Corporate IT Security Team plays an important role in maintaining and improving the security of our business operations globally. In this role, you will oversee a team of security engineers to ensure the successful delivery of security functions which includes conducting of security incident investigations and remediation, managing of security products, tools, and systems, and participating in cybersecurity initiatives to enhance Corporate IT’s security capabilities.
As a hands-on leader, you will establish core cybersecurity practices, build high-performing teams, and implement scalable solutions that protect our technology, data, and business operations. You’ll operate with the urgency and flexibility of a startup, while driving long-term impact across a growing global enterprise.
This role leads three core pillars: Security Operations, Security Engineering, and Governance, Risk, and Compliance (GRC), ensuring seamless alignment with corporate strategy and evolving threat landscapes.
1. Leadership & Strategic Direction
Design and execute a modern cybersecurity strategy aligned with both immediate needs and long-term business objectives.
Build the security function from the ground up, including setting vision, defining org structure, hiring, and onboarding.
Operate with a startup mindset—prioritizing agility, pragmatism, and fast iteration over bureaucracy.
2. Team Building & Talent Development
Recruit, mentor, and retain top-tier cybersecurity professionals across diverse disciplines.
Foster a growth culture centered around continuous learning, ownership, and career development.
Scale the team sustainably while maintaining speed and accountability.
3. Security Operations & Incident Response
Establish and lead end-to-end threat detection, incident response, and vulnerability management processes.
Implement lightweight but effective operational playbooks tailored to a lean, high-impact environment.
Collaborate closely with engineering and infrastructure teams for rapid issue resolution and improvement.
4. Security Engineering & Architecture
Design and deploy a modern, cloud-native security architecture across infrastructure and applications.
Introduce automation and tooling to streamline detection, response, and risk management.
Make build-vs-buy decisions that reflect startup constraints without compromising security posture.
5. Governance, Risk & Compliance (GRC)
Build foundational policies, controls, and compliance programs that can scale with the business.
Ensure adherence to evolving regulatory and industry requirements (e.g., ISO 27001, GDPR, SOC 2).
Work closely with legal and audit teams to prepare for external assessments and certifications.