Cyber Resilience And Incident Response Section Head
Current• Analyzes, reports, and responds to detected cyber incidents• Conducts network defence analysis and provides recommendations for improvements ensuring a proactive and effective response to security threats• Oversee the implementation of comprehensive incident response plans• Develops and maintains thorough, up-to-date knowledge of cybersecurity threats and incident response best practices• Collaborates with peers and stakeholders to establish and ensure consistent response practices and prioritization of security events• Collect intrusion artefacts (e.g., source code, malware, trojans) and use discovered data to enable mitigation of potential cyber defence incidents within the enterprise• Conduct regular assessments, audits, and drills to validate the effectiveness of incident response plans• Stay up to date with emerging threats, industry trends, and regulatory requirements to continuously enhance our security posture and ensure a proactive and effective response to security threats• Collaborate closely with cross-functional teams to develop and maintain robust business resilience strategies, including disaster planning, risk assessments, and recovery frameworks• Conduct thorough investigations of security incidents, utilizing advanced forensic techniques and technologies to identify root causes and implement preventive measures.• Coordinate incident response functions• Coordinate and provide expert technical (IR Team) support to enterprise-wide cyber defence technicians to resolve cyber defence incidents• Perform cyber defence trend analysis and reporting• Perform initial, forensically sound collection of images and inspection to discern possible mitigation/remediation of enterprise systems• Write and publish after-action reviews• Write and publish cyber defence techniques, guidance, and reports on incident findings to appropriate constituencies.