Turn this role into an interview — a resume and cover letter built around what this employer wants.
Jaz Toys HK Limited in Hong Kong is seeking a Director, IT Operations & Information Security for Asia to design, implement, and operate IT infrastructure, networks, and security across Hong Kong, Dongguan, Vietnam and other offices in Asia.
You will oversee MSP relationships, manage regional IT budgets, ensure compliance with global policies including data privacy and security standards, and act as escalation point for Asia-based leadership.
The Director, IT Operations and Information Security, Asia is responsible for the design, implementation, security, and day-to-day operation of IT infrastructure, network services, security and technology implementations across the company's Asia-based offices and manufacturing sites in Hong Kong, Dongguan (China), and Vietnam and potentially other international sales marketing offices in accordance with Jazwares Global Technology mandates, policies and procedures. This role serves as the regional extension of the Global Information Security and Infrastructure function, ensuring local operations align with corporate security policy, regulatory compliance obligations, and enterprise technology standards. The Director also serves as the primary IT escalation point and trusted technology partner for Asia-based business and plant leadership.
This role leads a small team, governs the Managed Service Provider (MSP) relationship in each APAC office/region, and serves as the region's Senior IT and Security decision-maker and escalation point. The Director also carries information security governance responsibility for the region.
Own and manage LAN/WAN, wireless, firewall, and data center/server infrastructure across all Asia sites.
Manage relationships and SLAs with regional ISPs, MPLS/SD-WAN providers, and telecommunications vendors.
Ensure network uptime, capacity planning, and disaster recovery/business continuity readiness for each site.
Own regional network, server, and cloud infrastructure health, availability, and performance across all APAC sites Drive remediation of various assessment findings (Technology and InfoSec) to closure
Drive adoption of and ongoing compliance with Zero Trust Network Access (ZTNA/Zscaler), identity (Okta), and endpoint security (SentinelOne EDR) programs across the region, aligned to Jazwares' global security architecture
Develop and maintain disaster recovery and business continuity plans for regional infrastructure and operations,including recovery testing
Maintaining workforce productivity and operational efficiency
Incident & Ticket Management: Oversee the IT ticketing system, ensuring all incidents and service requests are documented, prioritized, and resolved within established service level agreements (SLAs).
End-User Technical Support: Provide first- and second-level technical assistance for hardware, software, operating systems, and connectivity issues (Windows/macOS), including on-site and remote support.
Identity & Access Management: Facilitate secure onboarding and offboarding processes, including account creation/disabling, permission management, and MFA enrollment.
Maintain an accurate Asia region asset inventory covering servers, network devices, and endpoints.
Vendor & Stakeholder Collaboration: Coordinate with third-party vendors and other IT teams to resolve complex issues and implement enterprise technology solutions.
Support for Communication Tools: Provide technical support for A/V equipment, web conferencing platforms, and telecommunications systems to ensure seamless business operations.
Execute and localize the global information security program across Asia sites, including endpoint protection, patch management, vulnerability management, access controls, and incident response.
Ensure compliance with regional data privacy and cybersecurity regulations, including China's Personal Information Protection Law (PIPL) and Cybersecurity Law, Vietnam's data localization requirements, and Hong Kong's Personal Data (Privacy) Ordinance (PDPO).
Serve as the regional point of contact for security incidents, coordinating with the global Security Operations Center (SOC) and security leadership.
Support cross-border data transfer requirements and data residency obligations given the multi-country operating footprint.
Support Sarbanes-Oxley (SOX) IT General Controls (ITGC) testing, evidence collection, and remediation across Asia-based systems.
Maintain audit-ready documentation for infrastructure, access controls, and change management processes.
Partner with Internal Audit and Legal on data residency, export control, and trade/customs IT considerations relevant to manufacturing operations.
Provide training and guidance to regional staff and end users on IT systems, security practices, and policies, Support policy distribution, acknowledgment, and tracking.
Security awareness: ensure all APAC staff and MSP personnel complete role-based security awareness training and phishing simulations.
