The IT Security Service Team Leader manages and oversees the organisation's vulnerability management and system hardening services. This role involves ensuring effective service delivery, managing security vulnerabilities, configuring and maintaining security platforms, and reporting on IT security metrics.
As the Service Owner, you will collaborate with internal teams and external partners to enhance the organisation's security posture and meet compliance requirements. This role is crucial for ensuring the organisation's security posture is robust and resilient against potential threats and vulnerabilities.
Key Responsibilities:
Service Management:
- Oversee and manage the vulnerability management and system hardening services, ensuring adherence to defined service levels and quality standards.
- Coordinate service delivery through internal teams and third-party vendors.
- Monitor and report on service performance, including compliance with SLAs and KPIs.
Vulnerability and Hardening Management:
- Maintain and configure vulnerability management platforms and tools.
- Implement and manage vulnerability scanning processes.
- Troubleshoot and resolve issues related to vulnerability management, including agent support and platform maintenance.
- Analyze and prioritize vulnerabilities based on risk and impact, and coordinate remediation efforts.
- Develop and enforce security hardening guidelines and best practices for systems and applications.
- Conduct regular reviews and updates of system configurations to ensure compliance with security standards.
Reporting and Analytics:
- Manage IT security reporting and dashboards.
- Develop and produce regular security reports for stakeholders, including risk assessments and compliance status.
- Integrate new data sources and enhance reporting capabilities as needed.
Stakeholder Communication:
- Maintain effective communication with key stakeholders, including IT teams, business units, and external partners.
- Address and escalate security issues and concerns as necessary.
Process Improvement:
- Document and refine processes related to vulnerability management and system hardening.
- Develop and update knowledge base articles and process documentation.
- Ensure smooth handover of processes to the Service Desk and other operational teams.
Compliance and Governance:
- Ensure compliance with relevant security standards, regulations, and best practices.
- Participate in security audits and assessments as required.
Our requirements:
- Minimum 3 years of experience in a similar role.
- Expert knowledge of comprehensive vulnerability and hardening management processes and tools, including best practices and industry standards like CIS Benchmark, MITRE ATT&CK®.
- Proficiency with IT Service Management tools, including ITSM, CMDB, and integration with security platforms.
- Experience with leading vulnerability management products from Rapid7, Tenable, and Microsoft.
- Strong analytical skills.
- Experience in working in a multinational environment.
- Fluent in English.
- Open to working in hybrid mode (office in Warsaw).