IoT-OT Security Analyst en Madrid. Perfil buscado (Hombre/Mujer) The IT Security Operating Model establishes the Global Chief Information Security Officer (CISO) as responsible for the definition and implementation of the information security strategy, policies, processes, technology, and governance for the whole Group organization.
Reporting to the global CISO, the IoT/OT Security Analyst will be needed to take responsibility for the IoT/OT infrastructure security management processes to be defined, implemented, and operated to protect the company, its assets, data, and information according to the security risk appetite of the organization.
Main responsibilitiesDesigning, implementing, and operating the security processes for the IoT and Operational Technology environment in coordination with the Group and local security community.Supporting the Global CISO in tasks regarding new products and services security management.Ensuring that the security controls for IoT and OT systems and infrastructure are identified, registered, assessed, and managed following the Group security strategy regulations.Implementing adequate information security controls within IoT and OT environments.Engaging and coordinating IT security controls management as part of the Security Development Lifecycle for products and services.Implementing the security risk management process for OT systems development and implementation in coordination with the BU ISOs teams.Defining and maintaining the IoT/OT systems security framework.Achieving and supporting formal security certification of products and systems for IoT/OT.Performing and managing regular IoT/OT penetration tests and vulnerability assessments. RequirementsUniversity degree in computer science or a qualification in a related subject (computer science, telecommunication, or business administration).At least 3 years of professional experience in information security for IoT/OT architecture or a similar role.Qualified additional training (e.g., CISM, CISA, CISSP, or similar).Competence in security project implementation, consulting, and security risks project or service management.Deep knowledge in one or more specific tech areas such as IoT security architectures and standards, tools, OT threat and risk analysis, and security frameworks and certification schemes.Passion for technology and a support-oriented personality focused on delivering the best possible security experience.Experience working in an international environment as well as cultural sensitivity in a multinational environment.Capable of self-organizing and prioritizing work effectively.
Flexible and adaptable - capable of changing direction when required to meet business demands.Proactive and self-motivated to work in a complex global organization.Excellent communication skills (English and Spanish) - verbal and written.
Minimum English level B2. Company: Multinational German Company.
Interesting professional opportunity
#J-18808-Ljbffr