Position Responsibilities
As a Regional Assistant Manager Security Operations, you will play a key role in strengthening
the organization's cybersecurity capabilities within the SecOps function. You will be responsible
for overseeing threat detection and response activities, driving vulnerability management
initiatives, enhancing security monitoring capabilities, and ensuring the effective operation of
cybersecurity technologies across the organization. The role requires strong leadership,
analytical, and technical skills, a proactive security mindset, and the ability to collaborate
effectively with infrastructure, application, cloud, and business teams to reduce cyber risk,
improve operational resilience, and support the organization's overall cybersecurity objectives.
Threat Detection & Monitoring:
- Lead the deployment and fine-tuning of SIEM, IDS/IPS, and EDR solutions to detect security
threats in real time.
- Continuously improve threat intelligence processes and analytics capabilities to identify
evolving threats.
Incident Response &Threat Hunting:
- Oversee and lead complex incidentinvestigations, coordinating containment, remediation,
andpost-incident reporting.
- Proactively conduct threat-hunting exercises to uncover advanced persistent threats (APTs)
andmitigate risks before they escalate.
- Establish and refine incident response playbooks and frameworks.
Vulnerability & Risk Management:
- Lead vulnerability management programs, ensuring regular scanning, risk prioritization, and
timely remediation
- Conduct advanced risk assessments to identify and address security gaps within
infrastructure, applications, and cloud environments.
- Implementrisk mitigation strategies aligned with business objectives.
Security Policy Development &Compliance:
- Design, implement, and maintain security policies, standards, and procedures to meet
regulatory requirements (e.g., GDPR, HIPAA, NIST, ISO 27001).
- Guide compliance audits andensurecontinuous improvementofsecurity controls.
Security Tool Management & Optimization:
- Manageandenhancesecuritytools, including firewalls, SIEM platforms, endpoint protection
solutions, and intrusion detection systems.
- Evaluate and integrate new security technologies to improve defense mechanisms
Cloud Security:
- Architect and enforce security best practices for cloud environments (AWS, Azure, Google
Cloud).
- Implement and monitor IAM, encryption, network security, and cloud-native security tools
(e.g., AWS GuardDuty, Azure Security Center).
- Ensure secure configurations, governance, and compliance in cloud deployments
Log Analysis & Automation:
- Perform deep-dive analysis of security logs from multiple sources to identify anomalies and
potential threats.
- Automate security processes using scripting languages (Python, Bash) and security
orchestration tools
Security Awareness & Mentorship:
- Design anddeliver security training programs for employees to foster a security-first culture.
- Mentor junior engineers, providing guidance on best practices and security operations
methodologies.