Jonathan Poon

Jonathan Poon Email and Phone Number

Head of Threat and Vulnerability Management @ Zoom
Redmond, WA, US
Jonathan Poon's Location
Redmond, Washington, United States, United States
Jonathan Poon's Contact Details

Jonathan Poon personal email

n/a
About Jonathan Poon

As the head of the Threat and Vulnerability team, I lead a skilled group of security engineers focused on ensuring a strong cloud and infrastructure security posture. While operational excellence is critical, my leadership goes beyond that—I aim to drive stronger compliance KPIs, accelerate remediation velocity, and enhance cross-team collaboration with security, IT, and engineering.At the core of my leadership approach is a commitment to coaching and mentoring. I take pride in aligning my team members' passions and strengths with their roles, fostering an environment where empathy, trust, and open communication are central. Helping my team grow into their fullest potential while achieving career aspirations is one of my primary goals.I thrive on solving complex, intellectually stimulating challenges that are critical to organizational success. As a strategic thinker, I excel at turning technical insights into actionable business outcomes. My analytical skills help identify risks and opportunities, while my passion for continuous learning drives me to explore emerging fields such as AI, machine learning, and cloud security.Looking ahead, my vision is to continue driving innovation in the cybersecurity landscape by leveraging data-driven insights and AI to manage vulnerabilities. At the same time, my team’s growth and well-being remain a top priority, fostering a culture of growth, innovation, and collaboration.I’m always open to connecting with those passionate about building a stronger security community or those new to the field seeking guidance. As a hiring manager, I’m happy to share my experience and insights to support career development. If you’re connecting with the intent to sell me services or tools immediately, please note that I will mute the conversation and remove the connection. Let’s focus on building meaningful, mutually beneficial relationships. I don't mind reading on any whitepapers, case studies etc. that you might have available though.Thank you for taking the time to read my profile. If anything resonates with you, feel free to reach out. I’m always open to engaging with others who share a passion for security and growth.Opinions are my own and not the views of my employer.

