Senior Security Operations Officer
hace 7 días
Tasks
As Senior Security Operations officer in Paymentology, you will be joining a globally distributed company and will work with colleagues dotted across the globe.
Your colleagues are passionate about our products and customer-experience and you will work closely with them and our clients globally as an ambassador and driver of our information security operations initiatives.
Primary responsibilities
- Build and manage a SOC with a combination of in-house expertise and MSSP support where relevant or applicable
- Work with the Infrastructure teams to ensure SIEM is consistently deployed and optimised across all environments. Help ready the organisation for adoption of SOAR and other security platforms including XDR as we mature our security operations.
- Responsible for security event/incident monitoring, endpoint monitoring and alerting, daily log reviews and regular user access reviews.
- Drive vulnerability management initiatives within the organisation and ensure proper analysis is performed for any detected vulnerability and aligned to risk management to ensure risk reduction.
- Operate a secure infrastructure by ensuring that all server and desktop systems are up-to-date with the latest security patches and fixes in conjunction with relevant internal teams.
- Ensure the configuration management database and asset management system are appropriately maintained and tracked.
- Lead the security operations team to manage security incidents (detection, analysis, response, recovery and post-incident reporting) in close co-operation with the support, client services and service delivery teams.
- Ensure security operations SOPs are defined, implemented and measured in liaison with key stakeholders, vendor recommendations and regulatory requirements.
- Additional responsibilities
- Operate and implement Information Security policies, strategies, procedures, standards and projects.
- Work closely with the information security team on all governance, risk and compliance initiatives including PCI-DSS and ISO27001.
- Help drives activities to promote information security awareness within the organisation both annually and throughout the year.
- Monitor and advise on security threats and related regulatory issues, national/international and vendor advisories.
- Test and implement new security solutions as required to maintain a robust security posture.
- Have oversight of Backup and Restore activities and ensure they are conducted, operated securely and tested by the relevant internal teams.
- Conduct situational awareness based on intelligence and threat information and formulate and report an operational view of the external environment.
- Have awareness of methods and motivations adopted by hackers to attack IT platforms and automated information systems.
- Consult with the crisis management/BCP teams, help develop and deliver preparedness exercises at the management team, at least annually.
- Provide guidance on protecting the information resources of the company from unauthorised destruction, modification, use, and disclosure.
- Provide security architecture inputs across the enterprise, particularly around security initiatives and tools.
- Help drive security operations initiatives and projects from inception to completion, work with the security team to build a long-term security roadmap.
Please note the security operations team (including yourself) may be occasionally expected to perform the role out of hours to the extent required to protect the organisation.
**Requirements**:
**What it takes to succeed**:
- Extensive information security experience across broad security domains including security operations, security device monitoring and alerting
- In-depth experience in security incident management processes and tools.
- Knowledge and experience of working with industry standards such as ISO27001, PCI-DSS and GDPR.
- Proven ability to identify and assess complex risks and understand the mechanisms (people, process, technology) available to manage those risks
- Help obtain and maintain existing and future accreditations in accordance with applicable regulations, client-requirements and industry best-practices
- Experience working with technical people responsible for implementing security technology and compliance initiatives
- Strong stakeholder engagement skills both vertically and horizontally
- Detail-oriented, delivery-focused, and able to manage multiple work streams simultaneously
- Good written and verbal communications skills
- Fluent in business English both oral and written.
- Bonus points:
- Possess at least 5 years of working experience related to information security domains.
- Bachelor's degree ideally in an Information Technology related field (or similar experience)
- CISA, CISM, CISSP, ISO27001/ISMS LI, GDPR Foundation, OSCP, eCPPTv2, CEH or other relevant security certifications
- Other Internationally recognised certifications, such as Prince2, ITIL, COBIT, PMP.
**WHAT YOU C
-
Legal Operations Assistant
hace 5 días
En remoto, España Tether Operations Limited A tiempo completoCreated in October 2014, Tether USDt was the first stablecoin in existence and remained the sole stablecoin in the market until March 2018. Tether is disrupting the legacy financial system by offering a more modern approach to money. By adding fiat currency-digital cash to the blockchain, Tether makes a significant contribution to a more connected ecosystem...
-
Security Analyst
hace 1 semana
En remoto, España Semrush A tiempo completoHi there! We are Semrush, a global IT company developing our own product—a platform for digital marketers. New stars are born here, so don’t miss your chance. This is our **Security Analyst **role for those who strive to implement functional processes and drive them to full completion. **Tasks in the role**: - Responding to security incidents,...
-
Security Analyst
hace 1 semana
En remoto, España Semrush A tiempo completoJob Description Hi there! We are Semrush, a global IT company developing our own product—a platform for digital marketers. New stars are born here, so don’t miss your chance. This is our Security Analyst role for those who strive to implement functional processes and drive them to full completion. Tasks in the role - Responding to security incidents,...
-
Senior Security Analyst
hace 5 días
En remoto, España Citrix A tiempo completoCitrix builds the secure digital workspace technology that frees 400,000 customers to do their very best work from anywhere. By joining our award-winning workplace, you’ll be included in the globally diverse, collaborative team that values work-life balance. Come see why Fortune named us one of the 100 Best Companies to Work For®. Let’s innovate and...
-
Senior Security Engineer
hace 2 semanas
En remoto, España Grafana Labs A tiempo completo**Senior Security Engineer - Platform Security**: **About our Platform (at Grafana Labs)**: Grafana Cloud moves millions of metrics, log lines, and traces per second from our customers' environments into a highly available, low-latency stack that processes and stores these data, and serves them to dashboards and alerting tools. We aim to grow this to...
-
Staff Security Assurance Engineer
hace 2 días
En remoto, España Databricks A tiempo completoRDQ125R33 The Databricks Security Assurance Team enables Databricks to achieve third party certifications and to manage vendor security risk, in order to help secure Databricks and provide confidence to customers. As a Staff Security Assurance Engineer with a focus on vendor security risk, you will be responsible for performing vendor security reviews, as...
-
Manager, Product Security Engineering
hace 1 semana
En remoto, España redhat A tiempo completo**About the job**: - The Red Hat Product Security team is looking for a Manager to join us in Spain. In this role, you will lead a team of security professionals working on penetration testing, dynamic security testing and offensive security research. You will promote the professional development of your team members to keep their technical and...
-
Security Engineer
hace 7 días
En remoto, España EIS Group A tiempo completoDepartment508 Production OperationsEmployment TypeFull TimeLocationRemote, SpainWorkplace typeFully remoteCompensation€2,700 - €3,000 / monthWe are looking for a Junior Security Engineer with a strong interest in application security and penetration testing to grow with our team. In this role, you will support the safeguarding of our SaaS platform and...
-
Expert Network Security Engineer
hace 3 días
En remoto, España Ciklum A tiempo completo**Description**: **Ciklum** is looking for an** Expert Network Security Engineer **to join our team full-time in Spain. We are a leading global product engineering and digital services company that unites 4000+ seasoned professionals globally on various projects in healthcare, fintech, travel, sportswear, entertainment, and security. Ciklum delivers...
-
Expert Cyber Security Engineer
hace 3 días
En remoto, España Ciklum A tiempo completo**Description**: **Ciklum** is looking for an **Expert Cyber Security Engineer** to join our team full-time in Spain. We are a leading global product engineering and digital services company that unites 4000+ seasoned professionals globally on various projects in healthcare, fintech, travel, sportswear, entertainment, and security. Ciklum delivers...