Job Responsibilities
- Lead cybersecurity governance and maintain an enterprise-wide view of risks across systems, vendors, and users
- Drive security posture improvement programs and track risk remediation to closure
- Own, maintain, and continuously improve the Incident Response Plan (IRP).
- Lead tabletop exercises, simulations, and post-incident reviews
- Coordinate incident handling with MDR and cross-functional stakeholders
- Govern MDR/SIEM operations, including alert triage quality, tuning, detection coverage, and reporting
- Develop security detection metrics and operational dashboards(e.g., mean time to detect, mean time to respond)
- Oversee IAM governance including RBAC design, periodic access reviews, and least-privilege enforcement
- Manage privileged access workflows and maintain oversight of high-risk accounts
- Assess vendor and service provider security, track third-party security risks, and enforce contract requirements
- Design and run cybersecurity awareness programs and Improve security awareness metrics (phishing resilience, training completion)
- Maintain and enhance an ISO 27001‑aligned security policy framework.
- Ensure compliance with regulatory and industry security requirements (e.g., PDPA, GDPR-equivalent, sector guidelines)
- Incident response SLA compliance in detection, triage, and containment.
- Vulnerability remediation within SLA across critical, high, and medium severities
Qualities You Should Have
- Bachelor's degree in Information Security, Computer Science, or related field.
- 7-10 years of experience in cybersecurity operations, governance, or risk management
- Strong knowledge of security frameworks (ISO 27001, NIST CSF,CIS Controls)
- Hands-on experience with MDR/SIEM platforms, CrowdStrike Falcon Complete preferable
- Experience in IAM governance and privileged access management
- Background in incident response and log analysis
- Excellent communication skills to influence stakeholders across business units
- Experience in regulated industries (finance, healthcare, logistics, government)
- Familiarity with data protection regulations
- Experience designing security KPIs and operating dashboards