Director of Security Operations

1 month ago


Göteborg, Sweden WSP Sverige AB Full time

WSP is a global consulting firm assisting public and private clients to plan, develop, design, construct, operate and maintain thousands of critical infrastructure projects around the world.

Position Summary

WSP’s Security Engineering and Operations Team is responsible for managing the global organization’s security technologies and systems.

The role of Director Security Operations reports directly to the Global Vice President Security Engineering and Operations and is responsible for leading our Security Operations Centre and working with the Manager of Incident Response and Manager of SOC Tools and Operations. This is primarily an internally facing role, although some interaction with clients and third parties may be required.

Specific areas of responsibility may fall into any one of the following areas of Security Operations, as assigned by the staff’s management.

Security Analysis

Threat and Vulnerability Management

Network, Database, Server and Endpoint, and Application Security

Penetration Testing

Antivirus and Antimalware analysis

Event Analysis

Incident Response

Ethical Hacking

Management

Privileged access management

The Director of Security Operations will have multiple security-related roles within the organization. Their main goal will be to provide a secure computing environment for the organization to conduct their business. The global security operations team will have overlapping duties however each role will have more specifically focused duties. As such, the role and essential duties will fit into the below classifications most closely.

The director will be responsible for the overall direction and planning for both the incident response and tools team, liaising with our contracted partner for Level 1 and 2 Security Operations, 24/7 incident response, Security tool management, etc.

Incident Management Process and Forensics – assist in providing forensic capabilities for the incident management process when needed. Monitor and manage infrastructure logging for security, including perimeter network devices, malware prevention, and intrusion prevention.

Definition and implementation of controls - Defines security configuration and operations standards for security systems and applications, including policy assessment and compliance tools, network security appliances, and host-based security systems. Develops and validates baseline security configurations for operating systems, applications, and networking and telecommunications equipment.

Endpoint Protection Strategy – Formulate the companies’ Endpoint protection strategy, including but not exclusive to malware, host intrusion, encryption, browser protection and hardware level security controls.

Network infrastructure security – responsible for determining and maintaining the technical standards for configurations of routers, switches, firewalls, IPS and IDS devices.

Privileged access management – responsible for maintaining our PAM toolset, ensuring least based privilege across the organization, including secret management and elevated account management.

Leadership and People Responsibilities

Director of two separate managers within the security organization, 2nd level management of Incident response and tools teams.

Displays leadership and independence in performing their role, with an ability to make complex decisions with limited input and review from senior staff.

High level of personal integrity, and the ability to professionally handle confidential matters and exude the appropriate level of judgment and maturity.

Assist in the hiring, training, and coaching of new and existing staff, and provide coaching to staff executing all aspects of information security and risk assessment and support.

Develop positive working relationships with other team members and business partners and partner across teams to align with WSP internal and external client demands.

Capable of rapidly assimilating and internalizing new complex business, technology, and risk management concepts and dependencies.

Capable of clearly defining, presenting and selling recommended strategies to senior management teams in a business or technical context as appropriate.

Critical thinker with strong problem-solving skills, project management skills; financial/budget management, scheduling and resource management.

Able to interpret and apply laws, regulations, policies and guidance relevant to the organization information security objectives.

Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate between specialized groups of business unit and IT professionals.

Accommodation of schedule for international conference calls, limited travel within the regions you are responsible for.

Ability to work with people from different backgrounds and cultures across the region and the world.

Provide review feedback for analyst and other direct reports.

Capacity Management within the SOC teams, including growth expectations, M&A onboarding etc.

Finance/Budgetary Responsibilities

Support the Global Vice President Security Engineering and Operations in developing the budget projections based on short-and long-term goals and objectives.

Requirements:

Required

Related experience ininformation security, risk, compliance, or similar position

Bachelor's degree or equivalent in Information Technology, Computer Science, Engineering or related field

Certification in Information Security (CISSP, ISC, or CISM) practices and policies

Knowledge of security technologies (encryption, data protection, network intrusion prevention, EDR, firewalls, privilege access, etc.)

