Functiebeschrijving
Senior IT Security Specialist (S) (Rotterdam Office, NL)
SBM Offshore
IT
Posted 6+ months ago
Imagine your career taking you to the depths of innovation and the heights of impact. Our people enable continuous progress. Their commitment, collective expertise, and unique capabilities are the engine room behind SBM Offshore's True. Blue. Transition. - shaping the future of energy, and beyond.
About Us:
SBM Offshore is the world's deepwater ocean-infrastructure expert. Our work is already resulting in cleaner, more efficient energy production. True. Blue. Transition. is our promise to enable that into the future while at the same time using our expertise to support new and existing markets in the blue economy. It starts with Advancing our Core: continuing to advance the decarbonization of traditional energy production. While Pioneering More: helping to enable the energy transition and using our unique capabilities in ocean infrastructure to support more industries to grow sustainably. Sharing our experience for a better blue tomorrow.
Purpose
• The Senior IT Security Specialist is overseeing and guiding security operations, ensuring compliance, and managing risk within the organization. The Senior IT Security Specialist is responsible for leading the organization's cybersecurity initiatives, ensuring the confidentiality, integrity, and availability of information systems. This role involves managing security policies, monitoring threats, and coordinating incident response while making sure all team members are collaborating with other departments to maintain a secure IT environment.
Responsibilities
• Risk Assessment and Mitigation: Coordinate and Conduct risk assessments and vulnerability analyses to identify and mitigate potential security threats in OT systems.
• Ensure quality and accurate information of security assets in the CMDB
• Enforce security policies, procedures, and best practices for IT environments.
• Be able and willing to travel
• Incident Response: Oversee incident response activities for IT systems, including detection, containment, and recovery in coordination with other stakeholders from a global perspective.
• Collaboration: Collaborate with IT and OT security and compliance teams to integrate security considerations into operational procedures.
• Security Monitoring: Support the implementation and use of IT cybersecurity monitoring solutions.
• Ensure compliance with industry standards for security of IT environments.
• Ensure the availability of IT Security (monitoring) tools by supervising timely certificate replacements and anticipating upcoming license or subscription renewals
• Continuous Improvement: Stay updated with the latest IT security threats, trends, and industry standards.
• Point of contact for Compliance Assessments for clients, regulators, and access management
• Ensure the availability and use of Vulnerability Management solutions from a global persepective.
• Alert on threats, disrupting adversaries and abnormal behaviour.
• Maintain knowledge of the latest IT Security trends, threats, and best practices
• Ensure that lifecycle of all security systems is maintained.
• Monitoring for threats using IT Cybersecurity and assessment tools.
• Coordindate with vendors to ensure proper security protocols are followed and assessments are conducted.
• Monitor and assist any and all personnel to ensure that a security risk mindset is in place.
• Support Cybersecurity drills with other Cybersecurity teams
• Review recurring security reports for continuous improvement
• Able to act as a Solution Owner for one or multiple IT Security solutions
Education
• Bachelor's Degree: A bachelor's degree in computer science, information technology, cybersecurity, or a related field is required.
• Certifications: Relevant certifications such as CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), or CEH (Certified Ethical Hacker) are preferred.
• Master's Degree: A master's degree in cybersecurity, information technology, or a related field is preferred but not mandatory.
• Language Proficiency: Proficiency in English is essential for effective communication with team members, stakeholders, and external vendors.
Experience
• 5-7 years of professional experience in IT security or cybersecurity roles.
• 2-3 years in a leadership or senior specialist position (team lead, project lead, or similar).
• Hands-on experience with Network and system security, Incident response and risk management and Security frameworks (ISO 27001, NIST, GDPR compliance)
• Proven track record of managing security projects and mentoring team members.
• Skills: Strong analytical and problem-solving skills, excellent communication abilities, and proficiency in networking concepts and technologies, including TCP/IP, routers, switches, and network-connected devices
• Certifications (Preferred), CISSP (Certified Information Systems Security Professional)
• Acts as a source for reflection or sparring partner for IT Operations management
• Proven ability to lead and coordinate team workload, demonstrating readiness to grow into a managerial position as opportunities arise