· Design, automate and implement continuous security monitoring for SaaS, homegrown applications, cloud and endpoints.
· Translate security requirements into measurable configuration baselines and monitoring controls.
· Strong AI understanding: how to use AI and create agents to help automate processes and tasks
·Understand security architecture and where risks are presented in a security review
· Build and maintain integrations across tools like Axonius, Wiz, Splunk, ServiceNow, Jira, Tines, identity, endpoint, code, and CI/CD systems.
· Determine which telemetry can be centralised in our tools and design solutions for remaining coverage gaps.
· Develop dashboards that provide application owners with a consolidated view of configuration drift, vulnerabilities, control failures, identity risks, logging gaps, and open remediation items.
· Create and tune monitoring rules to improve detection accuracy and reduce false positives.
· Automate ticket creation, risk routing, escalation, remediation validation, and ticket closure.
· Lead onboarding of critical and high-risk applications into the monitoring programme.
· Partner with application owners to remediate findings and validate that risks have been resolved.
· Support remediation campaigns and measure risk reduction across participating applications.
· Escalate critical, high-risk, or overdue findings according to established security standards.
· Partner with AI security teams, consulting teams, ID&R, identity, cloud security, software security, privacy, and other specialist teams.
· Document architectures, data flows, monitoring coverage, control logic, operational procedures, and technical decisions.
· Mentor less-experienced engineers and serve as a technical backup to the Observability Technical Lead.