Identify and recommend improvement areas in existing enterprise security architecture to address evolving cybersecurity threats.
Align and balance business requirements with cybersecurity, information, and technology requirements, based on the organization's risk appetite.
Evaluate, perform proof-of-value/proof-of-concept, design, build and implement enterprise-class cybersecurity systems.
Develop integrated security operating models and documentations to ensure operational efficiency, scalability, and sustainability.
Act as a domain expert and trusted partner in cybersecurity and able to work closely with stakeholders in technology and other business groups on cybersecurity engineering related matters.
Skillset (Must have):
Possess a strong combination of technical and analytical skills in cybersecurity, including expertise in data loss prevention, data security posture management, enterprise digital rights management, and general data security technologies.
Hands-on experience in implementing and operationalizing data security solutions and data protection, for both structured and unstructured data, specifically: Data discovery, classification, and labelling Data encryption, masking, tokenization Data Loss Prevention (DLP) Enterprise Digital Rights Management / Information Rights Management Privacy Enhancing Technologies and Confidential Computing Key and certificate management Hardware Security Modules (HSM) Access controls
Secure file transfer and data store (including SaaS solutions)
Familiarity with Cloud security and data security and protection in Cloud environments (e.g., AWS, Azure, Google Cloud).
Possess scripting and coding skills, with proficiency in Java, Python, C#, or similar programming languages, and good understanding of REST API's and JSON.
Ability to create and maintain automation scripts.
Familiarity with Cloud security and data security and protection in cloud environments (e.g., AWS, Azure, Google Cloud).
Strong written and verbal communication skills, with the ability to convey technical information to non-technical stakeholders.
Ability to work collaboratively with cross-functional teams and build strong working relationships.
Apply critical thinking skills to analyze complex security issues, evaluate potential solutions, and make well-informed decisions.