Cyber Security Engineering Manager Network and - Guadalajara, México - AstraZeneca

AstraZeneca
AstraZeneca
Empresa verificada
Guadalajara, México

hace 2 semanas

Rodrigo Fernández

Publicado por:

Rodrigo Fernández

Reclutador de talento para beBee


Descripción

Cybersecurity Engineering Manager - Network and Endpoint Security

:

***:
AstraZeneca is a global, science-led biopharmaceutical business whose innovative medicines are used by hundreds of millions of patients worldwide. Our IT 2025 strategy is focused on Smarter, Faster, Leaner and Better and we are looking for a Cybersecurity Engineer to play an active part in helping make this strategy a reality.

:

***:
At AstraZeneca we

:

-
Believe in lifelong learning.**:


  • Endeavor to be a great place to work.**:
-
Encourage a "speak up" culture.**:


  • Lead the way in sustainable IT & social impact.**:
-
Actively work towards becoming a digital organization.*****:
Cybersecurity is key to our IT strategy as we move towards our future objectives. We are looking for IT security professionals that can help us on the journey through this challenging and ever-changing technology landscape.

:

***:
We are looking for Individuals who

:

-
Understand that security is a journey and not a destination.**:


  • Understand that we cannot just buy our way in cybersecurity.**:
-
Focus on innovation to maintain a sustainable risk position against the evolving threat landscape.**:


  • Understand that we could be working against organized crime syndicates or state-sponsored attackers.**:
-
Understand attackers' motivations and their ways of working.*****:
Accountabilities

:

***:
In this role you will operate within AstraZeneca's global cybersecurity organization to deliver quality services and solutions that meet both business and IT needs. You will need to collaborate and influence multiple functions across a global organisation spanning Mexico, US, UK, Sweden, China, India and beyond.

:

***:
The core accountabilities for the role include

:

-
Engineer cybersecurity solutions spanning cloud, on-premises, and third-party collaboration environments, with a predominant focus on network and endpoint security.**:


  • Collaborate with other teams in performing, assessing, and evolving IT processes that intersect any of our cybersecurity priorities.**:
-
Map governance and compliance frameworks and their controls to technical implementation, shifting hardening processes as far left as possible.**:


  • Leverage understanding of threats, weaknesses, and vulnerabilities around network and endpoint security to assist other areas in responding promptly and effectively to contain breaches or to address areas of concern.**:
-
Contribute to defining the future state of cybersecurity within the organisation by conducting gap analysis between our current state and the desired state for tools and services around network and endpoint security.*****:
Qualifications and Experience

:

-
Must have large enterprise IT experience, ideally with significant networking and endpoint security exposure.**:


  • Must have experience designing, deploying, and operating secure networks, systems, devices, and security architectures at scale.**:
-
Should have experience working in a systems administration organization - ideally implementing process automation.**:


  • Must have experience researching, designing, and implementing security policies, standards, and procedures, including those in cybersecurity frameworks such as MITRE ATT&CK, NIST CSF, NIST SP.800-53, and NIST SP.800-61, as well as implementing network security reference architectures.**:
-
Solid understanding of security protocols, cryptography, identity management and access control.**:


  • Ability to conduct post-mortem on security incidents and take post-mortem data to drive uplift in policies, procedures, standards.**:
-
Experience with SIEM, CSPM, DSPM, IDS, XDR, SOAR technologies.**:


  • Familiarity with common attack techniques and their remediation or defence including social engineering, phishing, worms, trojans, rootkits, ransomware, XSS, SQL injection, remote command execution, session hijacking, DDoS, etc.**:
-
Must have strong experience identifying, deploying, and managing network security services, ideally with exposure to a multi-cloud environment spanning AWS, GCP and Azure.**:


  • Solid understanding of advanced networking configurations for hybrid-cloud in AWS, leveraging transit gateways and direct connect links.**:
-
Knowledge of business continuity, risk assessment, disaster recovery, and computer forensics.*****:
Skills & Capabilities

:

-
Manage and lead projects delivering prioritised initiatives at challenging deadlines.**:


  • Ability to positively exert influence in a matrixed organization to drive technology evolution.**:
-
Ability to identify and articulate architectural trade-offs when choosing network and endpoint security services.**:


  • Ability to embed process, governance and security into workflow and technology.**:
-
Design and implement software tools and services using mo

Más ofertas de trabajo de AstraZeneca