Job description
Overview
As a Datacenter Security Operations Manager in CO+I Physical Security, you will be part of a global team dedicated to delivering the most trustworthy security program to protect the personnel, infrastructure, data, and confidential information foundational to the Microsoft Cloud. You will be accountable for physical security operations at datacenters and other related facilities within your applicable region and will collaborate with the vendor security guarding staff to meet collective security requirements and provide security capabilities, anticipate site specific insecurity and security disruption (e.g., life safety, business operations, reputation) and lead discussions on developing strategies for mitigating risks and responding to residual risks. You will communicate risk analysis findings and root cause analysis reports to internal and external stakeholders and leaders. This opportunity will allow you to accelerate your career growth, develop deeper physical security acumen and global security program management.
The Datacenter Security Operations Manager must be located in the applicable region and will work from an agreed upon datacenter location.
This role is part of our Cloud Operations & Innovation (CO+I) team which is the engine that powers our cloud services and delivers the core infrastructure and foundational technologies for Microsoft's online services including Bing, Office 365, Xbox, OneDrive, and the Microsoft Azure platform. As a group, CO+I is focused on the personal and professional development of all employees and offers training and growth opportunities including Career Rotation Programs, Diversity & Inclusion trainings and events, and professional certifications.
Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.
Responsibilities- Oversee the implementation of physical security policies and procedures at applicable datacenters, ensuring Microsoft’s physical security vendor guard force has the resources and information to deliver physical security services that meet Microsoft and customer requirements to protect people, information, and critical infrastructure.
- With minimal assistance, performs analysis to detect security threats, alerts, or risks and escalates to critical incident response team and/or external authorities, if necessary, implements security protocols to support the physical protection of company personnel and assets, delivers and maintains security programs in areas of responsibility.
- Partner with datacenter operations, security systems and other Microsoft stakeholders to ensure secure and continuous operations while maintaining a One Team, One Microsoft environment.
- Continuously improve the efficiency and maturity of the overall physical security program at Microsoft datacenters, seeking data and recommending strategies and ideas to reduce churn, optimizing resources including budget management and forecasting, implement creative solutions to problems, scale, automate and simplify process whenever possible.
- Receive escalations/notifications of physical security and business impacting events and appropriately triage, ensure that regional leadership is kept informed through regular communication as appropriate and that the necessary personnel for managing an incident respond effectively.
- On-call 24x7x365 and will travel periodically as planned or unplanned within or outside of assigned city/metropolitan area.
- With minimal supervision, contributes to collaborative efforts with stakeholders to support security capabilities, supports risk identification for datacenter insecurity and security disruption (e.g., life safety, business operations, reputation) to assist decision-makers in mitigating risks and responding to residual risks.
- With minimal supervision, summarizes and reports risk analysis to internal stakeholders and leaders.
QualificationsRequired Qualifications:
- 4+ years' experience in Security Program or Program Management or related field
Background Check Requirements:
Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings:
- Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter.
While not required, we look for the following Preferred Qualifications:
- Bachelor's Degree in Business Risks or related field AND 8+ years' experience in Security Program or Program Management
- OR equivalent experience.
- Industry security certifications such as CPP, PSP, or other relevant security certification
This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.
Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.
وصف الوظيفة
نظرة عامة
كونك مدير عمليات أمن مركز البيانات في قسم الأمان المادي CO+I، ستكون جزءًا من فريق عالمي مكرس لتقديم أكثر برامج الأمن الموثوق بها لحماية الأفراد والبنية التحتية والبيانات والمعلومات السرية الأساسية لخدمات Microsoft Cloud. ستتحمل مسؤولية عمليات الأمن المادي في مراكز البيانات والمرافق ذات الصلة ضمن منطقتك المعنية، وستتعاون مع موظفي حراسة الأمن من مورد الأمن لتلبية متطلبات الأمن الجماعية وتوفير قدرات الأمن، وتوقع مخاطر عدم الأمان والتعطيل الأمني المحدد للموقع (مثل السلامة الحياتية، عمليات الأعمال، السمعة) وقيادة المناقشات حول تطوير استراتيجيات لتخفيف المخاطر والاستجابة للمخاطر المتبقية. ستقوم بنقل نتائج تحليل المخاطر وتقارير تحليل السبب الجذري إلى أصحاب المصلحة والقادة الداخليين والخارجيين. ستتيح لك هذه الفرصة تسريع نمو مسيرتك المهنية وتطوير فطنة أعمق في الأمن المادي وإدارة برامج الأمن العالمية.
يجب أن يكون مدير عمليات أمن مركز البيانات مقيمًا في المنطقة المعنية وسيعمل من موقع مركز البيانات المتفق عليه.
هذا الدور جزء من فريق Cloud Operations & Innovation (CO+I) الذي يعمل كمحرك لخدمات الحوسبة السحابية لدينا ويقدم البنية التحتية الأساسية والتقنيات التأسيسية لعمليات Microsoft عبر الإنترنت بما في ذلك Bing وOffice 365 وXbox وOneDrive ومنصة Microsoft Azure. كفريق، يركز CO+I على التطوير الشخصي والمهني لجميع الموظفين ويقدم فرص التدريب والنمو بما في ذلك برامج التدوير الوظيفي، وتدريبات وتقييمات التنوع والشمول، والشهادات المهنية.