Jonathan Poon's Current Company Details
Zoom

Zoom

View
Head of Threat and Vulnerability Management
Redmond, WA, US
Jonathan Poon Work Experience Details
  • Zoom
    Head Of Threat And Vulnerability Management
    Zoom
    Redmond, Wa, Us
  • Zoom
    Head Of Threat And Vulnerability Management
    Zoom Feb 2021 - Present
    San Jose, Ca, Us
    I lead the Threat & Vulnerability Management team of security engineers, data analysts, remediation managers to drive a very high level of vulnerability management posture, implementing brand new capabilities to expand our coverage, and increase protection against Zoom's devices, data, and applications against an ever-evolving security and threat landscape.Establish cybersecurity capabilities and processes to protect company assets.Expanding, motivating and coaching the Threat & Vulnerability Management security engineers to accelerate their impact, exposure and career growth.Staffing, leading and implementing new security initiatives such as the software release security assurance capability.Accelerating the maturity of TVM-related workflows and reporting. Implement automated workflows for remediation or execution of implementing security controls.Deliver strategic thought-leadership for multiple information security disciplines such as, vulnerability management, software supply chain security, container security, application controls and best practices.Enhancing container security scanning and coverage, with huge reductions in the open vulnerabilities and images in registries, and launching new areas of coverage like web app scanning, EOL software etc. Create and maintain the set of unified key performance and risk indicators aligned to stakeholder requirements.Work in a consultative fashion with business unit leadership to share the vision and operational requirements to improve the security posture.Promote and develop vulnerability assurance initiatives work to improve existing security services, including the continuous enhancement of existing methodology material and supporting assets.Define standardized processes, tools, and platforms for the timely and quality delivery of cybersecurity solutions in cooperation with other IT, engineering and business units.Provide leadership in a fashion that supports Zoom's culture, mission and values.
  • Microsoft
    Site Reliability Engineering Manager, Protection Services
    Microsoft Jun 2018 - Feb 2021
    Redmond, Washington, Us
    Managed a team of anti-malware and vulnerability management service engineers and program managers to drive the next level of transformation on the site reliability engineering journey. Built up a huge expansion of engineers with an eye on keeping the team collaboration at a very high level.Streamlined the incident management channels and support scenarios. Implemented a drive to pivot on monitoring and alerting coverage and automated incident ticket creation and resolution accuracy. On-boarded new tools to expand the service capabilities of the team to support the security focus of the company across platforms and boundaries. Worked hand in hand with the the program management and service management teams to ensure hand-offs are done with improved assurances and support-ability. Created predictable coverage of support resources from both aspects of the team to improved on customer support expectations and work life balance challenges..Drove the transformation and modernizing of legacy processes into cloud-enabled, highly optimized and efficient implementation while improving the KPIs around processing speed, uptime, available etc. at a significantly lower cost of operations. Enabled proof-of-concept work to accelerate transformative capabilities ahead of traditional vulnerability management approaches, and resulted in multiple new expansive capabilities to accelerate our roadmap.Drove the sprint and engineering cadence with the engineering program managers and improved the planning, forecasting and feature releases while reducing information loop from users to engineers and increasing the quality and value proposition of our deliveries.
  • Microsoft
    Senior Service Engineering Lead, Anti-Malware Scan Team
    Microsoft Feb 2017 - Jun 2018
    Redmond, Washington, Us
    Managed the Redmond anti-malware service engineering team of service engineers, malware analysts, with dotted line management of the regional teams in Dublin and Puerto Rico to provide regional 16x5 coverage in a consistent and reliable mannerA primary goal of this role change was to utilize my experience from a service management and program management perspective to build up the muscle in service engineering to drive increased focus on automation to reduce incidents and ticket counts.Led the service team and drove through the mitigation and validation activities for WannaCry, Petya/NotPetya, and held a steady level of service availablity through the Hurricane Maria impact in our Puerto Rico data centers with hard and fast decisions around scoping of work, resources scheduling and optimizing coverage and volume management.Reset and established a service engineering and site reliablity engineering focused on the new Microservices based hybrid cloud platform for highly secure anti-malware scanning services. The new cloud architecture spans the public cloud assets and highly secure on-premises assets to provide flexibility, cost efficiency, agility and enhanced security controls.Built regional presences of the platform to ensure high degree of concurrency, business continuance and disaster recovery, while we moved systems from on-premise implementations to the public cloudDrove the global anti-malware SE/SRE organization to a modern data and analtyics driven “DevOps” model with 99.9% reliability and service level objectives (SLO) with heighted focus on automation and self-healing mechanisms, alerts fidelity, improved change controls, patch automation and incident management as key pillars for change.
  • Microsoft
    Senior Program Manager Lead, Anti-Malware Scan Team
    Microsoft Jul 2013 - Feb 2017
    Redmond, Washington, Us
    As the head of the Anti-Malware team, I led a high impact team of engineers, architects and program managers to lead the risk mitigation of releasing malware across all Microsoft products, services and 3rd party applications on Microsoft marketplaces and properties.Through personalized coaching, I motivated and inspired my directs, partners, and peers to accomplish what they are capable of doing not just for my organization, but for their individual career and life goals as well.With a blend of technical acumen, technical evangelism, and business development, I led my team to research and prioritize the implementation of multiple new capabilities to expand the end to end antimalware posture of Microsoft products, apps, and binaries, while balancing the continued quality improvement of day-to-day operations in this secured space.Demonstrated ability to collaborate with multiple partners, across multiple regional teams, industry partners and across organizational boundaries, to develop and drive a coherent strategy and program.Supported the drive to share a rich set of metadata of Microsoft releases with the security industry and strengthened the collaboration to improve the overall ecosystem through this data sharing effort.The transformational efforts on the the next generation infrastructure, a challenge that requires timely execution with the highest degrees of security, performance, availability, and reliability, to better address the conflicting needs of increased velocity of product releases vs. security and compliance needs for Microsoft and its ecosystem.
  • Microsoft
    Senior Antimalware Service Manager
    Microsoft Dec 2010 - Jul 2013
    Redmond, Washington, Us
    Managed the scanning service as a service manager. Worked with multiple regional teams of PMs, analysts, and engineering teams to maintain a high level of service coverage and availability.Owned the compliance of the company antimalware scanning policy, established new rules, procedures and policies within the Release AM team and its immediate partner groups. Led the service and project teams to deliver against reliability, latency and throughput targets.Worked with lead Engineers to derive 18-month, 3-year and 5-year roadmap for capabilities and architecture revisit. Expanded coverage of our service from traditional products into the apps world, the specific platform needs of the major desktop and mobile operating systems, and the online and cloud aspects.Built up a 16x7 team across three regions, with increased expertise on automation, malware analysis, threat research and machine learning capabilities.Business process owner on business continuance and disaster recovery practice, planning and audit. Drove negotiations with business partners to find alternatives and solutions to business challenges.Balanced the customer's requirements with technical constraints (e.g., application size, network bandwidth, hardware/software/equipment selections) to ensure that the value of the project is realized. Led, articulate and document existing "as-is" systems & business architecture and define strategy for "to-be" architecture for business teams and engineering organizations.
  • Microsoft
    Anti-Malware Technical Program Manager
    Microsoft Apr 2010 - Dec 2010
    Redmond, Washington, Us
    Represented the Release AM Scan team in engaging our IT technology engineering and solutions delivery teams to ensure the right capabilities are delivered timely and effectively.Worked with Release AM Scan engineers and analysts to gather business requirements, derived prioritization of requirements, managed timelines and expectations, coordinated UATs etc. Went through various development methodologies from the SDLC, Agile, Kanban models with different teams.
  • Microsoft
    Scan Service Manager (Interim)
    Microsoft Mar 2010 - Apr 2010
    Redmond, Washington, Us
    Managed the Pre-Release Scanning service as an interim service manager for the team. Owned the scanning policy, driving project deliverables and establishing new rules, procedures and policies within the Release AM team and its immediate partner groups.Developed failure mode effect analysis study and derived priorities around mitigation strategies. Interim role ended near end of April 2010
  • Microsoft
    Senior Release Anti-Malware Sme
    Microsoft Sep 2000 - Apr 2010
    Redmond, Washington, Us
    Led the pre-release scanning system as the senior service engineer for the company across multiple regions to ensure all binaries are scanned before RTM.Focused on decompression support for large variety of known and emerging file formats. Derived ingestion and output strategies. Primary role to maintain and increase the level of antimalware scanning coverage through industry outreach, research, coverage and compatibility testing, deployment and service uptime management.
  • Xerox Language Services
    Technical Process Group Lead
    Xerox Language Services May 1999 - Sep 2000
    Development of automation for localization of documentations in the Asia-Pacific region.

