Consultant/Senior Consultant, Cyber Security

2 weeks ago


Hong Kong, Hong Kong SAR China KPMG China Full time
KPMG China provides multidisciplinary services from audit and tax to advisory, with a strong focus on serving our clients' needs and their industries. Not only do we have an overriding commitment to provide the highest quality services for our clients, but we also strive to become a responsible corporate citizen that has a positive impact on our environment and community. At KPMG, you'll translate insights into action and reveal opportunities for all-our teams, our clients and our world.

Service Line Overview

At KPMG's Consulting practice, we do not limit ourselves to either strategy or implementation. We deliver both. Our Hong Kong division is the fastest growing within KPMG China and represents a young and enthusiastic team that always pushes for success. Since our inception, we have acquired in-depth knowledge of an incredibly broad range of sectors and services.

KPMG is the firm that views cyber security as a business enabler, and not just an IT issue. From the boardroom to back office, we help clients through Strategy and Governance, Transformation, Cyber Defense and Cyber Response. So that they are prepared for uncertainty and use cyber security to advance the business, not stand in the way.

We are seeking Cybersecurity Strategy, Governance & Risk specialist to join our Technology Consulting practice. This role focuses on managing topical cyber security issues for our clients by helping them in identifying cyber security risks within the organization and defining strategy as well as designing controls to address the risk.

Key Responsibilities
Deliver cybersecurity engagements including security strategy, policy and architecture, information privacy and governance, certification and compliance, business and technology resilience and security testing. Communicate technical issues in business terms and deliver value using a pragmatic approach to the technical components of information security. Deliver Cybersecurity Maturity Assessments and Cybersecurity Control Gap Remediation (covering the design and implementation of controls to address the people, process and technology risks) projects. Assess the IT security architecture across-application, database, operating system, hardware platforms (including web and mobile) and network infrastructure -for vulnerabilities to cyber-attack Perform Cybersecurity Maturity Assessments by assessing cyber risk factors across 6 functional domains - Leadership & Governance, Human Factors, Information Risk Management, Business Continuity, Technology & Operations, Legal & Compliance Design and implement processes for Identity & Access Controls, Cyber Incident Management, Intrusion Detection, Threat Intelligence, Cyber Data Analytics, Security Monitoring, etc. Identify and communicate engagement findings to senior management and client personnel Assist in continuously enhancing the existing cyber assessment methodologies. Develop marketing and training materials to help develop staff awareness within the company and communicate KPMG's capabilities to clients Take an active role in KPMG's global community of security professionals, assist with research into vulnerabilities and develop our ability to perform security engagements

Experience & Background
Bachelor's degree or above in cybersecurity, technology, engineering, or business studies with information systems major/minor from an accredited college / university along with deep interest in technology risk, cyber security and IT governance will be considered 2 years' experience preferably from consulting firms/global system integrators/large enterprises' project teams, experience in financial services is preferred Candidate with less experience will be considered as Consultant. Professional qualification holder will be preferrable ( GPEN, OSCP, CISSP, CRISC, CISA, CISM, PMP or other relevant qualifications) Prior consulting experience in information security preferred, ideally within a professional services environment or internal consultancy function delivering cyber security related services Excellent written and verbal communication skills in English and Chinese (Mandarin or Cantonese) Has strong knowledge on the below skillsets are preferrable
-Interpersonal skills with a demonstrated ability to gain the confidence and respect of senior level executives

-Client services orientation and accustomed to taking an active role in executing client engagements

-Analytical skills and the ability to develop thought leadership publications

-Knowledge of enterprise technologies, especially networking principles and internet-based technologies, with self-motivated learning ability

-Knowledge of internet application security, including common internet application vulnerabilities and network architecture to support internet applications

-Knowledge base in operations, enterprise networking, operating systems and database security evaluation and architecture

-Knowledge of IT security vendor products is an advantage

Benefits we offer

KPMG is looking for someone who is passionate about helping our clients with their cyber security challenges. In return, we are helping you to develop your skills and career within the KPMG network.

Well-structured career development and learning path, 1-to-1 coaching by our cybersecurity professionals Access to various cyber security learning resources Wide exposure to working with leading financial institutions and corporations Continuous sponsorship and support on professional certificate development Opportunities for secondment / exchange within KPMG Global network based on staff performance and preference One annual professional membership sponsorship on the approved list Work in a passionate team with blended cybersecurity and technology risk talents

About KPMG

At KPMG China, we are committed to being an equal opportunity employer, with zero tolerance for any form of discrimination against any persons. It is important for us to create an inclusive, diverse and agile workplace for our people to develop and thrive at both a personal and

professional level.

