Information Technology Security Manager
vor 2 Wochen
Responsibilities:
- Primarily responsible for the response to and recovery from emerging information security incidents, acting as the focal point leading response efforts and ensuring effective action to contain and remediate the situation
- Respond to cybersecurity incidents and perform triage to assess the severity of the incident and determine the appropriate response.
- Conduct open-source intelligence (OSINT) investigations to identify and track down malicious actors and their tactics, techniques, and procedures (TTPs).
- Participate in red team/blue team exercises to test and improve the organization's incident response capabilities.
- Collaborate with other members of the cybersecurity team to develop and implement security controls and incident response procedures.
- Provide technical guidance and support to junior incident responders as needed.
- Maintain up-to-date knowledge of the latest security threats and trends through continuous learning and professional development.
- Perform forensically sound collections of ESI from laptops, desktops, mobile devices, hard drives, servers and cloud data sources both onsite and remotely.
- Verify, extract and analyze systems, logs and malware data in support of investigations and litigation systems
- Drive efficient, repeatable, proactive, integrated, and mature cyber defense and response
- Supports the investigation of reported security breaches and, in coordination with global security operations, develop procedures to respond to security incidents and assist with investigations
•Contributes to the analysis and delivery of findings to internal customers with impactful, comparative, interpretative security analysis in a clear, consistent, and factual manner.
- Responsible for establishing communications bridges and meetings in support of response efforts
- Responsible for maintaining proper group focus during investigation activities and redirecting efforts in support of timely recovery
•Responsible for aggregating information relevant to the situation and synthesizing probable root cause
•Responsible for developing and recommending best course of action based on solid security principles
- Driving the incident response process from detection through containment and eradication.
- Accountable for documenting all partner activity, taken in response to emerging situations
- Accountable for the day-to-day review and assessment of security events that may become or contribute to security incidents.
•Ensures work is compliant with enterprise policies, procedures and the local business plan
•Responsible for ensuring appropriate post-mortem and lessons-learned sessions are conducted, following incident restoration of service
- Responsible for organizing and taking part in cross-functional incident exercise activities, ensuring that policy and procedure are followed
•Responsible for ensuring knowledge of IT security and emerging threat scenarios is current
•Responsible for reviewing threat intelligence sources is support of security situational awareness
•Responsible for assisting in the development of vulnerability and threat related communications for potential dissemination to warn employees of an emerging situation
•Responsible for ensuring information arising from incident response activities, that would result in configuration changes or other modifications to ensure security posture, is communicated to the proper operational contacts for execution.
Skills Required:
- 7+ years of total experience in Information Technology
- Bachelor's Degree in Computer Science/MIS or equivalent experience
- 3+ years of professional experience in an information security function, including analyzing and applying information security risk management, and privacy practices
- 2+ years in an information security incident handling role
- Strong understanding of network protocols and security technologies, including firewalls, intrusion detection systems, and encryption.
- Experience with open-source intelligence (OSINT) tools and techniques.
- Experience with cloud and physical forensic investigations, delivering executive reports
- Knowledge of red team/blue team exercises and experience participating in such exercises.
- Technical understanding of incident response frameworks and methodologies with a focus on automation.
- Experience with Intel, SIEM, and SOAR platforms, such as, ThreatConnect/MISP, Snowflake/ Splunk, and Swimlane/DeMisto
- Expertise with commercial and open-source digital forensic toolsets such as Encase, AccessData, SIFT, Axiom Flexible working hours to support a global operation
- Required Interpersonal Skills
- Experience engaging with executive level individuals during the conduct of incident response
- Excellent oral and written communication ability
- Ability to present complex technical issues and findings to diverse audiences in both technical and non-technical parlance, both orally and in writing
- Diplomacy in working with customers and stakeholders
- Ability to follow policy and procedure
- Ability to work in a team and at times perform under stress
- Demonstrate integrity in dealing with potentially sensitive data and restricted information
- Exceptionally self-motivated with a superior analytical, evaluative, and problem-solving abilities
- Ability to set and manage priorities judiciously
- Required Technical Skills
- Knowledge of basic security principles to include confidentiality, integrity, and availability; access control, authentication, and authorization; privacy and non-repudiation
- Understanding of security vulnerabilities and exposures, and from where they arise
- Familiarity with the Internet, its network protocols, and network applications and services
- Knowledge of network security issues and host/system security issues
- Understanding of malicious code of various types and various threat vectors
- Experience with Risk Analysis and Risk Management
- Basic understanding of programming and scripting, advanced knowledge a plus
- Required Incident Handling Skills
- Through good communication and documentation, presents a consistent front to customers and stakeholders
- Ability to synthesize data from technical skills listed above to understand and identify intruder techniques
- Ability to utilize interpersonal skills listed above to communicate with customers and stakeholders and bring quick resolution
- Demonstrated ability to analyze ongoing situations for the potential of a security incident
- Ability to maintain incident records in support of recovery, regulatory and legal requirements
- Familiar with ITIL service management methodology.
- Prior experience in a 24x7x365 operations environment.
