Cybersecurity Team Lead
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Cybersecurity Team Lead (Cybersecurity): Build and operate a best-in-class security capability for CQG in-region, with an accent on regulatory compliance, operational resilience, and audit-defensible security evidence. Focus on driving China-specific risk decisions, coordinating security execution across domains, and leading local incident response while bridging China operations with ’s global Information Security Group.
Location: China (Mainland preferred) or Hong Kong (subject to regulatory and operational requirements)
Company
expands its global cybersecurity footprint to support strategic growth in China.
What you will do
- Own end-to-end cybersecurity posture for China-based systems, infrastructure, and data, including audit-defensible control evidence.
- Lead regulatory and external engagement with local regulators, auditors, and compliance authorities; manage submissions, inspections, and control assessments.
- Drive local risk identification, assessment, prioritization, and remediation planning, including exception management and risk acceptance decisions.
- Coordinate security execution across domains to ensure timely vulnerability remediation and removal of blockers within China constraints.
- Bridge China operations with Information Security Group (BISG), aligning standards, tooling, and processes; coordinate dependencies with SOC, IR, Engineering, and Architecture.
- Lead local coordination of cybersecurity incidents for China-based systems, including escalation, regulatory notification/reporting, and coordination with global incident response teams.
Requirements
- 8–12+ years of cybersecurity experience with leadership responsibility.
- Strong understanding of China cybersecurity regulatory landscape, including MLPS 2.0, CSL, DSL, and PIPL.
- Experience leading security operations or security programs in regulated environments.
- Proven ability to manage risk and make security decisions in complex regulatory and technical environments.
- Experience coordinating across multiple security domains (SOC, AppSec, Infra, GRC).
- Strong stakeholder management across technical, business, and regulatory audiences.
Nice to have
- Experience operating in China or supporting China-based technology environments.
- Familiarity with financial services or fintech regulatory environments.
- Experience integrating local teams into global security operating models.
- Exposure to constrained environments (data residency, tool restrictions, network limitations).
Culture & Benefits
- Hybrid work model (#LI-Hybrid).
- Collaborative, inclusive environment focused on enabling associates to accomplish more.
- Human review included in the hiring process even when AI-based tools are used to support recruiters and hiring managers.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →