Description & Requirements
Capability Lead (Security Assurance)
The Capability Lead (Security Assurance) is critical in ensuring the security and trust of key customers. This role focuses on identifying security risks, developing mitigation strategies, maintaining compliance with internal and external requirements, and improving efficiencies through automation.
By delivering comprehensive security assurance services, the Capability Lead ensures robust security controls and drives process optimisation to enhance customer outcomes.
This role supports a small portfolio of government and enterprise customers who have contractual security deliverables as part of their service management schedules.
Key Responsibilities:
Security Assurance & Risk Management
- Conduct regular security audits and assessments for specified customers.
- Ensure compliance with internal policies and external regulations.
- Identify potential security risks and develop effective mitigation strategies.
- Develop and implement effective risk management strategies.
Policy Development and Implementation
- Create, review, and implement security policies and procedures.
- Drive staff awareness and ensure compliance with security policies.
Incident Responses
- Work with our Major incident managers and cyber teams as needed for incident investigations and response activities.
- Assist with implementing any corrective action plans for customers post-incident.
ServiceFlex, Automation and Efficiency
- Work with the Service Management Office team and product team to build out security assurance offerings as part of our ServiceFlex offerings.
- Leverage automation to enhance ongoing security assurance processes.
- Identify opportunities to streamline workflows and improve efficiency.
Stakeholder Engagement
- Foster a culture of security awareness and compliance.
- Align security practices with customer and business objectives.
Continuous Improvement & Thought leadership
- Stay informed on emerging security trends and technologies.
- Regularly enhance security assurance processes, incorporating customer feedback
- Keep our service management teams updated on evolving security trends
Examples of key deliverables across the customer portfolio:
- Security audit reports and risk assessments with actionable insights
- Comprehensive security policies tailored to customer needs
- Incident response plans and post-incident analysis reports
- Monthly security assurance reports with recommendations for process improvements
- Automation initiatives to streamline security assurance workflows
- Security Assurance and Reporting - Perform ITIL-aligned Security Assurance processes for managed components.
- Monthly Security Assurance reports detailing the status of security patch management, vulnerabilities, and mitigation strategies.
- Ensure secure management of service accounts and passwords.
- Advise on high-priority security patches and infrastructure hardening.
Skills and Experience required:
- Proven experience in security assurance, risk management, and compliance.
- Strong understanding of ITIL-aligned security processes and frameworks.
- Expertise in security automation tools and techniques to enhance efficiency.
- Experience engaging with enterprise and government customers.
- Exceptional problem-solving and communication skills.
- Familiarity with emerging trends in cybersecurity and automation.
- Experience in developing and implementing security policies.
- Certifications in security domains (e.g., CISSP, CISM, or similar).
WHY CHOOSE US:
Diversity and Inclusion: Te Kanorau me te Whakawhāiti mai
At Spark, we are constantly looking for ways to build a more inclusive culture. Our vision is for diversity and inclusion to be “how things are done at Spark”, embedded into our day-to-day activities, standards, and business practices. We want you to feel totally comfortable bringing your whole self to work regardless of your gender, ethnicity, orientation, age, or ability.
Sustainability: Toitū
Sustainability is a key focus for us. We are dedicated to supporting Aotearoa New Zealand’s recovery and economic transformation. The principle of equity is at the very heart of our approach, and we remain committed to working in partnership to make a positive contribution to digital equity in line with our focus on Diversity and Inclusion.
Benefits: Awhina
Our people matter and we make sure we look after them. As a valued employee of Spark, we’ve got our people covered with a range of leading benefits including:
- Wellbeing - Comprehensive medical insurance, life and income protection. Access to wellbeing coaches, EAP and in-house Specialist Clinical support through our leading Mahi Tahi Wellness programme.
- Hybrid ways of working - for most teams at Spark this means being in the office for 4 days a week, and 1 day being flexible.
- Leave - in addition to four weeks annual leave, we offer purchased leave, enhanced parental leave support and study leave.
- Spark Credit – we provide permanent employees with $120 monthly Spark credit to use on any of our amazing products.
- Spark Share scheme – periodically we offer the opportunity to buy into our share scheme.
- Career development – access to an internal marketplace that connects employees with experiential, on the job learning across Spark.
Due to the nature and urgency of this role, we are only considering applicants that are based in New Zealand with permanent residency, citizenship, or a valid work visa (with at least 18 months remaining).