岗位描述
职业介绍:
DIGITAL SECURITY MANAGEMENT
The Digital Security Manager is responsible for overseeing and driving digital security operations for Airbus and all its divisions and affiliates in China, including the Commercial Aircraft, Defence & Space, and Helicopters divisions divisions.
The job holder is responsible for overseeing and driving digital security operations across China, encompassing:
Implementation of the corporate digital security strategy within business operations
Industrial digital security activities
Digital security risk identification and mitigation
Support for digital security audits, technical evaluations, and compliance frameworks
Support for the HR secure hiring process
Contributions to threat intelligence
On-demand support for technical legal investigations
Data Leakage Prevention (DLP) management
Support to digital security training and awareness programs
Support security evaluations during the procurement call for tender (CFT) selection process
Main activities
Strategic activities
Support the Chief Information Security Officer (CISO) in deploying corporate digital security initiatives
Coordinate and facilitate local digital security initiatives and programs across China
Identify, consolidate, and manage digital security risks and their corresponding response plans in China
Assist the CISO in drafting, validating, and publishing digital security policies, processes, and position papers
Client-related activities
Interface directly with local business units on digital security topics
Liaise closely with the IM Cybersecurity team regarding operational controls and initiatives
Operational activities
Ensure absolute compliance with Corporate and Divisional digital security requirements and standards
Provide dedicated security support for products, services, and ongoing projects
Provide guidance, formal responses, and validation for digital security requests and queries
Contribute to security awareness by designing, organizing, and delivering educational materials and training sessions
Manage digital risks through comprehensive identification, assessment, reporting, and remediation follow-ups
Ensure thorough vulnerability management and follow-up across all corporate IT and Operational Technology (OT) assets
Support technical legal investigations and forensic laboratory activities on-demand
Coordinate and support technical digital security technical evaluations
Coordinate and support audits and regulatory compliance initiatives (e.g., ISO27001, PART-IS, etc.)
Implement localized digital security projects and strategic initiatives
Scout new and emerging technologies that enhance the digital security posture
Support on-demand security screening of candidates, including establishing, formalizing, and maintaining comprehensive screening processes, tools, and methodologies
Contribute to and proactively anticipate threat intelligence
Continuously improve the precision and response capabilities of Data Leakage Prevention (DLP) information
Evaluate vendor security postures within procurement processes to support business selection
Execute other tasks as assigned by the CISO
Outputs
Financial Outputs
N/A
Client-related Outputs
Ensure that all business activities remain fully compliant with corporate security policies and standards
Supervision of IM cybersecurity operational compliance KPIs to ensure they consistently meet targets
Operational Outputs
Achievement of yearly operational objectives
Delivery of high-quality, timely security support to the business
Maintenance of an accurate digital security risk exposure map and corresponding action plans
On-demand technical support for specific legal investigations
Timely completion and follow-up of technical evaluations
High-quality, timely execution of candidate screening
Precise and responsive DLP detection and mitigation
Rigorous security assessments for the CFT process
Skills & Experience
Education & Professional Qualifications
Academic Background: Bachelor's or Master’s degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related field
Certifications: possessing professional certifications or framework-specific certifications (e.g., ISO 27001) are a strong plus
Knowledge & Experience
Cybersecurity Operations: experience in digital security, risk management, or cybersecurity operations
Regulatory & Compliance: Comprehensive understanding of Chinese cybersecurity laws and regulations. Familiarity with aviation standards like PART-IS.
IT/OT Environment: experience securing both standard Information Technology (IT) and Operational Technology (OT) / Industrial Control Systems (ICS) environments
Skills & Competencies
Technical & Operational Skills: Risk Management, Incident Response, Forensics, Vulnerability Management, DLP, IT/OT Security
Soft Skills & Leadership: Stakeholder Management, Cross-Functional Collaboration, Risk Communication, Analytical Mindset, Discretion & Confidentiality
Languages: Full professional proficiency in both English and Mandarin (mandatory for global and local stakeholder interfacing)
这份岗位要求你具备对潜在合规风险的敏锐意识,并且承诺以正直诚信行事——因为这是公司取得成功、维护声誉与实现可持续发展的基础。
公司:
Airbus (China) Enterprise Management and Services Co.Limited
雇佣类型:
永久的
-------
经验水平:
专业的
职位类别:
Cyber Security <JF-CG-ST>
您提交简历或申请即表示您同意空客使用并存储与您申请或未来就业相关的个人信息。此类信息仅限空客内部使用。空客致力于实现员工多元化并营造包容的工作环境。我们欢迎所有申请,无论申请人的社会文化背景、年龄、性别、残疾状况、性取向或宗教信仰如何。空客始终致力于为所有人提供平等机会。因此,我们在招聘过程中绝对不会要求任何形式的经济补偿。任何冒充空客进行此类行为的情况,请立即报告至:emsom@airbus.com 。
在空客,我们支持您更轻松更灵活的工作、沟通与协作。在尽可能的情况下,我们鼓励灵活的工作安排以激发创新思维。