Description
JOBSUMMARY
The Continent Information Security Partnerships position drives continent security program policy and project execution providing leadership and direction to the above property and on-property teams. The position strives for outstanding security compliance status and ensures that Security implementations within the continent follow company security standards. The role will track and report on established security metrics to Senior GIS and Continent leaders and will have a direct reporting line to the Senior Manager / Director / Senior Director of APAC/APEC Information Security Partnerships. This position maintains strong relationships with continent Business Partners IT operations and Field IT Managers and is the point of contact working with them to liaise with additional teams within Security. CANDIDATEPROFILE
EducationandExperienceRequiredQualifications:
- 5 years overall experience in Information Technology Information Security and/or IT project managementexperience
- 2 years in executing technology plans and/or project portfolios or information security programs
- 1 years of implementing enterprise security risk management frameworks and processes.
- Fluent in English both spoken and written.
- Bachelors Degree or the equivalent combination of education technical training certification or work/military experience
PreferredQualifications:
- 5 years experience in hotel IT Management.
- 2 years experience working with Business and IT partners.
- Current information security certification including Certified Information Security Manager (CISM) Certified Information Systems Auditor (CISA) or Certified Information Systems Security Professional (CISSP)
- 2 years experience in Cybersecurity response and remediation
- Basic understanding of vulnerabilities and remediation actions
- Basic understanding of different attack vectors
- Demonstrated understanding of key network and technical security controls.
- Experience participating in and coordinating activities for security incident response.
- Good Knowledge of global regulatory standards such as PDPA PIPA NDB PDPB etc. and understanding of PCI DSS
- Demonstrated ability to apply GIS policies at a discipline unit level.
- Knowledge of IT security within an infrastructure environment.
- Knowledge of business environment service requirements and hospitality culture.
- Risk identification and remediation along with respective teams
- Experience in project management.
COREWORKACTIVITIES
- Leads Security project implementations within a designated region/area partnering with the respective above property and property teams.
- Develops and delivers tactical communications issues remediation planning and implementation timelines with the regional IT Operations and Global Information Security teams.
- Initiates and completes audit programs including tracking of progress results and gaps remediation. Shares with GIS and continent partners and leads follow-ups such as Information Security Audits Information Protection Assessments (IPPA) IT Peer Review IT Checklist Regulation related assessments and PCI audits.
- Identifies learning and knowledge gaps and facilitates educational calls materials and meetings to the regional IT Operations and field associates
- Plans and leads security reviews/certifications for new systems and services for properties across an assigned continent.
- Performs first-line approval of security requests from the partners and presents to leadership for additional approvals
- Key contact for security compliance partnering with continent and global GIS teams. Tracks compliance of the continent and works with on-property IT associates along with the Area IT Managers towards issues remediations providing necessary escalations and follow-ups to the respective teams.
- Partners with Cyber Incident Response Team during incident response and remediation with their respective continent
- Point of contact for general questions and queries around global Information security programs policies procedures and/or strategy.
- Provide necessary training and guidance to field IT teams Non-technical staff and other stakeholders
- Preparation of monthly reports and other related documentation to presenting to leadership team
MANAGING WORK PROJECTS AND POLICIES
- Coordinates and implements work and projects as assigned.
- Generates and provides accurate and timely results in the form of reports presentations etc.
- Analyzes information and evaluates results to choose the best solution and solve problems.
- Manages the flow of questions and directs questions.
SUPPORTING OPERATIONS
- Works with the team to put sustainable work processes and systems in place that support the execution of the strategy.
- Establishes and maintains complete and up-to-date information to ensure accurate reporting.
- Represents the team in resolving situations.
- Maintains and manages inventory and service operations.
ADDITIONAL RESPONSIBILITIES
- Informs updates and provides information to supervisors co-workers and subordinates by telephone in written form e-mail or in person in a timely manner.
- Attends and participates in all relevant meetings.
- Presents ideas expectations and information in a concise organized manner.
- Uses problem-solving methodology for decision-making and follow-up.
- Maintains positive working relations with internal customers and department managers.
- Manages time effectively and conducts activities in an organized manner.
- Performs other reasonable duties as assigned by the manager.
MANAGEMENT COMPETENCIES
LEADERSHIP
- Communication- Conveys information and ideas to others in a convincing and engaging manner through a variety of methods.
- Leading Through Vision and Values - Keeps the organizations vision and values at the forefront of employee decision making and action.
- Managing Change - Initiates and/or manages the change process and energizes it on an ongoing basis taking steps to remove barriers or accelerate its pace; serves as role model for how to handle change by maintaining composure and performance level under pressure or when experiencing challenges.
- Problem Solving and Decision Making - Identifies and understands issues problems and opportunities; obtains and compares information from different sources to draw conclusions develops and evaluates alternatives and solutions solves problems and chooses a course of action.
- Professional Demeanor - Exhibits behavioral styles that convey confidence and command respect from others; makes a good first impression and represents the company in alignment with its values.
- Strategy Development - Develops business plans by exploring and systematically evaluating opportunities with the greatest potential for producing positive results; ensures successful preparation and execution of business plans through effective planning organizing and on-going evaluation processes.