We strive to make ESG (environmental, social and governance) a watermark running through our organisation; from empowering our people to become agents of positive change, to providing better solutions and services to our clients to help them achieve their ESG goals. View Our Impact Plan to learn more about our ESG commitments and progress across four key pillars - Governance, People, Planet and Prosperity - and how we make a positive impact on our people, environment and society.

We encourage you to come as you are, and we welcome all qualified candidates to apply, and hope you unlock opportunities with us. Visit KPMG China website for more company information.

You acknowledge and agree that all personal information hereby provided regarding yourself will be used by KPMG China for its candidate selection purposed only. KPMG China collects, uses, processes, and retains your personal information in accordance with KPMG China's Online Privacy Statement and/or KPMG China Privacy Statement (collectively "Privacy Statement"). During the recruitment process, KPMG China may need to store personal information of candidates in a designated third-party application tracking platform.

If you have any questions regarding the information you provided in the form or your job application in general, please contact KPMG China's HR personnel in the location where your application is submitted [see here].

  • Hong Kong, Hong Kong SAR China Wizlynx Group Full time

    Key Role As (Senior) Cyber Security Consultant & Penetration Tester, you will execute a variety of engagements, conducting advanced hands-on penetration testing beyond automated tool validation, which will focus on targets that may include network devices, servers, web and mobile apps, web APIs, wireless infrastructures, IoT devices, and other...


  • Hong Kong, Hong Kong SAR China KPMG China Full time

    KPMG China provides multidisciplinary services from audit and tax to advisory, with a strong focus on serving our clients' needs and their industries. Not only do we have an overriding commitment to provide the highest quality services for our clients, but we also strive to become a responsible corporate citizen that has a positive impact on our environment...


  • Hong Kong, Hong Kong SAR China KPMG China Full time

    KPMG China provides multidisciplinary services from audit and tax to advisory, with a strong focus on serving our clients' needs and their industries. Not only do we have an overriding commitment to provide the highest quality services for our clients, but we also strive to become a responsible corporate citizen that has a positive impact on our environment...


  • Hong Kong, Hong Kong SAR China KPMG China Full time

    KPMG China provides multidisciplinary services from audit and tax to advisory, with a strong focus on serving our clients' needs and their industries. Not only do we have an overriding commitment to provide the highest quality services for our clients, but we also strive to become a responsible corporate citizen that has a positive impact on our environment...

  • Senior Consultant

    3 weeks ago


    Hong Kong, Hong Kong SAR China Sia Partners Full time

    Job description We are currently looking for a Senior Consultant with Cybersecurity Advisory experience to join our team in HK. Within Sia Partners, you will join our Cybersecurity Global Business Unit. In line with your skills and expertise, you will work - in Consulting, Implementation and Audit - on one or more of our following offers: Cyber...


  • Hong Kong, Hong Kong SAR China Wizlynx Group Full time

    About us At wizlynx group, we're on a mission to fortify the digital defense of our clients by staying one step ahead of cyber threats. As a Red Team Specialist, you'll play a pivotal role in our cybersecurity team, focusing on emulating threat actors to assess and enhance the security of enterprise networks. Your mission: to penetrate, identify...


  • Hong Kong, Central and Western District, Hong Kong SAR China Zurich Insurance Company Ltd. Full time

    Job AccountabilitiesMaintain knowledge of latest cyber threats and industry best practices Identify relevant threats, assess risk and generate technical & non-technical reports for a variety of stakeholders Perform external and internal threat discovery, define and categorize the threat, characterize the risk posed to Zurich information systems, assess the...


  • Hong Kong, Hong Kong SAR China Zurich Insurance Company Full time

    Job Summary With the nature of Cybersecurity evolving so rapidly, Zurich Commercial Insurance is searching for an experienced Cyber risk specialist to further strengthen Zurich’s capability with regards to Cyber insurance, Cyber risk advisory and Cyber services for businesses. This role will be part of our global Zurich Resilience Solutions (ZRS)...


