SVP, Senior Information Security Officer

5 days ago


Hong Kong, Hong Kong SAR China Citi Full time
The Info Security Ops Group Mgr is a senior management level position responsible for accomplishing results through the management of a team or department in an effort to prevent, monitor and respond to information/data breaches and cyber-attacks. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's data security policy.

Responsibilities:
  • Manage a large/complex team or multiple teams, overseeing resources, budget, policy formation and short to medium term planning
  • Manage and validate deliverables of all Information Security (IS) programs, ensuring closure per agreed timelines and goals
  • Identify and assign key metrics (e.g. KRI/KPIs) to support effective monitoring and management of operational risk including controls assurance and ensure issues identified and corrective actions are raised to address gaps.
  • Provide strong oversight of CAP (Corrective Action Plan) remediation activities both for audit and control issues including quality completion of Risk Exception documentation and annual renewals. Support the assigned technology platform re ensuring the remediation of corrective actions relating to both self-identified and audit issues are completed on time and with the appropriate level of quality and adherence to IBAM.
  • Conduct cost-benefit analysis to justify IS investment, and build the IS team by promoting partnerships, and marketing IS developments
  • Partner with Global Information Security Officers and Global Information Security Program Managers to improve processes and reduce risk
  • Ensure risks are identified, assessed, mitigated and controlled, and assist Security Incident Response Teams as the Business IS Consultant
  • Ensure Control Preparedness and control effectiveness, as part of the Audit preparedness exercise, ensuring IS programs are audit ready
  • Appropriately assess risk when business decisions are made, demonstrating particular consideration for the firm's reputation and safeguarding Citigroup, its clients and assets, by driving compliance with applicable laws, rules and regulations, adhering to Policy, applying sound ethical judgment regarding personal behavior, conduct and business practices, and escalating, managing and reporting control issues with transparency, as well as effectively supervise the activity of others and create accountability with those who fail to maintain these standards.


Qualifications:
  • 10+ years of relevant experience
  • Strong understanding of APAC Regulatory requirements
  • Proven experience with scripting and programming languages preferred
  • Advanced Microsoft Office skills preferred
  • Demonstrated ability to collaborate with a variety of analytical groups and service delivery organizations
  • Advanced analytical and problem solving skills
  • Consistently demonstrates clear and concise written and verbal communication
  • Proficient in interpreting and applying policies, standards and procedures
  • Demonstrated ability to remain unbiased in a diverse working environment


Education:
  • Bachelor's degree/University degree or equivalent experience
  • Master's degree preferred
  • Relevant professional qualifications with Risk / Security management e.g. CISM, CISA, CISSP or equivalent
  • Local language proficiency.

------------------------------------------------------

Job Family Group:
Technology
------------------------------------------------------

Job Family:
Information Security
------------------------------------------------------

Time Type:
Full time
------------------------------------------------------

Citi is an equal opportunity and affirmative action employer.

Qualified applicants will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

Citigroup Inc. and its subsidiaries ("Citi) invite all qualified interested applicants to apply for career opportunities. If you are a person with a disability and need a reasonable accommodation to use our search tools and/or apply for a career opportunity review Accessibility at Citi .

View the " EEO is the Law " poster. View the EEO is the Law Supplement .

View the EEO Policy Statement .

View the Pay Transparency Posting


  • Hong Kong, Central and Western District, Hong Kong SAR China KOS International Limited Full time

    About the RoleThe Chief Information Security Officer will assist the department head in implementing robust and best practices of security governance, risk, and compliance procedures within the Technology department.Regular reassessment of risk registers to ensure alignment with overall strategic objectives;Collaboration with different business stakeholders...


  • Hong Kong, Central and Western District, Hong Kong SAR China Bank Of China (Hong Kong) Limited Full time

    At Bank Of China (Hong Kong) Limited, we are committed to excellence in information security and risk management. As a Chief Information Security Officer, you will play a vital role in protecting our organization's assets and maintaining the trust of our customers.The ideal candidate will have a strong background in IT security, technology risk, and risk...


  • Hong Kong, Central and Western District, Hong Kong SAR China Bank Of China (Hong Kong) Limited Full time

    Bank Of China (Hong Kong) Limited is seeking a Chief Information Security Officer - Application Security Specialist to join our team.Job DescriptionThe successful candidate will be responsible for:Reviewing IT initiatives from a technology risk perspective and providing advisory services.Establishing and reviewing policies, guidelines, and procedures in the...


  • Hong Kong, Hong Kong SAR China Hong Kong Exchanges and Clearing Limited Full time

    Company Introduction: We're home to Asia's most dynamic and vibrant capital markets. Connecting capital, ideas, inspiration and innovation for deeper, more diverse and liquid global capital markets; providing greater choice and opportunity for our customers, each and every day. HKEX is a purpose-driven company. Our commitment to the long-term development...


  • Hong Kong, Central and Western District, Hong Kong SAR China Bank Of China (Hong Kong) Limited Full time

    Job DescriptionCompany Overview: Bank of China (Hong Kong) Limited is a leading financial institution in the region.Job Summary: We are seeking an experienced Information Security Professional to join our team. The successful candidate will be responsible for managing and mitigating information security risks across the organization.Key...


  • hong kong, Hong Kong SAR China PCCW Full time

    Security Manager – Information Security and Cybersecurity Risk Your role Conduct risk and control assessment to identify, assess, monitor and mitigate risks within the overall IT system, application and network operation; Assist IT teams to ensure IT operation functions are defined, assessed and managed via appropriate policies, procedures, and control...