BUILDING RELATIONSHIPS
CustomerRelationships-Developsandsustainsrelationshipsbasedonanunderstandingofcustomer/stakeholderneedsandactionsconsistentwiththecompanysservicestandards.
- GlobalMindset-Supportsemployeesandbusinesspartnerswithdiversestylesabilitiesmotivationsand/orculturalperspectives;utilizesdifferencestodriveinnovationengagementandenhancebusinessresults;andensuresemployeesaregiventheopportunitytocontributetotheirfullpotential.
- StrategicPartnerships-Developscollaborativerelationshipswithfellowemployeesandbusinesspartnersbymakingthemfeelvaluedappreciatedandincluded;explorespartnershipopportunitieswithotherpeopleinandoutsidetheorganization;influencesandleveragescorporateandcontinentalsharedservicesand/ordisciplineleaders(&MarketingFinanceRevenueManagement)toachieveobjectives;maintainseffectiveexternalrelationswithgovernmentbusinessandindustryinrespective
countries;performseffectivelyasaliaisonbetweenlocationsdisciplinesandcorporatetoensureneededresourcesarereceivedandcorporatestrategiesareunderstoodandexecuted.
LEARNING AND APPLYING PROFESSIONAL EXPERTISE
- Continuous Learning -Actively identifies new areas for learning; regularly creates and takes advantage of learning opportunities; uses newly gained knowledge and skill on the job and learns through their application.
- Technical Acumen -Understanding and utilizing professional skills and knowledge in a specific functional area to conduct and manage everyday business operations and generate innovative solutions to approach function-specific work challenges
- Technical Intelligence:Knowledge and ability to define and apply appropriate technology to enhance business process
- Development Methodologies:Knowledge of general stages of SDLC framework and the application tiers within the development space.
- Information Security:Knowledge of the security considerations relevant within the development space including industry best practices related to information security
- Business Acumen- Understands and utilizes business information to manage everyday operations and generate innovative solutions to approach business and administrative challenges.
- Basic Competencies - Fundamental competencies required for accomplishing basic work activities.
At Marriott International we are dedicated to being an equal opportunity employer welcoming all and providing access to opportunity. We actively foster an environment where the unique backgrounds of our associates are valued and greatest strength lies in the rich blend of culture talent and experiences of our are committed to non-discrimination on any protected basis including disability veteran status or other basis protected by applicable law.
Required Experience:
Manager
Description JOBSUMMARY The Continent Information Security Partnerships position drives continent security program policy and project execution providing leadership and direction to the above property and on-property teams. The position strives for outstanding security compliance status and ensures t...
Description
JOBSUMMARY
The Continent Information Security Partnerships position drives continent security program policy and project execution providing leadership and direction to the above property and on-property teams. The position strives for outstanding security compliance status and ensures that Security implementations within the continent follow company security standards. The role will track and report on established security metrics to Senior GIS and Continent leaders and will have a direct reporting line to the Senior Manager / Director / Senior Director of APAC/APEC Information Security Partnerships. This position maintains strong relationships with continent Business Partners IT operations and Field IT Managers and is the point of contact working with them to liaise with additional teams within Security. CANDIDATEPROFILE
EducationandExperienceRequiredQualifications:
- 5 years overall experience in Information Technology Information Security and/or IT project managementexperience
- 2 years in executing technology plans and/or project portfolios or information security programs
- 1 years of implementing enterprise security risk management frameworks and processes.
- Fluent in English both spoken and written.
- Bachelors Degree or the equivalent combination of education technical training certification or work/military experience
PreferredQualifications:
- 5 years experience in hotel IT Management.
- 2 years experience working with Business and IT partners.
- Current information security certification including Certified Information Security Manager (CISM) Certified Information Systems Auditor (CISA) or Certified Information Systems Security Professional (CISSP)
- 2 years experience in Cybersecurity response and remediation
- Basic understanding of vulnerabilities and remediation actions
- Basic understanding of different attack vectors
- Demonstrated understanding of key network and technical security controls.
- Experience participating in and coordinating activities for security incident response.
- Good Knowledge of global regulatory standards such as PDPA PIPA NDB PDPB etc. and understanding of PCI DSS
- Demonstrated ability to apply GIS policies at a discipline unit level.
- Knowledge of IT security within an infrastructure environment.
- Knowledge of business environment service requirements and hospitality culture.
- Risk identification and remediation along with respective teams
- Experience in project management.
COREWORKACTIVITIES
- Leads Security project implementations within a designated region/area partnering with the respective above property and property teams.
- Develops and delivers tactical communications issues remediation planning and implementation timelines with the regional IT Operations and Global Information Security teams.
- Initiates and completes audit programs including tracking of progress results and gaps remediation. Shares with GIS and continent partners and leads follow-ups such as Information Security Audits Information Protection Assessments (IPPA) IT Peer Review IT Checklist Regulation related assessments and PCI audits.
- Identifies learning and knowledge gaps and facilitates educational calls materials and meetings to the regional IT Operations and field associates
- Plans and leads security reviews/certifications for new systems and services for properties across an assigned continent.