مهمة Microsoft هي تمكين كل شخص وكل منظمة على هذا الكوكب من تحقيق المزيد. كموظفين، نجتمع بعقلية النمو ونبتكر لتمكين الآخرين ونتعاون لتحقيق أهدافنا المشتركة. كل يوم نبني على قيمنا من الاحترام والنزاهة والمساءلة لخلق ثقافة الشمول حيث يمكن للجميع الازدهار في العمل وخارجه.
المسؤوليات- الإشراف على تنفيذ سياسات وإجراءات الأمن المادي في مراكز البيانات المعنية، والتأكد من أن قوة الحراسة الأمنية الموردة للأمن المادي لدى Microsoft لديها الموارد والمعلومات اللازمة لتقديم خدمات الأمن المادي التي تفي بمتطلبات Microsoft والعملاء لحماية الأشخاص والمعلومات والبنية التحتية الحيوية.
- بأقل قدر من المساعدة، إجراء تحليل لاكتشاف التهديدات الأمنية أو الإنذارات أو المخاطر وتصعيدها إلى فريق الاستجابة للحوادث الحرجة و/أو السلطات الخارجية إذا لزم الأمر، تنفيذ بروتوكولات الأمن لدعم الحماية المادية لموظفي الشركة وأصولها، وتقديم وصيانة البرامج الأمنية في مجالات المسؤولية.
- التعاون مع عمليات مركز البيانات وأنظمة الأمن وغيرهما من أصحاب المصلحة في Microsoft لضمان عمليات آمنة ومستمرة مع الحفاظ على بيئة One Team, One Microsoft.
- تحسين كفاءة ونضج البرنامج الأمني المادي بشكل مستمر في مراكز بيانات Microsoft، والاعتماد على البيانات والتوصية باستراتيجيات وأفكار لتقليل الإلغاءات، وتحسين الموارد بما في ذلك إدارة الميزانية والتنبؤ، وتنفيذ حلول إبداعية للمشاكل، والتوسع، وأتمتة وتبسيط العمليات كلما أمكن.
- استلام التصعيدات/إشعارات الأحداث الأمنية المادية والتأثير على الأعمال والقيام بفرزها بشكل مناسب، والتأكد من إبقاء القيادة الإقليمية على اطلاع من خلال التواصل المنتظم عند الحاجة وأن الأفراد الضروريين لإدارة الحوادث يستجيبون بشكل فعال.
- متاح للنوبة 24x7x365 وسيتم السفر بشكل دوري وفق الخطة أو بشكل غير مخطط داخل المدينة/التجريه الحضرية المعينة أو خارجها.
- بأقل إشراف، يشارك في جهود تعاونية مع أصحاب المصلحة لدعم قدرات الأمن، ويدعم تحديد المخاطر لعدم أمان مركز البيانات والتعطيل الأمني (مثل السلامة الحياتية، عمليات الأعمال، السمعة) لمساعدة صانعي القرار في تخفيف المخاطر والاستجابة للمخاطر المتبقية.
- بأقل إشراف، يلخص ويبلغ عن تحليل المخاطر إلى أصحاب المصلحة والقادة الداخليين.
المؤهلاتالمؤهلات المطلوبة:
- خبرة 4+ سنوات في برنامج الأمن أو إدارة البرنامج أو مجال ذي صلة
متطلبات التحقق الخلفي:
يُشترط تلبية متطلبات فحص الأمان لدى Microsoft والعملاء و/أو الحكومة لهذا الدور. تشمل هذه المتطلبات، على سبيل المثال لا الحصر، فحوصات أمان متخصصة:
- فحص خلفية Microsoft Cloud: سيُطلب من هذا الموظف اجتياز فحص خلفية Microsoft Cloud عند التعيين/الانتقال وبعد ذلك كل عامين.
رغم أنها ليست مطلوبة، نبحث عن:المؤهلات المفضلة:
- درجة البكالوريوس في إدارة مخاطر الأعمال أو مجال ذو صلة وتوافر 8+ سنوات من الخبرة في برنامج الأمن أو إدارة البرنامج
- شهادات الأمن الصناعي مثل CPP، PSP، أو شهادات أمان ذات صلة أخرى
سيكون هذا المنصب مفتوحًا لمدة لا تقل عن 5 أيام، مع قبول الطلبات بشكل مستمر حتى يتم شغله.
Microsoft هي صاحب عمل يلتزم بتوفير فرص متكافئة للجميع. سيُنظر في جميع المتقدمين المؤهلين للوظيفة دون اعتبار للعمر أو الأصل أو الجنسية أو اللون أو الإجازة العائلية أو الرعاية الطبية أو الهوية أو التعبير الجنساني أو المعلومات الوراثية أو وضع الهجرة أو الحالة الاجتماعية أو الحالة الصحية أو الأصل الوطني أو الإعاقة البدنية أو الذهنية أو الانتماء السياسي أو حالة المحارب المحمي أو العسكرية أو العرق أو العِرقية أو الدين أو الجنس (بما في ذلك الحمل) أو الاتجاه الجنسي أو أي سمة محمية أخرى بموجب القوانين واللوائح المحلية المعمول بها. إذا كنت بحاجة إلى مساعدة في التوفيق مع الاحتياجات الدينية و/أو تسهيلات معقولة بسبب الإعاقة أثناء عملية التقديم، اقرأ المزيد عن طلب التسهيلات.