This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The Continent Information Security Partnerships position drives continent security program, policy, and project execution, providing leadership and direction to the above property and on-property teams. The position strives for outstanding security compliance status and ensures that Security implementations within the continent follow company security standards. The role will track and report on established security metrics to Senior GIS and Continent leaders and will have a direct reporting line to the Senior Manager / Director / Senior Director of APAC/APEC Information Security Partnerships. This position maintains strong relationships with continent Business Partners, IT operations, and Field IT Managers and is the point of contact working with them to liaise with additional teams within Security.
Job Responsibility:
Leads Security project implementations within a designated region/area, partnering with the respective above property and property teams
Develops and delivers tactical communications, issues remediation planning, and implementation timelines with the regional IT Operations and Global Information Security teams
Initiates and completes audit programs, including tracking of progress, results, and gaps remediation
Identifies learning and knowledge gaps and facilitates educational calls, materials and meetings to the regional IT Operations and field associates
Plans and leads security reviews/certifications for new systems and services for properties across an assigned continent
Performs first-line approval of security requests from the partners and presents to leadership for additional approvals
Key contact for security compliance, partnering with continent and global GIS teams
Partners with Cyber Incident Response Team during incident response and remediation with their respective continent
Point of contact for general questions and queries around global Information security programs, policies, procedures, and/or strategy
Provide necessary training and guidance to field IT teams, Non-technical staff, and other stakeholders
Preparation of monthly reports and other related documentation to presenting to leadership team
Requirements:
5+ years overall experience in Information Technology, Information Security, and/or IT project management experience
2+ years in executing technology plans and/or project portfolios or information security programs
1+ years’ of implementing enterprise security risk management frameworks and processes
Fluent in English, both spoken and written
Bachelor’s Degree or the equivalent combination of education, technical training, certification, or work/military experience
Nice to have:
5+ years’ experience in hotel IT Management
2+ years’ experience working with Business and IT partners
Current information security certification, including Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA) or Certified Information Systems Security Professional (CISSP)
2+ years’ experience in Cybersecurity response and remediation
Basic understanding of vulnerabilities and remediation actions
Basic understanding of different attack vectors
Demonstrated understanding of key network and technical security controls
Experience participating in and coordinating activities for security incident response
Good Knowledge of global regulatory standards such as PDPA, PIPA, NDB, PDPB, etc. and understanding of PCI DSS
Demonstrated ability to apply GIS policies at a discipline unit level
Knowledge of IT security within an infrastructure environment
Knowledge of business environment, service requirements, and hospitality culture
Risk identification and remediation along with respective teams