Global Operations Resilience Manager
Pubblicato il 07-09-2026 - MENARINI Group in Firenze
Overview:
The Global Operations Resilience Manager is responsible for the Group's global strategy regarding physical security governance, with specific reference to the requirements of the NIS2 Directive and the resilience of corporate critical infrastructures.
Main Activities & Responsibilities:
Security Governance & Framework
- Definition and implementation of the Group's global physical security strategy, ensuring alignment with the Enterprise Risk Management framework and NIS2 Directive requirements.
- Development of physical security policies, standards, and procedures for production sites, offices, and critical infrastructures.
European Organization and Coordination
- Definition and implementation of a functional organizational structure to enable the coordination of physical security activities across all sites and legal entities of the Menarini Group in Italy and Europe.
- Identification of local points of contact, definition of roles and escalation flows, and standardization of processes and minimum protection levels.
- Promotion of an integrated operating model between Corporate and local countries.
Risk Assessment & Critical Assets Protection
- Coordination of site-level risk assessment activities (threat, vulnerability, and impact analysis).
- Identification and classification of critical assets and definition of protection measures (access control, video surveillance, perimeter security, anti-intrusion systems).
Business Continuity & Crisis Management
- Support in defining and updating Business Continuity and Emergency Response plans within the scope of physical security.
- Participation in the management of major incidents and coordination of escalations.
NIS2 Readiness & Compliance
- Coordination of alignment initiatives for the NIS2 Directive regarding physical security and operational resilience.
- Liaising with ICT Security, Legal, and Compliance departments to ensure consistency between physical security, cybersecurity, and risk governance.
