Senior/Junior Information Security Consultant
2 weeks ago
Job Summary and Mission
This position contributes to the success of wizlynx group by performing the following:
- Responsible for development and operational activities across the entire scope of our clients Security Governance, Risk and Compliance programs.
- The job encompasses leading and participating in the assessment of security, risks, and control effectiveness for applications, infrastructure, and technology projects. The Specialist will identify, classify, and document control issues in our clients computing environment by documenting assessment results, recommending corrective action, tracking remediation, evaluating policy and control standard exceptions, and regularly reporting to our clients IT management.
- Serve as the primary contact point for issue escalation.
- Manage service support requirements and ensure that quality plan, KPIs/SLAs are met.
- Draft support SOP and documentation.
- Models and acts in accordance with wizlynx group guiding principles.
With this position, you will also have the opportunity to get introduced to different areas of information and cyber security such as Offensive Security & Penetration Testing.
Summary of Key Responsibilities
- Leads IT control assessments for our clients to ensure effective IT controls are in place to meet operational and compliance requirements.
- Works with our clients IT, Internal Audit, Compliance and other key stakeholders to create an IT GRC strategy that complies with professional standards and addresses the IT risks inherent in our client's operations and industry.
- Develops Vendor Risk Management policies and supports client's risk profile assessment for vendor onboarding process and conducts annual review of critical vendors.
- Performs ongoing logical access reviews and recommends updates to access control privileges to ensure proper Segregation of Duties based on user access reviews.
- Effectively reports and communicates testing results to client's IT management for corrective action, where required.
- Conducts information security awareness training.
- Performs evidence collection and project management assistance of our clients annual compliance (e.g. CREST, PCI DSS) certification program.
- Track and monitor risk exceptions to ensure control deviations are identified and mitigating controls are in place.
- Assist our clients with drafting and maintaining information security policies.
- Provides mentoring for other team members.
- Demonstrates excellent project management skills, inspires teamwork and responsibility with engagement team members, and uses current technology/tools to enhance the effectiveness of deliverables and services.
- Facilitates the performance and testing of our client's annual disaster recovery tests and business continuity plans.
Summary of Ideal Experience, Skills, Knowledge, and Abilities
Ideal Experience
a) Senior GRC role:
A minimum of five years of experience in information security audit or in a technology-related audit or compliance field, and strong knowledge base in operations, enterprise networking, system evaluation/architecture and consulting experience preferred.
b) Junior GRC role:
One to two years of experience in information security audit or in a technology-related audit or compliance field, and strong knowledge base in operations, enterprise networking, system evaluation/architecture and consulting experience preferred.
- Strong understanding of and ability to provide security configuration and testing of networking and operating systems including TCP/IP, WAN/LAN routing, VLAN architecture, and a wide array of large-scale environments including various major web application servers.
- Strong understanding of information security principles such as ISO 27001, HKMA CFI, CRAF, HK SFC, HKIA Guideline on Cybersecurity (GL20), PCI-DSS, PDPO, and other regulatory compliance.
Language Skills
- Fluent technical English (speech and writing).
- Ability to communicate clearly and concisely, both orally and in writing, in local language.
Soft Skills
- Excellent team leadership, team oriented and team player who takes ownership.
- Flexible attitude, reliable, action oriented.
- Customer friendly approach and appearance.
- Willingness to travel.
- Innovative to push new ideas, dynamic and forward looking with clear management principle towards the team.
- Able to work independently, critical thinking and be able to communicate effectively with the support team and customers.
- Enjoys working in global team with different cultures.
Technical Skills and Abilities
- Microsoft OS and Office knowledge.
- Technical document writing.
- Experience in Project Management in IT.
- Knowledge in perimeter firewall infrastructure and VPN remote access.
Summary of Education
- Bachelor's degree from an accredited college/university in an appropriate field.
Certifications / Training
- CISM, CISA, CRISC, CISSP certified.
KEY PERFORMANCE INDICATORS / MEASURES OF SUCCESS
- Achieve agreed targets/SLA/KPI in terms of quality, time and cost.
- Lead team members to achieve team/organizational goals.
- Improve and retain high customer satisfaction.
