About the job
At DECATHLON, our mission is clear: "To unite people through sports and enhance well-being for everyone." This commitment reflects our evolution from a conventional retailer to a global, sustainable sports brand dedicated to providing the benefits of physical, emotional, and social well-being through sports to individuals around the globe. Guided by our core values of Vitality, Generosity, Responsibility, and Authenticity, we engage over 100,000 passionate teammates worldwide, ensuring that sport is accessible to all, regardless of ability or physical condition.
About the Role
We are on a journey to establish Decathlon as the premier digital sports platform. Our goal is to offer our customers a seamless experience enriched with local sports-centric interactions while securely integrating third-party services.
We are seeking a Cybersecurity Leader for Decathlon Singapore. In this pivotal role within the Digital team, you will be responsible for executing the company's security policies, evaluating application vulnerabilities, and supporting staff to ensure the security of applications and related data. Your efforts will focus on the foundational principles of availability, integrity, confidentiality, and traceability.
You will report directly to the Chief Digital Officer and serve as a crucial link between local operations and our global Cybersecurity Community.
Key Responsibilities
1. Risk Identification and Security Policy Development
- Conduct risk analyses to support various projects
- Create and maintain a comprehensive risk map
- Select and endorse appropriate technical measures
- Perform audits and checks, often collaborating with external service providers
- Lead the information security risk committee and advocate against Shadow IT by identifying and regularizing unauthorized local tools aligned with group initiatives
2. Implementation and Monitoring of Security Actions
- Ensure adherence to security norms and standards while enhancing scores on global KPI dashboards
- Lead the Incident Response and Disaster Recovery Plan (DRP) for your area
- Manage remediation plans effectively
- Investigate incident causes and enhance security measures
- Regularly test security protocols to identify weaknesses
- Promote continuous security improvement in collaboration with developers and product managers
3. Communication and Training on Security Standards
- Drive the security culture through an engaging security awareness program
- Encourage a DevSecOps approach by working closely with development teams

