Senior Expert Cyber Defense Mgmt

Dată: 22 iul. 2025

Locație: Bucharest, RO, 013329

Companie: OMV Group

Overview of the company

OMV Petrom is the largest energy company in South-Eastern Europe, being active on every aspect of the energy value chain: from wells, producing oil and gas, to refining and fuels distribution, gas supply and power generation & supply. We provide the energy for day-to-day modern life: fuels for mobility, light and heat. We believe that we can only evolve with a diverse mix of employees and by ensuring a healthy work-life balance.

Our Business | OMVPetrom.com

At OMV Petrom, we have a long tradition of responsible behavior towards employees, the environment and society. Sustainability means a focus on conducting the business responsibly, efficiently and in an innovative way. We are committed to create long-term value for the company and our stakeholders, while respecting the environment and, supporting the communities in which we operate.

Sustainability | OMVPetrom.com

Your tasks

  • Coordinates activities and service providers responsible for the monitoring, investigation, analysis, and response to suspicious behavior, cyberattacks, and security breaches within the global Borealis environment, using a variety of cyber defense tools and methods to identify and mitigate threats and alerts. Ensures alignment of SOC operations with Borealis’ risk tolerance and continuously improves alert fidelity to reduce false positives.
  • Leads the coordination of global cyber defense operations, ensuring Borealis is protected against evolving threats through proactive detection, response, and mitigation strategies.
  • Ensures the availability and continuous updates of documentation and escalation procedures for incidents (including event history, status, and potential impact for further action) that may cause ongoing and immediate impact to the environment. Ensures that SOC activities support internal and regulatory compliance requirements and that reporting is timely and accurate.
  • Develops the incident response procedures and coordinates their implementation across internal teams and external service providers.
  • Monitors the triage activities for security incidents and ensures the scope of work, SLAs, and service standards are fulfilled. Defines and enforces SOC/MSSP KPIs and fosters collaboration and continuous improvement.
  • Supervises activities and tasks for operational IT teams during security incident handling and informs upper management of progress, impact, and resolution status.
  • Reviews the results of the analysis and correlation of log information and network traffic of detected threats and anomalies (Threat Hunting) and ensures necessary corrective actions are taken.
  • Reviews and validates the ongoing development of systems for detection and response, including the development and tuning of detection rules and integrations with peripheral systems. Maximizes the use of advanced SIEM/SOAR platforms (e.g., Microsoft Sentinel), including automation, analytics rules, playbooks, and workbooks to enhance detection and response efficiency.

Your profile

  • Master’s degree: IT&C.
  • Relevant professional experience: > 9 years
  • Excellent Knowledge in the area of Information Security (CISSP certification or CompTIA Security+)
  • Excellent Knowledge in Monitoring and Security Operations (e.g. GIAC Continuous Monitoring Certification (GMON))
  • Excellent Knowledge in Critical Security Controls (e.g. GIAC Critical Controls Certification (GCCC))
  • Excellent Knowledge in Network Forensics (e.g. GIAC Network Forensic Analyst (GNFA))
  • Excellent Knowledge in Digital Forensics (e.g. GIAC Certified Forensic Analyst (GCFA))
  • Senior Expert Knowledge in Incident Handling (e.g. GIAC Certified Incident Handler (GCIH))
  • Excellent knowledge in IT-Security risk management
  • Fluent in English

Location

Bucharest

What OMV Petrom can offer

  • Long weekend plans are always welcome - on Friday, our office hours end at 14.00.
  • You can rely on a health insurance that covers medical treatment in a variety of private medical clinics.
  • You can work from home, if the work activity allows.
  • The number of your days off increase according to your work experience so that you'll enjoy more free time.
  • We aim to make your vacation days happier, by paying each vacation day double.
  • Are you a top performer? Your work can be rewarded each three months based on performance results.
  • Additional days off and various financial support for different events like marriage, child birth, etc.
  • Access to LinkedIn Learning and a variety of development programs.
  • Do you prefer cars or bikes? We have free private covered parking.