Responsibilities :
Manage and remediate third-party vulnerabilities across applications, platforms, libraries, and infrastructure components. Perform security assessments and coordinate component upgrades to address identified risks. Review, implement, and improve enterprise security controls and security posture. Design, implement, and maintain encryption standards for data at rest and data in transit. Manage SSL/TLS certificates, certificate renewals, certificate authorities, and certificate lifecycle processes. Implement and enforce password policies, credential management, secrets management, and privileged access controls. Configure and manage Key Management Systems (KMS) for secure cryptographic key storage, rotation, and access management. Review application and infrastructure logs to ensure compliance with security and privacy requirements. Identify sensitive information exposure in logs and implement appropriate masking and sanitization controls. Collaborate with development, DevOps, infrastructure, and cloud teams to integrate security best practices. Conduct vulnerability assessments and support penetration testing remediation activities. Monitor security alerts, investigate incidents, and support incident response activities. Participate in security governance, risk management, and compliance initiatives. Develop security standards, runbooks, and operational procedures.