Own cloud and application security, including AWS security architecture, IAM, network security, and secure configuration management., Drive and continually improve application security practices, including secure coding guidance, threat modeling support, and automated security testing in the SDLC., Lead the incident response program, including playbook development, on-call readiness, threat detection, and response coordination., Manage vulnerability management processes, ensuring risks are identified, triaged, and remediated effectively with engineering teams., Maintain and evolve security tooling, including monitoring, logging, SIEM/alerting, and secrets management., Collaborate with engineering and platform teams to embed security considerations into design and architectural decisions., Contribute to the unified control framework, ensuring strong security foundations for ISO 27001 and SOC 2, Own corporate and IT security, including endpoint management (e.g., MDM), identity and access management, and oversight of the external IT provider., Lead security reviews by our customers, acting as a confident, trusted partner to enterprise clients throughout their evaluation process., Stay ahead of emerging threats, technologies, and best practices to continuously uplift Apheris’ security posture.