Knowledge of enterprise IT security concerns and technologies, including but not limited to VPNs, network security, encryption, authentication, application-level network protocols, PKI, IPSec, Firewall, SSH, SSL, , LAN/WAN, and TCP/IP

Knowledge of security best practices with relation to applications, network and client setups

Experience with IT Governance frameworks such as COBIT, ITIL and ISO 2700x, NIST

Experience with governance, compliance, and audit within IT environments

Experience of risk management, including risk analysis, mitigation, and monitoring

Knowledge of information security regulations applicable to WSP

Preferred

Master’s degree in information technology, Computer Science, Engineering or related field

Knowledge of KQL, Python and PowerShell is a plus.

Learn more & how to apply

Location - This position can be located at any of our WSP offices Globally.
Nordic locations can be our WSP offices in Sweden, Finland, Denmark or Norway.
Apply through this ad or contact Sr TA partner EMEAI/NordicsHenrik.Jansson@wsp.com if you are interested in learning more about the Nordic positions/locations.

We are looking forward to your application
Last application date 2023-04-21. #J-18808-Ljbffr

  • Hisings Backa, Göteborg, Sweden Consilium Safety Full time

    Join Our Team as a Operational Technology Cyber Security Engineer at Consilium Marine & Safety in Gothenburg! Are you passionate about shaping the future of fire and gas detection systems with cutting-edge cybersecurity measures? Consilium Marine & Safety is seeking a Cybersecurity Engineer to join our dynamic team in Gothenburg. If you're ready to...


  • Göteborg, Sweden Consilium Safety Group Full time

    Join Our Team as a Operational Technology Cyber Security Engineerat Consilium Marine & Safety in Gothenburg! Are you passionate about shaping the future of fire and gas detection systems with cutting-edge cybersecurity measures? Consilium Marine & Safety is seeking a Cybersecurity Engineer to join our dynamic team in Gothenburg. If you're ready to make...


  • Göteborg, Sweden Novacura Full time

    Job Description: As a Cloud Operations Architect, you will design and implement end-to end solutions on Cloud Platform (mainly Microsoft Azure). Your role involves meticulous consideration of crucial factors like scalability, availability, security, and disaster recovery. Proficient in leveraging Azure services such as Virtual Networks, Load Balancers,...


  • Göteborg, Sweden Novacura AB Full time

    Job Description: As a Cloud Operations Architect, you will design and implement end-to end solutions on Cloud Platform (mainly Microsoft Azure). Your role involves meticulous consideration of crucial factors like scalability, availability, security, and disaster recovery. Proficient in leveraging Azure services such as Virtual Networks, Load Balancers,...


  • Göteborg, Sweden Northab Full time

    For our client we are looking for an IT Security Architect. Our client is an European R&D center. They are a new electric mobility technology and solutions brand that is aiming to satisfy the global demand for premium electric vehicles. Their work comes to life in products and services from world leading brands. Description of the assignment As an IT...


  • Göteborg, Sweden Polestar Performance AB Full time

    As Head of Operational Controlling, you will lead a team of controllers that represent finance in several key areas for securing Polestar success in automotive. Let us describe the challenge we offer We have an exciting opportunity at Polestar for a leader who can work within a fast-paced and challenging start-up organization. You will play an essential...


  • Göteborg, Sweden Recooty Full time

    11 May 2019 Job Responsibilities Key responsibilities: The DC LAN Operation GOT manager is responsible for end-to-end operations and delivery for all DC LAN activities in the GSS Datacenters in Gothenburg, Sweden. Lead teams within the scope of responsibilities, plan for financial and human resources and interact actively with customers, Stakeholders and...


  • Göteborg, Sweden Zenseact Sweden Full time

      Would you grab an opportunity to provide state-of-the-art security solutions within a rapidly growing organization providing bleeding-edge technology solutions to the world? Want to help save millions of lives by making safe and intelligent mobility real for everyone, everywhere? Excited about working with challenges that push you to learn, contribute...