- Performs first-line approval of security requests from the partners and presents to leadership for additional approvals
- Key contact for security compliance partnering with continent and global GIS teams. Tracks compliance of the continent and works with on-property IT associates along with the Area IT Managers towards issues remediations providing necessary escalations and follow-ups to the respective teams.
- Partners with Cyber Incident Response Team during incident response and remediation with their respective continent
- Point of contact for general questions and queries around global Information security programs policies procedures and/or strategy.
- Provide necessary training and guidance to field IT teams Non-technical staff and other stakeholders
- Preparation of monthly reports and other related documentation to presenting to leadership team
MANAGING WORK PROJECTS AND POLICIES
- Coordinates and implements work and projects as assigned.
- Generates and provides accurate and timely results in the form of reports presentations etc.
- Analyzes information and evaluates results to choose the best solution and solve problems.
- Manages the flow of questions and directs questions.
SUPPORTING OPERATIONS
- Works with the team to put sustainable work processes and systems in place that support the execution of the strategy.
- Establishes and maintains complete and up-to-date information to ensure accurate reporting.
- Represents the team in resolving situations.
- Maintains and manages inventory and service operations.
ADDITIONAL RESPONSIBILITIES
- Informs updates and provides information to supervisors co-workers and subordinates by telephone in written form e-mail or in person in a timely manner.
- Attends and participates in all relevant meetings.
- Presents ideas expectations and information in a concise organized manner.
- Uses problem-solving methodology for decision-making and follow-up.
- Maintains positive working relations with internal customers and department managers.
- Manages time effectively and conducts activities in an organized manner.
- Performs other reasonable duties as assigned by the manager.
MANAGEMENT COMPETENCIES
LEADERSHIP
- Communication- Conveys information and ideas to others in a convincing and engaging manner through a variety of methods.
- Leading Through Vision and Values - Keeps the organizations vision and values at the forefront of employee decision making and action.
- Managing Change - Initiates and/or manages the change process and energizes it on an ongoing basis taking steps to remove barriers or accelerate its pace; serves as role model for how to handle change by maintaining composure and performance level under pressure or when experiencing challenges.
- Problem Solving and Decision Making - Identifies and understands issues problems and opportunities; obtains and compares information from different sources to draw conclusions develops and evaluates alternatives and solutions solves problems and chooses a course of action.
- Professional Demeanor - Exhibits behavioral styles that convey confidence and command respect from others; makes a good first impression and represents the company in alignment with its values.
- Strategy Development - Develops business plans by exploring and systematically evaluating opportunities with the greatest potential for producing positive results; ensures successful preparation and execution of business plans through effective planning organizing and on-going evaluation processes.
BUILDING RELATIONSHIPS
CustomerRelationships-Developsandsustainsrelationshipsbasedonanunderstandingofcustomer/stakeholderneedsandactionsconsistentwiththecompanysservicestandards.
- GlobalMindset-Supportsemployeesandbusinesspartnerswithdiversestylesabilitiesmotivationsand/orculturalperspectives;utilizesdifferencestodriveinnovationengagementandenhancebusinessresults;andensuresemployeesaregiventheopportunitytocontributetotheirfullpotential.
- StrategicPartnerships-Developscollaborativerelationshipswithfellowemployeesandbusinesspartnersbymakingthemfeelvaluedappreciatedandincluded;explorespartnershipopportunitieswithotherpeopleinandoutsidetheorganization;influencesandleveragescorporateandcontinentalsharedservicesand/ordisciplineleaders(&MarketingFinanceRevenueManagement)toachieveobjectives;maintainseffectiveexternalrelationswithgovernmentbusinessandindustryinrespective
countries;performseffectivelyasaliaisonbetweenlocationsdisciplinesandcorporatetoensureneededresourcesarereceivedandcorporatestrategiesareunderstoodandexecuted.
LEARNING AND APPLYING PROFESSIONAL EXPERTISE
- Continuous Learning -Actively identifies new areas for learning; regularly creates and takes advantage of learning opportunities; uses newly gained knowledge and skill on the job and learns through their application.
- Technical Acumen -Understanding and utilizing professional skills and knowledge in a specific functional area to conduct and manage everyday business operations and generate innovative solutions to approach function-specific work challenges
- Technical Intelligence:Knowledge and ability to define and apply appropriate technology to enhance business process
- Development Methodologies:Knowledge of general stages of SDLC framework and the application tiers within the development space.
- Information Security:Knowledge of the security considerations relevant within the development space including industry best practices related to information security
- Business Acumen- Understands and utilizes business information to manage everyday operations and generate innovative solutions to approach business and administrative challenges.
- Basic Competencies - Fundamental competencies required for accomplishing basic work activities.
At Marriott International we are dedicated to being an equal opportunity employer welcoming all and providing access to opportunity. We actively foster an environment where the unique backgrounds of our associates are valued and greatest strength lies in the rich blend of culture talent and experiences of our are committed to non-discrimination on any protected basis including disability veteran status or other basis protected by applicable law.
Required Experience:
Manager
View more
View less