Job summary:
The role involves overseeing security technology operations, focusing on daily operational activities across designated security tools and systems.
The primary objective is to establish and maintain an effective security policy framework for each tool/system in alignment with group security policies and standards.
The position requires close collaboration with other security domains to support multiple business units across Asia, Africa, and the UK.
Key Responsibilities:
Manage operational tasks within the security technology operations, including maintenance and support for specified security technologies. Collaborate with a team of security professionals responsible for endpoint protection, data loss prevention, email security, network security, vulnerability scanning, encryption, and key management. Administer rule management, configuration, workflow, and system management for each security technology. Ensure security rule implementations adhere to group standards, with whitelisting and exclusions undergoing necessary reviews and approvals. Maintain compliance with security baseline standards for configuration management in each technology. Design, review, and approve workflows to ensure consistent handling, response, and visibility across security technologies. Govern system administration activities including onboarding/offboarding approvals, patch verification, and key/certificate rotation. Establish service level agreements based on request severity and impact to ensure timely resolution. Manage escalations for security product issues, proposing workarounds or mitigation controls as needed. Facilitate knowledge sharing to ensure continuity in managing security technologies. Standardize operational documentation, including standard operating procedures and playbooks, in a centralized repository. Collaborate with cross-functional technology teams to ensure balanced risk management across security technologies. Core Competencies Required:
Experience in operational team environments. Operational expertise in at least one security domain: endpoint protection, data loss prevention, email security, network security, security baseline, encryption, and key management. Demonstrated ownership across various security domains to drive issue resolution. Solid understanding of general technology concepts including servers, endpoints, databases, networking, applications, middleware, and cloud. Experience managing stakeholder expectations across business, technical, and operations teams. Strong problem-solving, analytical, critical thinking, and troubleshooting skills. Education and Experience:
Bachelor’s degree in Information Security, Computer Engineering, or equivalent. Minimum of 7 years’ experience in security technology operations within large organizations. Prior global/regional exposure preferred, with experience in financial services or tech industries advantageous. Experience with at least one major cloud service provider (AWS, Azure, GCP, etc.). Relevant Information Security certifications such as CISSP, CCSP, CISM, or CompTIA Security+ are beneficial. Proficient written and verbal communication skills in English. Ability to work independently and collaboratively in a team environment. Responsibilities
Experience
Education