Jonathan Poon Skills

Security Computer Security Antivirus Malware Analysis Information Security Application Security Reverse Engineering Information Security Management Cloud Computing Internet Security Management Ida Vulnerability Management Enterprise Software Leadership Security Audits Virtualization Security Architecture Design Firewalls Ips Security Awareness Vpn Cyber Security Cissp

Jonathan Poon Education Details

  • Ngee Ann Polytechnic
    Ngee Ann Polytechnic
    Business Computing
  • Chung Cheng High School (Main)
    Chung Cheng High School (Main)
    High School

Frequently Asked Questions about Jonathan Poon

What company does Jonathan Poon work for?

Jonathan Poon works for Zoom

What is Jonathan Poon's role at the current company?

Jonathan Poon's current role is Head of Threat and Vulnerability Management.

What is Jonathan Poon's email address?

Jonathan Poon's email address is jo****@****oft.com

What schools did Jonathan Poon attend?

Jonathan Poon attended Ngee Ann Polytechnic, Chung Cheng High School (Main).

What are some of Jonathan Poon's interests?

Jonathan Poon has interest in Science And Technology, Health.

What skills is Jonathan Poon known for?

Jonathan Poon has skills like Security, Computer Security, Antivirus, Malware Analysis, Information Security, Application Security, Reverse Engineering, Information Security Management, Cloud Computing, Internet Security, Management, Ida.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.