Head of Cybersecurity
Our client is seeking a seasoned Head of Cybersecurity to drive and strengthen the overall security posture of their digital asset platform. This role is accountable for executing the organization’s security strategy, ensuring robust protection of systems, data, and infrastructure, while maintaining full alignment with regulatory requirements.
As a key leadership role, this position partners closely with senior stakeholders and regulators to uphold the highest standards of cybersecurity, risk management, and compliance, while embedding a strong security culture across the organization and enabling secure, scalable growth within a highly regulated environment.
Key Responsibilities
• Establish, implement, and maintain the organization’s IT security framework, policies, and standards in alignment with regulatory requirements, ensuring readiness for SEC audits.
• Lead and support regulatory inspections and audits by responding to inquiries, providing accurate documentation, and maintaining regulator confidence in security controls.
• Conduct cybersecurity risk assessments and implement risk management strategies to mitigate identified threats.
• Ensure ongoing compliance with applicable laws, regulations, and industry standards (e.g., ISO 27001, SOC 2 Type 2).
• Lead incident detection, response, and recovery processes, ensuring timely escalation, reporting, and resolution of security incidents.
• Oversee third-party/vendor security risk management, ensuring compliance with security requirements and data protection standards.
• Drive organization-wide security awareness initiatives, including training and continuous education programs.
• Monitor, evaluate, and continuously enhance the organization’s security posture through control improvements and performance reviews.
• Oversee the design, implementation, and effectiveness of security controls, including access control, network security, encryption, and physical security.
• Ensure secure system configuration, continuous monitoring, and effective vulnerability management practices.
• Lead certification and compliance initiatives, including ISO 27001 and SOC 2 Type 2, ensuring proper documentation and control effectiveness.
• Provide expert advisory support to business units on IT security best practices, risk awareness, and compliance requirements.
• Define, implement, and maintain the organization’s IT security strategy to protect systems, networks, data, and digital assets.
Key Qualifications
• Bachelor’s or Master’s degree in Information Security, Computer Science, IT, or a related field.
• At least 7 years of experience in IT security, cybersecurity, or information security management, preferably in digital assets, fintech, or financial services.
• Strong experience with regulatory compliance and audit readiness (e.g., SEC or similar regulatory bodies).
• Proven experience in implementing and managing security frameworks such as ISO 27001, SOC 2 Type 2, NIST, or equivalent.
• Hands-on experience in Risk assessment and risk management, Incident response and security operations, Vulnerability management and security monitoring
• Experience managing third-party/vendor security risk.
• Strong understanding of security technologies including network security, IAM, encryption, and endpoint protection.
• Demonstrated ability to lead security initiatives, manage cross-functional teams, and communicate effectively with senior stakeholders and regulators.
• Relevant certifications are highly preferred (e.g., CISSP, CISM, CISA, ISO 27001 Lead Implementer/Auditor).
• Strong analytical, problem-solving, and decision-making skills.
• Excellent communication and training skills with the ability to promote a security-first culture.
This opportunity is ideal for an experienced security professional with a strong background in cybersecurity, compliance, and risk management, preferably within fintech, digital assets, or the broader financial services sector.
Due to the high volume of applications, our team will only be in touch if your application is shortlisted.
Robert Walters Recruitment (Thailand) Limited
Recruitment License No.: น. 1188 / 2551
About the job
Contract Type: Perm
Specialism: Tech & Transformation
Focus: IT Security
Industry: IT
Salary: ESOP
Workplace Type: Hybrid
Experience Level: Senior Management
Location: Bangkok
FULL_TIMEJob Reference: UWECFS-F2898018
Date posted: 4 April 2026
Consultant: Supapuck Siriprayoon
bangkok tech-transformation/it-security 2026-04-07 2026-06-03 it Bangkok TH Robert Walters https://www.robertwalters.co.th https://www.robertwalters.co.th/content/dam/robert-walters/global/images/logos/web-logos/square-logo.png true