  • Hong Kong, Central and Western District, Hong Kong SAR China Zurich Insurance Company Ltd. Full time

    Job Summary With the nature of Cybersecurity evolving so rapidly, Zurich Commercial Insurance is searching for an experienced Cyber risk specialist to further strengthen Zurich's capability with regards to Cyber insurance, Cyber risk advisory and Cyber services for businesses. This role will be part of our global Zurich Resilience Solutions (ZRS) advisory...

  • Security Consultant

    4 weeks ago


    Hong Kong, Hong Kong SAR China Telstra Full time

    Employment TypePermanentClosing Date21 Sept 2023 11:59pmJob TitleSecurity ConsultantJob SummaryJob DescriptionWe're Australia's leading telecommunications and technology company. And with a global presence in more than 22 countries, we have a strong global footprint. Our purpose is to build a connected future so everyone can thrive. We're all about providing...


  • Hong Kong, Hong Kong SAR China Zurich Insurance Company Full time

    Job Accountabilities Maintain knowledge of latest cyber threats and industry best practices Identify relevant threats, assess risk and generate technical & non-technical reports for a variety of stakeholders Perform external and internal threat discovery, define and categorize the threat, characterize the risk posed to Zurich information systems,...

  • Management Consultant

    4 weeks ago


    Hong Kong, Hong Kong SAR China Sia Partners Full time

    Job description Due to our exceptional growth in Asia, we are looking for a Senior Consultant specialized in Information Security to join our team in Hong Kong. As a Senior Consultant, you will help to build our expertise and guarantee the quality of delivery to ensure market-leading practices for our Hong Kong office, taking into account the global...

  • Senior Consultant

    2 weeks ago


    Hong Kong, Hong Kong SAR China Orange Business Services Full time

    about the role As a Senior Consultant professional, you design and implement transformational industry, functional, and/or digital solutions to drive business value for our clients. Apply strategy, process, operational excellence, and change management skills to help clients navigate shifting market demands, optimize their business, and leverage...


  • Hong Kong, Hong Kong SAR China KPMG China Full time

    Service Line Overview KPMG China has experienced forensic resources based in Beijing, Shanghai and Hong Kong. We provide clients with commercial and financial expertise in the areas of Anti-money Laundering/ Counter Terrorist Financing and Sanctions Compliance Services, Fraud Risk Management, Forensic Technology, Investigations, Cyber Response and Forensic...


  • Hong Kong, Hong Kong SAR China Hip Hing Construction Ltd Full time

    Job Duties Reporting to the IT Manager, the candidate is responsible for leading cybersecurity projects, performing security assessments, and developing and implementing security solutions. Lead cybersecurity projects from start to finish. Perform security assessments and identify vulnerabilities. Design and implement security solutions to protect...


  • Hong Kong, Hong Kong SAR China Randstad Hong Kong Full time

    about the company.Randstad is actively working with one of MNC Financial Service Companies in Hong Kong. They are organising a dynamic regional business in APAC and with reliable reputation in the market. Currently they are exploring their Cybersecurity team and actively looking for a Cybersecurity Engineer/Consultant (Cyber Risk focus) to join them. about...


  • Hong Kong, Central and Western District, Hong Kong SAR China Randstad Hong Kong Full time

    about the company.Randstad is actively working with one of MNC Financial Service Companies in Hong Kong. They are organising a dynamic regional business in APAC and with reliable reputation in the market. Currently they are exploring their Cybersecurity team and actively looking for a Cybersecurity Engineer/Consultant (Cyber Risk focus) to join them. about...


  • Hong Kong, Hong Kong SAR China Sia Partners Full time

    Job description We are currently looking for a Senior Consultant with Financial Services background, having worked preferably within banking & financial services sectors. Our projects are geared around delivering Risk and Regulatory across domains. Consultant/Senior Consultant, Hong Kong (Risk & Regulatory) Due to our growth in Asia, we are...


  • Hong Kong, Hong Kong SAR China Futurex Technologies Full time

    Futurex Technologies was incorporated in Singapore. It has two main area of operations, which is being handled by the respective expert management of the company.The one is IT consulting Projects and another is Mechanical, Civil infrastructure Construction Projects.With respect to IT consulting Projects, it mainly focus on Future technologies of Data...


  • Hong Kong, Hong Kong SAR China Snaphunt Full time

    The OfferWork alongside & learn from best in class talentExcellent career development opportunitiesWork within a company with a solid track record of successThe Job You will be responsible for : Understand the clients' requirements to develop proposals and suggest solutions to help them meet their business objectives.Determining project requirements and...