Develop and communicate a comprehensive cybersecurity strategy aligned with business objectives, industry standards, and regulatory requirements.
Provide strategic leadership and guidance to the cybersecurity team, fostering a culture of innovation, collaboration, and continuous improvement.
Establish key performance indicators (KPIs) and metrics to measure the effectiveness of cybersecurity initiatives and ensure alignment with organizational goals.
Oversee the GRC team responsible for assessing and managing cybersecurity risks, ensuring compliance with relevant regulations, industry standards, and internal policies, including digital compliance requirements.
Develop and maintain cybersecurity policies, procedures, and standards, ensuring their consistent implementation across the organization.
Collaborate with internal stakeholders and external partners to address compliance requirements, mitigate risk exposure, and enhance cybersecurity posture.
Oversee the Security Operations team responsible for monitoring, detecting, and responding to cybersecurity threats and incidents.
Build and oversee a new Application Security team responsible for defining and implementing robust security measures for software applications developed and maintained by the company.
Collaborate with internal stakeholders, including business units, product development teams, and Digital departments, to integrate cybersecurity into business processes and technology solutions.
Requirements
Relevant certifications such as CISSP, CISM, or CISA are highly desirable.
Experience in cybersecurity leadership roles, with a proven track record of managing global teams and driving cybersecurity initiatives in complex environments.
Deep understanding of cybersecurity principles, frameworks, and best practices, with experience in both hardware and software manufacturing environments.
Strategic thinker with the ability to translate business requirements into effective cybersecurity solutions.
Experience working with regulatory requirements and industry standards such as ISO 27001, NIST, GDPR, etc.
Knowledge of emerging cybersecurity technologies and trends, with a commitment to continuous learning and professional development.