Job Description
- Security Monitoring & Threat Detection
Oversee daily security operations by continuously monitoring and analyzing security systems including SOC, AV, EDR, ITD, endpoint security, IDS/IPS, SIEM, and other tools to detect threats, anomalies, and vulnerabilities. - Incident Response Leadership
Lead the end-to-end lifecycle of security incidents—detection, analysis, containment, eradication, and recovery. Conduct root cause analysis and provide post-incident reporting. - Vulnerability & Risk Management
Respond to security advisories and vulnerability notices. Participate in assessments and penetration testing as required. Identify and mitigate security weaknesses across systems and networks. - Security Engineering & Coordination
Collaborate with system, network, application, and vendor teams to evaluate and implement security tools and practices. Ensure proper configuration, hardening, and patching to minimize risk exposure. - Security Tool Management
Manage and maintain security technologies, ensuring effectiveness, proper deployment, and alignment with evolving threat landscapes. - Policy Enforcement & Awareness
Enforce organizational security policies, conduct user awareness programs, and support compliance with internal and external security standards. - Threat Intelligence & Industry Engagement
Stay informed on emerging threats and evolving cybersecurity trends through threat intelligence feeds and collaboration with external security communities. - Compliance & Standards Alignment
Ensure ongoing adherence to regulatory and industry frameworks such as ISM, ISO 27001, SOX, NIST, and GDPR. - Team Leadership & Mentoring
Provide guidance and technical mentorship to IT and security operations teams. Facilitate knowledge sharing and conduct training as needed. - Documentation & Reporting
Maintain comprehensive documentation of security processes, incident reports, investigations, and remediation activities. Deliver regular updates to stakeholders on security posture and emerging issues.
Job Requirements
- Bachelor’s degree in computer science, Information Technology, or a related field preferred.
- Min 5 years’ experience in security operation role.
- Proven experience in leading and managing security incidents.
- Experience within security workforce, security operations, or any IT security exposures.
- Familiar with SIEM tools, such as LogRhythm, Microsoft Defender, and common tools like Antivirus, EDR, Monitoring, etc.
- Strong understanding of common cyber-attack techniques.
- Excellent communication skills, able to communicate technical information effectively to both technical and non-technical audiences.
- Able to work collaboratively in a team environment, and independently when necessary.
- Relevant certification a plus, e.g., Azure Security, ISC, GCIA/IH, OSCP
We regret that only shortlisted candidates will be contacted.