Senior Cyber Analyst
Head Energy is an independent Scandinavian engineering & consulting house providing a wide range of products to onshore and offshore industries. We work with reputed clients in Energy, Civil Construction & Infrastructure, and Industry. Head Energy has more than 900 employees, and offices in Bergen, Stavanger, Oslo, Trondheim, Gothenburg, Stenungsund, Halmstad, Esbjerg, Odense and Hamburg. We are employee owned, client focused and growth oriented. We live by our core values : Responsible | Honest | Inclusive | Innovative. Our vision is to bring our employees and clients one step ahead.
Job Description :
- Test and validate technical solutions for potential cyber threats.
- Perform threat modeling, vulnerability assessments, and penetration testing.
- Maintain risk registers and report findings to leadership.
- Governance, Risk & Compliance (GRC)
- Maintain and enhance the ISMS, aligned with ISO 27001, NIST CSF, etc.
- Conduct compliance reviews, gap analyses, and audits.
- Develop and update cybersecurity policies and frameworks.
- Lead third-party risk assessments and vendor due diligence.
- Collaboration
- Work closely with IT, OT, suppliers, and project teams with a “one team” mindset.
- Act as a subject matter expert and ensure security is embedded in culture and processes.
- Speak up and stand firm when critical risks are identified.
- Core Tasks
- Risk assessments and mitigation strategies.
- Compliance management with GDPR, ISO, NIST, etc.
- Incident response coordination.
- Threat monitoring and vulnerability management.
- Documentation and communication with stakeholders.
- Physical site inspections where required.
- Continuous improvement of cyber and GRC practices.
Qualifications
Bachelor’s degree in IT, Cybersecurity, or related field (or equivalent experience / certifications).10+ years’ experience in cyber risk, IT / OT security, or GRC.Strong knowledge of cybersecurity frameworks (NIST, ISO 27001, CIS).Preferably certified (CISSP, CISM, CRISC, CISA, or similar).Strong analytical, problem-solving, and communication skills.Hands-on experience, ideally with a “white-hat hacker” profile.Personal traits
Proven experience identifying system vulnerabilities.Understanding of IT and OT environments.Experience with GRC tools (Archer, ServiceNow GRC, RiskLens).Familiarity with cloud platforms (AWS, Azure, GCP).Proactive, action-oriented, and independent.Strong collaboration and networking skills.Fluent in English and Norwegian (written and spoken).Languages
EnglishNorwegianWhat Head Energy offers
Permanent- or project employment with the best conditions.Access to the industry's most exciting job opportunitiesPersonal follow-up, mentoring and career guidanceA large variety of project opportunitiesGood pension- and insurance schemesA pleasant and positive work environmentAccess to both specific and general courses.#J-18808-Ljbffr