POTENTIAL CAREER DEVELOPMENT
- Advance to higher business development tiers or geographic reach.
Your Full Name
Your Email
Upload Resume
I grant wizlynx group my consent to the processing of my personal information for the job application purposes.
#J-18808-Ljbffr-
Chief Security Architect
2 weeks ago
Hong Kong, Central and Western District, Hong Kong SAR China Centurion Information Security Full timeJob OverviewCenturion Information Security seeks a skilled Chief Security Architect to lead our penetration testing efforts. As a critical member of our team, you will play a key role in identifying and assessing vulnerabilities in our clients' networks, systems, and applications.Key ResponsibilitiesDevelop and execute tailored scope of work (SOW) in...
-
IT Security Risk Consultant
2 weeks ago
Hong Kong, Central and Western District, Hong Kong SAR China Centurion Information Security Full timeSecurity Expertise:Penetration Testing:As a Penetration Tester at Centurion Information Security, you will be responsible for conducting independent penetration testing and vulnerability assessments to identify and exploit vulnerabilities in our clients' networks, systems, and applications.Key Skills:Experience in conducting penetration testing and...
-
Information Security Professional
2 weeks ago
Hong Kong, Central and Western District, Hong Kong SAR China Pentastic Security Limited Full timePentastic Security Limited is committed to delivering exceptional cybersecurity services. As a Security Consultant, you will play a vital role in helping our clients navigate the ever-evolving landscape of cyber threats.Key Responsibilities:Conduct thorough risk assessments and provide recommendations for mitigation strategies.Develop and implement effective...
-
Cybersecurity Threat Hunter
2 weeks ago
Hong Kong, Central and Western District, Hong Kong SAR China Centurion Information Security Full timeJob Overview:A Penetration Tester at Centurion Information Security will play a critical role in identifying and assessing vulnerabilities in our clients' networks, systems, and applications. This involves conducting independent penetration testing and vulnerability assessments to proactively identify and exploit vulnerabilities in order to assess the...
-
Penetration Tester
2 weeks ago
Hong Kong, Central and Western District, Hong Kong SAR China Centurion Information Security Full timeBrief Job Overview: As a Penetration Tester, you will play a critical role in identifying and assessing vulnerabilities in our Clients' networks, systems, and applications. You will be responsible for conducting independent penetration testing and vulnerability assessments to proactively identify and exploit vulnerabilities in order to assess the security...
-
Security Consultant Leader
2 weeks ago
Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time**Job Summary and Responsibilities**We are seeking a highly skilled and experienced Senior/Junior Information Security Consultant to join our team in Hong Kong. As a key member of our team, you will be responsible for leading and participating in the assessment of security, risks, and control effectiveness for applications, infrastructure, and technology...
-
Information Security Specialist
2 weeks ago
Hong Kong, Central and Western District, Hong Kong SAR China Pentastic Security Limited Full timeAbout UsPentastic Security Limited is a dynamic and growing company specializing in cybersecurity solutions.We offer a flexible working environment that suits your needs, allowing you to achieve a better work-life balance.As a Security Consultant, you will have the opportunity to develop your career and become a subject matter expert in cybersecurity...
-
Information Assurance Professional
2 weeks ago
Hong Kong, Central and Western District, Hong Kong SAR China Pentastic Security Limited Full timePentastic Security Limited seeks a seasoned Information Assurance Professional to join our dynamic team. In this critical role, you will contribute to the development and implementation of robust security strategies that safeguard our clients' sensitive information.To succeed in this challenging position, you will require:Advanced technical skills: A solid...
-
Information Security Risk Specialist
2 weeks ago
Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time**About the Role**We are looking for a talented Senior/Junior Information Security Consultant to join our team in Hong Kong. The successful candidate will be responsible for performing ongoing logical access reviews and recommending updates to access control privileges to ensure proper Segregation of Duties based on user access reviews.Performs ongoing...
-
Vulnerability Assessment Specialist
2 weeks ago
Hong Kong, Central and Western District, Hong Kong SAR China Centurion Information Security Full timeJob Description:Company Overview:Centurion Information Security is a leading provider of information security services, dedicated to helping organizations protect their assets and maintain a strong security posture.Job Summary:We are seeking an experienced Penetration Tester to join our team, responsible for conducting penetration testing and vulnerability...