  • Göteborg, Sweden Volvo Group Full time

    Transport is at the core of modern society. Imagine using your expertise to shape sustainable transport solutions for the future? If you seek to make a difference on a global scale, working with next-gen technologies and the sharpest collaborative teams, then we could be a perfect match. Who are we?We, at Enterprise IT Security, are on a mission to secure...


  • Göteborg, Sweden Chalmers Tekniska Högskola AB Full time

    This position at the department of Electrical Engineering is an opportunity to be a part of creative and globally relevant research network addressing communication network security. By combining AI/ML and networking knowledge, you will be able to take initiative, design, and implement functionalities for enhancing the achievable levels of 5G network...


  • Göteborg, Sweden Volvo Group Full time

    Transport is at the core of modern society. Imagine using your expertise to shape sustainable transport solutions for the future? If you seek to make a difference on a global scale, working with next-gen technologies and the sharpest collaborative teams, then we could be a perfect match.We are looking for a Project Director leading the biggest development...


  • Göteborg, Sweden Volvo Group Full time

    Transport is at the core of modern society. Imagine using your expertise to shape sustainable transport solutions for the future? If you seek to make a difference on a global scale, working with next-gen technologies and the sharpest collaborative teams, then we could be a perfect match. Take the opportunity to join the exciting journey to create future,...


  • Göteborg, Sweden EUSTAFF SWEDEN AB Full time

    Vi söker nu personal till vår kund i Göteborg som specialiserar sig på grävning av kanaler och förstärkning av byggnadsanläggningar på platser där det finns mycket grundvatten. Arbetsuppgifterna är specifika och för det mesta en automatiserad process där allt kommer att läras ut på plats där du kommer att övervaka den korrekta driften av...


  • Göteborg, Sweden SAAB AB Full time

    Want to influence the bigger picture? At Saab, you can realise amazing innovations that keep people and societies safe. Together, we can truly make an impact - and your part matters. Your role You will be part of the Surface Sensor Solutions Quality Management team at Saab Surveillance. We are a mixed group where everybody's opinion is valued and the...


  • Göteborg, Sweden Hays Full time

    At AstraZeneca we turn ideas into life changing medicines and strive to continuously meet the unmet needs of patients worldwide. Working here means being entrepreneurial, thinking big and working together to make the impossible a reality. If you are swift to action, confident to lead, willing to collaborate, and curious about what science can do, then...

  • Solution Architect

    1 month ago


    Göteborg, Sweden Volvo Car Corporation Full time

    Can you engineer a brither tomorrow? It’s crystal clear: the actions we take in the next few years will significantly impact our future. At Volvo Cars, we embrace change. We’re committed to transforming the automotive industry and leading in electrification. For this, we’re seeking out more creative minds to shape that future. Don’t miss this...


  • Göteborg, Sweden SAAB AB Full time

    We are looking for a new colleague with a passion for Health and Safety! Your role As an OHS Development Manager in business area Surveillance you will work for a sustainable worklife in our organization, both strategically and support our operational business plan. You will develop and drive the health and safety agenda in our business in Sweden as...


  • Göteborg, Sweden EPICO Full time

    We are looking for a consultant for our client. Enterprise Cybersecurity Specialist Project Duration: 100% Q1 2024 – Q2 2024 Location: Hybrid & onsite Gothenburg Security Monitoring and Incident Response: Implement and manage security monitoring systems to detect and respond to potential security threats. Conduct regular assessments of our systems...


  • Göteborg, Sweden Epico Full time

    We are looking for a consultant for our client. Enterprise Cybersecurity Specialist Project Duration: 100% Q1 2024 – Q2 2024 Location: Hybrid & onsite Gothenburg Security Monitoring and Incident Response: Implement and manage security monitoring systems to detect and respond to potential security threats. Conduct regular assessments of our...

  • IT Business Partner

    1 month ago


    Göteborg, Sweden ECARX group Full time

    ECARX (Nasdaq: ECX) is a global mobility-tech company partnering with OEMs to reshape the automotive landscape as the industry transitions to an all-electric future. As OEMs develop new vehicle platforms from the ground up, ECARX is developing a full-stack solution – central computer, System-on-a-Chip (SoCs) and software to help continuously improve the...