About the Role
We are looking for a Security Operations Director to drive operations, and continuous enhancement of enterprise-wide security capabilities across a large and complex technology ecosystem. This role is responsible for ensuring that the Group's IT, application, and cloud environments are continuously protected, operationally resilient, compliant with relevant regulations, and well-prepared to respond to evolving cyber threats. The position also plays a key role in securing and governing large-scale multi-cloud environments across the Group's systems in both domestic and international markets
Key Responsibilities
Lead the operation, governance, and continuous improvement of enterprise security solutions, including Firewall, WAF, Network Security, Endpoint Security, EDR/XDR, IAM, PAM, and Cloud Security.
Oversee security architecture and security operations for large-scale multi-cloud environments across highly complex business systems serving both local and international operations.
Define and maintain security governance for configurations, policies, rules, and access controls based on Least Privilege and Zero Trust principles.
Participate in the design, review, and approval of security architecture for internal IT systems, applications, cloud environments, and third-party integrations.
Ensure Security by Design is embedded in technology initiatives, digital transformation programs, and system implementation projects.
Work closely with IT, Cloud, Engineering, Audit, Legal, and external security partners to investigate, respond to, and remediate security incidents.
Build, lead, coach, and develop the security operations team to strengthen technical depth, execution quality, and operational discipline.
Monitor cybersecurity risks, establish and track security KPIs, and drive continuous improvement across security architecture and operations.
Prepare and present regular security reports, risk updates, and operational insights to senior leadership.
Requirements
Minimum 10 years of experience in Information Security / Cybersecurity, with at least 3 years in a team management or equivalent leadership role.
Proven hands-on experience operating and managing security domains across Network Security, Endpoint Security, Identity Security, and Cloud Security.
Strong expertise in Firewall, WAF, EDR/XDR, IAM/PAM, and Cloud Security.
Proven experience managing or securing large-scale multi-cloud environments, ideally within complex enterprise or group-level ecosystems.
Strong understanding of security architecture, operational governance, incident handling, and risk management.
Strong leadership, decision-making, and crisis management skills, especially in high-pressure or urgent security situations.
Strong communication and stakeholder management skills, with the ability to work effectively with senior leadership and external partners.
Preferred Qualifications
Experience working in large enterprises, conglomerates, or highly distributed environments with complex technology landscapes.
Experience supporting both domestic and international systems with consistent security standards and governance.
Familiarity with regulatory, audit, and compliance requirements related to enterprise security operations.
Preferred Certifications
CISSP / CISM / CCSP
CCSE
Cloud Security certifications (AWS / Azure)
Other relevant cybersecurity certifications
Thông tin chung