Senior /Technology Risk Manager (Cyber Security Control Division)
14 hours ago
Senior /Technology Risk Manager (Cyber Security Control Division) Roles and Responsibilities & Specific Requirements (Cyber Security) Formulate and manage cyber security policies, standards and procedures. Assist in planning of technology related risk management strategies, processes and work plans. Participate in Cyber Security projects for the design, development and implementation. Plan and conduct cyber security assessment and IT risk evaluation in area covering IT general controls, information asset management, access controls, cloud/server/endpoint/ network/ middleware security review. Support the implementation of security initiatives to ensure the compliance with corporate information security policies and compliance standards. Participate in organizing/conducting penetration test, red/blue/purple teaming exercises, vulnerability assessment, validation controls for local/overseas entities. Provide Cyber Security incident response operation and support, work with local & regional SOC team to seek for continuous improvement for daily Cyber Security monitoring, incident analysis & investigation, incident response operation and support. Experience in arrangement and co-ordination of cross-countries cyber incident response drills. Experience in Security operations, managing SOC, Offensive security, Container security, CSPM, Threat Hunting, OSINT, Dark Web monitoring, Malware analysis, SecOps , Digital forensics , Attack surface management, managing Cloud/ISP/On-premises Anti-DDoS solution, AI/LLM security, Threat modeling, Supply chain cybersecurity and Vulnerability management. Serve as a subject matter expert to support business units and cross-functional teams in identifying and addressing cybersecurity risks. Engage with various business units and teams to discuss risk issues and control gaps, and propose effective remediation strategies. Research and evaluate on latest security threats and Cyber Threat Intelligence, stay informed about latest developments in cyber security field. Familiar with technologies on Firewall, IDS, IPS, WAF, DNS Security, Email Security, SIEM, SOAR, DLP, UEBA, BAS, XDR, Deception, Generative AI/Machine Learning, Application of AI/ML/LLM/MCP/RAG libraries in Python , Zero Trust, Micro-segmentation, Unified endpoint management, SASE/SSE Solution, Database security, and Network/Cloud security are preferable. Willing to travel to different oversea region occasionally to conduct regional cyber security assessment, provide cyber security incident and response support as well as to participate different training / red team exercises (eg. Asia Pacific area, Shenzhen and Shanghai). General Job Requirements Degree holder in Computer Science or other degree majoring in Information Systems, or related discipline. At least 2 years of experience in IT security, technology risk management, compliance or IT audit function, gained from other sizable financial institutions Holding at least one recognized professional qualification under HKMA enhanced competency framework such as CISA, CISSP, CISM. Industry-recognized cyber security certifications ,such as OSCP/OSCE/OSWE/OSEE/GXPN/GPEN/GCPN/GCIH/GSOC/ GCFA/OSDA/CCIE/CCNP, is preferable Familiar with HKMA TM-E-1, TM-C-1, TM-G-1, C-RAF, PCI-DSS, ISO 27001, PDPO, NIST, MITRE ATT&CK, OWASP, Protection of Critical Infrastructures (Computer Systems) Bill or other security risk management framework or regulatory requirements is an advantage Independent, strong self-initiative and with passion in cyber security professional. Good command of written and spoken English with Mandarin is preferable and Good communication and interpersonal skills. Candidate with less experience or qualification will also be considered as Assistant Technology Risk Manager #J-18808-Ljbffr
-
Senior Cyber Risk
14 hours ago
sha tin, Hong Kong SAR China Bank of China (Hong Kong) Limited Full timeA major financial institution in Hong Kong is seeking a Senior Technology Risk Manager to lead cyber security initiatives. Responsibilities include managing cyber security policies, conducting assessments, and providing incident response support. Candidates should possess a degree in Computer Science, with a minimum of 2 years of relevant experience in IT...
