Cybersecurity Lead (FinTech)

We are partnering with a fast-growing, technology-driven organisation operating at the intersection of financial services and emerging digital ecosystems. With strong institutional backing and recent funding secured, the firm is scaling rapidly across Asia and expanding into global markets.
They are looking to appoint a Cybersecurity Lead to strengthen and elevate their enterprise security posture as the business continues to grow.
This is a high-impact leadership role responsible for driving the organisation’s cybersecurity strategy, governance, and operations. The successful candidate will play a critical role in building and maturing security capabilities across a dynamic, multi-cloud environment, while partnering closely with senior stakeholders across technology and business functions.
Key Responsibilities
Security Strategy & Governance
- Lead the development and execution of the organisation’s cybersecurity strategy and roadmap
- Establish and uplift enterprise-wide security standards, policies, and frameworks
- Drive improvements in overall security maturity and risk management practices
Security Engineering & Operations
- Oversee security operations and ensure effective threat detection, response, and incident management
- Strengthen security controls across infrastructure, applications, and endpoints
- Improve management of secrets, identity, and cryptographic controls
DevSecOps Enablement
- Partner with engineering teams to embed security into the software development lifecycle
- Implement and enhance DevSecOps practices across CI/CD pipelines
Risk, Compliance & Certifications
- Lead efforts to maintain and renew existing certifications (e.g. ISO 27001)
- Drive new certification initiatives, including PCI-DSS
- Address audit findings and ensure ongoing regulatory compliance
Stakeholder Management
- Collaborate with senior leadership, including technology, compliance, and business teams
- Influence and challenge stakeholders on security risk decisions where required
- Support business expansion into new markets with appropriate security controls
Requirements
- Strong foundation across security domains, including infrastructure, application, and cloud security
- Experience operating in multi-cloud environments
- Exposure to DevSecOps practices and secure software development
- Experience with security certifications and frameworks (e.g. ISO 27001, PCI-DSS)
- Prior experience in financial services or regulated environments is highly preferred
- Ability to operate in a lean, fast-paced environment and build capabilities from the ground up
- Strong stakeholder management skills, with the ability to engage both technical and non-technical audiences
To apply:
If you’re interested to apply or find out more, please share across your CV or reach out to Chen Yi via LinkedIn or at cy@kerryconsulting.com for a discussion. Due to the confidential nature of this search, we regret to inform that only shortlisted candidates will be notified.
Reg: R1876389
Lic: 16S8060
![]()
