Cyber Security Tech Operations Lead

August 22, 2023 | Comments Off on Cyber Security Tech Operations Lead

Laing O'Rourke has set ambitious targets to transform its business. Our deliver 2025 mission is to become the recognised leader for innovation and excellence in the construction industry, to achieve this will require exceptional information, technology and data capabilities to enable all parts of the Laing O'Rourke business.

Position Purpose:

The Cyber Security Tech Operations Lead will be accountable for optimising the operational performance and reliability of Cyber Security Infrastructure technologies and platforms within Laing O'Rourke. Work alongside a team of infrastructure and network support analysts to deliver cyber security operations with a service mindset. Accountable for the cyber security environment being up to date, providing maximum uptime and reliability for the customer whilst minimising unplanned changes and outages. This role is also responsible of the management and maintenance of the technical components and systems that form the foundation of LOR's cybersecurity posture, and will grow to lead an operational cyber team and will have key relationships both internal and external to IT.

The position requires a seasoned cyber security person with a detailed working knowledge of information security technologies, policies, and processes in their application to a global business.

Key Accountabilities:

  • Keeping abreast of potential and emerging cyber security threats, vulnerabilities, and control techniques and the trade-offs required to manage the different levels of risk appetite and risk exposure across the business.
  • 75% BAU, 20% Project, 5% Professional development and training.
  • Focused?on day-to-day operational tasks and maintenance?of core cyber security infrastructure service platforms, including but not limited to:?
    • Performance?& reliability?monitoring and management?
    • Capacity monitoring and management?
    • Cyber security tools operations such as: application control, endpoint detection and response, network intrusion detection, patch management, data loss prevention, web filtering and email security gateways.
    • Disaster recovery and Business continuity.?
  • Works with Cyber and Infrastructure Engineering team to form SME relationships and support knowledge
  • To ensure cyber infrastructure changes and deployments are transitioned for ongoing support of cyber platforms??
  • To implement security best?practices as directed by the Cyber Security Architect and Engineering teams
  • Accountable for all request tickets that are managed and triaged for cyber infrastructure.
  • Responsible for quality and response time of tickets
  • Works with the Infrastructure?& Network Engineering team to follow best practise and improve knowledge base
  • Ensure knowledge and information is documented and passed to Service teams
  • Implements cyber security solutions that comply with applicable security policies and standards to reduce business risk.
  • Work with Laing O'Rourke's business units and with other risk functions to identify security requirements, using methods that may include risk and business impact assessments.
  • Assists in the review and update of cyber security policies, architectures and standards.
  • Researches and assesses new threats and security alerts and recommends remedial actions. Play an active part in responding to and resolving security incidents (Prepare, Identify, Contain, Remediate, Recover)
  • Work with key suppliers, partners and vendors to drive maximum value and security benefit from security services and solutions. Review security technologies, tools and trends to make recommendations to the security team / leadership for use based on security, financial and operational metrics.
  • Assist with the overall business technology planning, providing a current knowledge and future vision of technology and systems.

Key Relationships:

Internal:

  • Reports to Cyber Security Operations Manager
  • Group Chief Information Security Officer
  • Deputy Chief Information Security Officer
  • Cyber Security Enterprise Architect & Engineer
  • Head of Infrastructure Engineering & team
  • Infrastructure Operations Lead & team
  • IT Service Management Team / Service Desk
  • Head of IT (Europe and Australia Hub)

External:

  • Technology product and service vendors
  • Managed Security Service Providers (MSSP)
  • Security Operations Centre (SOC)
  • Regulatory and Compliance Governance Bodies

Desired Capabilities & Behaviours:

  • Knowledge and understanding of Infrastructure and Cyber Security principles and environment
  • Knowledge of creating, developing, and refining operational processes to improve productivity
  • Service Management mindset ensuring the customer is always front of mind.
  • The ability to understand business strategy and how it relates to the application of technology within Laing O'Rourke.
  • An understanding of the business operations and end user impact of cyber security changes.
  • Experience in developing, documenting and maintaining Infrastructure policies, processes, procedures and standards.
  • Has the ability to interface with, and gain the respect of, stakeholders at all levels and roles in the business
  • The ability to understand business strategy and how it relates to the application of cyber security and controls within Laing O'Rourke. An understanding of the business operations and end user impact of cyber security controls.
  • Strong demonstrated knowledge of cyber security technologies, enterprise systems, cloud solutions and generally accepted cyber security principles and accepted industry practices.
  • A driver and implementer who possesses the poise and ability to act calmly and competently in high-pressure, high-stress situations.
  • Knowledge of Regulations, Standards, and Compliance around cyber security. Audit, compliance, or governance experience is preferred.

Education & Experience:

  • Minimum 5-8 years of experience in IT, with at least 3 years in an operational and customer facing role.
  • Proficiency with security frameworks, standards and best practices for compliance (NIST, ISO27001, Cyber Essentials, Essential 8)
  • Knowledge of best practices of IT security hardware and software, security suites, identity and access management, and encryption

We want to ensure our recruitment process is accessible to all. If you need the application form in an alternative format or you would like to know more about our recruitment process, please email