Senior /Technology Risk Manager (Cyber Security Control Division)

4 days ago


Fo Tan Village, Hong Kong SAR China Bank of China (Hong Kong) Limited Full time

Senior /Technology Risk Manager (Cyber Security Control Division) Roles and Responsibilities & Specific Requirements (Cyber Security) Formulate and manage cyber security policies, standards and procedures. Assist in planning of technology related risk management strategies, processes and work plans. Participate in Cyber Security projects for the design, development and implementation. Plan and conduct cyber security assessment and IT risk evaluation in areas covering IT general controls, information asset management, access controls, cloud/server/endpoint/network/middleware security review. Support the implementation of security initiatives to ensure compliance with corporate information security policies and compliance standards. Participate in organizing/conducting penetration test, red/blue/purple teaming exercises, vulnerability assessment, validation controls for local/overseas entities. Provide Cyber Security incident response operation and support, working with local & regional SOC teams to seek continuous improvement for daily Cyber Security monitoring, incident analysis & investigation, incident response operation and support. Experience in arrangement and coordination of cross‑country cyber incident response drills. Experience in Security operations, managing SOC, Offensive security, Container security, CSPM, Threat Hunting, OSINT, Dark Web monitoring, Malware analysis, SecOps, Digital forensics, Attack surface management, managing Cloud/ISP/On‑premises Anti‑DDoS solution, AI/LLM security, Threat modeling, Supply chain cybersecurity and Vulnerability management. Serve as a subject matter expert to support business units and cross‑functional teams in identifying and addressing cybersecurity risks. Engage with various business units and teams to discuss risk issues and control gaps, and propose effective remediation strategies. Research and evaluate latest security threats and Cyber Threat Intelligence, staying informed about latest developments in the cyber security field. Familiar with technologies such as Firewall, IDS, IPS, WAF, DNS Security, Email Security, SIEM, SOAR, DLP, UEBA, BAS, XDR, Deception, Generative AI/Machine Learning, Application of AI/ML/LLM/MCP/RAG libraries in Python, Zero Trust, Micro‑segmentation, Unified endpoint management, SASE/SSE Solution, Database security, and Network/Cloud security. Willing to travel to different overseas regions occasionally to conduct regional cyber security assessment, provide cyber security incident and response support, and participate in various training/red team exercises (e.g., Asia Pacific area, Shenzhen and Shanghai). General Job Requirements Degree holder in Computer Science or related discipline such as Information Systems. At least 2 years of experience in IT security, technology risk management, compliance or IT audit function, preferably from sizable financial institutions. Holding at least one recognized professional qualification under HKMA enhanced competency framework such as CISA, CISSP, CISM. Industry‑recognized cyber security certifications such as OSCP/OSCE/OSWE/OSEE/GXPN/GPEN/GCPN/GCIH/GSOC/GCFA/OSDA/CCIE/CCNP are preferable. Familiar with HKMA TM‑E‑1, TM‑C‑1, TM‑G‑1, C‑RAF, PCI‑DSS, ISO 27001, PDPO, NIST, MITRE ATT&CK, OWASP, Protection of Critical Infrastructures (Computer Systems) Bill or other security risk management frameworks or regulatory requirements is an advantage. Independent, strong self‑initiative and passionate about cyber security professionals. Good command of written and spoken English; Mandarin is preferable. Good communication and interpersonal skills. Candidate with less experience or qualification will also be considered as Assistant Technology Risk Manager. #J-18808-Ljbffr



  • Fo Tan Village, Hong Kong SAR China Bank of China (Hong Kong) Limited Full time

    A leading financial institution in Hong Kong is seeking a Senior Technology Risk Manager to handle cyber security policies, conduct risk evaluations, and manage incident responses. The successful candidate will possess strong IT security experience, a degree in Computer Science, and relevant professional qualifications. Excellent communication skills are...


  • Fo Tan Village, Hong Kong SAR China Bank of China (Hong Kong) Limited Full time

    Senior Technology Risk Manager (Affiliated and Overseas Entities) Add expected salary to your profile for insights Responsible for the planning, management and daily operation of technology risk management Responsible for communicating and cooperating with internal working units to solve any issues related to information security/technology risk management...


  • Fo Tan Village, Hong Kong SAR China Bank of China (Hong Kong) Limited Full time

    Technology Risk Manager (Affiliated and Overseas Entities) Conduct regular IT risk and compliance assessment in overseas branches and coordinate overseas branch to perform technology risk self-assessment. Collect key risk indicator information from overseas branches and perform analysis. Responsible for supervising overseas branch on those issues arising...


  • Fo Tan Village, Hong Kong SAR China AS Watson Retail (HK) Limited Full time

    Senior Cyber Security Operations Analyst At ASW, we believe in our people, in teamwork and the importance of your personal growth. If you are looking for the opportunity to join our award‑winning international family with over 17,000 stores across 31 markets in Asia and Europe, the ASW family welcomes you… Benefits Convenient office location, less than 5...


  • Fo Tan Village, Hong Kong SAR China Bank of China (Hong Kong) Limited Full time

    A leading financial institution is seeking a Senior Technology Risk Manager in Hong Kong to oversee technology risk management and compliance in overseas branches. The ideal candidate will have over 6 years of IT security experience and a degree in Computer Science or a related field. Key responsibilities include conducting risk assessments, ensuring...


  • Fo Tan Village, Hong Kong SAR China Bank of China (Hong Kong) Limited Full time

    Business Technology Manager (Affiliated and Overseas Entities IT Risk Control) Liaise among business and IT units to ensure requirements are well defined and properly implemented. Plan and manage the execution of project lifecycle, requirement gathering, analysis, and implementation effectively. Assist in the management of IT projects across the bank,...


  • Fo Tan Village, Hong Kong SAR China Ikas International (Asia) Limited Full time

    Platform and Network Security - Senior Manager Our Large Organization client is looking for a Platform and Network Security - Senior Manager to join their IT Security department. Key Responsibilities Ensure platform and network security controls are integrated into the design and architecture of all IT systems within the company. Monitor and verify that all...

  • Senior Platform

    4 days ago


    Fo Tan Village, Hong Kong SAR China Ikas International (Asia) Limited Full time

    A large organization in IT security is seeking a Senior Manager for Platform and Network Security. This role involves integrating and monitoring security controls across the company's IT systems, identifying security gaps, and managing firewall and security governance. Candidates should possess a Bachelor's degree in Computer Science and over 10 years of...

  • Senior Manager

    4 days ago


    Fo Tan Village, Hong Kong SAR China SmartHire by SEEK Full time

    Add expected salary to your profile for insights Our client is seeking a Senior Manager (Infrastructure & Security) to join their team! Join our client's dynamic team and lead the charge in shaping the future of their IT infrastructure and security. This role offers a unique opportunity to drive innovation and ensure the highest standards of performance,...


  • Fo Tan Village, Hong Kong SAR China AS Watson Retail (HK) Limited Full time

    A leading retail organization in Hong Kong is seeking a Senior Cyber Security Operations Analyst to oversee daily operations of the Security Operations Centre (SOC). Responsibilities include managing incident investigations, supervising analytics, and ensuring communication during escalated security events. The ideal candidate will have a degree in Computer...