Job description
Overview
Overview
As a Country Security Operations Manager in CO+I Physical Security, you will be part of a global team dedicated to delivering the most trustworthy security program to protect the personnel, infrastructure, data, and confidential information foundational to the Microsoft Cloud. You will be accountable for physical security operations at datacenters and other related facilities within the applicable country and will manage in-country Datacenter Security Operations Managers who are responsible for security operations in their respective metros. You will lead teams in collaborating with stakeholders to meet collective security requirements and provide security capabilities, anticipate country specific insecurity and security disruption (e.g., life safety, business operations, reputation) and lead discussions on developing strategies for mitigating risks and responding to residual risks.
The Country Security Operations Manager must be located in the applicable country and there is a flexible work opportunity to work from home partially or fully.
This role is part of our Cloud Operations & Innovation (CO+I) team which is the engine that powers our cloud services and delivers the core infrastructure and foundational technologies for Microsoft's online services including Bing, Office 365, Xbox, OneDrive, and the Microsoft Azure platform. As a group, CO+I is focused on the personal and professional development of all employees and offers training and growth opportunities including Career Rotation Programs, Diversity & Inclusion trainings and events, and professional certifications
Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.
Responsibilities- Conduct field site visits across the assigned portfolio of datacenters on a recurring basis to assess security health, complete assessments, meet with partners, stakeholders, and suppliers, and implement plans to remediate findings of non-conformance.
- Develop, manage, and maintain physical security Standard Operations Procedures (SOP), and continuously improve the efficiency and maturity of the overall physical security program including vendor budget management and forecasting.
- Provide situational awareness and analysis of the country wide security environment.
- Attract, develop and retain talent; deliver results through teamwork and effectively manage a team, where members are located in datacenter regions throughout the applicable country.
- Provides guidance to teams to design, implement, and monitor security controls to treat risks to infrastructure, business, people, and assets and then monitor the effectiveness of measures taken to modify risks.
- On-call 24x7x365 and travel periodically as planned or unplanned within or outside of assigned region.
- Receive escalations/notifications of physical security and business impacting incidents/events and appropriately triage and assess, ensuring that leadership is made initially and continuously aware when appropriate, and that the appropriate personnel are managing the incident response effectively.
Culture | Microsoft Careers
QualificationsRequired Qualifications:
- 6+ years' experience in Security Program or Program Management or related field
Background Check Requirements:
Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings:
- Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter.
While not required, we also look for the following Preferred Qualifications:
- Bachelor's Degree in Business Risks, or related field AND 8+ years' experience in Security Program or Program Management OR equivalent experience.
- 3+ years people management experience
- Industry security certifications such as CPP, PSP, or other relevant security certification
- Experience with or exposure to regulatory and industry compliance frameworks and audits (e.g. ISO27001, SOC, PCI)
This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.
Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.
وصف الوظيفة
نظرة عامة
نظرة عامة
كمدير عمليات الأمن الوطني في CO+I للأمن الفيزيائي، ستكون جزءًا من فريق عالمي مكرس لتقديم أنظمه أمان موثوقة لحماية الأفراد والبنية التحتية والبيانات والمعلومات الحساسة الأساسية لخدمات مايكروسوفت السحابية. ستكون مسؤولاً عن عمليات الأمن الفيزيائي في مراكز البيانات والمرافق الأخرى ذات الصلة ضمن البلد المعني وستدير مديري عمليات الأمن في مراكز البيانات داخل البلد الذين يتحملون مسؤولية عمليات الأمن في مدنهم المعنية. ستقود الفرق في التعاون مع أصحاب المصلحة لتلبية متطلبات الأمان الجماعي وتوفير قدرات أمنية، وتوقّع عدم أمان محلي وتخلّف أمني (مثلاً السلامة الحياتية، عمليات الأعمال، السمعة) وتقود المناقشات حول تطوير استراتيجيات لتخفيف المخاطر والاستجابة للمخاطر المتبقية.
يجب أن يكون مدير عمليات الأمن الوطني مقيمًا في البلد المعني وهناك فرصة عمل مرنة للعمل من المنزل جزئياً أو كلياً.
هذا الدور جزء من فريق عمليات وسياحة وابتكار السحابة (CO+I) الذي يعد المحرك الذي يدعم خدماتنا السحابية ويقدم البنية التحتية الأساسية والتقنيات الأساسية لخدمات مايكروسوفت عبر الإنترنت بما في ذلك Bing وOffice 365 وXbox وOneDrive ومنصة Microsoft Azure. كفريق، يركّز CO+I على التطوير الشخصي والمهني لجميع الموظفين ويقدم فرص تدريب ونمو بما فيها برامج التدوير الوظيفي، وتدريبات وفعاليات التنوع والشمول، والشهادات المهنية
مهمة مايكروسوفت هي تمكين كل شخص وكل مؤسسة على الكوكب من تحقيق المزيد. كموظفين نجتمع بعقلية النمو، نبتكر لتمكين الآخرين، ونتعاون لتحقيق أهدافنا المشتركة. كل يوم نبني على قيمنا بالاحترام والنزاهة والمسؤولية لخلق ثقافة شمولية حيث يمكن للجميع الازدهار في العمل وخارجه.
