Head of Cybersecurity, Korea

Posted One Month Ago
Be an Early Applicant
Seoul, KOR
In-Office
Senior level
Fashion • Retail
The Role
Lead cybersecurity activities in South Korea as part of Group Cyber Resilience: advise on cyber risk and controls, oversee risk assessments and remediation, ensure compliance with Korean data protection laws, embed security by design, run awareness and third‑party due diligence, and engage executives and regulators.
Summary Generated by Built In

Richemont, one of the world leaders in the luxury sector, has various Houses specializing in jewelry, watches and high-end accessories. Each Maison proudly embodies a tradition of style, quality and craftsmanship and Richemont strives to preserve the heritage and identity specific to each of them. At the same time, we are committed to innovating and designing new products in line with the values ​​of our Houses, through a process of permanent creativity.


You, as a local Cybersecurity Officer, will be a member of the Richemont Group Cyber Resilience department, a highly motivated and dynamic global team. You will work with our Richemont Group including all worldwide Maisons. You will also be leading cybersecurity activities in South Korea and report jointly to the country CEO and the Group Cyber Resilience Associate Director. In this capacity, you will be officially designated and registered as the statutory Chief Information Security Officer (CISO) for our South Korean entities, fully representing the Group's cybersecurity posture in alignment with South Korean regulatory requirements. Sitting in the 2nd line of defense, you will provide guidance and advisory to business and technical functions within the Group, and especially within South Korea, to enable security by design and cyber risk management.

As a local Cybersecurity Officer, you will provide overall direction, oversight and definition of cyber-Security concepts and models along with cyber security best practices and control objectives to enable the Group to achieve its business strategy and objectives in a secure and resilient manner. 

You will be leading and supporting various initiatives aimed at defining and deploying processes, awareness and technologies related to cyber risk management.

You will also actively participate to other risk assessments activities, such as, amongst others, the definition and update of cyber security policies and baselines, control objectives or security best practices/guidance, security architecture review, awareness campaigns, third party security due diligence, etc … 


Your role will involve a prominent level of collaboration with regional key stakeholders from business as well as other security specialists, technology communities, control owners and external vendors. 


Additionally, you will be responsible to ensure compliance of the Group activities in South Korea, and lead the related streams, with the Personal Information Protection Act, the Act on Promotion of Information and Communications Network Utilization and Information Protection, and any other relevant decrees, legislation, regulations, and guidelines issued by the South Korean Communications Commission in the context of information protection in Korea (“Korea Data Protection Law”).


HOW WILL YOU MAKE AN IMPACT?

Your key responsibilities will be the following:

  • Enable cyber risk & control management and implementation
    • Contribute to the cyber risk & control strategy for the Group
    • Steer the assessment and monitoring of cyber risk & controls
    • Empower risk & control owners to understand their responsibilities and to take ownership
  • Engage with various Richemont entities’ executives and drive or participate in cyber risk assessments at strategical level
  • Act as the officially registered Chief Information Security Officer (CISO) in South Korea, assuming all statutory duties, governance responsibilities, and regulatory reporting obligations required by local laws (such as the Network Act and PIPA)
  • Oversee and support the scaling of the quantitative cyber risk management framework toward the Group
  • Advise South Korean business units, operational teams, and IT teams on cyber risk expertise, to ensure only acceptable risks are introduced to the Group, and to make sure Richemont keep compliant with local legislations and regulatory requirements.
  • Track and monitor cyber risk remediation/mitigation measures
  • Serve as cyber risk subject matter expert to business and technical functions locally in South Korea, but also in the Group
  • Collaborate with cyber risk architects to ensure that cyber security best practices are properly and systematically embedded within business and enterprise applications, services, platforms, and processes (enforce security by design)
  • Assist in local deployment of the Group cyber awareness program and adapt it to local culture and ways of business when and where required.

HOW WILL YOU EXPERIENCE SUCCESS WITH US?

