Job Search and Career Advice Platform

Attiva gli avvisi di lavoro via e-mail!

Addetta mensa

Attal Group

Bologna

In loco

EUR 128.000 - 172.000

Tempo pieno

Ieri
Candidati tra i primi

Genera un CV personalizzato in pochi minuti

Ottieni un colloquio e una retribuzione più elevata. Scopri di più

Descrizione del lavoro

A leading global security firm is seeking a Regional Chief Information Security Officer (CISO) for APAC. This role involves overseeing security governance, compliance, and risk management across the region while ensuring alignment with global standards. Candidates should have over 10 years of experience in cybersecurity, with significant leadership experience and a strong grasp of APAC regulatory frameworks. The successful candidate will have excellent stakeholder management skills and relevant certifications like CISSP or CISM.

Competenze

  • 10+ years in cybersecurity, 5+ years in a leadership role.
  • Strong understanding of APAC regulatory frameworks.
  • CISSP, CISM or equivalent certifications.

Mansioni

  • Act as the regional ambassador for Group Information Security policies.
  • Coordinate with Local CISO in ensuring alignment with Group standards.
  • Oversee governance of security operations in APAC.

Conoscenze

Cybersecurity experience
Regulatory frameworks knowledge
Stakeholder management
Cross-functional team leadership

Formazione

Bachelor’s degree in Information Security

Strumenti

ISO 27001
NIST CSF
CISSP
CISM
Descrizione del lavoro
Regional CISO - APAC

The Regional Chief Information Security Officer (CISO) for APAC serves as the primary security leader for the entire region, reporting to the Group CISO and with a cross‑functional reporting line to the APAC CIO. The role governs and oversees the implementation of Group security policies and programs across APAC, ensuring adherence to global standards while meeting local regulatory obligations.

Context

The Group Information Security function is dedicated to protecting the organization’s information assets through a unified, risk‑based approach to cybersecurity. The function operates across five core domains: Security Governance, Security Architecture, Operations Security, Identity & Access Management (IAM), and Data Protection & Privacy. Regional CISOs extend this governance model to their geographies, ensuring alignment with Group standards and addressing local regulatory and business requirements.

Key Duties and Responsibilities
Security Governance & Strategic Alignment
  • Act as the regional ambassador for Group Information Security policies, standards, and frameworks.
  • Govern locally the core security domains managed centrally by the Group CISO teams.
  • Ensure consistent implementation of security programs across APAC entities and sites.
  • Facilitate the adoption of Group and regulatory requirements, policies, and controls.
  • Streamline reporting into the Group CISO centralized governance and reporting framework.
Regional Oversight & Coordination
  • Oversee and coordinate with the Local CISO in India, ensuring alignment with Group standards and collecting consolidated reporting.
  • Facilitate the rollout of global security initiatives and projects within the region.
  • Support regional business units in security‑related decision‑making and risk management.
Operational Security Governance
  • Oversee governance of security operations in APAC.
  • Ensure BCP/DR plans coverage and alignment with Group.
  • Track implementation of security awareness programs adapted to APAC cultural and regulatory contexts.
Compliance & Regulatory Engagement
  • Maintain a regulatory watch for APAC jurisdictions (e.g., MAS, IRDAI, CBIRC, APRA).
  • Facilitate internal and external audits, regulatory questionnaires, and ensure timely remediation of findings.
  • Prepare and coordinate responses for local and regional regulatory inquiries and inspections.
  • Ensure timely coordination with the group incident manager and CISO for reporting of critical incidents to regulators as required by local laws.
Risk Management & Third‑Party Security
  • Facilitate regional risk assessments and integrate results into the Group risk framework.
  • Oversee the integration of third‑party security risk management for vendors operating in APAC.
  • Support secure architecture reviews for regional projects.
Reporting & Communication
  • Support the security team in the implementation of regional security KPIs, risk dashboards, and compliance status and reporting to the Group CISO.
  • Provide regular updates to APAC leadership on security posture and risk exposure.
  • Represent APAC in global security groups and forums.
Required Experience & Competencies
  • 10+ years in cybersecurity, with at least 5 years in a leadership role covering multiple geographies.
  • Strong understanding of APAC regulatory frameworks (e.g., MAS TRM, IRDAI, CBIRC, APRA CPS 234).
  • CISSP, CISM, or equivalent knowledge of ISO 27001, NIST CSF.
  • Ability to influence stakeholders and manage cross‑functional teams in a matrix organization.
Required Education
  • Bachelor’s degree in Information Security, Computer Science, or a related field.
  • Professional certifications such as CISSP, CISM, CRISC, or ISO 27001 Lead Implementer/Auditor are highly desirable.
Ottieni la revisione del curriculum gratis e riservata.
oppure trascina qui un file PDF, DOC, DOCX, ODT o PAGES di non oltre 5 MB.