Manage and support Proofpoint email security solutions including POD (Proofpoint On-Demand), TRAP (Threat Response Attachment Protection), TAP (Targeted Attack Protection), and overall email security architecture.
Configure, monitor, and troubleshoot Imperva WAF for web application security.
Implement and manage Zscaler security platform for cloud-based internet security.
Maintain and optimize Cisco ISE for network access control and segmentation.
Lead incident response efforts related to network security threats.
Conduct security assessments, audits, and compliance checks.
Develop and enforce security policies and procedures.
Mentor junior staff and lead security projects.
Collaborate with vendors and cross-department teams to ensure security measures are effective and up-to-date.
Administer and troubleshoot enterprise PKI infrastructure including Microsoft ADCS.
Manage certificate lifecycle: issuance, renewal, revocation, and CRL/OCSP validation.
Integrate Venafi for certificate automation and orchestration across multi-cloud/hybrid environments.
Manage external SSL/TLS certificates with DigiCert, including domain validation and SAN/Wildcard certs.
Perform PKI health checks, vulnerability remediation, and root/intermediate CA maintenance.
Define and implement certificate governance and key management best practices.
Deploy, manage, and optimize Microsoft Defender for Cloud Apps (MDCA) for SaaS discovery, OAuth app governance, and conditional access enforcement.
Operate Netskope CASB for inline and API mode enforcement.
Implement shadow IT discovery, sanctioned app policies, and anomaly detection.
Design, implement, and fine-tune DLP policies across endpoint, email, and cloud channels.
Manage Microsoft Purview DLP including sensitive information types, EDMs, and trainable classifiers.
Operate Trellix (McAfee) and Netskope DLP for endpoint and policy enforcement..
Lead false positive tuning, incident analysis, and cross-platform correlation.
Deploy, configure, and maintain endpoint security solutions including CrowdStrike Falcon, Trellix, and other AV/EDR tools.