Chief Security Officer (CSO) | CISSP / CISM / CISA
Reolink, a leader in intelligent visual technologyfor homes and businesses, was founded in 2009 by a group of engineers with astrong commitment to and passion for smarter security solutions.
Our products are now trusted by millions of users acrossmore than 110 countries and regions worldwide. Building on this trust, wecontinue expanding our presence and bringing our innovations to more marketsaround the globe. Reolink remains committed to delivering advanced, reliable,and user‑centric solutions that empower people to protect whatmatters most.
Key Highlights:
- 5 Work Days, 8.30am-5.30pm / 9am-6pm
- Office Near to Kaki Bukit MRT, Singapore
- Medical Benefits Provided
- Entitled to Yearly Bonus & Performance Bonus
As a keymember of the executive leadership team, the CSO partners closely with theCEO, Board of Directors, and cross‑functional leaders to safeguard thecompany’s assets, ensure regulatory compliance, and enable secure businessgrowth.
Key Responsibilities- Strategy & Leadership
- Develop, implement, and continuously refine the company’s enterprise-wide security strategy, multi‑year roadmap, and annual budget.
- Advise the CEO and Board of Directors on security risks, emerging threats, and strategic security decisions.
- Foster a security-first culture and drive organization‑wide security awareness programs.
- Lead, mentor, and grow a high-performing global security team, promoting operational excellence and professional development.
- Information Security & Cybersecurity
- Establish and maintain a comprehensive cybersecurity defense ecosystem, including threat intelligence, SOC operations, incident response, red/blue team exercises, and vulnerability management.
- Oversee cloud, application, data, and endpoint security strategies to ensure robust protection across the technology stack.
- Lead the response to major security incidents, ensuring rapid containment, communication, remediation, and post‑incident lessons learned.
- Physical Security & Operational Security
- Develop and oversee physical security programs for global offices, data centers, warehouses, and critical facilities.
- Design and maintain Business Continuity Plans (BCP) and Disaster Recovery Plans (DRP), including regular testing and scenario-based drills.
- Compliance & Risk Management
- Ensure continuous compliance with applicable laws, regulations, and industry standards (e.g., GDPR, ISO 27001, SOC 2, PCI DSS).
- Lead internal and external security audits, address findings, and implement long-term remediation plans.
- Build and manage a robust enterprise risk management framework, evaluating risks and tracking mitigation progress across all business units.
- Third-Party & Supply Chain Security
- Develop and enforce a supplier and third‑party security risk assessment framework to manage security posture across key partners, vendors, and service providers.
- Security Skillset & Core Competencies
- Deep expertise in cybersecurity frameworks, cloud security models, and enterprise security architecture.
- Strong knowledge of security standards and regulations (e.g., NIST, ISO 27001, GDPR).
- Proficiency with major security tools and platforms (e.g., IDS/IPS, WAF, EDR, SIEM).
- Proven experience in security incident response, crisis management, and post‑incident forensics.
- Relevant Experience & Technical Expertise
- 10+ years of experience in security roles, with 5+ years in senior leadership (e.g., Security Director, Head of Security).
- Demonstrated success in building and scaling security programs within fast‑growing technology companies.
- Hands-on experience with major cloud platforms (AWS, Azure, GCP) and scripting languages (e.g., Python, Bash).
- Familiarity with security solutions including Nessus, Splunk, and container/cloud-native security (e.g., Docker, Kubernetes security).
- Certifications
- Bachelor’s degree or higher in Computer Science, Information Security, or a related discipline.
- Recognized security certifications such as CISSP, CISM, CISA, or equivalent are preferred.
- Strong knowledge of security technologies, risk management practices, and compliance frameworks.