Cybersecurity Strategy & Governance
- Support development and execution of group-level and business-level cybersecurity strategy aligned with overall business goals, regulatory requirements and industry best practices.
- Ensure alignment of cybersecurity and privacy governance, including policies, standards and operating models.
- Manage strategic cybersecurity initiatives as structured programs or projects.
- Track progress, risks, dependencies and outcomes across multiple initiatives.
Acquired Entity Integration
- Build and manage cybersecurity programs for acquired entities including baseline assessments, gap analysis and cybersecurity roadmaps.
- Drive alignment of acquired businesses with group cybersecurity and privacy standards.
Awareness & Culture
- Design, develop and deliver cybersecurity and privacy awareness programs across the organization.
- Execute campaigns, training initiatives and communication plans to strengthen the security culture.
Executive & Stakeholder Engagement
- Prepare and present executive and board-level reports on cybersecurity posture, risks and strategic initiatives to support informed decision-making.
- Support leadership meetings, steering committees and key stakeholder forums.
Technical Knowledge
- Deep understanding of cybersecurity frameworks such as NIST, ISO 27001 and CIS Controls.
- Expertise in risk assessment methodologies and threat modelling.
- Knowledge of cloud security, network security and endpoint protection.
- Ability to interpret technical insights and translate them into business-relevant recommendations.
Core Skills
- Strategic planning and execution in complex, multi-business environments.
- Program and project management with a track record of delivering complex initiatives.
- Risk management and mitigation strategies.
- Strong stakeholder management and executive communication skills.
Experience
- 58 years of experience in cybersecurity strategy, governance, risk management, awareness and related program management roles.
- Strong experience supporting enterprise-level cybersecurity and privacy program execution.
- Experience working across multiple business units and/or geographies.
- Experience engaging with senior leadership and executive stakeholders.
Qualifications
- Bachelor's degree in Engineering (Computer Science, IT, or related discipline).
- Relevant professional certifications (preferred, not mandatory):
- CISM, CISSP, CRISC
- ISO 27001 Lead Implementer / Auditor
- Privacy certifications (e.g., CIPM)