Audemars Piguet Cyber Security Manager & Data Protection Officer
- Employment
- Full-Time
- Seniority
- Senior
- Department
- IT & Technology Systems
- Industry
- Fine Watches & Horology
- Posted
- Aug 14, 2026
About Audemars Piguet
The brand is a prestigious entity within the luxury fashion sector, renowned for its exquisite craftsmanship and innovative designs. As part of a leading global luxury group, it offers unparalleled opportunities for professional growth and development in a dynamic and sophisticated environment.
Audemars Piguet: Cyber Security Manager & DPO in Shanghai. Lead information security and PIPL compliance for China and Asia region. Fluent Mandarin & English required.
Role & Responsibilities
- Coordinate, deploy and enforce Group cyber security policies, standards and controls across China and the Asia region; ensure continuous alignment with PRC cybersecurity laws and regulatory requirements
- Conduct local cyber risk assessments covering IT systems, OT environments and third parties; identify gaps and define remediation plans with ongoing monitoring
- Support and coordinate response to local cybersecurity incidents with the global SOC; participate in crisis management committees for major incidents
- Act as primary local point of contact for internal and external cybersecurity audits; ensure effective follow-up of audit recommendations
- Define, implement and maintain local cyber security governance frameworks, roles and escalation mechanisms
- Ensure full compliance with PIPL, DSL, CSL and implementing regulations; define and maintain Personal Information Protection governance framework
- Act as the officially registered China DPO with the CAC online portal; serve as formal contact point with CAC and local data protection authorities
- Oversee Personal Information Protection Compliance Audits; coordinate internal and external audit activities in line with CAC Audit Measures
- Manage data subject rights requests and participate in personal data breach assessment, notification and remediation
- Bridge cyber security, privacy, IT and business functions; coordinate with Group CISO and Group DPO to ensure consistency and alignment across regions
Qualifications
- Bachelor's degree in Information Technology, Cyber Security, Law, Privacy or a related field; advanced degree is strongly preferred
- 7–10 years minimum of experience in cyber security, information security, risk or compliance roles
- Proven hands-on exposure to regulatory interactions, inspections and audits with Chinese authorities
- Strong working knowledge of Personal Information Protection Law (PIPL), Data Security Law (DSL), Cybersecurity Law (CSL) and CAC compliance requirements
- Strong technical understanding of cybersecurity controls, incident management and risk assessment
- Excellent communication and stakeholder management skills
- Proven leadership in driving security and compliance initiatives with high integrity and independence
- Strong cultural awareness and ability to operate effectively in Chinese and international contexts
- Fluent in Chinese (Mandarin) — written and spoken (mandatory)
- Fluent in English (mandatory)
- CISSP, CISM or ISO 27001 Lead Implementer/Lead Auditor certification (highly desirable)
- Privacy certifications such as CIPP/E or CIPP/A (highly desirable)
Skills
Experience
Minimum 7–10 years in cyber security, information security, risk or compliance roles. Proven experience in data protection and privacy compliance specifically within China. Hands-on exposure to regulatory interactions, inspections and audits with Chinese authorities. Experience operating in a regional or multinational environment is advantageous.
Education
Bachelor's degree in Information Technology, Cyber Security, Law, Privacy or a related field. Advanced degree is a strong plus.
Workplace
The role is situated in Shanghai, Shanghai, China.
Benefits
Competitive and comprehensive compensation and benefits package (specific details to be discussed during recruitment process).
Culture
The brand fosters a culture of excellence and innovation, where creativity and individual contributions are highly valued. Employees are encouraged to pursue personal growth and are supported in their professional development within a collaborative and inclusive environment.
About Cerulean
Cerulean is the definitive career portal for the global luxury industry. We match exceptional professionals with exclusive opportunities at the world's most prestigious brands. From haute couture and fine watchmaking to prestige beauty, hospitality, and boutique retail, Cerulean centralises luxury employment to help you find the career for which you were destined.
Frequently Asked Questions
The luxury industry is characterised by a diverse and nuanced nomenclature. Esteemed houses frequently employ proprietary terminology, and even within a single organisation like Audemars Piguet, titles may vary across global markets to reflect local conventions. To ensure absolute clarity, Cerulean assigns a standardised, industry-coherent canonical title to every listing. However, it is worth noting that this role is functionally synonymous with «Chief Information Security Officer (CISO) - China», «Information Security & Privacy Compliance Lead», «Cyber Security & Data Protection Manager», «Regional Security Operations Manager», and other variations. Our sophisticated search architecture anticipates these variations, ensuring that inquiries using related terms will seamlessly yield the exact roles you desire.