Site Cyber Security Manager China
Apply now »Date: 25 Feb 2025
Location: Suzhou, Jiangsu, CN, 215021
Company: Merck KGaA Darmstadt, Germany
与我们携手施展你的超能力!
探索未知、打破壁垒、勇于发现,你准备好了吗?你有宏图大志正待实现,我们同样雄心勃勃。我们遍布全球的员工热爱科技创新,以医药健康、生命科学和电子科技领域的解决方案,切实改善人类生活。我们怀揣远大梦想,热忱关爱员工、客户、患者和人类居住的这颗星球。因此我们一直在寻找永葆好奇心的你,与我们一路同行、敢想敢做,把不可能变为可能!
在电子科技,我们所做的一切都是为了成为众多企业推进数字化生活的幕后推手。我们致力于作为值得信赖的供应商,为电子、汽车和化妆品行业提供高科技材料、服务和特种化学品。我们培养了一个全球协作的组织,我们的员工热情好胜、秉持客户至上、充满好奇心且行动敏捷。我们齐心协力突破科学的极限,为客户创造更多可能。
Your Role:
As the Site Cyber Security Manager (SCSM) for our sites in China, you will play a pivotal role within the company Electronics (EL) Cyber Security organization. Reporting to the sector Cyber Security function, you will be the primary contact for all Cyber Security matters across our EL sites. Your mission is to oversee and implement robust Cyber Security strategies that effectively mitigate cyber risks, ensuring compliance with global standards and local regulations.
Job Responsibilities:
- Single Point of Contact (SPOC): Support projects and operations as an IT/OT Cyber Security SPOC to safeguard critical infrastructure and industrial control systems as well as ensure integration of security measures within the lifecycle of business applications and products.
- Advisory: Advise and support architecture and engineering staff in the implementation of Cyber Security measures.
- Governance & Strategy Implementation: Drive the implementation of global and Electronics Cyber Security governance models, along with the Electronics Cyber Security strategy at the designated sites.
- Cyber Security Master Plan: Develop and execute a comprehensive Cyber Security master plan for the respective sites, integrating global initiatives and local efforts to improve Cyber Security maturity and addressing Cyber Security risks.
- Continuous Monitoring: Monitor and manage Cyber Security risks and vulnerabilities as well as provide support and on-call service for Cyber Security incident management.
- Assessments & Audits: Conduct regular Cyber Security assessments to identify missing controls and evaluate the effectiveness of existing controls. Furthermore, support internal and external Cyber Security audits.
- Reporting: Create and communicate regular status reports on Cyber Security risks, compliance, incidents, and KPIs to the site leadership as well as EL Cyber Security organization.
- Compliance: Assist in the identification of local legal, regulatory, and contractual Cyber Security requirements and manage their integration into the Cyber Security control framework
- Collaboration: Coordinate with global, regional and local roles to enhance Cyber Security interfaces and practices. Furthermore, actively participate in Cyber Security meetings and events to facilitate information exchange and collaborative problem-solving.
- Culture of Awareness: Promote a culture of Cyber Security awareness and continuous improvement.
This role can be based in Shanghai, Zhangjiagang or Suzhou.
Who you are:
Minimum Qualifications:
- Minimum of 3-5 years of experience in Cyber Security, with a focus on Operational Technology (OT) and Information Technology (IT) environments.
- Proven experience in Cyber Security risk management.
- Bachelor degree in Cyber Security, Information Technology, Computer Science, or a related field is preferred.
- Familiarity with frameworks and standards such as NIST Cyber Security Framework (CSF), ISO/IEC 27000 series, IEC 62443, and ITIL.
- Strong analytical and problem-solving skills to assess threats and vulnerabilities effectively.
- Passionate about IT and OT, with a commitment to staying updated on the latest Cyber Security trends and technologies.
- Excellent communication skills to influence others, and the ability to collaborate effectively across organizations.
- Ability to communicate effectively in English, both orally and in writing.
- Willingness to travel up to 25% within China is required.
Preferred Qualifications:
- Advanced degree in Computer Science, Automation, Electrical Engineering, or a related field is preferred.
- GICSP, CSX-P or related Cyber Security certification(s).
- Experience in implementing Cyber Security protection layers for OT and IT.
- Understanding of specific Cyber Security challenges and regulatory requirements in the chemical and semiconductor industries, particularly within production facilities
我们能够提供:我们对未知充满好奇,我们的员工有着多样化的背景、多维度的视角和个性化的经历。作为一家前沿科技企业,我们欣赏全方位的多元性,坚信这能驱动卓越和创新,从而强化我们“科技先锋”的底色。同时我们致力于为所有员工提供机会和资源,支持他们按各自的节奏充分成长和发展。加入我们,共建充满包容性和归属感的企业文化,让每一位志同道合的伙伴能够施展自己的超能力,共同推动人类迈向进步的未来!
立即申请,成为我们多元化团队的一员!
Job Segment:
Computer Science, Semiconductor, Manager, Technology, Science, Management