- Conducted security-by-design reviews for new programs, projects, cloud services, and technologies across the region (including in-house development, COTS, and SaaS), ensuring documentation met compliance and audit requirements.
- Collaborated with regional and group-level information security teams, as well as business stakeholders, to ensure alignment of project implementations with internal security controls, policies, standards, and external regulations.
- Participated in the security architecture blueprint and design review process for cloud-hosted solutions.
- Ensured that critical vulnerabilities were identified, tracked, and remediated before applications went live.
- Reviewed and approved non-standard software and technology implementations regionally.
- Performed ad hoc and periodic reviews of proxy, network, and firewall requests, designs, and configurations.
- Provided cloud security advisory and consultation to business units, project teams, and business owners.
- Promoted a security-by-design culture by conducting awareness and training sessions for local business units and relevant stakeholders.
- Created and maintained security policies, standards, and operating procedures, ensuring alignment with organizational needs and regulatory expectations.
- Supported team leadership in various security operations tasks, including IAM, endpoint and network security, data protection, DLP, vulnerability assessment, and incident response.