1.Incorporate security practices into our infrastructure and automation processes. 2.Collaborate with development and operations teams to embed security measures into the entire software development lifecycle. 3.Create detection rules to catch attackers. Pursue unusual strategies to try to radically improve our ability to detect attackers and the speed of detection. 4.Stay current with security standards/regulations. 5.Identify security innovation tools/lead implementation solutions from proof of concept to production. 6.Manage/implement cloud security controls – identity, access management, organizational policies. Evolve our tooling/logging/monitoring/alerting systems, increasing observability and transparency. 7.Triage, investigate, and escalate security alerts, and provide recommendations for remediation. 8.Document procedures and best practices to ensure effective knowledge sharing. 9.Configure and operate security scanning tools, collaborating with internal and external engineering teams to optimize alert rules. 10.Develop a comprehensive understanding of systems, environments, and tools.