Head of Group Information Security
Lindt & Sprüngli
pLindt Sprüngli has been enchanting the world with chocolate for over 180 years. The long-established Swiss company with its roots in Zurich is a global leader in the premium chocolate category. Lindt Sprüngli produces quality chocolates today at its 12 factories in Europe and the USA. Its products are sold by 41 subsidiaries and branch offices in around 620 of its own stores as well as via a network of around 100 distributors around the globe. With around 15,500 employees, the Lindt Sprüngli Group reported sales of CHF 5.92 billion in 2025. Our commitment to contributing to a sustainable tomorrow is a key element driving the company's actions and ambitions. Since 2008, the Lindt Sprüngli Farming Program has been our Responsible Sourcing Standard for cocoa. /ph3Your Main Responsibilities Will Include /h3ulliProvide leadership, direction, and advocacy to effectively manage the cybersecurity program. /liliDevelop and implement the agreed cybersecurity strategy in alignment with the business and IT strategy. /liliOversee staff, infrastructure, policy enforcement, and/or other resources. /liliDrive the development of policies standards and advocate for change that will support new initiatives or required changes and enhancements. /liliApply knowledge of risk assessment data of identified threats to decision‑making processes. /liliAcquire and manage the necessary resources, including third party security service providers, to support security goals, and reduce overall organizational risk. /liliAdvise senior management on risk levels and security posture. /liliCommunicate the value of security throughout all levels of the organization's stakeholders. /liliMonitor threats, conduct investigations, support inquiries, and take preventive measures to improve business resilience. /liliDevelop and provide security guidance for new and existing systems, /liliapplications, and services; this includes weighing business needs, internal governance standards, and third‑party compliance requirements. /liliPartner with subsidiary IT teams to establish and track regional and global priorities for security initiatives. /liliProvide regular reporting on security initiatives to the Head of Group IT and senior management. /liliProvide leadership regarding security for assets and data, both on‑premises and cloud‑based. /liliEvaluate emerging technologies and product categories to determine where they fill gaps, overlap with existing solutions, or extend capabilities. /liliImplement and maintain security systems, applications, and services that provide detection, preventions, containment and deterrence mechanisms to protect corporate data. /liliLead the selection, testing, and deployment of new security solutions. /liliDocument security requirements by evaluating business needs, internal governance standards, and third‑party customer compliance requirements. /liliManage relationships with existing and future managed security service providers (MSSPs) that contribute to the portfolio of security services. /liliManage and coordinate response to security incidents. /liliFacilitate compliance with audit, legal, regulatory, and customer contract requirements. /liliAnalyse and evaluate security operations to identify risks or opportunities for improvement. /li /ulh3Your Profile /h3ulliThe position requires a Bachelor's degree and at least fifteen (15) years of related experience with a minimum of six (6) years of technical experience in one or /lilimore of the following: computer and network security, cloud-based security /liliarchitecture, vulnerability testing, intrusion detection/prevention, security /lilimonitoring and event correlation, or computer forensic analysis. /liliRelevant Information Security certifications (ex. CISSP, CCSP, GIAC, MCSE, CEH, CHFI, CISA, CISM, CRISC, etc.) /liliHighly‑developed communications skills (written/verbal) and interpersonal savvy /liliResults/action‑orientation; project management skills. /liliOrganizational and political agility; developed negotiation and influence skills. /liliUnquestionable personal code of ethics, integrity, diversity and trust. /liliAble to successfully navigate within varying degrees of ambiguity in a fast‑paced environment. /liliPrior experience working in a global, decentralized organization. /liliExtensive knowledge of cybersecurity principles. /liliExtensive knowledge of cyber threats and vulnerabilities. /liliSkill in de‑conflicting cyber operations and activities. /li /ul #J-18808-Ljbffr
Wollen Sie mehr Stellenangebote erhalten?
Abonnieren Sie und erhalten Sie ähnliche Stellenangebote wie Head of Group Information Security. Seien Sie der Erste, der sich bewirbt!
