Regional Security Officer - EMEA (Dalgety Bay, GB, KY11 9JU) na Ingenico | Home
Ingenico | Home · Dalgety Bay, Reino Unido · Onsite
- Senior
- Escritório em Dalgety Bay
Ingenico is the global leader in payments acceptance solutions. As the trusted technology partner for merchants, banks, acquirers, ISVs, payment aggregators and fintech customers our world-class terminals, solutions and services enable the global ecosystem of payments acceptance. With 40 years of experience, innovation is integral to Ingenico’s approach and culture, inspiring our large and diverse community of experts who anticipate and help shape the evolution of commerce worldwide. At Ingenico, trust and sustainability are at the heart of everything we do.
Role overview
The Regional Chief Security Officer (R-CSO) is responsible for implementing, controlling, and continuously improving the Group’s global security strategy within his designated region. Acting as the senior security leader locally, the R-CSO ensures alignment with global policies while addressing regional needs, regulatory requirements, and customer expectations. With cybersecurity as the primary focus, this role also encompasses operational and industrial security as well as physical protection of people and assets, business continuity and crisis management. This role is both operational and strategic, requiring strong leadership, communication, and influence skills.
As part of the Group’s second line of defense, the R- CSO ensures independent oversight, control, and challenge of security practices implemented by the business and operations teams.
Key Responsibilities:
- Governance, Risk & Compliance
- Apply, deploy, and monitor the Group’s security policies and standards within the region, ensuring alignment with global frameworks.
- Evangelizing on cybersecurity, addressing Executives, Senior leaders and Representing Ingenico in external Information Security communities.
- Organize and manage risk security committees for the Region, providing regular risk reports and key metrics to the Group CSO and regional leadership team.
- Incident, Crisis Management and Business Continuity
- Own all security incidents in the region, ensuring effective response, escalation, and communication.
- Act as regional crisis leader, coordinating with Incident management organization, Group CSO, local management, and authorities.
- Control the effectiveness of incident, crisis, and business continuity response plans through testing, drills, and independent reviews.
- Customer & Partner Engagement
- Act as the primary security point of contact for regional customer questionnaires and audits , RFPs, and due diligence activities.
- Support business development by demonstrating the Group’s security posture
- Build trusted relationships with partners and external stakeholders on security matters.
- Provide independent oversight of third-party and supply chain security in the region.
- Coordinate with internal stakeholders for such matters
- Communication, Awareness & Culture
- Serve as a trusted advisor and business partner to regional executive management, translating technical risks into business impacts.
- Lead cultural change and regional awareness campaigns across cybersecurity, industrial, and physical domains.
- Represent the Group at regional industry events, regulatory forums, and standardization bodies to influence and anticipate evolving requirements.
- Liaise with local and regional authorities (e.g., regulators, law enforcement, CSIRTs) on security topics.
- Physical & People Security
- Oversee the security of facilities, assets, and employees in the region.
- Control and monitor programs for access control, surveillance, executive protection, and insider risk management.
Key Requirements:
- Education:
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field.
- Advanced certifications such as CISSP, CISM, CISA, or ISO 27001 Lead Implementer/Lead Auditor are highly preferred.
- Experience:
- Minimum of 10 years of experience in information security, with at least 5 years in senior leadership roles (e.g., CISO, Director of Information Security).
- Proven experience in managing information security for regulated industries, particularly in the payment solutions or financial services sectors.
- In-depth knowledge of global security frameworks and standards such as PCI-DSS, ISO 27001, NISv2, and DORA.
- Strong experience in leading cross-functional teams to design, develop, and implement secure payment terminals and related systems.
- Hands-on experience with security certifications, audits, and assessments related to ISO 27001, PCI-DSS, and other applicable regulatory frameworks.
- Skills:
- Expertise in information security management, including risk assessment, vulnerability management, security architecture, and secure coding practices.
- Strong leadership and team-building abilities, with a proven track record of leading security teams and projects.
- Exceptional communication skills, with the ability to communicate complex security concepts to both technical and non-technical stakeholders.
- Deep understanding of incident response and crisis management, particularly related to payment systems and customer data protection.
- Proficiency in cybersecurity technologies, such as firewalls, encryption, intrusion detection/prevention, SIEM, and other tools relevant to securing payment terminals.
Desirable Skills:
- Experience with cloud security, network security, and endpoint security technologies in the context of payment systems.
- Familiarity with digital resilience, business continuity planning, and disaster recovery processes in alignment with DORA.
- Good Knowledge on Cloud solutions and O365 security
- Experience in third-party risk management and ensuring compliance across the supply chain for third-party vendors, particularly in the context of hardware and software used in payment terminals.
As part of our values, we embrace diversity and inclusion at Ingenico. We are an equal opportunity employer and do not discriminate on the basis of an individual's race, national origin, color, gender, gender identity, gender expression, sexual orientation, religion, age, disability, marital status or any other protected characteristic under applicable law, whether actual or perceived.
Ingenico welcomes and encourages applications from people with disabilities. Accommodations are available on request for candidates taking part in all aspects of the selection process.
We want to adapt our processes and create a safe work environment that welcomes everyone.
To learn more about what it's like working inside Ingenico, follow us on LinkedIn
Candidatar-se agora