Overview
Head Energy is looking for a skilled/experienced Senior Cyber Analyst (Pnr:22261).
Responsibilities
- Test and validate technical solutions for potential cyber threats.
- Perform threat modeling, vulnerability assessments, and penetration testing.
- Maintain risk registers and report findings to leadership.
- Governance, Risk & Compliance (GRC)
- Maintain and enhance the ISMS, aligned with ISO 27001, NIST CSF, etc.
- Conduct compliance reviews, gap analyses, and audits.
- Develop and update cybersecurity policies and frameworks.
- Lead third-party risk assessments and vendor due diligence.
- Collaboration
- Work closely with IT, OT, suppliers, and project teams with a “one team” mindset.
- Act as a subject matter expert and ensure security is embedded in culture and processes.
- Speak up and stand firm when critical risks are identified.
- Risk assessments and mitigation strategies.
- Compliance management with GDPR, ISO, NIST, etc.
- Incident response coordination.
- Threat monitoring and vulnerability management.
- Documentation and communication with stakeholders.
- Physical site inspections where required.
- Continuous improvement of cyber and GRC practices.
Qualifications
- Bachelor’s degree in IT, Cybersecurity, or related field (or equivalent experience/certifications).
- 10+ years’ experience in cyber risk, IT/OT security, or GRC.
- Strong knowledge of cybersecurity frameworks (NIST, ISO 27001, CIS).
- Preferably certified (CISSP, CISM, CRISC, CISA, or similar).
- Strong analytical, problem-solving, and communication skills.
- Hands-on experience, ideally with a “white-hat hacker” profile.
Personal traits
- Proven experience identifying system vulnerabilities.
- Understanding of IT and OT environments.
- Experience with GRC tools (Archer, ServiceNow GRC, RiskLens).
- Familiarity with cloud platforms (AWS, Azure, GCP).
- Proactive, action-oriented, and independent.
- Strong collaboration and networking skills.
- Fluent in English and Norwegian (written and spoken).
Language
What Head Energy offers
- Permanent- or project employment with the best conditions.
- Access to the industry’s most exciting job opportunities
- Personal follow-up, mentoring and career guidance
- A large variety of project opportunities
- Good pension- and insurance schemes
- A pleasant and positive work environment
- Access to both specific and general courses.