Responsibilities
- Serve as the focal point for establishing, maintaining, and enhancing the Information Security Management System (ISMS).
- Assist in assessing risks within IT and industrial control systems, analyzing security threats and impacts, and initiating mitigation measures.
- Detect and address security weaknesses in coordination with central security units.
- Continuously analyze emerging cyber threats and take preventive actions to reduce incident risks.
- Help shape enterprise-wide security policies and advocate for strong security practices across technology and operational domains.
- Track advancements in cybersecurity to maintain the relevance and performance of existing security controls.
- Apply security measures across applications, networks, processes, or systems within the designated scope.
- Deliver training programs to increase awareness and understanding of information security principles.
- Participate in regular global security coordination meetings.
- Engage in the annual Security Champions Summit to align regional efforts with global strategy.
- Liaise with central security teams to interpret and implement corporate policies at the local level.
- Enforce security policies to protect the confidentiality, integrity, and availability of organizational data and systems as needed.
- Work alongside the global Cyber Security Incident Response team on monitoring, prevention, detection, analysis, and incident handling.
- Develop and deliver localized incident response procedures, including documentation and team training.
- Lead technical execution of outsourced security services, ensuring alignment with project goals, timelines, budget, and compliance requirements.
Work Arrangement
Remote (Worldwide) — available to all Statkraft locations globally
Team
Structure: global Cybersecurity team