Senior/Junior Information Security Consultant

Found in: Talent HK C2 - 2 weeks ago


Hong Kong, Hong Kong SAR China Wizlynx Group Full time

Job Summary and Mission


This position contributes to the success of wizlynx group by performing the following:

Responsible for development and operational activities across the entire scope of our clients Security Governance, Risk and Compliance programs. The job encompasses leading and participating in the assessment of security, risks, and control effectiveness for applications, infrastructure, and technology projects. The Specialist will identify, classify, and document control issues in our clients computing environment by documenting assessment results, recommending corrective action, tracking remediation, evaluating policy and control standard exceptions, and regularly reporting to our clients IT management. Serve as the primary contact point for issue escalation Manage service support requirements and ensure that quality plan, KPIs/SLAs are met Draft support SOP and documentation Models and acts in accordance with wizlynx group guiding principles

With this position, you will also have the opportunity to get introduced to different areas of information and cyber security such as Offensive Security & Penetration Testing


Summary of Key Responsibilities

Leads IT control assessments for our clients to ensure effective IT controls are in place to meeting operational and compliance requirements. Works with our clients IT, Internal Audit, Compliance and other key stakeholders to create an IT GRC strategy that complies with professional standards and addresses the IT risks inherent in our client’s operations and industry. Develops Vendor Risk Management policies and supports client’s risk profile assessment for vendor on-boarding process and conducts annual review of critical vendors. Performs ongoing logical access reviews and recommends updates to access control privileges to ensure proper Segregation of Duties based on user access reviews. Effectively reports and communicates testing results to client’s IT management for corrective action, where required. Conducts information security awareness training. Performs evidence collection and project management assistance of our clients annual compliance (e.g. CREST, PCI DSS) certification program. Track and monitor risk exceptions to ensure control deviations are identified and mitigating controls are in place. Assist our clients with drafting and maintaining information security policies Provides mentoring for other team members. Demonstrates excellent project management skills, inspires teamwork and responsibility with engagement team members, and uses current technology/tools to enhance the effectiveness of deliverables and services. Facilitates the performance and testing of our client’s annual disaster recovery tests and business continuity plans.


Summary of Ideal Experience, Skills, Knowledge, and Abilities 

Ideal Experience

a) Senior GRC role:

A minimum of five years of experience in information security audit or in a technology-related audit or compliance field, and strong knowledge base in operations, enterprise networking, system evaluation/architecture and consulting experience preferred.

b) Junior GRC role:
One to two years of experience in information security audit or in a technology-related audit or compliance field, and strong knowledge base in operations, enterprise networking, system evaluation/architecture and consulting experience preferred.

Strong understanding of and ability to provide security configuration and testing of networking and operating systems including TCP/IP, WAN/LAN routing, VLAN architecture, and a wide array of large-scale environments including various major web application servers Strong understanding of information security principles such as ISO 27001, HKMA CFI, CRAF, HK SFC, HKIA Guideline on Cybersecurity (GL20), PCI-DSS, PDPO, and other regulatory compliance

Language Skills

Fluent technical English (speech and writing) Ability to communicate clearly and concisely, both orally and in writing, in local language

Soft Skills

Excellent team leadership, team oriented and team player who takes ownership Flexible attitude, reliable, action oriented Customer friendly approach and appearance Willingness to travel Innovative to push new ideas, dynamic and forward looking with clear management principle towards the team Able to work independently, critical thinking and be able to communicate effectively with the support team and customers Enjoys working in global team with different cultures

Technical Skills and Abilities

Microsoft OS and Office knowledge Technical document writing Experience in Project Management in IT Knowledge in perimeter firewall infrastructure and VPN remote access

Summary of Education

Bachelor's degree from an accredited college/university in an appropriate field

Certifications / Training

CISM, CISA, CRISC, CISSP certified

KEY PERFORMANCE INDICATORS / MEASURES OF SUCCESS

Achieve agreed targets/SLA/KPI in terms of quality, time and cost Lead team members to achieve team/organizational goals Improve and retain high customer satisfaction

POTENTIAL CAREER DEVELOPMENT

Advance to higher business development tiers or geographic reach
  • Information Security Office Senior Lead Analyst

    Found in: Talent HK C2 - 1 week ago


    Hong Kong, Hong Kong SAR China Citi Full time

    The Info Security Ops Group Mgr is a senior management level position responsible for accomplishing results through the management of a team or department in an effort to prevent, monitor and respond to information/data breaches and cyber-attacks. The overall objective of this role is to ensure the execution of Information Security directives and activities...

