Job type: Full-time, Permanent

Loading ...

Job content

About Our Opportunity
As Director of Physical Cyber Security & Threat Intelligence, you will be part of the Security team which help improve AVEVA security posture and help mitigate risk to the company as soon as possible by:
  • To create, own and drive the Aveva Global Physical Cyber Security programme; delivered in partnership with the CISO Organisation / Facilities, Marketing and cross business functions. Support the development and implementation of an effective and efficient global, and where required local, security / cyber crisis management, travel security, physical security audit and business security resilience programme; in order to ensure the safety and security of Aveva colleagues, digital assets and buildings globally.
  • Support the Aveva CISO with all day – to - day global Aveva security related activities including global people safety, ownership of global business security resilience planning / cyclical testing, security equipment queries, global incident / crisis management, travel safety and security (e.g. evacuation, repatriation, incident response, intelligence etc.).
  • Own and manage Brand Protection capabilities and services with the third-party supplier and act as the interface to coordinate remediation or security incident progression to the appropriate teams – security, IT, Marketing, Facilities, Finance etc. Run regular assessments and ensure immediate and threat horizon risks are identified prioritized and actioned.
  • Engage and build strong relationships with key third parties such as Law Enforcement Agencies, New Scotland Yard, NaCTSO, GCHQ, Information Commissioner’s Office (ICO), NCSC, CSSC, Travel Security / Safety vendors etc.
  • Work with CISO to build security intelligence capabilities and feeds to be ingested into Security response, threat hunting and security incident processes.
  • React to and provide expert leadership with global incidents (People, Buildings or Asset related) requiring an immediate response; such as protests, political unrest, terrorism, pandemic, riots etc working in collaboration with facilities and local sites contacts.
  • Conduct and coordinate regular purple or red teaming, physical penetration exercises and work jointly with the CISO team and Facilities to understand remediation recommendations as needed.
  • Maintain physical security audit records, request global stakeholder audit completion, maintain appropriate Risk Registers etc.
  • Ensure regular bug scanning is conducted across AVEVA sensitive locations such as meeting rooms, ELT offices or key remote locations as needed to ensure privacy and confidentiality is maintained.
  • Provide guidance to ELT or key personnel on personal protection, travel management and physical, online and cyber safety.
  • Ensure each function within Aveva, within their remit, is compliant with the overall Aveva Security Compliance Programme.
  • Plan and execute regular Security crisis management and security resilience test and ensure documentation is created and maintained (e.g. planning tests, conducting simulation exercise etc.)
  • Key support interface to Aveva from a security resilience perspective working with the security incident manager ; also assist and maintain relationships with key stakeholders within Aveva.
  • Work with the information Security and Communications teams to develop and maintain security resilience plans and feed into business continuity planning that align with Aveva Best Practice standards, support business growth and minimise risk.
  • Assess and review the recovery strategies of Aveva for compliance and appropriate risk treatment.
  • Develop and maintain specific one - off incident plans to meet Aveva Group / Pandemic requirements etc. from a security perspective
  • Develop and maintain plan documentation, BIA documentation from a security resilience perspective etc.
  • Support the Aveva Disaster Recovery programme; ensuring alignment to crisis management and business continuity methodology where required.
  • Define and implement physical security Policies, Standards and Processes which support the overall physical security programme.
  • Support Security Awareness programme by building and creating appropriate global physical security training awareness material working colligatively with Facilities Management to ensure every employee is regular informed of their responsibility in protecting Aveva.
  • Work in partnership with internal clients such as Client Leads, HR and Country Heads to effectively manage business security risks.
  • Manage third party audits and risk assessments to ensure appropriate action is taken.
  • Provide physical security input and advice into Client contract reviews and respond to queries, complete questionnaires and facilitate client audits.
  • Investigate and manage physical security incidents ensuring they are dealt with accordingly.
  • Work closely with the legal and compliance teams on Risk Register updates.
  • Manage risk effectively, provide visible and consistent leadership on Values and Code of Business Conduct and act where you see issues. Protect the Aveva team by ensuring they have the skills and training needed including completing mandatory security training
Loading ...
Loading ...

Deadline: 26-07-2024

Click to apply for free candidate

Apply

Loading ...
Loading ...

SIMILAR JOBS