Serve as the primary internal Point of Contact (POC) for our external Managed SOC, driving daily operational alignment, tracking SLA performance, and leading internal incident response efforts when critical threats are escalated.
Design and maintain secure infrastructure architectures while drafting, implementing, and enforcing comprehensive corporate IT security policies and governance frameworks.
Conduct rigorous technical security reviews and risk assessments for all prospective third-party vendors, software applications, enterprise solutions, and internal operational processes.
Architect, deploy, and govern the Identity and Access Management (IAM) lifecycle, ensuring robust Multi-Factor Authentication (MFA) enforcement and strict adherence to role-based least-privilege principles.
Manage the vulnerability and patch remediation lifecycle: utilize continuous scanning tools to identify exposures across the corporate systems, prioritize risks, and coordinate timely patch deployment.
Oversee our SIEM data pipelines and log management architecture, verifying that telemetry from critical endpoints, networks, and host systems is securely aggregated and streamed to our SOC vendor.
Monitor Data Loss Prevention (DLP) tools and lead data protection operations, routinely reviewing DLP alerts, investigating potential data leaks or policy violations, and tuning prevention rules to safeguard sensitive corporate and customer data.