Senior/Junior Information Security Consultant

4 days ago


Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time
Senior/Junior Information Security Consultant (Governance, Risk and Compliance)Location: Hong Kong

Job Summary and Mission

This position contributes to the success of wizlynx group by performing the following:

  • Responsible for development and operational activities across the entire scope of our clients Security Governance, Risk and Compliance programs.
  • The job encompasses leading and participating in the assessment of security, risks, and control effectiveness for applications, infrastructure, and technology projects. The Specialist will identify, classify, and document control issues in our clients computing environment by documenting assessment results, recommending corrective action, tracking remediation, evaluating policy and control standard exceptions, and regularly reporting to our clients IT management.
  • Serve as the primary contact point for issue escalation.
  • Manage service support requirements and ensure that quality plan, KPIs/SLAs are met.
  • Draft support SOP and documentation.
  • Models and acts in accordance with wizlynx group guiding principles.

With this position, you will also have the opportunity to get introduced to different areas of information and cyber security such as Offensive Security & Penetration Testing.

Summary of Key Responsibilities

  • Leads IT control assessments for our clients to ensure effective IT controls are in place to meet operational and compliance requirements.
  • Works with our clients IT, Internal Audit, Compliance and other key stakeholders to create an IT GRC strategy that complies with professional standards and addresses the IT risks inherent in our client's operations and industry.
  • Develops Vendor Risk Management policies and supports client's risk profile assessment for vendor onboarding process and conducts annual review of critical vendors.
  • Performs ongoing logical access reviews and recommends updates to access control privileges to ensure proper Segregation of Duties based on user access reviews.
  • Effectively reports and communicates testing results to client's IT management for corrective action, where required.
  • Conducts information security awareness training.
  • Performs evidence collection and project management assistance of our clients annual compliance (e.g. CREST, PCI DSS) certification program.
  • Track and monitor risk exceptions to ensure control deviations are identified and mitigating controls are in place.
  • Assist our clients with drafting and maintaining information security policies.
  • Provides mentoring for other team members.
  • Demonstrates excellent project management skills, inspires teamwork and responsibility with engagement team members, and uses current technology/tools to enhance the effectiveness of deliverables and services.
  • Facilitates the performance and testing of our client's annual disaster recovery tests and business continuity plans.

Summary of Ideal Experience, Skills, Knowledge, and Abilities

Ideal Experience

a) Senior GRC role:
A minimum of five years of experience in information security audit or in a technology-related audit or compliance field, and strong knowledge base in operations, enterprise networking, system evaluation/architecture and consulting experience preferred.

b) Junior GRC role:
One to two years of experience in information security audit or in a technology-related audit or compliance field, and strong knowledge base in operations, enterprise networking, system evaluation/architecture and consulting experience preferred.

  • Strong understanding of and ability to provide security configuration and testing of networking and operating systems including TCP/IP, WAN/LAN routing, VLAN architecture, and a wide array of large-scale environments including various major web application servers.
  • Strong understanding of information security principles such as ISO 27001, HKMA CFI, CRAF, HK SFC, HKIA Guideline on Cybersecurity (GL20), PCI-DSS, PDPO, and other regulatory compliance.

Language Skills

  • Fluent technical English (speech and writing).
  • Ability to communicate clearly and concisely, both orally and in writing, in local language.

Soft Skills

  • Excellent team leadership, team oriented and team player who takes ownership.
  • Flexible attitude, reliable, action oriented.
  • Customer friendly approach and appearance.
  • Willingness to travel.
  • Innovative to push new ideas, dynamic and forward looking with clear management principle towards the team.
  • Able to work independently, critical thinking and be able to communicate effectively with the support team and customers.
  • Enjoys working in global team with different cultures.

Technical Skills and Abilities

  • Microsoft OS and Office knowledge.
  • Technical document writing.
  • Experience in Project Management in IT.
  • Knowledge in perimeter firewall infrastructure and VPN remote access.

Summary of Education

  • Bachelor's degree from an accredited college/university in an appropriate field.

