National Security Officer (ciso)

Microsoft Microsoft · Big Tech · Seoul, Seoul, South Korea · National Technology

The National Security Officer (NSO) in Seoul is responsible for expanding Microsoft's market in public sector and regulated industries by leading engagements on security, compliance, privacy, and sovereignty. This role involves partnering with various internal teams and external stakeholders to strengthen the national cyber foundation, accelerate secure cloud and AI adoption, and act as a trusted spokesperson on Microsoft Security. Key responsibilities include managing risk, compliance, and certification activities to enable business opportunities, leading national cyber safety and resiliency efforts, defining the local Microsoft Security strategy, and establishing incident readiness and response programs, including those for AI-driven cyber threats.

What you'd actually do

  1. Advance compliance & certification as business enablers—lead risk management, compliance, and certification activities in partnership with Field, CELA, and Engineering to unlock public sector and regulated industry opportunities.
  2. Enable compliance, sovereignty, and privacy outcomes—partner with Corporate, External & Legal Affairs (CELA) and Engineering to remove barriers and expand Microsoft markets in public sector, critical infrastructure, and regulated industries.
  3. Lead national cyber safety & resiliency efforts—support security agencies to prepare for next‑gen attacks and mitigate current threats; drive capability-building aligned to country risks and priorities.
  4. Lead the end‑to‑end country security narrative—define the local Microsoft Security strategy and execution plan, in close alignment with Enterprise Commercial/Public Sector leadership and key collaborators.
  5. Be Microsoft’s visible security spokesperson—deliver the security POV at Microsoft events, EBCs, executive field visits with marquee accounts, and partner forums; shape perception and policy.

Skills

Required

  • 10+ years of experience providing security focused technical guidance, advice and consulting
  • Bachelor’s degree in Computer Science/IT or equivalent experiences.
  • Credible, compelling security executive and trusted advisor to C‑level stakeholders
  • Proven ability to build sustained strategic relationships across government, critical infrastructure, and regulated enterprises.
  • Broad information security competency across identity, multi‑cloud security, compliance, XDR, Zero Trust, and sovereignty controls
  • Track record leading national or sectoral incident response programs and cross‑agency coordination
  • Familiarity with policy/governance frameworks for classified or highly sensitive missions.
  • Executive communication skills for public forums (events, EBCs, roundtables) and persuasive narrative building

Nice to have

  • Master’s degree or PhD in Security is a plus
  • Korean/English bilingual a plus for Korea market

What the JD emphasized

  • security, compliance, privacy, and sovereignty
  • regulatory compliance requirements and local certifications
  • national cyber foundation
  • secure cloud & AI adoption
  • trusted external spokesperson
  • Microsoft Security strategy
  • risk management, compliance, and certification
  • public sector and regulated industry opportunities
  • compliance, sovereignty, and privacy outcomes
  • public sector, critical infrastructure, and regulated industries
  • national cyber safety & resiliency efforts
  • next-gen attacks
  • country risks and priorities
  • country security narrative
  • Enterprise Commercial/Public Sector leadership
  • visible security spokesperson
  • security POV
  • incident readiness & response programs
  • AI‑driven cyber threats
  • national‑scale incident response
  • security focused technical guidance, advice and consulting
  • security executive
  • trusted advisor
  • C‑level stakeholders
  • strategic relationships
  • government, critical infrastructure, and regulated enterprises
  • information security competency
  • identity
  • multi‑cloud security
  • compliance
  • XDR
  • Zero Trust
  • sovereignty controls
  • customer risk reduction
  • national or sectoral incident response programs
  • cross‑agency coordination
  • policy/governance frameworks
  • classified or highly sensitive missions
  • Executive communication skills
  • public forums
  • persuasive narrative building
  • compliance & certification as business enablers