Cybersecurity, Telecom & Infrastructure Lead

  • Full-time
  • Business Units: TC - Digital Resilience

Company Description

Statkraft is a leading company in hydropower internationally and Europe's largest generator of renewable energy. The Group produces hydropower, wind power, solar power, and gas-fired power. Statkraft is a global company in energy market operations. Statkraft has around 6,200 employees in 20 countries.

Job Description

The Cybersecurity and Telecom & Infrastructure Lead is responsible for the secure design, deployment, and operation of the organization's IT and OT infrastructure—including servers (virtual, on-premise, and cloud-based), networks, and security technologies—ensuring resilient, reliable, and protected digital services that support power plants, substations, and catchment zones in line with corporate standards and regulatory requirements. T

This role combines deep technical expertise in infrastructure engineering with a strong security-first approach, implementing controls and solutions that safeguard critical business operations against internal and external threats while enabling structured growth of the enterprise architecture and supporting digital transformation initiatives. This position also supervises a team of Infrastructure Specialists, overseeing their day-to-day activities, guiding their technical development, and ensuring the quality and consistency of infrastructure support delivered to the business. As the primary point of contact for both infrastructure and cybersecurity matters, the Lead communicates risks, technical decisions, and best practices to technical and non-technical audiences alike, fostering a strong security culture across the business. Operating as part of the global IT and Cybersecurity teams, this role contributes to the continuous improvement and consistent, robust delivery of centralized IT/OT services across all company locations worldwide, working closely with the business to ensure the right service levels and support for growth.

Key Responsibilities:

  • Lead and guide the technical team under their supervision, fostering continuous training and overseeing the area´s operations.
  • Shape and develop the cybersecurity function by defining policies, procedures, and contingency plans related to infrastructure and operational continuity.
  • Oversee the detection of and response to security incidents, investigating events and coordinating timely corrective actions.
  • Promote an organizational culture focused on information security by fostering awareness and best practices across the company.
  • Responsible to comply with cybersecurity and information security policies, guidelines, legal requirements or any other adopted to protect the IT/OT infrastructure.
  • Design, implement and support cybersecurity solutions, ensuring an optimal architecture using corporate standards.
  • Strong collaboration on cybersecurity operations with global CSIRT team (monitor, prevention, detection, investigation, and response), ensuring proper incident handling according to SLAs.
  • Participate in risk assessments and audits, ensuring compliance with corporate and regulatory local requirements.
  • Work in close cooperation with the business acting as a consultant for any cybersecurity or information security matter.
  • Close collaboration with central staff team, acting as an interface to understand and adopt security policies at a country level.
  • Manage and maintain infrastructure: servers, environments, deployments and uptime.
  • Oversee daily operations, ensuring compliance with SLAs and KPIs.
  • Ensure the operational continuity of critical services (network, servers, virtualization, VPN, firewall, wi-fi).
  • Lead technical projects acting as a Project Manager.
  • Support the business to ensure the continuity of critical services inside/outside working hours. This position is part of the 24x7 rotation monthly scheme of the area.
  • Stay up to date on emerging threats, trends and new technologies.
  • Maintain up-to-date technical documentation and promote knowledge transfer.

Prepare service performance reports and indicators.

Qualifications

  • One year of experience leading technical teams.
  • Three years of proved experience working on cybersecurity and information security.
  • Three years of experience designing, implementing, and operating IT infrastructure (Windows, Unix, Databases and Networking), preferably in global organizations.
  • Experience in information security awareness programs for organization’s employees.
  • Experience in the technical supervision of suppliers.
  • Experience in incident, change and problem management.
  • At least one of the following certifications is required: CEH, eJPT, SSCP, CPENT or Security+.
  • Proved experience operating security devices: NGFW, VPN, IPSEC, SDWAN, Proxy, LDAP, IDS/IPS, SIEM, EDR, etc.
  • Proved experience in SOAR, threat hunting, NAC, Zero Trust and security patch management.
  • Proved experience in OT environments.
  • Advanced understanding of TCP/IP networking.
  • Experience supporting compliance with framework such as OWASP, ITIL, NIST and ISO/IEC27001.
  • Knowledge of general information security policies and risk management.
  • • Knowledge and experience in telecommunications systems, troubleshooting AD, DNS, Windows Server and VMWare.
  • • Desirable knowledge of cloud security in Azure.
  • • Desirable experience or knowledge on Industrial Control Systems (ICS).
  • • University degree in Engineering, any specialization.
  • • Fluent English level, written and spoken.

Additional Information

Statkraft offers competitive terms of employment and benefit schemes, and we’re a trusted employer that puts the safety of our people first. We believe that a safe and healthy working environment is a matter of choice, not chance.

Statkraft's vision is to renew the way the world is powered. To navigate the complex journey ahead, we need every voice at the table. We therefore work actively to be a diverse and inclusive workplace and welcome all applicants regardless of background, gender, age, sexual orientation, religious belief, ethnicity, nationality or disability.

By clicking the link above or any third-party link within this posting, you are leaving this site and going to a third-party website where the third-party website's terms and privacy policy apply

Privacy Notice