Leadership and strategy:
Develop and execute strategy: Establish the IT operations and cybersecurity roadmap, aligning it with overall business objectives and growth.
Manage the SOC team: Oversee the team of security analysts and incident responders who monitor, detect, and respond to threats at all hours.
IT operations management:
- Ensure high availability: Guarantee the reliability and performance of all IT infrastructure, systems, and services.
- Oversee system administration: Manage the administration of enterprise systems, networks, servers, and other infrastructure.
Security operations (SOC):
- Threat detection and response: Ensure the 24x7 SOC team is effective at detecting, analyzing, and responding to security incidents in real-time.
- Incident response management: Lead and coordinate the response to major security incidents, guiding containment, eradication, and recovery efforts.
- Vulnerability management: Oversee programs for vulnerability assessments, penetration testing, and remediation.
- Security technology management: Manage, tune, and configure security tools such as SIEM solutions, EDR platforms, and intrusion detection systems.
- Threat intelligence: Integrate threat intelligence into the SOC's operations to proactively identify and mitigate emerging threats.
- Ensure compliance: Work with internal compliance and audit teams to ensure adherence to regulatory requirements and internal security policies.