IT Security Operations Specialist*in
- Employment type
- Full-time
- Location
- Lyss
- Company
- SPT Roth AG, Werkstrasse 28, 3250 Lyss
- First posted
IT Security Operations Specialist*in
The SPT - Group develops and produces high-precision tools made of ceramic, carbide, and steel at its locations in Lyss and Asia. The company is one of the leading providers in the injection molding of technical ceramics and holds a leading market position in its central product areas. The internationally active group of companies, headquartered in Lyss BE, employs around 1’000 people and supplies customers from various industries. The quality products manufactured by highly qualified specialists are primarily used in the electronics, medical, dental, automotive, and watch industries.
Your Role
As an IT Security Operations Specialist*in, you will take on a key role in the establishment, operation, and further development of the IT security organization in our internationally positioned company. You are hands-on and work globally and practically to help increase the level of security – especially in the engineering and production environment. You are responsible for the operation of the Information Security Management System (ISMS), the Security Awareness platform, and work closely with IT Operations colleagues at our worldwide locations. Are you looking for impact instead of routine? Then contribute your know-how where IT meets high-tech production – and security really counts.
Your Tasks:
Global coordination and further development of IT security measures in cooperation with the IT Operations teams in China, Singapore, the Philippines, and Switzerland
Operational support and further development of the ISMS, including maintenance of policies, processes, and security controls
Structured recording, assessment, prioritization, and tracking of security vulnerabilities, especially in the engineering and production environment, for example with OT interfaces, machine connections, user management, and network separation
Analysis and processing of security events as well as support in the investigation, containment, and remediation of security incidents
Operational support and further development of the implemented security solutions, especially in the areas of Endpoint Security, Identity Security, email security, logging, and monitoring
Monitoring and tracking of security-relevant operational processes such as MFA, patch management, hardening, and authorization management
Operation and continuous further development of the Security Awareness platform, including organization of training campaigns and phishing tests
Raising awareness and training employees from engineering, production, and administration in the safe handling of IT systems
Participation in risk analyses, vulnerability management, and internal and external audits
Establishment and maintenance of a security key performance indicator system as well as participation in IT risk reporting
Observation of relevant international standards, frameworks, and regulatory requirements, particularly ISO 27001, NIST, and CIS Controls
Close cooperation with internal IT functions such as infrastructure and business applications to consider security requirements in projects and operations
Cooperation with external security partners and service providers on security-relevant operational and incident topics
Your Profile
Completed training in the field of computer science, systems engineering, or platform development, or a degree with a comparable orientation
Several years of practical professional experience in IT infrastructure, IT operations, or IT security
Practical experience in several of the following areas: Endpoint Security, Identity and Access Management, Microsoft 365, network security, logging, monitoring, or vulnerability management
Good technical understanding of IT systems, networks, user permissions, and security processes
Experience in the operation, maintenance, or further development of an existing Information Security Management System is an advantage
Experience with security policies, controls, risk analyses, or audits is an advantage
Knowledge of standards and frameworks such as ISO 27001, NIST, or CIS Controls is an advantage
Interest in security requirements in the engineering, production, and OT-related environment
Willingness to familiarize yourself with new security technologies, processes, and regulatory requirements
Analytical thinking skills as well as a structured and solution-oriented way of working
Strong hands-on mentality and enjoyment of practical implementation
Independent way of working and consistent follow-up of agreed measures
Ability to work in a team and strong communication skills in an international and intercultural environment
Very good German skills as well as good English skills, both written and spoken
Willingness to undertake occasional international travel
What We Offer
A global and technically oriented IT security specialist function that works directly with the Head of IT Global
Clear operational responsibility for defined IT security topics
No disciplinary or personnel leadership responsibility
Participation in the establishment and further development of a global IT security function
High degree of creative freedom in a security-critical and future-oriented field of topics
Cooperation with international IT teams, engineering, production, and management
Modern security technologies and international projects
Flat hierarchies and short decision-making paths
Flexible working conditions and targeted further training opportunities
Assumption of 60 % of the pension fund contributions
Further benefits in the areas of catering, fitness, and mobility
Ready for the next step?
Then we look forward to your application via our online tool: CVdropper™ jpid487e284jm jit0729jm jiy26jm
Automatically translated from the original.
Posted yesterday