Responsibilities
- Lead vulnerability management initiatives and advise product teams and leadership on implementing technical security controls.
- Guide products through their lifecycle by offering security consultation, conducting threat modeling, and performing technical security evaluations.
- Engage actively within the broader cybersecurity professional community.
- Strengthen organizational security awareness by training and mentoring IT staff, developers, managers, and product owners using hands-on offensive security exercises, Secure Coding, and Security by Design principles.
- Create, evaluate, and revise detailed security guidelines and practical support tools aligned with established information security policies.
- Detect potential security threats and escalate them to appropriate internal bodies.
- Assist and counsel product teams to ensure security requirements are embedded in all stages of product development.
- Perform assessments to identify vulnerabilities and conduct risk analyses.
- Collaborate closely with the internal Security Operation Center and development units to embed security testing, controls, and acceptance standards.
- Foster a proactive approach to identifying and resolving vulnerabilities within product teams.
- Apply and promote industry best practices in managing vulnerabilities.
- Oversee and coordinate timely remediation of discovered vulnerabilities in partnership with product teams.
- Develop and deliver relevant KPIs, dashboards, and reporting tailored to specific products.
Work Arrangement
Hybrid