Infrastructure Security Engineer (M/F/D)
Infrastructure Security Engineer (m/f/d), Milan Client: Location: Job Category: Job search engine
EU work permit required: Yes
Job Reference: 71395328b582
Job Views: 10
Posted: 22. 01. 2025
Expiry Date: 08. 03. 2025
Job Description: Today, Lonza is a global leader in life sciences operating across three continents.
Our greatest scientific solution is talented people working together, devising ideas that help businesses to help people.
The IT Infrastructure Security Engineer executes the implementation of IT Security Controls, supports appropriate measures in terms of processes and technology, and works closely with IT Infrastructure colleagues and IT Security & Compliance.
This role is directly involved in the implementation of the corporate-wide information security management program, ensuring that Infrastructure assets are adequately protected.
Responsibilities include reporting on quantifiable security KPIs and driving vulnerability management pertaining to IT Infrastructure.
The position holder designs solutions to improve IT security within the IT Infrastructure environment in accordance with life science regulatory practices and advises respective subject matter experts within Lonza and its outsourced services.
Additionally, the role supports the Security Operations Center team in case of potential IT security incidents and collaborates with relevant stakeholders (e. g. , IT Security, system owners).
The ideal candidate is an experienced security architect with extensive hands-on experience in relevant IT fields (e. g. , network, virtualization, AD, SQL), preferably supporting Operational Technology in the life science or manufacturing industry subject to regulatory compliance.
Key Responsibilities: Support infrastructure security relevant projects by ensuring the implementation of required security controls from the design phase and throughout the lifecycle of the systems.
Enforce secure configuration of new and existing assets, design and implement mitigating controls as required.
Define and fully implement effective vulnerability remediation measures on both procedural and technology layers (e. g. , system hardening, patching, lifecycle management).
Drive security culture within IT Infrastructure.
Support IT Security related Infrastructure services and identify potential improvements.
Co-ensure that regulatory security and data protection requirements are fulfilled on the infrastructure level, e. g. , GxP and GDPR.
Key Requirements: Master's degree in computer science or information security or equivalent work- or education-related experience.
Minimum of 4 years in Information Technology, with at least 1 year in Information Security.
Track record of participating in security projects and being the security SME for IT projects.
An Operational Technology background is desired.
Professional security management certification, such as a Certified Information Systems Security Professional (CISSP), relevant vendor and industry certifications, is desired.
Knowledge and understanding of relevant legal and regulatory requirements, such as Sarbanes-Oxley Act (SOX), Health Insurance Portability and Accountability Act (HIPAA), EU General Data Protection Regulation (GDPR), and Payment Card Industry/Data Security Standard.
Knowledge of common information security management frameworks, such as ISO/IEC 27001, ITIL, COBIT, and those from NIST.
Reference: R54936
Please note that if you are NOT a passport holder of the country for the vacancy you might need a work permit.
Bank or payment details should not be provided when applying for a job.
Eurojobs.com is not responsible for any external website content.
All applications should be made via the 'Apply now' button.
#J-18808-Ljbffr
Diventa il primo a rispondere a un'offerta di lavoro!
-
Perché cercare un lavoro con PostiVacanti.it?
Ogni giorno nuove offerte di lavoro È possibile scegliere tra un'ampia gamma di lavori: il nostro obiettivo è quello di offrire la più ampia selezione possibile Ricevi nuove offerte via e-mail Essere i primi a rispondere alle nuove offerte di lavoro Tutte le offerte di lavoro in un unico posto (da datori di lavoro, agenzie e altri portali) Tutti i servizi per le persone in cerca di lavoro sono gratuiti Vi aiuteremo a trovare un nuovo lavoro