Responsibilities
- Monitor and respond to security events using platforms such as SIEM, EDR, and CNAP.
- Evaluate security alerts and identify opportunities to refine detection rules and minimize false positives.
- Assist in change management processes to limit security risks to enterprise infrastructure.
- Help develop and refine policies for security technologies to strengthen defensive capabilities and support business operations.
- Lead and coordinate incident response efforts, ensuring proper documentation for regulatory compliance.
- Execute vulnerability assessments on networks and endpoints, working with technical teams to implement remediation through patches and configuration updates.
- Review current and emerging security tools to improve the organization's overall security effectiveness.