Senior Digital Program Specialist - Cybersecurity Engineering

Asian Infrastructure Investment Bank

Location:
Beijing, China
Category:
Professional Staff
Posted Aug 28, 2026Apply by Sep 12, 2026 (8d left)
See your match score & apply

The Senior Digital Program Specialist will lead the cybersecurity team in planning, delivering, and improving cybersecurity operations and engineering services. The role involves developing team capabilities, managing cybersecurity technologies, and ensuring alignment with the Bank's strategy and international standards to strengthen cyber resilience.

Responsibilities

  • Lead the cybersecurity team in delivering high-quality cybersecurity services and engineering capabilities, ensuring effective resource planning, performance management, staff development, and a culture of operational excellence, accountability, innovation, and continuous improvement.
  • Lead the planning, design, deployment, testing, optimization, and integration of cybersecurity technologies, as well as manage product features and capabilities, to protect information and prevent unauthorized access and attacks against AIIB's IT environment.
  • Develop, maintain, and execute the Bank's cybersecurity technology roadmap, ensuring initiatives are delivered on time, within scope, and aligned with the Bank's cybersecurity strategy, business priorities, enterprise architecture, and risk appetite.
  • Continuously assess the maturity and effectiveness of cybersecurity capabilities, identify improvement opportunities, and lead the implementation of enhancements to strengthen the Bank's cyber resilience.
  • Contribute domain expertise for the development, implementation, and updating of the cybersecurity framework, policies, standards, guidelines, baselines, processes, and procedures.
  • Ensure cybersecurity risks, control deficiencies, audit observations, and testing findings are appropriately assessed, tracked, and remediated in a timely manner to maintain an effective cybersecurity control environment.

Requirements

  • Minimum 8-10 years of direct experience building and configuring cybersecurity technologies, including but not limited to SIEM, network and web application firewall, vulnerability scanner, endpoint and network detection and response, threat intelligence, email security gateway, and other cybersecurity tools.
  • Master's degree or equivalent in cybersecurity, computer science, engineering, or a related field. Comprehensive professional experience may be considered in lieu of a master’s degree.
  • Demonstrated people management and leadership experience, including managing cybersecurity professionals, setting objectives and priorities, allocating resources, managing performance, and coaching and developing team members to build a high-performing cybersecurity team.
  • Strong cybersecurity engineering experience, with demonstrated ability to design and deliver secure, resilient, scalable, and maintainable cybersecurity solutions in complex enterprise environments, applying sound engineering principles, standards, testing, automation, and quality assurance practices.
  • Strong program and project management experience, with a proven track record of developing and executing cybersecurity roadmaps and delivering complex cybersecurity programs and initiatives on time and to a high standard, including effective management of priorities, resources, dependencies, risks, vendors, and stakeholders.
  • Strong technical analysis and problem-solving skills; experience of DevSecOps toolsets would be an advantage.
  • Demonstrated solid knowledge of information security principles, practices, and regulations, including knowledge of international security frameworks and standards, such as the NIST Cybersecurity Framework, MITRE ATT&CK, CIS, ISO/IEC 27000 Series, and COBIT.
  • Security industry certifications such as CISSP, CISM, CISA, and CRISC would be an advantage.
  • Strong organizational and critical thinking skills.
  • Effective written and verbal communication skills in English.

Skills

  • Cybersecurity Technologies Configuration
  • SIEM
  • Network Firewall
  • Web Application Firewall
  • Vulnerability Auditing
  • Network Detection and Response
  • Threat Intelligence
  • Email Security Gateway
  • Cybersecurity Engineering
  • Secure solution design
  • Resilient System Design
  • Scalable Cybersecurity Solutions
  • Cybersecurity Automation
  • Quality Assurance
  • People Management
  • Team Leadership
  • Performance Management
  • Coaching and Development
  • Programme Management
  • Project Management
  • Cybersecurity Roadmap Development
  • Risk Management
  • Vendor Management
  • Stakeholder Management
  • Technical Analysis
  • DevSecOps Toolsets
  • Information Security Principles
  • NIST Cybersecurity Framework
  • MITRE ATT&CK Framework
  • CIS Standards
  • ISO IEC 27000 Series
  • COBIT Implementation
  • CISSP Certification
  • CISM Certification
  • CISA Certification
  • CRISC

Languages

English