Role Purpose (Why do we need this role)
The Senior Infrastructure Security Engineer is responsible for independently proposing the development, implementation, and management of the company's infrastructure programs with a focus on Infrastructure Security. This role requires extensive experience in managing and securing complex IT infrastructure and cloud environments, as well as a deep understanding of the latest cybersecurity threats, trends, and technologies.
Role Accountabilities (What is this role responsible for delivering)
Strategic & Planning
- Develop and maintain the infrastructure roadmap for the overall Digital Technology Architecture, in partnership with cybersecurity.
- Ensure technical architecture solutions align with current and future business requirements
- Develop long-range and short-range plans for corporate information strategies, cybersecurity, and infrastructure
- Build strong partnerships with key stakeholders to align with application/business strategies
- Develop and implement IT infrastructure policies and practices, including cybersecurity
- Identify and evaluate new technologies for adoption
- Develop security incident response and disaster recovery plans
IT Operation Management
- Execute IT Infrastructure Service Lifecycle
- Manage infrastructure and networking with a focus on scalability, security, and cost optimization
- Knowledge of best practices and emerging technologies, related to infrastructure (i.e. network, data center, hardware, software)
- Oversee operations across multiple geographical regions leveraging automation and cloud capabilities
- Lead evaluations of new infrastructure and networking technologies
- Optimize system uptime, performance, and capacity planning
- Provide expert-level support for critical technology issues
- Develop vendor management strategies
- Maintain and test Business Continuity and Disaster Recovery plans
- A track record of creating meaningful technical documentation that teammates actually want to read
Risk Management
- Work with teams of security engineers and developers to architect scalable solutions to complex infrastructure security problems
- Build out proofs of concept, tools, and/or platforms to address security problems at scale
- Lead other engineers in creating solutions
- Eliminate classes of security problems by shifting the detection and preventions left into the developer workflow
- Partner with cross-functional teams to ensure security maturity work is being prioritized and addressed in ways both timely and durable
- Provide architectural, design, and threat-based guidance to software development teams to improve security maturity before code is created
- Develop and implement cybersecurity policies and procedures
- Ensure disaster recovery strategy and executable plan
- Ensure compliance with licensing requirements
- Monitor IT assets, data, and information security
- Implement pre-emptive cybersecurity risk mitigation measures
- Align infrastructure strategy with the current cybersecurity landscape
- Maintain security framework and information security policies
- Conduct IT security audits periodically
Budget Planning & Control
- Assist in managing and forecasting Cybersecurity and IT Infrastructure budgets
- Participate in annual budget planning
- Monitor and control IT spendings within budget
Key Qualifications & Skills (What knowledge will ensure success in the role)
Qualifications
- University Bachelor Degree in Information Systems, Computer Science, or related field
Technical Skills
- 8+ years of experience managing large-scale, complex infrastructure and cloud environments
- 8+ years of experience securing complex on-prem or cloud deployments
- 5+ years of technical infrastructure management experience
- Experience addressing security problems by building scalable engineering solutions
- Proven communication skills to convey complex technical issues to both security and non-security audiences
- Proficiency in high-level design, architectural reviews, and implementation of high-availability and redundancy on Cloud Computing
- Experience in IT management
- Strong knowledge of networking, virtualization, automation, security, and cloud platforms
- Experience optimizing infrastructure operations using practices like DevOps and site reliability engineering
- Familiarity with cybersecurity technologies, firewalls, intrusion detection/prevention systems, web application firewalls, data loss prevention, and endpoint protection
- Proven experience building, securing, and deploying containerized applications
- Familiarity with modern CI/CD practices and Infrastructure-as-Code tooling
Professional Skills:
- Strong leadership and team management abilities
- Excellent communication and interpersonal skills
- Strategic thinking and problem-solving mindset
- Ability to collaborate and build strong partnerships with stakeholders
- Strong organizational and project management skills
- Ability to work effectively under pressure and meet tight deadlines
Professional Certification Preferred:
- CISSP (Certified Information Systems Security Professional)
- CISM (Certified Information Security Manager)
- CRISC (Certified in Risk and Information Systems Control)
- AWS Certified Security - Specialty
By submitting your CV, you are deemed to have agreed and consent to the collection, use and/or disclosure of your personal data to the Company for the purposes of recruitment and employment only in accordance with the Company's Recruitment Data Privacy Policy on our website.
Swire Shipping is committed to ensuring equal equitable access and participation for persons who experience disability. SSL is committed to treating persons with disability in a way that allows them to maintain their dignity and independence. Reasonable adjustments can be made upon request based on understanding of those accommodations.
Across Swire Shipping, we seek to create a supportive and inclusive environment that embraces individuality and recognise the benefits that these differences make. We do this by ensuring that all individuals are treated with respect and understanding and actively promote Equal Employment Opportunity (EEO) and do not tolerate discrimination, harassment, bullying, retaliation or intimidation of any kind. We are committed to driving the strategy, policies and accountability to build and sustain a diverse global workforce, through equitable processes and systems where everyone can contribute their very best.