Job Profile: Cyber Defense Organization (CDO) coordinator
Position Overview:
The coordinator of Cyber Defense Organization (CDO) is responsible for designing, implementing, and evolving a
robust internal cyber defense and response structure to protect the organization from cyber threats. This role
will oversee the establishment and strategic development of a 2nd Tier Security Operations Center (SOC)
focusing on incident response, along with related blue-team functions and setting up red-teaming, vulnerability
management, attack surface management, and Cyber Security Incident Response Team (CSIRT) coordination.
With a vision of maturing the organization into a fully functional, resilient Cyber Defense Organization, the ideal
candidate will guide the expansion of capabilities through internal resources, external contractors, and managed
security service providers (MSSPs).
As a result of the departure of some employees, there is currently a need for both quantitative and qualitative
strengthening of the CDO. The coordinator will have to function as a hub in the web.
Functie-eisen
Key Responsibilities:
1. CDO Strategy and Vision Development:
- Develop and lead a multi-year roadmap for the Cyber Defense Organization, aligning with organizational risk tolerance, compliance requirements, and business objectives.
- Formulate strategies for setting up and expanding the CDO to a mature and fully operational state,continuously improving detection, response, and remediation capabilities.
2. SOC and Blue Team Operations:
- Oversee the establishment and management of a 2nd Tier SOC, with primary responsibilities in security monitoring, incident response, threat detection, and blue team operations.
- Integrate proactive red-teaming and vulnerability assessment capabilities to identify and mitigate internal and external threats effectively.
3. Vulnerability and Attack Surface Management:
- Develop, build and run frameworks and processes for continuous vulnerability scanning, assessment, and remediation that is focused and prioritized on our organisation’s specific needs.
- Guide the creation and evolution of attack surface management practices to minimize exposure and quickly respond to new threats.
- Coordinate penetration (or redteaming) testing on applications, network and infrastructures (IT and OT) to identify potential vulnerabilities and weaknesses.
4. CSIRT Coordination and Incident Management:
- Establish a centralized CSIRT coordination process to standardize and streamline incident handling and escalation procedures.
- Coordinate with cross-functional teams to ensure incidents are managed with an emphasis on speed, accuracy, and effectiveness.
5. Team Leadership and Development:
- Manage and coach the CDO team members. The CDO team is fairly junior, which means that as a coordinator you regularly have to roll up your sleeves.
- Lead the hiring, training, and professional development of the CDO team, ensuring roles are filled with skilled professionals.
- Evaluate and engage external resources (contractors, MSSPs) as necessary to augment internal capabilities.
6. Performance Measurement and Reporting:
- Develop key metrics and reporting frameworks to monitor the effectiveness of cyber defense activities and SOC performance.
- Regularly present CDO progress, challenges, and successes to executive leadership and stakeholders.
Competenties
Required Hard Skills:
- Technical Knowledge: Proficient in using SIEM platforms, EDR tools, threat intelligence systems, and incident response automation for reporting purposes. Experience and knowledge of OT, SCADA, ICS and/or IEC62443 would be a pre.
- Security Architecture: Knowledge of cybersecurity frameworks (e.g., NIST, MITRE ATT&CK) and best practices for network and application security.
- Threat Detection and Incident Response: Expertise in setting up and leading blue team operations, incident response protocols, and cyber threat intelligence analysis.
- Vulnerability Management: Experience with vulnerability assessment tools and practices for effective vulnerability lifecycle management.
- Red-Teaming and Penetration Testing: Familiarity with red-team methodologies, attack simulation, and reporting requirements for ethical hacking to achieve maximum results.
Required Soft Skills:
- Strategic Leadership: Ability to create a long-term vision, develop actionable roadmaps, and drive projects to successful implementation.
- Team Building and Mentorship: Proven ability to build, mentor, and inspire teams to excel in high-stakes environments.
- Cross-Functional Communication: Skillful in communicating complex technical issues to non-technical stakeholders, with clarity and precision.
- Vendor and Contract Management: Experience in managing vendor relationships and negotiating service-level agreements (SLAs) with external partners.
Required Experience:
- Cybersecurity Leadership: 5+ years in cybersecurity, with at least 2 years in a leadership role focused on SOC management, incident response, or cyber defense.
- Organizational Build-out: Experience in creating or scaling cyber defense organizations or security operations teams, ideally within a globally operating corporate setting.
- Managed Services Collaboration: Experience working with external MSSPs and managing outsourced security functions.
- Project Management: Demonstrated ability to manage multi-phase security projects on time and within budget.
Preferred Certifications:
- CISSP, CISM, or CISA
- GIAC Certified Incident Handler (GCIH), Offensive Security Certified Professional (OSCP), or Certified Red Team Operator (CRTO)
Educational Background:
- Bachelor’s degree in Cybersecurity, Information Technology, or related field (Master’s preferred).
- Relevant security certifications and advanced training are highly desirable.
This role offers an opportunity to build and shape the future of the organization’s cybersecurity defense and
response, with significant potential for strategic impact on organizational resilience and security culture.
Arbeidsvoorwaarden
Hybrid Working: 3 days on site
Hay level :70-90
Temporary Job
Motivation: YES
Bedrijfsinformatie
Vanderlande’s baggage handling systems move 3.2 billion pieces of luggage around the world per year, in other words 8.8 million per day. Its systems are active in 600 airports including 17 of the world’s top 25. More than 20 million parcels (300 packages per second) are sorted by its systems every day. These have been installed for a variety of customers including the four largest parcel and postal companies in the world. In addition, 12 of Europe’s top 20 e-commerce companies and many distribution firms have confidence in Vanderlande’s efficient and reliable solutions.
The company focuses on the optimisation of its customers’ business processes and competitive positions. Through close cooperation, it strives for the improvement of their operational activities and the expansion of their logistical achievements. Vanderlande’s extensive portfolio of integrated solutions – innovative systems, intelligent software and life-cycle services – results in the realisation of fast, reliable and efficient automation technology.
Established in 1949, Vanderlande has more than 4,000 employees, all committed to moving its customers’ businesses forward at diverse locations on every continent. With a consistently increasing turnover of more than one billion euros, it has established a global reputation over the past six decades as a highly reliable partner for value-added automated material handling solutions.
-------------------------------------------------------
Global Commercial Baggage Handling System market competition by top manufacturers, with production, price, revenue (value) and market share for each manufacturer; the top players including
Daifuku Group
Siemens AG
Vanderlande Industries
Beumer Group
G&S Airport Conveyor
Pteris Global Limited
Fives Group
Alstef