Responsibilities:
1. Researching, analyzing, and applying not only privacy policies, but cybersecurity and all related regulations, law, and standards. Providing gaps analysis, cybersecurity, and privacy issues for overall Alibaba Cloud.
2. Aware of the trend of regulation, law, and industry standards within Asia Pacific markets
3. Plan and design the compliance strategy for Alibaba Cloud Asia Pacific markets and assist communicate with regulatory authorities.
4. Understand product features and advice the risk of compliance.
5. Assist internal teams to communicate with external audit
Qualifications
1. Minimum 5 years experience in security and technology risk management, especially for ICT or internet service providers.
2. Tertiary qualification, preferably IT at a post-graduate level
3. Professional certification in information security preferred
4. Proven knowledge of risk and cybersecurity management standards, framework and methodologies, such as NIST, SOC, PCI-DSS, ISO series, and CSA
5. Proven and strong capability to communicate cybersecurity and risk-related concepts effectively to the business at all levels
6. Ability to act with integrity and maintain an ethical mindset
7. Good understanding of Chinese Culture, and capable to work in a fast pace environment and under pressure.
8. Can use both English and Chinese languages in professional settings, as the role will need to coordinate with the HQ team in China. Any other language skills would be a plus.