  • (Senior) Cyber Security Consultant

    Found in: Talent HK C2 - 2 weeks ago


    Hong Kong, Hong Kong SAR China Wizlynx Group Full time

    Key Role As (Senior) Cyber Security Consultant & Penetration Tester, you will execute a variety of engagements, conducting advanced hands-on penetration testing beyond automated tool validation, which will focus on targets that may include network devices, servers, web and mobile apps, web APIs, wireless infrastructures, IoT devices, and other...

  • Consultant/Senior Consultant, Cyber Security

    Found in: Talent HK C2 - 6 days ago


    Hong Kong, Hong Kong SAR China KPMG China Full time

    KPMG China provides multidisciplinary services from audit and tax to advisory, with a strong focus on serving our clients' needs and their industries. Not only do we have an overriding commitment to provide the highest quality services for our clients, but we also strive to become a responsible corporate citizen that has a positive impact on our environment...

  • Junior/Mid Engineer – DevOps Security

    Found in: Talent HK C2 - 3 weeks ago


    Hong Kong, Hong Kong SAR China Crypto.com Full time

    The Cybersecurity and Data Privacy team reports directly under the office of the CISO headed by Chief Information Security Officer (CISO) Jason Lau () who has over 23+ years of experience in the cybersecurity space, awarded Global Top 100 CISO, and also serves on the World Economic Forum, International Association of Privacy Professionals and more. The team...

  • Lead, Information Security

    Found in: Talent HK C2 - 2 weeks ago


    Hong Kong, Hong Kong SAR China AXA Group Full time

    The duties of the Lead, Information Security includes:- Conduct security architecture review Provide professional security advisory and recommendations to minimize the impact within risk tolerance levels Conduct security risk assessment on technology solutions and/or technical controls Assess risk impacts on business Recommend and documenting risk...

  • Manager, Information Security

    Found in: Talent HK C2 - 5 days ago


    Hong Kong, Hong Kong SAR China AXA Group Full time

    The duties of the Manager, Information Security includes:- Conduct security architecture review Provide professional security advisory and recommendations to minimize the impact within risk tolerance levels Conduct security risk assessment on technology solutions and/or technical controls Assess risk impacts on business Recommend and documenting risk...


  • Hong Kong, Hong Kong SAR China Hong Kong Exchanges and Clearing Limited Full time

    Company Introduction: We're home to Asia's most dynamic and vibrant capital markets. Connecting capital, ideas, inspiration and innovation for deeper, more diverse and liquid global capital markets; providing greater choice and opportunity for our customers, each and every day. HKEX is a purpose-driven company. Our commitment to the long-term development...

  • Senior Consultant

    Found in: Talent HK C2 - 5 days ago


    Hong Kong, Hong Kong SAR China Orange Business Services Full time

    about the role As a Senior Consultant professional, you design and implement transformational industry, functional, and/or digital solutions to drive business value for our clients. Apply strategy, process, operational excellence, and change management skills to help clients navigate shifting market demands, optimize their business, and leverage...

  • Security Consultant

    Found in: Talent HK C2 - 3 weeks ago


    Hong Kong, Hong Kong SAR China Telstra Full time

    Employment TypePermanentClosing Date21 Sept 2023 11:59pmJob TitleSecurity ConsultantJob SummaryJob DescriptionWe're Australia's leading telecommunications and technology company. And with a global presence in more than 22 countries, we have a strong global footprint. Our purpose is to build a connected future so everyone can thrive. We're all about providing...


  • Hong Kong, Hong Kong SAR China KPMG China Full time

    KPMG China provides multidisciplinary services from audit and tax to advisory, with a strong focus on serving our clients' needs and their industries. Not only do we have an overriding commitment to provide the highest quality services for our clients, but we also strive to become a responsible corporate citizen that has a positive impact on our environment...


