Job purpose
Schneider Electric is seeking a Crisis Simulation, Recovery & Learnings manager. This role will report to Schneider Electric's Head of Cyber Defense and Incident Response. They will participate to enhance the cybersecurity posture of Schneider Electric, ensuring and strengthening cybersecurity Resilience and Trust.
The successful candidate will be responsible for leading the cyber crisis and incident simulations, by helping cyber and non-cyber key stakeholders understand their roles during a crisis or incident.
He/she will take advantage of the experience in incidents, usual and unusual attacks patterns, and simulations to lead the recovery and learning narrative with business leaders through tailored examples and case studies.
Want more jobs like this?
Get Software Engineering jobs in Barcelona, Spain delivered to your inbox every week.
He/She will be leading the management of long-term preventive and corrective actions learned from incidents and ensure their implementation. This role will also develop and maintain internal processes as well as KPIs to measure the success and impact of the implemented coactive actions and learnings and document the output across our cyber risk register.
Key responsibilities
Cyber Incident & Crisis Simulations :
- Supervise the engagement with cyber experts and different business units to define incidents and crisis scenarios, align internal and external stakeholders, manage the organization
- Align scenarios with the cyber strategy & Cyber Risk Register by defining an annual strategy for simulations (formats, geographic repartition...)
- Lead the Red Team, the execution of the simulations, and actively assist the preparation of the exercises
- Animate key meetings with senior stakeholders and players including internal executives and external parties such as customers, suppliers, and national authorities
- Craft and present lessons learned, action plans and next steps, and supervise their implementation
Recovery & learnings :
- Understand the cyber-Risk Register in-depth to propose appropriate mapping of the risks.
- Analyze the Executive Debriefings following major cybersecurity incidents to understand their corrective actions (RCA) and perform transversal analysis across people process technology
- Consolidate preventive and corrective actions to the most recurring issues, control deficiencies, failing controls etc.
- Proactively assess current processes to identify security gaps by connecting with different business, digital, operational units
- Supervise, coordinate, and supportthe implementation of these corrective actions with the appropriate practice owners
- Support in driving the conversation with business leadership based on experienced incidents
- Support in delivering corporate messaging for the Board and executive meetings, preparing the materials, presentation etc.
- Develop and maintain internal processes as well as KPIs to measure the success and impact of the incident response process and learnings and document the output across our cyber risk register.
- Enquire about international cyber news and trends in defense, geopolitical challenges, TTPs and tools
- Establish and maintain relationship with the CERT community and national authorities supported by RCISOs and other cybersecurity leaders
Qualifications & Technical skills
- Master Education in Engineering or Business
- Previous experience in Cyber Security and Project Management
- Ability to communicate and evolve in a multicultural context
- Understand and articulate cyber and technical topics (attack methodologies, frameworks like NIST, in-depths processes and challenges...)
- Continuous desire to learn
- Oral and writing skills, excellent relationship to collaborate and communicate with other teams
- Strength of conviction and confidence to communicate to senior leadership and officials with open-minds and diplomacy
- Fluent in English
- Strong ability to find relevant solutions, be persistent and agile to ask tough questions and dig through the information
- Ability to work in autonomy
Looking to make an IMPACT with your career?
When you are thinking about joining a new team, culture matters. At Schneider Electric, our values and behaviors are the foundation for creating a great culture to support business success. We believe that our IMPACT values - Inclusion, Mastery, Purpose, Action, Curiosity, Teamwork - starts with us.
IMPACT is also your invitation to join Schneider Electric where you can contribute to turning sustainability ambition into actions, no matter what role you play. It is a call to connect your career with the ambition of achieving a more resilient, efficient, and sustainable world.
We are looking for IMPACT Makers; exceptional people who turn sustainability ambitions into actions at the intersection of automation, electrification, and digitization. We celebrate IMPACT Makers and believe everyone has the potential to be one.
Become an IMPACT Maker with Schneider Electric - apply today!
36 billion global revenue
+13% organic growth
150 000+ employees in 100+ countries
#1 on the Global 100 World's most sustainable corporations
You must submit an online application to be considered for any position with us. This position will be posted until filled.
Schneider Electric aspires to be the most inclusive and caring company in the world, by providing equitable opportunities to everyone, everywhere, and ensuring all employees feel uniquely valued and safe to contribute their best. We mirror the diversity of the communities in which we operate, and 'inclusion' is one of our core values. We believe our differences make us stronger as a company and as individuals and we are committed to championing inclusivity in everything we do.
At Schneider Electric, we uphold the highest standards of ethics and compliance, and we believe that trust is a foundational value. Our Trust Charter is our Code of Conduct and demonstrates our commitment to ethics, safety, sustainability, quality and cybersecurity, underpinning every aspect of our business and our willingness to behave and respond respectfully and in good faith to all our stakeholders. You can find out more about our Trust Charter here
Schneider Electric is an Equal Opportunity Employer. It is our policy to provide equal employment and advancement opportunities in the areas of recruiting, hiring, training, transferring, and promoting all qualified individuals regardless of race, religion, color, gender, disability, national origin, ancestry, age, military status, sexual orientation, marital status, or any other legally protected characteristic or conduct.