Shanghai, China | full time | Job ID: 9396
The Regional Lead IT Security Manager is responsible for the security operating model and derivation of regional information security strategy for the assigned region China and APAC together in alignment with the global BioNTech security organization.
Your main responsibilities are:
Regional
- Responsible for regional IT security processes, budget, operating model, and regional Security Strategy together with the Global IT-Security team.
- Apply BioNTech’s Information Security wide approach for all assets and operations within the assigned region (flag and partner to remediate any regional discrepancies).
- Align the regional information security governance with security operations and security engineering.
- Evaluate aggregated security risks and work with the security teams to define measures to manage relevant risks.
- Monitor and manage the regional performance of security through KPIs etc. and reporting to the global security team about the regional security status
- Coordinate and monitor the regional Information Security measures, controls and projects (be involved in security architecture, tools, and outsourcing considerations)
- Support, oversee security incident management and validate central measures in cooperation with departments and the central SOC team.
- Consult and coordinate with the central InfoSec Office
- Respond real-time to security incidents occurring in assigned region
- Execute corrective actions and remediation plans based on incidents and audit findings.
Site/Local
- Foster security awareness among users and drive continuous improvement based on risk assessment results.
- Optimize information security, strategies, policies, and procedures in accordance with national laws, industry standards, and business needs.
- Integrate cybersecurity frameworks (such as NIST CSF) with enterprise IT architecture, developing differentiated security baseline standards.
- Drive continuous improvement initiatives through certifications such as ISO 27001 and China’s Multi-Level Protection Scheme (MLPS 2.0) to enhance security maturity.
- Conduct regular security risk audits and assessments, organize security awareness campaigns, training sessions, and tool demonstrations to elevate employee security practices.
What you have to offer:
- 5-7 years’ experience in a similar role
- Familiarity with Chinese cybersecurity laws and standards
- Security certification preferred (e.g. CISSP, CISM, CASP+)
- Demonstrated ability to function effectively and multi-task with great attention to detail
- Demonstrated ability to work well both independently and as a member of a team
- Excellent oral and written communication skills (Chinese and English)
- Experience with international business organization preferred
- Ability to respond real-time to security incidents occurring in assigned region
- Ability to handle sensitive information with a strict level of confidentiality
- Ability to adhere to defined processes and procedures and suggest improvements
- Ability to manage time efficiently and effectively, and set priorities appropriately
- Must have a good understanding and knowledge of pharmaceutical manufacturing processes and familiarity with GxP regulated IT systems.
- Ideally have experience with GxP / CSV / e-compliance requirements in an IT context.
- Must have experience collaborating in multinational pharma environments (e.g., navigating US/EU/China regulatory differences).
Your Benefits:
BioNTech is committed to the wellbeing of our team members and offers a variety of benefits in support of our diverse employee base. We offer competitive remuneration packages which is determined by the specific role, location of employment and also the selected candidate’s qualifications and experience.
Note: The availability, eligibility and design of the listed benefits may vary depending on the location. The final requirements for the individual use of our benefits are based on the company's internal policies and applicable law.
How to apply:
Apply now by sending us your application documents including Curriculum Vitae, copy of ID, copies of degree certificates and professional certificates, motivation letter as well as your contact details via our online form.
Please note:
Only applications sent via our online form shall be considered. By submitting your application, you acknowledge that a background check will be conducted as part of the recruitment process in accordance with applicable laws and regulations. If you are considered for the position, BioNTech will conduct the background check through our service provider ‘HireRight’. You will be informed accordingly by your BioNTech-Recruiter.
We are looking forward receiving your application.