  • Hong Kong, Hong Kong SAR China KPMG China Full time

    KPMG China provides multidisciplinary services from audit and tax to advisory, with a strong focus on serving our clients' needs and their industries. Not only do we have an overriding commitment to provide the highest quality services for our clients, but we also strive to become a responsible corporate citizen that has a positive impact on our environment...

  • Information Security Specialist

    Found in: Talent HK C2 - 2 weeks ago


    Hong Kong, Hong Kong SAR China AIA Full time

    FIND YOUR 'BETTER' AT Blue Cross If you believe in better, we’d love to hear from you. About the Role Responsible for ensuring the security and integrity of AIA's information systems and cyber environment Duties/Accountabilities Assist information security and cyber security risk assessment on security initiatives, compliance and improvements ...

  • Japanese Securities Firm

    Found in: beBee S HK - 4 weeks ago


    Hong Kong, Hong Kong SAR China APAC Michael Page Full time

    This role will be at the senior analyst/junior associate level, and will report to the Asia Head of Client Services for a large Japanese securities firm. Corporate KYC experience within a large bank/securities firm would be preferred, as well as some experience dealing with Singapore entities.客户简介The client is a large securities firm, with an...


  • Hong Kong, Hong Kong SAR China Mazars Full time

    Why join us You don’t join Mazars by coincidence, you choose Mazars: a global school of excellence where you will be challenged to develop and grow. Progression is tied to education, empowering you to match your career to your aspirations both within and outside our firm. We expect your contribution to what Mazars and our clients do next and reward...

  • Security Consultant – Advanced Analytics

    Found in: Talent HK C2 - 2 weeks ago


    Hong Kong, Hong Kong SAR China Ensign InfoSecurity Full time

    Ensign is hiring !Duties and ResponsibilitiesCarry out pre-sales engagement for projects related to Advanced Analytics (AA), such as Security Information & Event Management (SIEM), Security Orchestration, Automation & Response (SOAR) and Network Traffic Analytics (NTA) – including solution design, bill of materials and scope of workDeploy AA related...

  • Junior Consultant in Strategy

    Found in: beBee jobs HK - 3 weeks ago


    Hong Kong, Central and Western District, Hong Kong SAR China Ekimetrics Full time

    Ekimetrics is a leader in data science and AI-powered solutions. For over 16 years, we've pioneered the use of AI and advanced data science applied to unified marketing measurement, holistic business optimization and broad-ranging sustainability goals. Our goal: Combine high impact solutions with long-term sustainable business purposes. Ekimetrics Hong Kong...

  • Assistant Vice President, Information Security

    Found in: Talent HK C2 - 3 weeks ago


    Hong Kong, Hong Kong SAR China Shangri-La Full time

    We are looking for someone who has: Bachelors degree holder, preferably in a relevant discipline Minimum 6 years of relevant experience in managing information security function for a sizable company Hands-on experience in developing and implementing enterprise-level information security policies & procedures, and training Familiar with legal,...

  • Consultant/Senior Consultant

    Found in: Talent HK C2 - 3 weeks ago


    Hong Kong, Hong Kong SAR China Sia Partners Full time

    Job description We are currently looking for a Senior Consultant with Financial Services background, having worked preferably within banking & financial services sectors. Our projects are geared around delivering Risk and Regulatory across domains. Consultant/Senior Consultant, Hong Kong (Risk & Regulatory) Due to our growth in Asia, we are...

  • Senior Security Engineer

    Found in: Talent HK C2 - 2 weeks ago


    Hong Kong, Hong Kong SAR China Wing Lung Bank Ltd. Full time

    Senior Security Engineer Responsibilities Acting as a first line defence on the Information and Cyber security matters Assisting in security solution selection, evaluation and implementation based on the procedures and guidelines of the Bank Performing security operation matters including key management, privileged account management,...

  • Network & Data Security Specialist

    Found in: Talent HK C2 - 2 weeks ago


    Hong Kong, Hong Kong SAR China China Investment Information Services Limited Full time

    Job Responsibilities ▪ Working with teammates to perform day-to-day internal operational duties regarding networking and network security issues ▪ Working closely with vendors and internal stakeholders on IT network project development, implementation and testing ▪ Support security framework to fulfill different security compliance guideline ...