Overview
DayOne is a global leader in the development and operation of high-performance data centers. As one of the fastest-growing companies in the industry, we have built a robust presence across Asia and Europe — and we are just getting started. We are looking for a talented, driven individual to join our dynamic team and help shape the future of global data infrastructure.
Key Responsibilities
- Own and drive implementation of core security technologies (SIEM / Sentinel, SOAR, MDE, MDO, Purview, Intune, PAM, CASB).
- Define project scope, milestones, deliverables, and success criteria for security initiatives.
- Ensure on‑time delivery of projects, managing risks, dependencies, and vendor support.
- Develop runbooks, SOPs, and integration workflows for newly deployed tools.
- Provide executive progress updates and ensure ROI from tool investments.
- Maintain risk registers, treatment / action plans, and exception registers.
- Oversee access recertifications, privileged access reviews, and service account governance.
- Deliver security reports (phishing simulations, DLP, EDR / NDR, incident tickets, PIRs).
- Deliver patch compliance dashboards and vulnerability remediation tracking.
- Drive deployment of Purview for DLP, sensitivity labeling, insider risk, and eDiscovery.
- Deliver Disaster Recovery Plans and test reports with clear action tracking.
- Maintain supplier due diligence records and third‑party monitoring reports.
Key Deliverables
Security tool implementations completed on time and within scope.Runbooks, SOPs, and playbooks for each deployed tool.Integration of tools into SOC workflows (SIEM, SOAR, EDR, CASB, DLP, PAM).Approved and up‑to‑date security policies and ISMS / PIMS documentation.Risk assessment reports, treatment plans, and compliance dashboards.Regulatory compliance documentation (ISO 27001, SOC 2, PCI‑DSS, GDPR, PDPA).Monthly security metrics packs and management dashboards.Incident response reports, tabletop exercise findings, and PIRs.Patch, vulnerability, and configuration compliance dashboards.CSPM, M365, and Intune security baselines with measured improvements.Organization‑wide training records, phishing simulation results, and awareness metrics.Skills & Qualifications
Bachelor’s degree in Information Security, Computer Science, or related field.Certifications : CISSP, CISM, PMP / Prince2 (for project delivery), ISO 27001 Lead Implementer.Proven track record of delivering security tool projects (Microsoft stack preferred).Strong knowledge of GRC frameworks (NIST CSF, ISO 27001, MITRE ATT&CK).Hands‑on experience in SIEM, SOAR, DLP, CASB, EDR, PAM, and cloud security controls.Experience in vendor and third‑party risk management.Strong leadership, stakeholder communication, and project reporting skills.Competencies
Execution‑focused with ability to deliver projects on time.Balance between governance leadership and technical oversight.Strong risk‑based decision making and problem‑solving.Ability to manage cross‑functional teams and external vendors / MSSPs.High integrity, accountability, and continuous improvement mindset.DayOne is proud to be an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.
#J-18808-Ljbffr