-
Senior Security Consultant
3 weeks ago
Hong Kong, Central and Western District, Hong Kong SAR China Fortinet, Inc. Full timeLocation: Hong KongJoin Fortinet, a cybersecurity pioneer with over two decades of excellence, as we continue to shape the future of cybersecurity and redefine the intersection of networking and security. At Fortinet, our mission is to safeguard people, devices, and data everywhere. We are currently seeking a dynamic Senior Security Consultant - Proactive...
-
Senior Security Consultant
1 week ago
Hong Kong, Central and Western District, Hong Kong SAR China Fortinet, Inc. Full timeLocation: Hong Kong Join Fortinet, a cybersecurity pioneer with over two decades of excellence, as we continue to shape the future of cybersecurity and redefine the intersection of networking and security. At Fortinet, our mission is to safeguard people, devices, and data everywhere. We are currently seeking a dynamic Senior Security Consultant - Proactive...
-
IT Security Expert
2 weeks ago
Hong Kong, Central and Western District, Hong Kong SAR China Pentastic Security Limited Full timePentastic Security Limited is a leader in cybersecurity solutions, driven by a passion for innovation and excellence. As a Security Consultant, you will have the opportunity to work with cutting-edge technologies and make a real impact in the field.About the Job:You will be responsible for providing expert advice and guidance to clients on security matters,...
-
IT Security Specialist
2 weeks ago
Hong Kong, Central and Western District, Hong Kong SAR China Pentastic Security Limited Full timeWe're on the lookout for a talented Cybersecurity Specialist to help drive our mission to protect clients' sensitive information. As a member of our team, you'll have the opportunity to develop your skills in security consulting and work closely with cross-functional teams to ensure seamless delivery of our services.In this exciting role, you will:Leverage...
-
Information Security Strategist
2 days ago
Hong Kong, Central and Western District, Hong Kong SAR China beBee Careers Full timeAbout the RoleWe are seeking a highly skilled and motivated individual to lead our security operations team in Hong Kong. As the team is currently small and expanding, this role will have a broad scope and require you to wear multiple hats across various areas of security.This is an exciting opportunity for someone who thrives in a dynamic environment,...
-
Cyber Security Consultant
4 weeks ago
Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time(Senior) Cyber Security Consultant & Penetration TesterLocation: Hong KongKey RoleAs (Senior) Cyber Security Consultant & Penetration Tester, you will execute a variety of engagements, conducting advanced hands-on penetration testing beyond automated tool validation, which will focus on targets that may include network devices, servers, web and mobile apps,...
-
Cyber Security Consultant
1 day ago
Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time(Senior) Cyber Security Consultant & Penetration Tester Location: Hong Kong Key Role As (Senior) Cyber Security Consultant & Penetration Tester, you will execute a variety of engagements, conducting advanced hands-on penetration testing beyond automated tool validation, which will focus on targets that may include network devices, servers, web and mobile...
-
Information Security Officer
1 week ago
Hong Kong, Central and Western District, Hong Kong SAR China MatchTalent Limited Full timeWe are seeking a skilled CISO to oversee the information security strategy across their APAC operations. The CISO will be responsible for developing and implementing security policies, managing risks, and ensuring compliance with regulatory requirements. This role requires a visionary leader who can foster a culture of security awareness and resilience....
-
IT Security Consultant Expert
2 weeks ago
Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time(Senior) Cyber Security Consultant & Penetration TesterIn this role, you will be part of a dynamic team that provides expert-level security services to our clients. Your primary responsibility will be to conduct advanced penetration testing, identifying vulnerabilities and weaknesses in our clients' systems.You will use your technical expertise and...
-
Information Security Engineer
3 weeks ago
Hong Kong, Central and Western District, Hong Kong SAR China Autotoll Limited Full timeTo cope with our expansion and continuous growth in the transportation and logistics related service, we are inviting talents to join our professional team.About the Role:Assist in the implementation and maintenance of security solutions, including firewalls, IDS/IPS, WAF, EDR, and other security tools.Monitor security systems for unusual activity and...