Job Purpose
Supports the strategy, goals, and objectives of altafiber Security organization. altafiber Security develops policies, standards, and guidelines and provides services to mitigate cyber and physical risks to altafiber Information, IT systems, electronic products, facilities, and physical assets. altafiber Security works with the business to assess risk and to ensure that appropriate security measures are implemented. altafiber Security also enables business opportunities by leveraging security capabilities.
Essential Functions
- Security Management: Establishment, facilitation, or operation of cyber and physical security processes to protect an organization's facilities, assets, information, and services
- Financials: Track and measure costs to ensure appropriate investment and efficient and effective solutions to drive business value
- Risk Management: Identify and evaluate risks based on industry standards (NIST RMF, CIS, etc.) to propose and implement solutions to reduce the organization's risk profile
- Compliance Management: Assess and facilitate the compliance of the organization with external regulatory requirements that relate to security
- Policies and standards: Develop and deliver commercially acceptable policies and standards that mitigate physical and cyber risks to altafiber information, IT systems, electronic products, facilities, and physical assets
- Innovative Solutions:
- Designs creative solutions that use technologies and processes to mitigate physical and cyber risks to altafiber information, IT systems, electronic products, facilities, and physical assets
- Designs and builds Security Orchestration and Automated Response (SOAR) workflows to reduce Mean Time to Respond/Resolve (MTTR) and enhance altafiber's security posture
- Security Implementation and Operations: Operationalize documented solutions and deliver day-to-day security operations and support
Education
Four years of college resulting in a Bachelor's Degree or equivalent
Certifications, Accreditations, Licenses
Relevant security certifications (Security+, CISSP) are a plus
Experience
3-5 years telecommunications or Information Technology experience that includes 1-year security or compliance
Special Knowledge, Skills, and Abilities
- Effective communication and presentation skills of security and technical topics to parties with and without technical knowledge
- Experience with planning and organizing information in a collaborative environment
- Ability to plan, orchestrate, and prioritize the work and needs of multiple stakeholders
- Initiative to proactively identify risk and needs and take action
- Mastery of scripting and querying languages to quickly and effectively manipulate data
Work Environment
Work is typically performed in a hybrid office environment
Supervisory Responsibilities
Leads work teams (assigns, coordinates, and checks work) for employees performing similar work