Certifications / Training

  • CISM, CISA, CRISC, CISSP certified.

KEY PERFORMANCE INDICATORS / MEASURES OF SUCCESS

  • Achieve agreed targets/SLA/KPI in terms of quality, time and cost.
  • Lead team members to achieve team/organizational goals.
  • Improve and retain high customer satisfaction.

POTENTIAL CAREER DEVELOPMENT

  • Advance to higher business development tiers or geographic reach.
APPLY NOW

Your Full Name

Your Email

Upload Resume

I grant wizlynx group my consent to the processing of my personal information for the job application purposes.

#J-18808-Ljbffr

  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    About the JobWe are looking for a highly skilled Cyber Security Consultant & Penetration Tester to join our team at Wizlynx Malaysia Sdn Bhd. As a Senior Cyber Security Consultant & Penetration Tester, you will be responsible for conducting advanced hands-on penetration testing beyond automated tool validation, focusing on targets such as network devices,...


  • Hong Kong, Central and Western District, Hong Kong SAR China Pentastic Security Limited Full time

    We are looking for a talented Security Consultant to join our team at Pentastic Security Limited. As a key member of our team, you will play a vital role in identifying and mitigating cybersecurity risks for our clients.Job DescriptionThe successful candidate will have a solid understanding of cybersecurity principles and practices, as well as excellent...

  • Security Consultant

    1 week ago


    Hong Kong, Central and Western District, Hong Kong SAR China Pentastic Security Limited Full time

    Join Our Team at Pentastic Security LimitedAre you passionate about cybersecurity and eager to develop a career in this dynamic field? Pentastic Security is looking for dedicated individuals to join our expanding team as Security Consultant. If you're ready to embark on an exciting journey in Cybersecurity, we want to hear from youWhat We Offer:On-the-Job...


  • Hong Kong, Central and Western District, Hong Kong SAR China Pentastic Security Limited Full time

    Pentastic Security Limited is committed to delivering exceptional cybersecurity services. As a Security Consultant, you will play a vital role in helping us achieve this goal.Job Summary:We are seeking a highly motivated and experienced professional with a degree in computer science or equivalent. A minimum of 2 years of experience in the information...

  • Security Consultant

    7 days ago


    Hong Kong, Central and Western District, Hong Kong SAR China Pentastic Security Limited Full time

    Join Our Team at Pentastic Security Limited Are you passionate about cybersecurity and eager to develop a career in this dynamic field? Pentastic Security is looking for dedicated individuals to join our expanding team as Security Consultant. If you're ready to embark on an exciting journey in Cybersecurity, we want to hear from you What We Offer: ...


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    Cyber Security Career OpportunityJoin wizlynx group, a leading Swiss Cyber Security provider, as a Cyber Security Consultant & Penetration Tester. We offer a thrilling, challenging but fun environment where what you do is important and meaningful. At wizlynx, there is no limit but the sky. If you wish to learn and get involved in other areas of cyber...


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    Senior/Junior Information Security ConsultantThis role is responsible for contributing to the success of Wizlynx Malaysia Sdn Bhd by performing various tasks.Lead and participate in the assessment of security, risks, and control effectiveness for applications, infrastructure, and technology projects.Identify, classify, and document control issues in our...


  • Hong Kong, Central and Western District, Hong Kong SAR China Fortinet, Inc. Full time

    Location: Hong Kong Join Fortinet, a cybersecurity pioneer with over two decades of excellence, as we continue to shape the future of cybersecurity and redefine the intersection of networking and security. At Fortinet, our mission is to safeguard people, devices, and data everywhere. We are currently seeking a dynamic Senior Security Consultant - Proactive...


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    Your Key RoleAs a (Senior) Cyber Security Consultant & Penetration Tester, you will be responsible for executing various engagements, conducting advanced hands-on penetration testing beyond automated tool validation. Your key responsibilities will include:Leading and executing network, web and mobile application, wireless, and social engineering penetration...


