Cybersecurity Strategy & Governance
- Develop and implement cybersecurity strategies and frameworks aligned with industry standards (e.g., ISO 27001, NIST, CIS).
- Establish and enforce security policies, procedures, and guidelines across the APAC region.
Risk Management & Regulatory Compliance
Identify, evaluate, and mitigate cybersecurity risks.Ensure compliance with relevant data protection and regulatory requirements (e.g., PDPA, GDPR, MAS TRM Guidelines – if based in Singapore).Coordinate and manage internal and external security audits.Incident Response & Threat Management
Lead incident response efforts for security breaches, including investigations and root cause analysis.Oversee Security Operations Centre (SOC) activities, where applicable.Perform regular vulnerability assessments and coordinate penetration testing efforts.Security Infrastructure & Tools
Manage and configure key cybersecurity technologies (e.g., firewalls, SIEM, antivirus, endpoint protection, IDS / IPS).Administer encryption systems, identity and access management (IAM), and multi-factor authentication (MFA).Stakeholder Engagement & Training
Provide strategic cybersecurity guidance to senior leadership.Conduct cybersecurity awareness programs and phishing simulations for staff.Collaborate with IT and business units to embed security controls into projects and operations.Team Leadership & Development
Lead and manage a regional cybersecurity team (approx. 12 staff across APAC).Develop team skills, oversee performance, and plan for future cybersecurity resource needs.J-18808-Ljbffr