Product Owner for Network Security
Role details
Job location
Tech stack
Job description
Product Owner for Network Security - Secure Web Connectivity (SWC) We are growing our Global Corporate Information Security team and we are seeking a Product Owner for Network Security - Secure Web Connectivity (SWC) (m/f/d) to own, operate, and evolve our enterprise SWC capability. You will have end-to-end technical ownership of the global SWC service, acting as the primary authority for its architecture, operations, lifecycle, and continuous improvement. Vendor brand is secondary; engineering fundamentals, critical thinking, and learnability are essential. This role reports to the Head of Network Security. The working location for this position will be in Madrid city, where we operate a hybrid model, requiring at least 40% of the working time on-site. Responsibilities Product & Service Ownership - Own the Security Web Connectivity service end-to-end, including architecture, configuration standards, lifecycle management, and roadmap evolution. - Design, review, and evolve SWC architectures in hybrid and cloud-first environments. - Evaluate vendor proposals, designs, and technologies critically and independently. - Act as the primary technical point of contact for SWC across the organization. - Define and maintain service documentation, standards, and reference architectures. - Drive continuous improvement based on incidents, metrics, and business needs. Engineering & Operations - Operate as L2/L3 escalation for SWC-related incidents, including: - Deep technical troubleshooting. - Coordination with vendors for high-severity incidents. - Ownership of incidents until closure. - Delivery of clear Root Cause Analysis (RCA) and remediation plans. - Ensure all SWC assets are: - Running supported and recommended software versions. - Properly configured and hardened. - Updated with tested signatures and policies. - Own hardware and subscription lifecycles where applicable. Enablement & Leadership - Provide technical guidance and training to internal
Requirements
engineers and external partners. - Act as a reference authority in insourced or outsourced/MSSP models. Qualifications - Bachelor's or Master's degree in Cybersecurity, Computer Science, Information Systems, or a related field. - 5+ years of experience in network engineering and network security, including TCP/IP, routing, DNS, proxying. - Solid understanding of traditional and modern perimeter security models, with special focus on Zero Trust architectures. - Hands-on experience managing enterprise-grade security platforms. - Deep experience with Security Web Gateway (SWG) solutions. Experience with Zscaler Internet Access or equivalent platforms is highly valued. - Practical experience with traditional firewalls and/or FWaaS, and Secure access models (ZTNA). Working knowledge of related technologies such as WAF, load balancing, WAN optimisation, IPAM. Familiarity with SASE concepts and components: SWG, SD-WAN, ZTNA, FWaaS, CASB, DLP. - High degree of autonomy and ownership. - Resilient under pressure, particularly during major incidents. - Ability to work across teams and communicate security topics clearly to both technical and non-technical stakeholders. - Fluency in English (written and spoken). - Willingness and ability to travel to Liebherr sites worldwide up to 10% of the time. Benefits - Competitive compensation and benefits package that recognizes your expertise. - Flexible and hybrid working model. - Creative freedom and responsibility to shape processes and solutions in our global transformation. - Continuous learning and development with tailored training and certification opportunities. - Meal vouchers. - Life and accident insurance. - Option to include a premium private health insurance package as part of the flexible remuneration. - A safe, stable and international workplace within a trusted family business that invests in people. Location Liebherr IT Shared Service Centre Ibérica, S.L. Parque Norte, Alamo building Serrano Galvache, 56 28033 Madrid Spain (ES) Contact Karoliina Rissanen J-18808-Ljbffr