  • Hong Kong, Hong Kong SAR China Citi Full time

    Whether you're at the start of your career or looking to discover your next adventure, your story begins here. At Citi, you'll have the opportunity to expand your skills and make a difference at one of the world's most global banks. We're fully committed to supporting your growth and development from the start with extensive on-the-job training and exposure...


  • hong kong, Hong Kong SAR China OKX Full time

    Hong Kong, Hong Kong SAR Who We Are At OKX, we believe that the future will be reshaped by crypto, and ultimately contribute to every individual's freedom. OKX is a leading crypto exchange, and the developer of OKX Wallet, giving millions access to crypto trading and decentralized crypto applications (dApps). OKX is also a trusted brand by hundreds of large...


  • Hong Kong, Hong Kong SAR China NLS Full time

      The role: Team Leadership: Lead and direct a team covering the firm's cybersecurity operations. Ensuring the development of information security architectures, strategies, roadmaps, standards and procedures (cloud and on-prem). Collaboration: Work closely with various IT departments to validate information security and robustness for IT infrastructure,...


  • Hong Kong, Central and Western District, Hong Kong SAR China Meliora Full time

    Company OverviewMeliora is a leading organization in the field of technology risk management, seeking an experienced and skilled individual to fill the role of Chief Information Security Officer - Cyber Risk Expert. Job DescriptionWe are looking for a highly qualified professional with extensive experience in technology risk functions, particularly in 2nd...


  • hong kong, Hong Kong SAR China Alumni Services Full time

    Information Technology Security Specialist 3 days ago Be among the first 25 applicants Alumni Services is a global digital transformation management consultancy with offices in Singapore, Hong Kong, Australia, UAE and the UK providing high-end expertise to industry leading clients to drive real business improvement through disruptive technologies. We offer...


  • Hong Kong, Central and Western District, Hong Kong SAR China West Kowloon Cultural District Authority Full time

    Key ResponsibilitiesAssist in assessing and mitigating cybersecurity risks through vulnerability assessments, penetration testing, and security audits.Proactively lead and coordinate security projects and initiatives, despite limited supervision from the manager.Monitor and respond to security incidents with vendors and service providers, assisting in...


  • Hong Kong, Hong Kong SAR China Hong Kong Exchanges and Clearing Limited Full time

    Company Introduction: We're home to Asia's most dynamic and vibrant capital markets. Connecting capital, ideas, inspiration and innovation for deeper, more diverse and liquid global capital markets; providing greater choice and opportunity for our customers, each and every day. HKEX is a purpose-driven company. Our commitment to the long-term development...


  • Hong Kong, Central and Western District, Hong Kong SAR China Bank Of China (Hong Kong) Limited Full time

    **Job Summary**At Bank Of China (Hong Kong) Limited, we are committed to maintaining a secure and compliant technology environment. As our Chief Information Security Strategist, you will play a critical role in driving our technology risk management initiatives and ensuring that our overseas branches adhere to the highest standards of information...


  • Hong Kong, Hong Kong SAR China DBS Bank (Hong Kong) Limited Full time

    Business Function: Group Legal, Compliance & Secretariat ensures that the bank's interests are protected by zealously guarding and enhancing its reputation and capital. We also work to maintain a good standing with all our regulators, customers, and business partners. Because we believe that at the heart of business banking is to uphold the values of...


  • Hong Kong, Central and Western District, Hong Kong SAR China HKMC Annuity Limited Full time

    Job OverviewHKMC Annuity Limited seeks a seasoned Cybersecurity Expert to join its team as a Chief Security Risk Officer. In this role, you will play a crucial part in ensuring the company's IT systems and solutions are secure from potential threats.Key Responsibilities:Security Advisory: Provide professional advice on IT solutions and systems from a risk...


  • Hong Kong, Hong Kong SAR China HARBRIDGE PARTNERS Full time

    In-House Litigation Lawyer - SFC, Regulatory, Client Complaints (VP/SVP) Location: Hong Kong   Background Our client is a top international banking and financial services group with a multi-billion USD market capitalization. You will assist the Legal Department and other internal stakeholders with handling all aspects and types of contentious and...


  • Hong Kong, Central and Western District, Hong Kong SAR China Bank Of China (Hong Kong) Limited Full time

    Job DescriptionWe are seeking a seasoned professional to fill the role of Chief Information Risk Management Officer at Bank Of China (Hong Kong) Limited. This critical position plays a vital part in ensuring the bank's IT operations run smoothly, securely, and efficiently.Key ResponsibilitiesRisk Identification and Mitigation: Identify existing and potential...


  • Hong Kong, Hong Kong SAR China Aptitude Asia Full time

    Responsibilities To perform risk assessments, maturity analysis and security control test, in order to monitor information security compliance Provide security compliance assessment report and recommendations to management Oversee the implementation and compliance with Group-wide standards and regulatory requirements Streamline security-related processes...


  • hong kong, Hong Kong SAR China W-Consulting Company Ltd. Full time

    We are currently looking for a seasoned Information Security Engineer to join our client to be based in either Hong Kong or Singapore. They are one of the emerging data center platform companies which is growing rapidly across Asia. Responsibilities: Design, engineer, implement and monitor security measures for the protection of cloud information, and...