About the job
Join Pixlr Group as a proactive IT Security Manager to oversee and enhance our product, cloud, and corporate security initiatives. In this pivotal role, you will be responsible for defining and executing our comprehensive security program, which encompasses policy formulation, risk management, application security, and incident response. You'll collaborate closely with teams across Engineering, IT, Product, Legal, and Operations to ensure robust security measures are in place.
Key Responsibilities:
- Security Governance, Risk & Compliance: Develop and maintain security policies aligned with ISO 27001 and SOC 2 controls, and ensure compliance with relevant privacy regulations such as PDPA and GDPR. Conduct security risk assessments and vendor reviews.
- Application & Product Security: Integrate security practices into the software development lifecycle, including threat modeling and secure coding standards. Manage application security tools in CI/CD pipelines.
- Cloud & Platform Security: Implement security controls across AWS environments, defining hardening standards and driving security practices for container and serverless technologies.
- Detection, Response & Resilience: Develop incident response plans and lead coordination during security incidents, maintaining business continuity and disaster recovery protocols.
- Access Hygiene & Privacy: Enforce identity management and access control across platforms, collaborating with Legal and Data teams on privacy assessments.
- Culture, Enablement & Operations: Provide security training for various teams and track operational security metrics to monitor effectiveness and risk.
