Job description
Role Overview
Head, Cybersecurity at SAFE Security. The role is responsible for leading the development of SAFE's cyber security program, advising and directing Corporate IT and Technology Solutions on implementing and operating cyber security measures and safeguards.
Role Purpose
Lead the development and execution of SAFE's comprehensive cyber security program, including policies, procedures, protocols, regulations and standards. Provide strategic direction to Corporate IT and Technology Solutions teams and partner with business stakeholders to embed cyber security risk management across the organization.
Key Responsibilities
Program Development & Strategy
- Lead the development of SAFE's cyber security program, including policies, procedures, protocols, regulations and standards.
- Leverage understanding of cybersecurity regulatory requirements, industry standards, and the national cybersecurity strategy to develop and enhance the SAFE cybersecurity strategy, governance model, and controls.
Operations & Implementation
- Provide guidance and direction to Corporate IT and Technology Solutions regarding setting up and operating cyber security safeguards and measures.
- Ensure robust threat monitoring and incident management policies and procedures are in place.
Governance & Compliance
- Understand and interact with related disciplines through committees to ensure the consistent application of policies and standards across all technology projects, systems, and services.
- Conduct security compliance audits to verify that information processes meet the security criteria, requirements, policy, standards, and procedures.
Stakeholder Engagement
- Partner with business stakeholders across the company to raise awareness of cybersecurity risk management concerns.
- Engage with stakeholders to raise organizational data privacy and protection capability and awareness.
Human Capital Development
- Foster a culture of cooperation, learning, development, and leadership.
- Attract, recruit, and retain a high-performance management team; provide mentoring as a cornerstone to the management career development program.
- Deliver ongoing feedback and address performance issues.
- Focus on developing, coaching, and mentoring talent to enhance skills, knowledge, and abilities to improve individual and organizational performance.
Qualifications & Experience
- Minimum bachelor's degree in computer sciences, cybersecurity or another related field.
- Minimum 10 years of experience in various roles.
Skills & Competencies
Leadership Competency
- Translate SAFE vision and goals into clear, specific, and achievable objectives; take control of projects, leading on key tasks and monitoring others to ensure they fulfill their roles effectively.
- Demonstrate belief in and personal commitment to SAFE vision and mission; fulfill commitments while maintaining high levels of productivity and output for self and team.
- Build an understanding of key stakeholders, including shareholders, their needs, drivers, and constraints; develop common understanding across widely competing needs.
- Interact well with others, quickly establishing rapport and maintaining useful relationships with internal and external stakeholders for the organization's benefit.
- Create a team identity and shared purpose among team members; articulate the vision for the future to motivate others to action.
- Find effective ways to empower individuals and help them succeed.
Core Competency
- Demonstrate self-drive and take action proactively.
- Pursue goals with persistence and stamina; work on tasks thoroughly, ensuring accuracy and meeting standards.
- Maintain high levels of quality and effectiveness of work outputs and achieve outstanding results.
- Collaborate constructively with people at all levels across the organization.
- Help colleagues, remain always available to the team, and deliver on team commitments.
- Trust the guidance and direction of colleagues and senior members of the team.
- Examine, evaluate, and analyze different types of information objectively.
- Spot trends and patterns; establish key facts clearly and interpret numerical data effectively.
- Provide insights and identify ways to improve things; trust intuition about which methods will work best.
- Listen attentively and seek to understand before being understood.
- Explain things clearly; articulate and present information effectively and confidently.
- Challenge ideas effectively and present persuasive arguments by presenting a strong case.
Functional Competency
- Demonstrate knowledge of structure, approach, and strategy of exploitation tools (e.g., sniffers, keyloggers) and techniques (e.g., gaining backdoor access, collecting/exfiltrating data, conducting vulnerability analysis of other systems in the network).
- Possess skill in deeply analyzing captured malicious code (e.g., malware forensics).
- Identify systemic security issues based on vulnerability and configuration data analysis.
- Demonstrate knowledge of data privacy and protection infrastructure, standards, and procedures.
- Demonstrate knowledge of incident categories, incident responses, and timelines for responses.
- Demonstrate knowledge of information technology (IT) supply chain security and supply chain risk management policies, requirements, and procedures to identify relevant threats and vulnerabilities, assess the potential threat's impact, and develop mitigation plans.
- Demonstrate knowledge of analytic tools and techniques for network traffic, system artifacts, and infrastructure logs.