Lead IT security operations
Pricol · Coimbatore, Tamil Nadu, India
Pricol · Coimbatore, Tamil Nadu, India
**Role:** The Lead IT Security Operations will be responsible for managing the day-to-day cybersecurity operations of the organization through internal coordination and external security service providers. The role will ensure effective implementation of security controls, compliance requirements, security policies, and continuous improvement of the organization's cybersecurity posture. **Key** **responsibilities:** - Own day-to-day cybersecurity operations across the enterprise. - Manage Managed Security Service Providers (MSSPs), SOC partners and other cybersecurity vendors. - Evaluate, onboard and renew cybersecurity solutions and services. - Monitor vendor SLAs, service quality and security deliverables. - Coordinate incident response activities and ensure timely resolution of security incidents. - Drive vulnerability assessment, penetration testing and remediation tracking. - Ensure effective operation of security technologies including SIEM, Endpoint Security, Identity & Access Management, Email Security, Network Security, Cloud Security and Data Protection through managed service providers. - Develop, maintain and periodically review cybersecurity policies, standards, procedures and operational checklists. - Coordinate ISO 27001, customer audits and internal security compliance activities. - Track audit observations and ensure timely closure of corrective actions. - Maintain security documentation, asset inventories, risk registers and compliance evidence. - Conduct security awareness programmes and support organization-wide security initiatives. - Prepare periodic cybersecurity dashboards, risk reports and management updates. - Work closely with Infrastructure, Applications, Business and Compliance teams to implement security requirements. - Support the Head IT Security in executing the organization's cybersecurity roadmap **Preferred candidate profile** - Experience managing cybersecurity operations through external security service providers or MSSPs. - Good understanding of security technologies including SIEM, EDR, IAM, Email Security, Network Security and Cloud Security. - Experience with vulnerability management, incident response and security governance. - Familiarity with ISO 27001, cybersecurity audits and regulatory compliance. - Strong vendor management, project coordination and stakeholder management skills.