المسؤوليات- إجراء زيارات ميدانية عبر المحفظة المعينة من مراكز البيانات بشكل دوري لتقييم صحة الأمان، وإكمال التقييمات، والالتقاء بالشركاء وأصحاب المصلحة والموردين، وتنفيذ خطط لمعالجة النتائج غير المتوافقة.
- تطوير وإدارة والحفاظ على إجراءات التشغيل القياسية للأمن الفيزيائي (SOP)، وتحسين كفاءة ونضج البرنامج الأمني الفيزيائي ككل بما في ذلك إدارة ميزانية المزود والتنبؤ بها.
- توفير الوعي الوضعي وتحليل بيئة الأمن على مستوى البلد.
- جذب وتطوير واحتفاظ بالمواهب؛ وتحقيق النتائج من خلال العمل الجماعي وإدارة فريق بشكل فعال، حيث تقع الأعضاء في مناطق مراكز البيانات عبر البلد المعني.
- تقديم التوجيه للفرق لتصميم وتنفيذ ومراقبة ضوابط الأمن لمعالجة المخاطر على البنية التحتية والأعمال والناس والأصول ثم مراقبة فاعلية التدابير المتخذة لتعديل المخاطر.
- المناوبة على مدار 24×7×365 والسفر بشكل دوري مخطط له أو غير مخطط ضمن أو خارج المنطقة المعينة.
- استلام التصعيدات/الإخطارات بوقائع أمن فيزيائي وأعمال تجارية وتقييمها بشكل مناسب، مع إبقاء القيادة على علم مبدئياً وعلى نحو مستمر عند الاقتضاء، وأن الأفراد المناسبين يديرون استجابة الحادث بفعالية.
الثقافة | وظائف مايكروسوفت
المؤهلاتالمؤهلات المطلوبة:
- خبرة 6+ سنوات في برنامج أمان أو إدارة برنامج أو مجال ذو صلة
متطلبات فحص الخلفية:
مطلوب تلبية متطلبات فحص الأمان من مايكروسوفت والعملاء والحكومة، وهذه المتطلبات تشمل، ولكن ليست محدودة بما يلي من فحوصات أمان متخصصة:
- فحص خلفية مايكروسوفت السحابية: سيُطلب من هذا المنصب اجتياز فحص خلفية مايكروسوفت السحابية عند التعيين/الانتقال وبعد ذلك كل عامين.
بينما ليست مطلوبة، كما ننظر إلى ما يلي المؤهلات المفضلة:
- شهادة البكالوريوس في مخاطر الأعمال أو مجال ذي صلة وتوفر 8+ سنوات خبرة في برنامج أمان أو إدارة برنامج أو خبرة مكافئة.
- خبرة إدارة أشخاص لمدة 3+ سنوات
- شهادات أمان صناعية مثل CPP، PSP، أو شهادة أمان ذات صلة
- خبرة مع أو تعرض لإطارات الامتثال التنظيمي والصناعي والتدقيقات (مثل ISO27001، SOC، PCI)
سيكون هذا المنصب مفتوحاً لمدة لا تقل عن 5 أيام، مع تلقي الطلبات بشكل مستمر حتى تمهين المنصب.
مايكروسوفت هي صاحب عمل يتيح تكافؤ الفرص. ستُقبل جميع الطلبات المؤهلة للنظر في التوظيف دون اعتبار للعمر أو الأصل أو الجنسية أو اللون أو رعاية الأسرة أو الإعاقة الطبية أو الهوية أو التعبير الجنسي أو المعلومات الوراثية أو حالة الهجرة أو الحالة الاجتماعية أو الصحة الطبية أو الأصل القومي أو الإعاقة البدنية أو العقلية أو الانتماء السياسي أو المحارب المحمي أو الوضع العسكري أو العرق أو الإثنية أو الدين أو الجنس (بما في ذلك الحمل) أو التوجه الجنسي، أو أي سمة أخرى محمية بموجب القوانين والأنظمة واللوائح المحلية السارية. إذا كنت بحاجة إلى مساعدة في الترتيبات الدينية و/أو تسهيل معقول بسبب disability خلال عملية التقديم، اقرأ المزيد عن طلب التسهيلات.