— Develop, implement, and maintain all key information security processes and strategies (access management, incident response, risk assessments, etc.);
— Continuously develop and enhance SIEM, ensuring a structured and stable information security process while responding quickly to SIEM-related incidents;
— Participate in regular IT audits, be prepared to be the face of the Infrastructure team when meeting external auditors;
— Increase awareness of information security as a critical function within the company, systematically educating employees on its importance;
— Work with internal users to create clear documentation on security processes and policies, explaining security requirements in an accessible manner and addressing employee questions;
— Collaborate with developers, system administrators, and other specialists to design and implement mechanisms that enhance information security;
— Establish clear communication across the company to ensure all employees understand the purpose behind security updates and technical decisions;
— Consistently prepare and share information security reports on completed tasks, potential risks, and future plans;
— Collect and analyze metrics on security incidents and vulnerabilities to demonstrate trends and progress;
— Be prepared to handle urgent security issues while also contributing to long-term strategic planning.