01Key Responsibilities
Own and manage enterprise cybersecurity technology controls across endpoints, networks, identities, cloud, and data environments.
Implement, operate, and optimize security solutions including:
Endpoint Detection & Response (EDR)
Data Loss Prevention (DLP)
Active Directory / Identity & Access Management (IAM)
Firewalls (NGFW) and Network Security Controls
Secure Web Gateway / Zscaler
SIEM and SOAR platforms
SOC operations
DAST & Infra Vulnerability Assessment & Penetration Testing (VAPT)
Ensure security tool configurations align with policies, risk assessments, and compliance requirements defined by the GRC function.
Act as the technical SME during:
Security incidents
Investigations
Root cause analysis
Postincident corrective actions
Drive log ingestion, correlation, alert tuning, and usecase development within SIEM and SOAR platforms.
Oversee endpoint hardening, patching validation, and vulnerability remediation activities.
Coordinate internal and external VAPT exercises and ensure timely closure of findings.
Work with IT and Digital teams to embed security controls into:
Applications
Cloud platforms
Infrastructure changes
Support SOC maturity improvements, playbook development, and continuous monitoring enhancements.
Provide periodic security posture reports and dashboards to the CISO covering:
Control effectiveness
Tool coverage gaps
Incident trends and metrics
Assist during audits and assessments by providing technical evidence and control demonstrations.
Contribute to security architecture reviews for new initiatives, tools, and integrations.
Technical Skills & Tools:
Endpoint Security: EDR/XDR platforms (Defender, SentinelOne or similar)
Network Security: Firewalls, IDS/IPS, VPNs, Secure Web Gateways
Identity & Access: Active Directory, IAM, MFA, Privileged Access concepts
Data Security: DLP, Encryption, Data Classification
Monitoring & Response: SIEM, SOAR, SOC operations
Cloud & SaaS security exposure is a strong plus
Vulnerability Management: Scanning tools, VAPT coordination, remediation tracking.
Certifications (Preferred, Not Mandatory):
CEH, Security+, CySA+
Vendor certifications (Microsoft Security, Zscaler, Palo Alto, Fortinet, etc.)
Any SIEM / SOAR platform certification
Key Competencies:
Strong handson technical depth with a practical, problemsolving mindset
Ability to translate technical security controls into business risk language
Comfortable working in highpressure incident scenarios
Good stakeholder management across IT, Compliance, Digital, and Business teams
Continuous learning attitude with curiosity across evolving security technologies