For this role you will need to demonstrate of a certain maturity in the below skills:

  • More than 10 years of experience in various cybersecurity domains with a focus on cyber risk and control management
  • Proven knowledge and hands-on expertise on information security principles and practices, and also on South Korean security and privacy regulations such as PIPA and ISMS.
  • Excellent communication skills including the ability to adapt and communicate toward several types of audiences, at various hierarchical levels (up to C-Level) but also with local regulators and governmental agencies (such as KISA)
  • SME (Subject Matter Experts) in control management frameworks, such as NIST CSF, CIS top 20, ISO 27002, NIST 300-53 etc…
  • Master one of the industries recognized common risk management frameworks (FAIR, NIST RMF, ISO 27005, ISO 31000, COSO, others). Knowledge of the other frameworks is a plus
  • Industry recognised Security Certifications are a plus (e.g., CISSP, CISM, CRISC, NIST CSF, etc.)
  • Business oriented
  • Experience in project management
  • Good analytical and problem-solving skills
  • Strong collaborative mindset is necessary
  • Experience working in large, multi-tiers and international environments
  • Fluent in Korean and English, additional languages are a plus

HOW DO WE KEEP YOU SMILING?

  • You will be working in an international and multicultural team, with a forward-looking mindset
  • Trust, integrity, collaboration, exchange, support, and development are important values for the team, along with autonomy and work-life balance
  • You will interact with highly talented people across many businesses area, disciplines, cultures, regions
  • You will find in our offices a modern and high-quality work environment

#Richemont #WeCraftTheFuture

Skills Required

  • More than 10 years of experience in various cybersecurity domains with a focus on cyber risk and control management
  • Proven knowledge and hands-on expertise on information security principles and practices
  • Knowledge of South Korean security and privacy regulations (PIPA, ISMS) and Korea Data Protection Law
  • Excellent communication skills with ability to engage C-Level executives, local regulators (eg. KISA), and technical teams
  • Subject matter expertise in control management frameworks (NIST CSF, CIS Top 20, ISO 27002, NIST 300-53)
  • Master one risk management framework (FAIR, NIST RMF, ISO 27005, ISO 31000, COSO)
  • Industry recognised security certifications (e.g., CISSP, CISM, CRISC)
  • Business orientation and ability to align security with business strategy
  • Experience in project management
  • Strong analytical and problem-solving skills
  • Strong collaborative mindset and experience working in large, multi-tier international environments
  • Fluency in Korean and English
  • Additional languages
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
39,601 Employees
Year Founded: 1988

What We Do

Richemont is a leading luxury goods group that owns prestigious Maisons recognised for excellence in jewellery, watches, fashion and accessories. Its central and regional functions guide, support and challenge these Maisons and businesses, helping them design timeless creations and innovative services while preserving their unique heritage. The Group also helps them thrive in new and existing markets, maintain high service standards and embed sustainable practices across operations.

Similar Jobs

UL Solutions Logo UL Solutions

Senior Environmental Health & Safety Specialist

Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
Remote or Hybrid
大韓民国
15000 Employees

BlackRock Logo BlackRock

Director, Korea Institutional Client Business Team

Fintech • Information Technology • Financial Services
In-Office
Seoul, KOR
25000 Employees

Zscaler Logo Zscaler

Senior Partner Engineer

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
South Korea
8697 Employees

Takeda Logo Takeda

Quality Assurance Manager

Healthtech • Software • Analytics • Biotech • Pharmaceutical • Manufacturing
Hybrid
Seoul, KOR
50000 Employees

Similar Companies Hiring

Tastewise Thumbnail
Artificial Intelligence • Big Data • Food • Retail • Software • Generative AI • Big Data Analytics
NYC, NYC
120 Employees
Scotch Thumbnail
Artificial Intelligence • eCommerce • Fintech • Payments • Retail • Software • Analytics
US
35 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account