Senior / Technology Risk Manager (Cyber Security Control Division)

2 days ago


Hong Kong, Central and Western District, Hong Kong SAR China Bank of China Full time
Senior / Technology Risk Manager (Cyber Security Control Division)

Job No.: 494307
Employment Type: Full time
Departments: Information Technology Department
Job Functions: Information Technology, Risk Management

Roles and Responsibilities & Specific Requirements (Application Security):

  • Assist in reviewing IT initiatives and provide advisory from technology risk perspectives
  • Assist to establish and review policies, guidelines, procedures in application security area
  • Provide advisory and practical guidance to support technology risk and information security assessments, including vulnerability scanning, penetration testing, etc.
  • Conduct regular assessments on application security
  • Familiar with security testing tools e.g. Fortify, AppScan and Nessus, technologies on DevSecOps and industry good practice OWASP is preferable

Roles and Responsibilities & Specific Requirements (Cyber Security):

  • Provide Cyber Security incident response operation and support.
  • Experience in OSINT, malware analysis and digital forensics.
  • Research and evaluate the latest security threats and Cyber Threat Intelligence.
  • Participate in Red & Purple Teaming exercises.
  • Familiar with technologies on Firewall, IDS, IPS, SIEM, SOAR and Network/Cloud Infrastructure is preferable.

Roles and Responsibilities & Specific Requirements (Platform Security):

  • Research and evaluate the latest trends & technologies on information security and fintech area, such as FinTech, Artificial Intelligence, Big Data, Cloud Computing, etc.
  • Conduct regular assessments on data center security.

General Job Requirements:

  • Degree holder in Computer Science or other degree majoring in Information Systems, or related discipline.
  • Over 2 years of experience in IT security, technology risk, risk management, compliance or IT audit function, gained from other sizable financial institutions.
  • Holding at least one recognized professional qualification under HKMA enhanced competency framework such as CISA, CISSP, CRISC is preferable.
  • Familiar with HKMA TM-E-1, PCI-DSS, ISO 2700-series or other security risk management frameworks is an advantage.
  • Good command of written and spoken English with Mandarin is preferable.
  • Good communication and interpersonal skills.
#J-18808-Ljbffr

  • Hong Kong, Central and Western District, Hong Kong SAR China PrimePeak Group Full time

    PrimePeak Group: A Leading ConglomerateWe are seeking an experienced Senior Manager / Director to lead our Tech Risk / Cyber Security function. This critical role ensures alignment with regulatory standards and best practices in IT infrastructure, cybersecurity frameworks, and digital transformation initiatives.Key Responsibilities:Develop and execute a...


  • Hong Kong, Central and Western District, Hong Kong SAR China KOS International Full time

    About the Client Our client is a renowned conglomerate with business in Greater China and in order to cope with their business expansion, they are now seeking for a Senior Manager Cyber Security Manager About the Role Reporting to the department head and overseeing a small team, you will be tasked with performing thorough and independent evaluations of the...


  • Hong Kong, Central and Western District, Hong Kong SAR China PrimePeak Group Full time

    MNC - Tech Risk / Cyber Security - Senior Manager / Director - HKD 1M - 2M Our client is a Hong Kong conglomerate, the company is seeking an experienced Senior Manager / Director for Tech Risk / Cyber Security. This role is critical in ensuring the company's IT infrastructure, cybersecurity frameworks, and digital transformation initiatives are aligned with...


  • Hong Kong, Central and Western District, Hong Kong SAR China Bank of China Full time

    About the RoleThe Bank of China is seeking a highly skilled Cyber Security Risk Manager Senior to join its Technology Risk Management team. As a key member of the team, you will be responsible for assisting in reviewing IT initiatives from a technology risk perspective and providing advisory services.Key ResponsibilitiesReview IT initiatives and provide...


  • Hong Kong, Central and Western District, Hong Kong SAR China Bowen Partners Full time

    Technology Risk Management ExpertAbout the Opportunity:This exciting opportunity has arisen for a high-calibre IT Audit professional to join our Group Internal Audit team at Senior Manager level, based in Hong Kong.The ideal candidate will have experience in Technology Audit, Technology Risk Management, Info Security, Cyber Security, Technology Control,...


  • Hong Kong, Central and Western District, Hong Kong SAR China Ensign InfoSecurity Full time

    Cyber Security Consultant (Governance & Risk)Ensign InfoSecurity is the largest pure-play end-to-end cybersecurity service provider in Asia. Headquartered in Singapore, Ensign offers bespoke solutions and services to address their clients' cybersecurity needs. Our core competencies are in the provision of cybersecurity advisory and assurance services,...


  • Hong Kong, Central and Western District, Hong Kong SAR China Gravitas Recruitment Group (Global) Ltd Full time

    Get AI-powered advice on this job and more exclusive features. Direct message the job poster from Gravitas Recruitment Group (Global) Ltd Head of Contract Technology & Transformation at Gravitas Recruitment Group Asia Job Description: We are seeking a highly skilled and experienced Cyber Security Manager to join our team in a Global Leading Financial Firm....


