Policy Development and Governance:
- Develop, maintain, and enforce organizational security policies, standards, and procedures.
- Conduct regular reviews and updates to ensure compliance with frameworks like ISO27001, NIST, or SOC 2.
Security Operations and Incident Response:
- Lead the organization’s security monitoring efforts, identifying vulnerabilities and threats.
- Coordinate incident response efforts, ensuring swift and effective mitigation of security incidents.
Collaboration and Stakeholder Engagement:
- Partner with the IT Infrastructure team on the implementation and management of security tools (e.g., firewalls, endpoint protection).
- Work with the Tech Security team to review and improve security practices in software development and engineering.
- Liaise with external auditors and assessors for security compliance initiatives.
Awareness and Training:
- Develop and deliver security awareness programs, ensuring all employees understand their role in maintaining security.
- Stay updated on the latest security threats, trends, and solutions, sharing insights with internal teams.
Team Building and Leadership:
- Assist in recruiting and onboarding additional team members (e.g., Cyber-Security Engineer, Information Security Analyst).
- Mentor junior team members and promote a collaborative team environment.