applicants
IT Security Operations Engineer
at Ericsson London in London (Published at 30-09-2024)
Who Are We
Red Bee Media is a global media business, which has more than 2000 employees based in UK, France, Netherlands, Sweden, US, Spain and Australia.
We connect the world’s content to audiences everywhere, through an innovative and flexible technology infrastructure with world class operating models. We operate in TV markets all over the world and with some of the strongest brands in the industry, working with both public service broadcasters and major commercial clients including the BBC, NBC, ITV, C4 and many clients in UK, France, Germany, Belgium & the Netherlands among others. We work with local market channels, pan-European channels, global channels and every combination in between and we understand the complexities of each.
About this opportunity
The Infrastructure Operations Team is responsible for maintaining and supporting the infrastructure platforms across all global sites, ensuring a world class service is delivered for our customers. Key to this is ensuring the security measures are effectively maintained & developed across all global sites.
You will report to the Head of Infrastructure Operations and will develop strong relationships with colleagues in the wider Infrastructure team and other technical support teams as well as providing direction for a team of 2nd line technical people in our Global Service Centre(GSC). You will draw on their knowledge and work with them to achieve your goals. Your global remit includes responsibility for maintaining, evaluating and testing the security compliance of our systems, assisting with the protection of digital assets for our customers and the maintenance and expansion of the security architecture. You may be required to participate in out-of-hour’s support work from time to time.
What you will do
- Working within the ISMS processes, assist the Cyber Security team with compliance audit activities, conduct and complete security risk assessments where required (including internal/external reviews for ISMS & ISO27001 compliance) then drive activities to resolve any non-conformities
- Key contributor to the Security Management Board
- Operational ownership & responsibility for the IT Security products, services, solutions & platforms (AV, Nessus, Logging) ensuring Lifecycle Management is completed.
- Ensure adherence to cyber security policy for new & existing systems, establish and track compliance with information security policies
- Responsible for the operational security posture of the global infrastructure estate (coordinate patch management & AV/malware protection, report on compliance of both)
- Receive & compile security advisories, recommend infrastructure security improvements
- Coordinate with the wider SecOps team and infrastructure & app support teams:
o for Vulnerability Management, exploit classification & remediation planning
o for Pen testing & subsequent remediation work
o for AV/malware threat detection mechanisms
o to ensure remediation plans are actioned accordingly
o to Improve Way of Working (WoW) between Secops & RBM infra ops team (including GSC)
o for Active monitoring, response & remediation of security events & incidents
- Work with the Infrastructure delivery team on new Security initiatives, provide security guidance, develop a WoW with new security platforms & accept into Operations
- Monitor and report security status and events to management (IDS/IPS, malware threat detection, etc)
- Escalate to senior management where funding is needed to remediate security vulnerabilities
- Keeping abreast with the latest vulnerabilities, attacks, and security tools to stay current with security trends and risks. Collaboration & knowledge sharing with the technology support teams.
- Where needed, use your skills to dig in & deploy any required systems, patches etc
You will bring
- A good working knowledge of security and compliance standards including ISO27001
- Significant hands-on experience in infrastructure support with an ability to troubleshoot & resolve issues in a complex networking environment (requires a good understanding of IP Networking)
- Technical knowledge in one or more areas: network/cloud security, av/malware detection & analysis, threat intelligence, cryptography, vulnerability management, incident response, hacking techniques.
- Operational experience with security controls & threat detection, performing root cause analysis, driving remediation and implementing continuous improvement process opportunities.
- Evaluating, implementing and managing endpoint security controls & systems following best practice in an enterprise environment
- Proven experience in reporting to management regarding; security threat remediation and compliance of patch management, AV/Malware & IPS/IDS systems across the infrastructure
- Experience with active monitoring and providing feedback about security trends and risks as they relate to business systems, policies, processes, and infrastructure.
- Knowledge of network management and SIEM tools, automated log review, alerting, data analytics
- Experience working within a true 24x7 environment following ITIL and change control processes, preferably across multiple countries, datacentres and cloud environments
- Rigorous and disciplined approach to documentation and knowledge transfer.
Additional desirable skills and Experience for post-holder:
- Security accreditations: SSCP or other certification (CISM, Azure Security).
- Experience of presenting complex technical information to a variety of audiences & Senior Management
- Knowledge of project work and methodologies, ideally gained through involvement in complex projects
- Ability to process and present complex statistical data in a clear and concise fashion for Senior Management consumption
Why join Red Bee?
At Red Bee you will join an international team, collaborating to deliver outstanding media experiences through forward-thinking solutions and services. You will work with colleagues who share a passion for media and clear sense of integrity in the workplace. In your day to day, you will have the opportunity to work with some of the biggest and most innovative media companies in the world, using leading media technologies and systems to deliver our services. Here you can bring your unique talents, skills and perspectives to the table and collaborate in an openminded and inclusive environment.
What happens once you apply?
Click Here to find all you need to know about what our typical hiring process looks like.
Encouraging a diverse an inclusive organization is core to our values at Ericsson, that's why we champion it in everything we do. We truly believe that by collaborating with people with different experiences we drive innovation, which is essential for our future growth. We encourage people from all backgrounds to apply and realize their full potential as part of our Ericsson team. Ericsson is proud to be an Equal Opportunity and Affirmative Action employer, learn more.
Primary country and city: United Kingdom (GB) || London
Job details: Security Operations