Security Run Lead
SOV01 - Sofia Business Park B9 (SOV01)
DXC Technology
DXC Technology helps global companies run their mission-critical systems and operations while modernizing IT, optimizing data architectures, and ensuring security and scalability across public, private and hybrid clouds.Job Description:
About DXC Bulgaria
We are DXC - a Fortune 500 global IT services leader. In Bulgaria, we are among the largest employers with over 4,000 employees working on the company's entire IT portfolio. We are flexible - we provide everything you need to comfortably work from home, but we also keep our offices open for collaboration, meetings, and building a strong team spirit. We tailor everyone’s development path to their individual interests through training and additional certifications.
Our experience and desire to grow, our mission, and our values create an environment where ambitious people become successful at home. At home - in Bulgaria.
About the role
The Security Run Lead (SRL) is responsible for the information security governance and information security risk management for the assigned accounts. They also provide leadership for security escalations, compliance, and audit activities. Where applicable the SRL reports to and is the right hand of the Security Delivery Lead (SDL). They support and develops the Security Run Analysts (SRA) in their growth in cyber security.
Daily challenges
- Client Relationship Management
Act as a single point of contact for the customer security representative. Maintain good relationship with the customer by meeting their contractual requirements and enhance their current and future security posture.
- Account Responsibilities
Work with account leads and delivery teams to address various security issues. Raise the awareness of the account team of the security best practices and standards.
- Security Governance
Govern the overall security level within the account operations and the security aspect of services provided by DXC for the account. Prepare and or analyze security reports, consolidate security reporting data coming from various sources. Coordinate security programs and initiatives as well as self-assessment documentation and checklists.
- Risk Management
Supervise risk identification and guide all DXC teams to properly identify risks. Oversee security risk monitoring and review. Maintain a risk register and ensure proper risk remediation process.
- Audit Management
Act as liaison between external (customer) auditors and DXC teams and coordinate collection of audit evidence and collaboration between teams and external auditors. Ensure audit activities are performed according to contractual obligations. Lead remediation activities as per the vendor recommendations.
eXperience and skills required
- A minimum of 2 years professional experience in Information Security or IT Audit
- Good understanding of Information Security and technology
- Good knowledge of the latest IT technologies
- Understanding of ITIL Service Delivery Framework
- Fluent in English
- Excellent teamworking skills
- High ethical standards
- Strategic thinking
- Leadership skills
- Certificates considered an advantage: CISSP, CISA, CISM, CompTIA Security +
Company benefits
- Competitive remuneration package
- Additional Medical & Life insurance
- 4 days additional paid leave (total: 24 days)
- The possibility to work entirely remotely
- Food vouchers
- Training, continuous learning and career development in the largest IT company on the market
- Unlimited access courses from external partners for the best learner's experience (e.g., LinkedIn Learning, Udemy)
- Access to a foreign language learning platform
- Advancement opportunities within the organization (a variety of interesting projects with the array of technologies and tools)
- Flexibility in work arrangement (hybrid or fully remote work, the home office culture is in our DNA)
- Workplace equipment to organize your home office (e.g., chair, desk, additional monitor, headset etc.)
- DXC Partner courses and certifications (Microsoft, SAP, ServiceNow, AWS, Google, Dell Technologies, IBM, Micro Focus, Salesforce, Red Hat, VMware, Workday)
- Employee Referral Program - a financial bonus for the referrer for successful candidate recommendation
- Employee Recognition Program with points assigned by colleagues for the recognized employees (exchangeable for prizes)
- Employee Assistance Program (providing 24/7 support for employees and their families in difficult life situations)
- Opportunity to join our numerous charity and ecology-related events organized by our Employee Ambassadors team
We Deliver eXcellence for our Customers and colleagues every day. Our values form the foundation of everything we do and every decision we make.
If you feel comfortable with the above-mentioned requirements, please send us your CV in English. At DXC our employees’ safety and well-being remain a key priority for us. Therefore, we continue with stay-at-home recruiting and video interviewing for the foreseeable future.
Please note only shortlisted candidates will be contacted.
Recruitment fraud is a scheme in which fictitious job opportunities are offered to job seekers typically through online services, such as false websites, or through unsolicited emails claiming to be from the company. These emails may request recipients to provide personal information or to make payments as part of their illegitimate recruiting process. DXC does not make offers of employment via social media networks and DXC never asks for any money or payments from applicants at any point in the recruitment process, nor ask a job seeker to purchase IT or other equipment on our behalf. More information on employment scams is available here.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits AWS CISA CISM CISSP Compliance CompTIA Governance ITIL Monitoring Red Hat Risk management SAP VMware
Perks/benefits: Career development Flex hours Gear Medical leave Salary bonus Startup environment Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.