Required Skills: cybersecurity principles, network security, application security, threat intelligence, incident response, vulnerability management, cybersecurity frameworks, NIST CSF, ISO 27001, MTSA, GDPR
Job Description
Role: Oversee the entire cybersecurity strategy, including the design, implementation, and maintenance of security protocols to protect critical data and infrastructure, managing a team of security professionals, and ensuring compliance with industry regulations.
Responsibilities:
• Manage, configure, and optimize security policies, data protection, and encryption across the Microsoft Azure ecosystem.
• Oversee the continuous tuning and deployment of Azure-native security tools, including Microsoft Purview, Microsoft Defender for Cloud, Microsoft Intune, and Microsoft Entra ID.
• Enforce Zero Trust architecture, conditional access policies, and Privileged Identity Management (PIM) within the Azure environment.
• Provide security expertise on prioritizing and managing cybersecurity risks and initiatives
• Lead the incident response team in managing and mitigating cyber security incidents, including breach investigations and containment actions.
• Oversee the design and implementation of security architectures across the organization's IT infrastructure, including network security, endpoint protection, and data encryption.
Qualifications:
• 15+ years of professional hands-on experience solving business problems with technology solutions at an energy facility or related industry
• Deep understanding of cybersecurity principles, including network security, application security, threat intelligence, incident response, and vulnerability management
• Proven experience managing cybersecurity teams and projects
• Strong leadership and communication skills to effectively collaborate with cross functional teams and senior executives
• Expertise in relevant cybersecurity frameworks like NIST CSF, ISO 27001, MTSA and GDPR
• Experience with information technology audit or compliance management and performing security risk assessments
• Knowledge of emerging cybersecurity threats and lates technologies including AI.
• Relevant cybersecurity certifications (CISSP, CISA, CISM) preferred
• Strong analytical and problem-solving skills to identify and respond to cyber threats