</li> <li>5+ years of hands-on IT or information security assessment in a commercial environment subject to the caveat below</li> <li>5+ years of demonstrated experience in liaising with middle and senior management of a large commercial enterprise</li> </ul> <p> </p> <ul> <li>Bachelor's or master's degree in IT, engineering, business, management or a related field, or equivalent work experience</li> <li>Tertiary qualifications in information or IT security, or industry qualifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM) or the equivalent</li> </ul> <p> </p> <ul> <

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Norsk Hydro

View company profile →