-
Business Technology Manager
2 weeks ago
Sha Tin, Hong Kong SAR China Bank of China (Hong Kong) Limited Full timeBusiness Technology Manager (Affiliated and Overseas Entities IT Risk Control) Liaise among business and IT units to ensure requirements are well defines and properly implemented. Plan and manage the execution of project lifecycle, requirement gathering, analysis, implementation effectively. Assisting in the management of IT projects across the bank,...
-
Senior Manager, Finance
1 week ago
Sha Tin, Hong Kong SAR China Hong Kong-Shenzhen Innovation & Technology Park Limited Full timePerform the role of leading financial analyst for the Company and ensure the relevant insightful analysis and control to be in place in the areas of budgetary control and long-term forecast; Monitor the cash flow position of the Company and ensure its timeliness and sufficiency in meeting the settlement needs of OPEX and CAPEX of the Company; Act as the...
-
Lead Engineer
2 days ago
Sha Tin District, Hong Kong SAR China Hong Kong Applied Science and Technology Research Institute Company Limited Full timeHong Kong Applied Science and Technology Research Institute (ASTRI) was founded by the Government of the Hong Kong Special Administrative Region in 2000 with the mission of enhancing Hong Kong’s competitiveness through applied research. ASTRI’s core R&D competence is grouped under five Technology Divisions: Advanced Electronic Components and Systems;...
-
Global IT Risk
2 weeks ago
Sha Tin, Hong Kong SAR China Bank of China (Hong Kong) Limited Full timeA leading financial institution in Hong Kong is seeking a Business Technology Manager to oversee IT risk control for affiliated and overseas entities. The role involves managing project lifecycles, collaborating with diverse teams, and preparing status reports for leadership. The ideal candidate holds a Bachelor’s degree in IT or Computer Science, has...
-
Senior Director, Strategic Account and IP Management
14 hours ago
sha tin district, Hong Kong SAR China Hong Kong Applied Science and Technology Research Institute Company Limited Full timeSenior Director, Strategic Account and IP Management Add expected salary to your profile for insights The Hong Kong Applied Science and Technology Research Institute (ASTRI) was founded by the Government of the Hong Kong Special Administrative Region in 2000 with the mission of enhancing Hong Kong’s competitiveness through applied research. ASTRI’s core...
-
Senior Manager
6 days ago
Sha Tin, Hong Kong SAR China Hong Kong Applied Science and Technology Research Institute Company Limited Full timeOverview The Hong Kong Applied Science and Technology Research Institute (ASTRI) was founded in 2000 by the Government of the Hong Kong Special Administrative Region. Its mission is to enhance Hong Kong’s competitiveness through applied research. ASTRI’s core R&D competence is grouped under five technology divisions: Communications Technologies,...
-
Finance Leader: Budget, Forecasting
1 week ago
Sha Tin, Hong Kong SAR China Hong Kong-Shenzhen Innovation & Technology Park Limited Full timeA leading technology park developer in Hong Kong is seeking an experienced financial analyst to lead the financial analysis and budgetary control efforts. Key responsibilities include monitoring cash flow, collaborating with other divisions, and driving improvements within the finance function. The ideal candidate should hold a relevant degree and...
-
Senior Director, Client Development
1 week ago
Sha Tin District, Hong Kong SAR China Hong Kong Applied Science and Technology Research Institute Company Limited Full timeThe Hong Kong Applied Science and Technology Research Institute (ASTRI) was founded by the Government of the Hong Kong Special Administrative Region in 2000 with the mission of enhancing Hong Kong’s competitiveness through applied research. ASTRI’s core R&D competence is grouped under five Technology Divisions: Communications Technologies, Artificial...
-
Senior Officer
2 weeks ago
Sha Tin District, Hong Kong SAR China Hong Kong Applied Science and Technology Research Institute Company Limited Full timeASTRI was founded by the Government of the Hong Kong Special Administrative Region in 2000 with the mission of enhancing Hong Kong’s competitiveness through applied research. ASTRI’s core R&D competencies are grouped under five Technology Divisions: Communications Technologies, Artificial Intelligence and Trust Technologies, Advanced Electronic...