Search Jobs

Search by job, company or skills

Head of Cybersecurity, APAC, VP/SVP

Head of Cybersecurity, APAC, VP/SVP

Sompo Asia Pacific
10-15 Years
Early Applicant
Quick Apply
  • Posted 5 days ago
  • Be among the first 20 applicants

Job Description

Key Responsibilities:

  • Cybersecurity Strategy and GovernanceDefine and implement a comprehensive cybersecurity strategy for the APAC region aligned with global objectives and business needs.
  • Develop and maintain governance frameworks, policies, and procedures to manage cybersecurity risks.
  • Lead cybersecurity maturity assessments and drive improvements across countries.
  • Act as the primary advisor to regional leadership on cybersecurity risks, trends, and best practices.
  • Security Operations and Incident ResponseOversee regional security operations, including threat detection, incident response, and vulnerability management.
  • Lead the development and testing of incident response plans and disaster recovery strategies.
  • Collaborate with global security teams to enhance SOC (Security Operations Center) capabilities and threat intelligence.
  • Lead post-incident reviews and implement improvements based on lessons learned.
  • Risk Management and ComplianceConduct regular risk assessments to identify, prioritize, and mitigate cybersecurity risks within the region.
  • Work closely with the compliance and legal teams to ensure adherence to cybersecurity regulations and industry best practices.
  • Collaborate with the Internal Audit team to support IT and cybersecurity audit activities and drive remediation efforts.
  • Manage third-party vendor assessments, ensuring that external vendors meet security standards and practices.
  • Security Awareness and TrainingDevelop and implement cybersecurity awareness programs to educate employees on safe digital practices and threat prevention.
  • Ensure ongoing compliance with mandatory cybersecurity training across the region and support awareness initiatives.
  • Technology and Project ManagementLead and manage regional cybersecurity projects, including network security, data protection, identity and access management, and cloud security initiatives.
  • Ensure the deployment, integration, and continuous improvement of security technologies across regional systems.
  • Work with IT teams to align cybersecurity measures with business needs and operational requirements.
  • Collaboration and LeadershipBuild and lead a high-performing regional cybersecurity team through recruitment, mentorship, and development.
  • Foster collaboration between regional and global cybersecurity teams to support organizational goals.
  • Serve as the primary cybersecurity contact for external auditors, regulators, and other stakeholders as needed.

Qualifications:

  • Education: Bachelor's degree in Computer Science, Information Security, or a related field. A Master's degree is preferred.
  • Certifications: CISSP, CISM, CISA, or equivalent cybersecurity certifications.
  • Experience: Minimum of 10-15 years of experience in cybersecurity, with at least 5 years in a leadership role, ideally within the insurance or financial services industry.
  • Technical Skills: Proficiency in threat management, vulnerability assessment, security incident response, and security frameworks (e.g., NIST, ISO 27001).
  • Regulatory Knowledge: Strong understanding of regulatory requirements impacting cybersecurity in the financial sector, e.g., MAS TRM, PDPA, BNM RMiT, HKMA, APRA.
  • Soft Skills: Excellent communication, leadership, and stakeholder management skills, with a proven track record of influencing cross-functional teams.

More Info

Job Type:
Function:
Employment Type:

Key Skills

Cybersecurity Strategy

Cybersecurity Governance

Cybersecurity Risk Management

Cybersecurity Maturity Assessment

About Company

Similar Jobs

10-12 yrs
Malaysia, Kuala Lumpur
Skills:
Digital Transformation, Cybersecurity, Data Governance, Data Analytics, Technology-enabled change, Scalable machine learning, Business Operations, LLM-enabled solutions, Analytics, Technology risk considerations, Privacy, Innovation, LLM-powered applications, Control environments, Model risk, AI automation, Modern data platforms, Responsible AI, Data residency, AI enablement, Agentic workflows, Regulatory expectations
10-12 yrs
Malaysia, Kuala Lumpur
Skills:
IT General Controls, Internal Controls, Aca, risk-based audit planning, internal audit standards, Operational Risk, Corporate Governance, Accounting Principles, audit and assurance methodologies, ACCA, application controls