- Strong technical skills in security assessments of external service providers, providing security guidance, and participating in mock security breach exercises
- Experience with GDPR and GDPR compliance implementations
- Experience and/or SME knowledge of the ISO 27001, NIST 800-53, NIST CSF and PCI DSS
- Preferred certifications: CISSP, ITIL, GCIH, CERT/CC CSIH, GCTI, GCFR, GCFA, GIME, GCFE
- Multiple language capability desired
- Occasional Domestic or International Travel, up to 25%
- Should be able to travel to office and support the work necessary to accomplish successful deliverables within the role. No heavy lifting of equipment is required for this role.
-
Information Security
Vor 5 Tagen
Berlin, Berlin, Deutschland Ionos En Vollzeit 80.000 € - 120.000 € pro JahrAt IONOS, the leading European provider of cloud infrastructure, cloud services and hosting services, you will work together with a wide range of teams. We are characterized by open structures, a friendly working culture and flat hierarchies with a strong team spirit. We firmly believe that work and fun are compatible, and offer you the right environment...
-
Information Security Manager
vor 2 Wochen
Berlin, Berlin, Deutschland D-Trust GmbH Vollzeit 80.000 € - 120.000 € pro JahrZum nächstmöglichen Zeitpunkt suchen wir Sie als Information Security Manager - Data Privacy für den Standort Berlin.Ihr AufgabenbereichSteuerung und Weiterentwicklung von Risikomanagement und Business Continuity mit Fokus auf InformationssicherheitÜberwachung der IT-Infrastruktur zur Erkennung und Bewertung von Security EventsEntwicklung und Umsetzung...
-
Information Technology Delivery Manager
Vor 6 Tagen
Berlin, Berlin, Deutschland Lloyds Bank Deutschland Vollzeit 80.000 € - 120.000 € pro JahrIT Delivery Manager (m/f/d)The IT Delivery Manager acts as the anchor between vision and execution, ensuring that technology solutions and IT services are delivered effectively, on time, and within budget. In this role, you'll bridge the gap between technical teams and stakeholders, overseeing initiatives from conception to completion and aligning them with...
-
Information Security
Vor 5 Tagen
Berlin, Berlin, Deutschland bei IONOS DE Vollzeit 60.000 € - 90.000 € pro JahrBei IONOS arbeitest Du bei dem führenden europäischen Anbieter von Cloud-Infrastruktur, Cloud-Services und Hosting-Dienstleistungen partnerschaftlich mit unterschiedlichen Teams zusammen. Wir bieten Dir eine Perspektive in einer der zukunftssichersten Branchen. Uns zeichnen offene Arbeitsstrukturen, Duz-Kultur und flache Hierarchien mit unvergleichlichem...
-
Information Security Officer
vor 2 Wochen
Berlin, Berlin, Deutschland LiveEO GmbH Vollzeit 80.000 € - 120.000 € pro JahrBuild the Market Leader in Satellite Analytics with us at LiveEOAt LiveEO, we combine Space Technology with AI to solve problems here on Earth. Our satellite-based monitoring solutions help Infrastructure operators and industrial companies to make their operations more ecological, safer, and more efficient.LiveEO is applying the latest developments in...
-
Digital Technology PMO Manager
vor 1 Woche
Berlin, Berlin, Deutschland E Digital Technology Vollzeit 90.000 € - 120.000 € pro JahrYou have a passion for technology and want to make the world a greener place?Join the forefront of energy transition with E.ON's Digital Technology organization, as part of our technology in-house consulting, Expert Services. As a professional services organization, we collaborate closely with our business units, providing pivotal services that accelerate...
-
Business Information Security Officer
vor 2 Wochen
Berlin, Berlin, Deutschland Stromnetz Berlin GmbH Vollzeit 55.000 € - 85.000 € pro JahrWillst Du gemeinsam mit uns das Kilometer lange Berliner Stromnetz fit halten, ausbauen und modernisieren? Willst Du Dich mit voller Kraft für unsere 3,7 Millionen Kund*innen und für eine nachhaltige Stadtgesellschaft engagieren?Dann unterstütze uns zum nächstmöglichen Zeitpunkt alsBusiness Information Security Officer (m/w/d)im Bereich Asset Management...
-
Head of Information Security
vor 1 Woche
Berlin, Berlin, Deutschland Ageras Vollzeit 120.000 € - 180.000 € pro JahrAt Ageras, we are redefining how entrepreneurs, freelancers, self-employed professionals, and SMEs - manage their banking and administrative tasks. Through seamless tools and innovative banking solutions, we help them focus on what matters most: growing their businesses.Our vision is to become the best friend of every small entrepreneur across Europe. Over...
-
Information Security Officer
Vor 5 Tagen
Berlin, Berlin, Deutschland Moonfare Vollzeit 90.000 € - 120.000 € pro JahrJoin the team rewriting the rules in private markets.Moonfare delivers what few others can: the highly sought-after funds and hidden-gem investments that go beyond what most private banks offer. Every opportunity is subjected to a ruthless vetting process; the bar is unforgivingly high. The result? Institutional-quality portfolios for investors who demand...
-
Director of Information Security
Vor 5 Tagen
Berlin, Berlin, Deutschland Moss Vollzeit 100.000 € - 120.000 € pro JahrAt Moss, we give finance professionals the power to automate their day-to-day and make forward-thinking decisions.Our team and culture make us unique — we're driven by impact and growth, where every one of us strives to learn and excel. Recognised bySifted's Rising 100andLinkedIn's Top Startups, we're here to help propel your career and together, make Moss...