Cybersecurity Architect, Enterprise IT/OT
$ads={1}
Are you an experienced cybersecurity expert who is excited about securing enterprise architecture, applications, and operational technologies?
The KONE Technology and Innovation Unit (KTI) is where the magic happens at KONE. It's where we combine the physical world – escalators and elevators – with smart and connected digital systems. We are changing and improving the way billions of people move within buildings every day.
We in KONE Cybersecurity work as part of the global KTI team. We are a passionate team of application and cloud security experts and engineers who set targets high and are committed to Secure Development Lifecycle and agile practices. The heart of our work is at enabling KONE IT and product teams in their journey towards end-to-end secured development lifecycle. We define and set security requirements, create guidelines, and help teams to adopt automated security tooling within their development pipelines and continuous operations. We also engage development teams by facilitating a Cybersecurity Guild, bug bounty programs and other thrilling initiatives.
Buzzwords: SecDevOps, DevSecOps, SDL, SecOps, DevOps, Security, AppSec, Application Security, Cybersecurity, Cloud Security, API Security, OT Security, IT Security
We are now looking for Cybersecurity Architect to lead our enterprise IT and manufacturing OT security roadmap and vision, security requirements definition and technical guideline creation that is fit-for-purpose. In this role, you will become an active member of KONE Architecture Community, contribute to KONE’s strategic technology initiatives in KTI and learn from other talented architects from multiple domains.
In your day-to-day work, you are providing high quality coaching and architectural guidance to our internal security advisors and stakeholders to support in the most challenging and large-scale projects. You are keeping yourself up to date on the latest technologies and you assess, compare and coordinate proof of concepts on different technologies with a goal of identifying, understanding, and reducing security risk.
You might be an experienced (senior/lead) software/IT engineer, or perhaps you are a cybersecurity professional who has specialized in enterprise IT or OT. We expect you to have demonstrated technical expertise of secure development and operations lifecycle and a vision on how to embed security into architecture, development, testing, and operations of enterprise IT and OT environments such as production sites and factories. You have an ability to communicate to various audiences and you can both deal with big picture as well as with details when so required. In addition to good communication, documentation skills and visual eye needed in architect role, you would not shy away from jump into hands-on tasks when needed. Example of tasks could be to perform threat modeling, secure code review, testing or vulnerability analysis.
We offer a chance to make a real impact by securing KONE’s technology and processes to ensure resiliency of business that moves millions of people daily. In this role you will gain experience on various technologies as our solutions range from web applications, IoT & cloud services, mobile applications to the more traditional enterprise platforms. We offer a modern work environment and flexible working conditions. Most importantly, we respect our talented employees and offer a supportive global team of cybersecurity experts and varied tasks to develop your expertise.
The position is located in Espoo or Hyvinkää, Finland based on own preference.
Responsibilities
-
Lead security technology vision and roadmap formation, security requirements definition and technical guideline creation that is fit-for-purpose across enterprise IT and manufacturing OT.
-
Define security engineering principles and best practices to ensure repeatability and improvement of security across enterprise architecture.
-
Work hand-in-hand with members of KTI architecture community to ensure security in built into the KONE’s most strategic technology initiatives.
-
Provide high quality coaching, architectural guidance, and technical support to your colleagues in KONE Cybersecurity team.
-
Develop further KONE’s agile Security Development Lifecycle (SDL) practices and processes.
Requirements
-
5+ years of working experience in a field of security. CISSP, CSSLP or other relevant certification is considered a plus.
-
Practical experience of both IT operations and software security.
-
Practical experience with at least one cloud platform (AWS or Microsoft Azure).
-
Practical experience in implementing Security Development Lifecycle (for example, Microsoft SDL, OWASP, BSIMM) including threat modeling.
-
Practical experience in software development or conducting security testing, validation and assurance.
-
Familiarity with security standards and best practices (for example: ISO 27001, IEC 62443, OWASP).
-
Excellent communications skills in English.
Why to join KONE’s cybersecurity team?
We at KONE’s cybersecurity team are at an interesting point currently. Our focus has been on modernizing enterprise cybersecurity to limit risks with day-to-day operations but at the same time, we are building our industrial and product cybersecurity. KONE is on a digitalization journey and our elevators are transforming from a steel box on the end of a rope into central platforms of smart buildings.
We are bringing totally new kinds of innovative solutions to the market to enable even smarter people flow. As our offering becomes more digital, excellent cybersecurity plays a crucial role in building customer trust.
We offer a chance to work with products that are used by millions of users daily, products that are widely recognized by their quality and innovation. We offer also a modern working environment and flexible working conditions. We respect our talented employees and offer a supportive global team of cybersecurity experts and varied tasks to develop your expertise.
KONE as an employer is world-class and renowned. You can find us for example from Forbes “ Most Innovative Companies in the World 2019” list and from Universum’s “ Finland’s Most Attractive Employers 20 20” list. At KONE we believe our employees are key to our success.
We hope to get you as our teammate!
For additional information, please contact Vilma Blomberg, Application Security Manager (
vilma.blomberg@kone.com
). Please attach a CV, motivation letter, salary expectation and apply as soon as possible, latest by 20th August.
***************************************************************************
KONE will conduct a background check for the selected candidate to ensure a safe and secure work environment in which our employees, resources and assets are protected.
#LI-GO
At KONE, we are focused on creating an innovative and collaborative working culture where we value the contribution of each individual. Employee engagement is a key focus area for us and we encourage participation and the sharing of information and ideas. Sustainability is an integral part of our culture and the daily practice. We follow ethical business practices and we seek to develop a culture of working together where co-workers trust and respect each other and good performance is recognized. In being a great place to work, we are proud to offer a range of experiences and opportunities that will help you to achieve your career and personal goals and enable you to live a healthy and balanced life.
Read more on
www.kone.com/careers