Responsibilities
- Relationship Owner for our MDR partner ensuring vendor performance and service delivery is optimized and meeting SLAs.
- Ensure Team has coverage, capacity and skills to effectively investigate and respond to security breaches.
- Create and ensure continuous development of incident response plans and procedures.
- Owner for security emergency response procedures and development of associated playbooks and workflows.
- Lead engagement with other technical and business departments within Gore Mutual to plan for incidents and proactively develop security best practices.
- Provide leadership to work with cross functional departments to implement workforce and broker IAM solutions and operating processes.
- Manage the IAM Team, ensuring coverage, capacity and skills development to effectively deliver on the Team’s responsibilities and objectives.
- Provide ownership and operational oversight for IAM/IAG tooling, controls, data, performance metrics and reports.
- Continuously develop and optimize joiner, mover, leaver processes for Gore Mutual’s account lifecycle management.
- Key stakeholder in the modernization of Gore Mutual’s Identity Governance program.
- Provide leadership to ensure key individuals on the team (including self) maintain diligence and proficiency on the latest cyber threats, vulnerabilities, and attack vectors.
- Manage the Threat Intelligence function to ensure intelligence data is analyzed and trends & risks are identified quickly with high quality and reliability.
- Provide knowledge and expertise to other departments such as networking and cloud engineering to assist in developing our platforms to reduce our threat exposure to emerging threats.
- Develop and continuously improve reporting metrics and dashboards for overall department operational reporting.
- Leverage knowledge of SIEM and other Data Warehouse and analytics systems to do data discovery, high level forensics and general analysis of security telemetry.
- Determine and ensure collection of ongoing SLAs, KPIs and KRIs across all security teams.
- Create monthly, quarterly and yearly reports and dashboards.
- Deliver and present reports including for senior leadership extending information to trends, outcomes and interpretation of data points.
- Co-own, with Facilities and Shared Services, emergency response procedures related to physical security.
- Work with Shared Services and Facilities Department leaders to develop and continuously improve physical security across all the company’s offices and facilities.
- Co-ordinate with business departments to create playbooks and procedures to respond to physical threats.
- Assume a leadership role for Physical Incident Response including for threats, imminent and active situations.