Introduction
At IBM Infrastructure & Technology, we design and operate the systems that keep the world running. From high-resiliency mainframes and hybrid cloud platforms to networking, automation, and site reliability. Our teams ensure the performance, security, and scalability that clients and industries depend on every day. Working in Infrastructure & Technology means tackling complex challenges with curiosity and collaboration. You'll work with diverse technologies and colleagues worldwide to deliver resilient, future-ready solutions that power innovation. With continuous learning, career growth, and a supportive culture, IBM provides the opportunities to build expertise and shape the infrastructure that drives progress.
Your Role And Responsibilities
The IBM Cloud Platform Security team is looking for a talented, innovative and enthusiastic technical professional that will support and improve our Security posture to ensure our customers succeed. IBM Cloud Platform Security has a global cloud presence that continues to grow and expand its reach. Our Security team is responsible for maintaining security at scale for all IBM Cloud platform services. As a trusted platform, first-rate security, fail-safe reliability and exceptional quality is of the utmost importance.
As an IBM Cloud Platform Security Specialist, you will ensure IBM Cloud maintains and enhances the services security stance for an evolving threat environment. Bringing a unique blend of knowledge and skills in both Security and technology systems, you will play a key role in analysing business needs, identifying and solving problems, advising and designing automated solutions, developing and testing new processes and procedures, and maintaining well-documented information systems.
You will work in an agile, collaborative environment to build, configure, maintain and operate both knowledge and processes systems for IBM Cloud. Working closely with our worldwide teams, you will have a unique opportunity to gain first-hand experience with the latest technologies and be supported by a global team of IBMers to grow your own technical skills and develop your career.
Key Responsibilities
- Maintaining and enhancing the Security posture for IBM Cloud platform.
- Promotes security within the Service, driving security awareness across the tribe.
- Providing subject matter expertise - providing advice and guidance on security decisions and improvements.
- Map security controls to implementations for example, NIST/ISO/SOC 2/PCI
- Perform audit readiness and control validation.
- Risk Assessment and Management; assess risks to the organisation and advise on appropriate best practices.
- Managing our customers, both internal and external, providing subject matter expertise.
- Leading and actively participating in both internal and external audits.
- Analyse technical findings from a range of sources, which include security scan engines, penetration testing, customer reporting, CIS benchmark evaluations and others.
- Responsible for business continuity disaster recovery program.
- Leading and actively participating in both internal and external audits.
Preferred Education
Master's Degree
Required Technical And Professional Expertise
- A strong technical background with 5 years or more experience ideally in one of these disciplines: Software Development, Network Engineering, Technical Support or another adjacent fiel
- Understanding of operating systems especially Linux/Unix based
- Understanding of core network concepts as a minimum.
- Strong understanding of security disciplines and platforms
- Ability to develop and implement appropriate processes to achieve and maintain Security and reduce risk
- Ability to manage multiple tasks, while ensuring that commitments and timetables are met
- Excellent written and verbal communication skills as well as flexibility to work with team members in other time zones
Preferred Technical And Professional Experience
- Working knowledge of information security best practices such as: ISO 27000 series, GDPR and Security programs such as FedRAMP, HIPAA, GDPR, SOC 2, or PCI
- Kubernetes & Linux security: Namespaces/cgroups, seccomp, AppArmor/SELinux; cluster hardening and workload isolation.
- Experience of development languages and/or scripting (python, shell script, Golang etc)
- Industry recognised Cyber Security or Technical qualifications
- Familiarity with cloud technologies
- Understanding of Cloud/DevOps/SRE