
Security & Risk Expert
Role and responsibilities
•Implement the requirements that are relevant for security and compliance with regulations, policies and guidelines in the organization and outside
•Implement and maintain the security control processes and procedures for the assets•Ensure security compliancy of the Industrial Control and Building Management system, including instruments like PLC, SCADA, historian, system security and Facility Monitoring System
•Strategical contract management of security service providers•Set, implement and embed performance requirements for suppliers related to, or responsible for, the management and maintenance of OT assets
•SPOC towards the regions and support them by implementing the processes and procedures•SPOC RBA for CRE
•Develop the CRE Security & Risk roadmap in close collaboration with RBA•Translate the policies to practical processes for CRE
•Develop the cost strategy and investment budget to achieve compliancy to corporate policies
•Propose improvements and identify opportunities and present your recommendations and business case
•Implement the Technical Response Team (TRT) and Cyber Defense Centre for CRE and its related suppliers, in compliancy with the corporate policies and processes
•Delegated responsible for the ICS Asset Management services of CRE
•Participate in the Technical Response Team (TRT) and Cyber Defense Centre as second line specialist
•Conduct and derive analyses based on performance reporting in order to achieve the required level of compliancy and uptime (or maximum number of incompliances)
•(co-)Develop audit procedures and planning
•Bring in knowledge and align risks (with related mitigating actions) from insurance perspective and managing the accompanying evidence/documentation
Education and experience
•Bachelor / Master degree in a relevant engineering discipline (Chemical, Process Engineering)
•At least 3 – 5 years of relevant experience in an international high tech industrial environment
•At least 2 – 3 years’ experience in the field of ICS or OT security while managing ICS or OT assets
•Preference for documented training ISA/IEC 62443
•Proficient in English
Skills
Core Competencies:
•Ownership & entrepreneurship
•Drive results and decision-making processes
•Strategic thinking & innovation
•Communicative and advisory skills
•Judgement and informed decision making
Functional Competencies:
•In-Depth analytical skills
•Ensures accountability
•Manage Complexity
•Thinks and plans ahead