  • Hong Kong, Central and Western District, Hong Kong SAR China Gravitas Recruitment Group Full time

    Key Responsibilities: Manage and oversee cybersecurity incidents, ensuring effective detection, response, and resolution. Implement and maintain cybersecurity policies and procedures to safeguard company assets. Collaborate with internal teams to enhance IT security controls and prevent cyber threats. Continuously monitor security systems and processes to...


  • Hong Kong, Central and Western District, Hong Kong SAR China Bank Of China (Hong Kong) Limited Full time

    Roles and Responsibilities & Specific Requirements (Cyber Security): Provide Cyber Security incident response operation and support. Experience in arrangement and co-ordination of cross-countries cyber incident response drills. Experience in Security operations, managing SOC, Offensive security, Container security, Threat Hunting, OSINT, Darkweb...


  • Hong Kong, Central and Western District, Hong Kong SAR China AtkinsRéalis Full time

    Created by the integration of long-standing organizations dating back to 1911, AtkinsRéalis is a world-class engineering services and nuclear company dedicated to engineering a better future for our planet and its people. We create sustainable solutions that connect people, data and technology to transform the world's infrastructure and energy systems. We...


  • Hong Kong, Central and Western District, Hong Kong SAR China Bank Of China (Hong Kong) Limited Full time

    About Bank Of China (Hong Kong) LimitedWe are a leading financial institution committed to providing innovative solutions for our customers.Job Description:Cyber Security Specialist - Threat ManagementWe are seeking a highly skilled Cyber Security Specialist - Threat Management to join our team. As a key member of our cyber security team, you will be...


  • Hong Kong, Central and Western District, Hong Kong SAR China Centurion Information Security Full time

    Job OverviewCenturion Information Security is seeking a skilled Cyber Security Consultant to join our team. As a Penetration Tester, you will play a critical role in identifying and assessing vulnerabilities in our Clients' networks, systems, and applications.Key ResponsibilitiesConduct independent penetration testing and vulnerability assessments to...


  • Hong Kong, Central and Western District, Hong Kong SAR China Bank Of China (Hong Kong) Limited Full time

    Roles and Responsibilities & Specific Requirements (Application Security):Assist in reviewing IT initiatives and provide advisory from technology risk perspectivesAssist to establish and review policies, guidelines, procedures in application security areaProvide advisory and practical guidance to support technology risk and information security assessments,...


  • Hong Kong, Central and Western District, Hong Kong SAR China Rabobank Gruppe Full time

    Job OverviewThis role is responsible for providing oversight and advisory services in risk-related matters. The candidate will be the point of contact for Information Security and Business Continuity domains within the region.Key ResponsibilitiesInformation Security and Cybersecurity Management:Implement global/regional information security policies,...


  • Hong Kong, Central and Western District, Hong Kong SAR China TRON DAO Full time

    Cyber Security Engineer Job DescriptionTRON DAO seeks a highly skilled Cyber Security Engineer to join our team. As a key member of our security operations team, you will be responsible for the daily operation and maintenance of security devices, including firewalls, intrusion detection/prevention systems (IDS/IPS), WAF, SIEM, etc.Responsibilities:Conduct...


  • Hong Kong, Central and Western District, Hong Kong SAR China Gravitas Recruitment Group (Global) Ltd Full time

    About the Role:We are seeking a highly skilled and experienced Cyber Security Manager to join our team in a Global Leading Financial Firm. The ideal candidate will have a strong practical and hands-on approach to cybersecurity, actively engaging in incident management and response.Key Responsibilities:Manage and oversee cybersecurity incidents, ensuring...


  • Hong Kong, Central and Western District, Hong Kong SAR China Dah Sing Financial Group Full time

    About Dah Sing GroupThe Dah Sing Group is a leading financial services group in Hong Kong offering banking, insurance, financial and other related services through its growing network of over 70 branches in Hong Kong, Macau and Mainland China.Our currency is caring, teamwork and progressiveness. We accept that everyone is unique and different in talent, but...


  • Hong Kong, Central and Western District, Hong Kong SAR China ConnectedGroup Full time

    Cyber Security, Assistant Manager RoleWe are seeking a seasoned professional to lead our cyber security operations and incident response efforts. The ideal candidate will have extensive knowledge in developing and managing cyber security policies and business continuity plans.Key Responsibilities:Lead vulnerability assessments and security audits to...


  • Hong Kong, Central and Western District, Hong Kong SAR China ConnectedGroup Full time

    Job SummaryWe are seeking a skilled professional to assist in developing and managing cyber security policies and business continuity plans.The ideal candidate will have extensive knowledge in cyber security operations and incident response, as well as hands-on experience with vulnerability scanning and penetration testing.The selected individual will be...


  • Hong Kong, Central and Western District, Hong Kong SAR China BIXIN Full time

    Company Overview: NewBX is a deemed-to-be-licensed VASP regulated by the Securities and Futures Commission (SFC) of Hong Kong.Job Description:Multiple opportunities with each distinct in cybersecurity domains: security operations, application security, cyber risk & compliance, threat hunting & intelligence, access control, blockchain security,...