Escalate policy non-compliance in a timely manner and coordinate with local HR on remediation
Manage local IT staff and/or managed service providers (MSPs) across Hong Kong, Dongguan, and Vietnam.
Manage regional budget for IT infrastructure, hardware refresh cycles, and vendor/telecom contracts.
Standardize hardware, software imaging, and end-user support processes across all sites.
Directly manage and develop the Dongguan-based infrastructure and technical support staff, including work direction, staff performance, and career development
Own performance, SLA compliance, and contract governance for the Managed Service Providers (MSPs) supporting each office/region, ensuring contracts include SLAs, Data Processing Agreements (DPA), right-to-audit and security-requirement clauses; run regular service reviews against defined KPIs; and oversee MSP identity, access, and awareness controls
Act as the senior IT presence for Asia leadership, including plant managers and Hong Kong regional leadership.
Lead regional technology projects such as ERP rollouts, network upgrades, site expansions or relocations, and M&A integration activity.
Translate corporate IT and security strategy into actionable regional execution plans.
Partner with Physical Security to secure sensitive areas such as server and network rooms and labs, including physical access logging and CCTV coverage.
Prepare and delivery regular reports on regional system health, security posture, project status, and MSP performance Help facilitate periodic access reviews
Report key metrics — uptime, security posture, incident trends, and project status — to the VP, Information Security and Network Infrastructure and other stakeholders.
Participate in global IT leadership planning as the voice of the Asia region.
Serve as the primary APAC-region escalation point for infrastructure, technical support, and security incidents
Travel to the APAC offices on an occasional (quarterly or as-needed) basis to support site operations, vendor reviews, and team development
Represent the region in global IT infrastructure strategy, planning, and change management processes (e.g., Change Advisory Board)
Bachelor's degree in Information Technology, Computer Science, or a related field, or equivalent experience.
10+ years of experience in IT infrastructure, network, security roles, including 3–5+ years in a regional or multi-site leadership capacity.
Strong technical foundation across infrastructure domains (networking, servers, cloud, endpoint) sufficient to direct, evaluate, and escalation technical work performed by direct reports and MSP
Experience supporting manufacturing or multi-site operations in China and Southeast Asia.
Strong knowledge of network architecture (SD-WAN, firewalls, wireless) and security frameworks (NIST, ISO 27001).
Experience operating within a SOX-compliant, public company environment.
Familiarity with China, Hong Kong, and Vietnam data privacy and IT regulatory requirements.
Demonstrated vendor management and budget ownership experience.
Willingness and ability to travel regularly between Hong Kong, Dongguan, and Vietnam)
Experience managing outsourced or Managed Service Provider (MSP) relationships, including SLA governance and vendor performance management .
Experience administering Google Workspace, Okta, Zscaler, ManageEngine, Iru and SentinelOne (or equivalent identity/ZTNA/EDR platforms
Proven leadership and people-management skills, including the ability to develop, coach, and manage the performance of technical staff
Working knowledge of information security governance and controls: Zero Trust; identity, SSO, MFA, and device trust (Okta); privileged access management (CyberArk); EDR (SentinelOne); ZTNA (Zscaler); network access control and segmentation; vulnerability management (Rapid7); data classification and DLP; and MDM
Experience supporting information security incidents • Familiarity with the NIST CSF and CIS Controls, with the ability to run regional governance against a global security baseline and industry standards
Solid understanding of AWS cloud infrastructure administration
Working knowledge of regional data privacy and security compliance frameworks applicable to mainland China, Hong Kong, Vietnam
Experience with ITSM/ticketing practices and driving service-desk maturity
Ability to operate independently as the senior IT leader in the region, exercising sound judgment on escalations without daily direct oversight
Strong executive communication skills, with the ability to translate technical and security issues into business terms for US-based leadership
Sound business, financial, and vendor-negotiation judgment, including experience managing regional IT budgets and contracts
Relevant certifications such as CISCP, CCNP, or PMP (preferred).
Proficiency in English and Putonghua (written/spoken);
Willing to travel to overseas production locations in Southeast Asia (frequent to China and Vietnam)
All information provided by applicants will be treated in strict confidence and used for recruitment purpose only.