
Introduction
At IBM, work is more than a job - it's a calling: To build. To design. To code. To consult. To think along with clients and sell. To make markets. To invent. To collaborate. Not just to do something better, but to attempt things you've never thought possible. Are you ready to lead in this new era of technology and solve some of the world's most challenging problems? If so, lets talk.
Your Role and Responsibilities
The Security Delivery Manager (SDM) as a non-people manager is a critical role within IBM, leading key operations within the CIO Hybrid Cloud, Data Center Services & Systems Technology Infrastructure Team. The SDM role is a staffed position with their top priority being on security compliance and audit-readiness leadership. This role is that of secondary control, providing supervision and direction in support of Squad-level Security Compliance Focals.
The SDM should be technical, communicative, respected within their area, and have a growth mindset. In addition, they should continuously consider the attack vectors and security weaknesses within their service or product offerings and provide solutions to remediate those weaknesses. This overarching responsibility drives the requirement for the SDM to either be proficient in or actively seek to become proficient in the Required Skills section below.
What you'll do
Active member of the extended leadership team responsible for all elements of security compliance of the CIO Hybrid Cloud, Data Center Services & Systems Technology Infrastructure Team which enables best-in-class infrastructure for CIO's Cloud application hosting, storage, and backup environments
Acts as the primary security contact for the leadership team
Acts as initial Point of Contact for internal compliance reviews and corporate audits
Support and provide oversight for Security and Compliance programs (e.g. Management Self-Assessment, ISO Certifications etc.) activities for the service(s)
Strives to reduce risk and maintain compliance to IBM's IT Security Standards, utilizing methods and tooling for Risk Management, Access, Patch and Vulnerability Management, and Health Checking.
Provides oversight and drive to closure on security risks in WWBCIT and/or other risk management tooling
Documents any exceptions or deviations to security standards and policies as required before those findings become overdue
Drives adherence with the security portions of the Service Contract
Leads efforts on their service or product offering's key security metrics (i.e. security vulnerability, patching, configuration, logging, etc.) and work with their Offering Manager(s) and DevOps teams to address their service's security findings within required remediation timelines
Collaborate with Business Unit Executives and BISO team
Provides recommendations on security decisions and improvements in collaboration with the BISO team
Adopts Security and Privacy by Design (SPbD) practices within their squad for applicable business units
Regularly participates in Security Focal Interlock calls to receive training, share best practices and receive feedback
Required Technical and Professional Expertise
Extensive experience in IT or information security domain
Experience in application & operating system security management
Experience in network security management
Experience in security technologies such as Identity & Access Management, encryption, DLP, Data privacy (GDPR) etc
Preferred Technical and Professional Expertise
IT Audit, Compliance, Risk Management, Operational Risk, Cyber Security, Information Security
Experience evaluating third party security controls and status
Experience conducting risk assessment of problem areas
Risk management experience - assessment, prioritization, and remediation
Familiarity with SOC 2 Type II audits
Strong experience with multiple operating systems (z/OS, AIX, Windows, Linux, RedHat OpenShift etc.)
Strong experience/working technical knowledge in developing procedures focused on autonomous 'zero touch' operations using Red Hat products such as OpenShift, Ansible, and Satellite
Preferred Certifications: CISSP and/or CISA
About Business UnitThe Office of the Chief Information Officer (CIO) owns IBM's IT strategy and provides the tools, workstations, devices, and infrastructure that IBMers use to do their jobs every day. Put simply, our mission is to create a productive environment for IBM's worldwide employees. Join us as we lead with design to drive simplicity and ease of use, engineering the systems that run the business, and innovating to transform the business.
This job requires you to provide your COVID-19 vaccination status with supporting documentation, where legally permissible.
Your Life @ IBMIn a world where technology never stands still, we understand that, dedication to our clients success, innovation that matters, and trust and personal responsibility in all our relationships, lives in what we do as IBMers as we strive to be the catalyst that makes the world work better.
Being an IBMer means you'll be able to learn and develop yourself and your career, you'll be encouraged to be courageous and experiment everyday, all whilst having continuous trust and support in an environment where everyone can thrive whatever their personal or professional background.
Our IBMers are growth minded, always staying curious, open to feedback and learning new information and skills to constantly transform themselves and our company. They are trusted to provide on-going feedback to help other IBMers grow, as well as collaborate with colleagues keeping in mind a team focused approach to include different perspectives to drive exceptional outcomes for our customers. The courage our IBMers have to make critical decisions everyday is essential to IBM becoming the catalyst for progress, always embracing challenges with resources they have to hand, a can-do attitude and always striving for an outcome focused approach within everything that they do.
Are you ready to be an IBMer?
About IBMIBM's greatest invention is the IBMer. We believe that through the application of intelligence, reason and science, we can improve business, society and the human condition, bringing the power of an open hybrid cloud and AI strategy to life for our clients and partners around the world.Restlessly reinventing since 1911, we are not only one of the largest corporate organizations in the world, we're also one of the biggest technology and consulting employers, with many of the Fortune 50 companies relying on the IBM Cloud to run their business. At IBM, we pride ourselves on being an early adopter of artificial intelligence, quantum computing and blockchain. Now it's time for you to join us on our journey to being a responsible technology innovator and a force for good in the world.
Location StatementIBM offers a competitive and comprehensive benefits program. Eligible employees may have access to:
Healthcare benefits including medical & prescription drug coverage, dental, vision, and mental health & well being
Financial programs such as 401(k), the IBM Employee Stock Purchase Plan, financial counseling, life insurance, short & long- term disability coverage, and opportunities for performance based salary incentive programs
Generous paid time off including 12 holidays, minimum 56 hours sick time, 120 hours vacation, 12 weeks parental bonding leave in accordance with IBM Policy, and other Paid Care Leave programs. IBM also offers paid family leave benefits to eligible employees where required by applicable law
Training and educational resources on our personalized, AI-driven learning platform where IBMers can grow skills and obtain industry-recognized certifications to achieve their career goals
Diverse and inclusive employee resource groups, giving & volunteer opportunities, and discounts on retail products, services & experiences
The compensation range and benefits for this position are based on a full-time schedule for a full calendar year. The salary will vary depending on your job-related skills, experience and location. Pay increment and frequency of pay will be in accordance with employment classification and applicable laws. For part time roles, your compensation and benefits will be adjusted to reflect your hours. Benefits may be pro-rated for those who start working during the calendar year.
We consider qualified applicants with criminal histories, consistent with applicable law.
IBM will not be providing visa sponsorship for this position now or in the future. Therefore, in order to be considered for this position, you must have the ability to work without a need for current or future visa sponsorship.
Being You @ IBMIBM is committed to creating a diverse environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, pregnancy, disability, age, veteran status, or other characteristics. IBM is also committed to compliance with all fair employment practices regarding citizenship and immigration status.