  • Hong Kong, Central and Western District, Hong Kong SAR China Pentastic Security Limited Full time

    Pentastic Security Limited is a leading provider of cybersecurity solutions, and we're looking for an ambitious Entry-Level Cybersecurity Professional to join our team. In this role, you'll work closely with our experts to provide high-quality security services to our clients.To be successful, you'll need a solid foundation in computer science, strong...


  • Hong Kong, Central and Western District, Hong Kong SAR China Pathos Consultancy Full time

    Job Title: Chief Information Security OfficerAbout Pathos ConsultancyWe are a leading consultancy firm providing expert advice on information security and risk management to global financial institutions. Our team of experienced professionals is dedicated to helping our clients navigate the complexities of information security and achieve their goals.Job...


  • Hong Kong, Central and Western District, Hong Kong SAR China Pentastic Security Limited Full time

    Pentastic Security Limited is committed to providing a supportive and collaborative environment for our team members to thrive in their careers.Required Skills and QualificationsTo succeed as a Security Consultant, you will need:Technical RequirementsBachelor's Degree in Computer Science or equivalent.At least 2 years of experience in the information...

  • InfoSec Consultant

    4 days ago


    Hong Kong, Central and Western District, Hong Kong SAR China Pentastic Security Limited Full time

    Pentastic Security Limited is a leading provider of cybersecurity solutions, and we are seeking experienced professionals to join our team as Security Consultants.Job ResponsibilitiesThe successful candidate will be responsible for:Key ResponsibilitiesProviding cybersecurity expertise to clients and supporting the development of new solutions.Collaborating...


  • Hong Kong, Central and Western District, Hong Kong SAR China Recruit Squad Limited Full time

    We are looking for a highly skilled IT Cyber Security Manager to join our team at Recruit Squad Limited. As a key member of our organization, you will be responsible for developing and implementing cybersecurity solutions in an enterprise environment.Our company is committed to providing professional recruitment and HR advisory services with integrity and...

  • Senior Consultant

    3 days ago


    Hong Kong, Central and Western District, Hong Kong SAR China Capco Full time

    Company OverviewCAPCO is a global leader in digital transformation, providing expert consulting services to the financial services and insurance industries.We leverage our expertise in banking, capital markets, insurance & securities services to drive business growth and improve client outcomes.We specialize in risk and compliance, regulatory transformation,...


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    Cyber Security Consultant RoleWe are seeking a highly skilled Cyber Security Consultant to join our team at Wizlynx Malaysia Sdn Bhd.About the Role:This position contributes to the success of Wizlynx Malaysia Sdn Bhd by performing various tasks related to IT risk management and information security governance.The ideal candidate will have a strong...


  • Hong Kong, Central and Western District, Hong Kong SAR China Logicalis Asia Pacific Full time

    The role is part of our regional SOC team, tasked to deliver Managed Security Services (MSS) and help customers achieve their business goals & objectives by re-imagining cybersecurity as one of its business enablers. The role reports to the SOC vertical based in Singapore. It is a great opportunity to put your past experiences in building a world-class SOC...


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    Job DescriptionWe are seeking an experienced Information Security Specialist to join our team. As a Penetration Testing Expert, you will lead and execute various engagements, conducting secure code review and advanced hands-on penetration testing.You will have the opportunity to combine technical expertise with your imagination to conduct targeted attacks...


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    About the JobWe are looking for a seasoned Senior Information Security Professional to join our team at Wizlynx Malaysia Sdn Bhd. In this role, you will lead and execute various security engagements, including secure code review and penetration testing.Responsibilities:Develop and execute comprehensive security strategies to ensure the protection of customer...


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    (Senior) Cyber Security Consultant & Penetration TesterLocation: Hong KongKey RoleAs (Senior) Cyber Security Consultant & Penetration Tester, you will execute a variety of engagements, conducting advanced hands-on penetration testing beyond automated tool validation, which will focus on targets that may include network devices, servers, web and mobile apps,...