Information Security Risk Manager

15 hours ago


Hong Kong, Central and Western District, Hong Kong SAR China Bank of China Full time

Job Title: Information Security Risk Manager - Application Security Expert

 

About the Role:

The Bank of China is seeking an experienced Information Security Risk Manager to join our team. As a key member of our Cyber Security Control Division, you will be responsible for identifying and mitigating technology risks associated with our applications.

 

Responsibilities:
  • Conduct regular assessments on application security, identifying vulnerabilities and recommending mitigation strategies.
  • Provide advisory and practical guidance to support technology risk and information security assessments, including vulnerability scanning, penetration testing, etc.
  • Assist in reviewing IT initiatives from a technology risk perspective, ensuring alignment with industry best practices and regulatory requirements.
  • Collaborate with cross-functional teams to develop and implement policies, guidelines, and procedures for application security.
  • Stay up-to-date with emerging technologies and trends in information security, including DevSecOps, OWASP, and Cloud Computing.

 

Requirements:
  • Degree holder in Computer Science or related field.
  • Over 2 years of experience in IT security, technology risk management, compliance, or IT audit function in a sizable financial institution.
  • Holding a recognized professional qualification under HKMA enhanced competency framework, such as CISA, CISSP, CRISC, is desirable.
  • Familiarity with security risk management frameworks, including HKMA TM-E-1, PCI-DSS, and ISO 2700-series, is an advantage.
  • Good command of written and spoken English; Mandarin is preferable.
  • Excellent communication and interpersonal skills.

 

What We Offer:
  • A competitive salary of HKD 600,000 - HKD 900,000 per annum.
  • A comprehensive benefits package, including medical insurance, annual leave, and training opportunities.
  • A dynamic and supportive work environment.


  • Hong Kong, Central and Western District, Hong Kong SAR China Bank Of China (Hong Kong) Limited Full time

    Job Description:A challenging opportunity has arisen for a seasoned Information Security Risk Management Specialist to join Bank Of China (Hong Kong) Limited. Reporting to the supervisor, this role requires identifying existing and potential IT operation risks, formulating rectification plans, and implementing detection and control measures to strengthen...


  • Hong Kong, Central and Western District, Hong Kong SAR China Shangri-La Full time

    We are seeking a highly skilled Information Security Manager to lead our enterprise-wide information security function.The ideal candidate will have a Bachelor's degree in a relevant discipline and at least 6 years of experience in managing information security for a sizable company.Key responsibilities include:Developing and implementing enterprise-level...


  • Hong Kong, Central and Western District, Hong Kong SAR China Global Executive Consultants Ltd. Full time

    Job Opportunity: Senior Information Security ManagerWe are seeking a highly skilled and experienced Senior Information Security Manager to join our team at Global Executive Consultants Ltd.About the Role:This is a senior-level position responsible for leading internal audit exercises with a focus on information security, conducting risk and control...


  • Hong Kong, Central and Western District, Hong Kong SAR China Global Executive Consultants Ltd. Full time

    Job Title: Senior Information Security ManagerOverview: We are seeking a highly skilled and experienced Internal Audit Manager to spearhead the development of our information security team at Global Executive Consultants Ltd.Key Responsibilities:Assist in planning and implementing internal audit exercises with a focus on information security, ensuring robust...


  • Hong Kong, Central and Western District, Hong Kong SAR China Classy Wheeler Limited Full time

    Job DescriptionWe are seeking a highly skilled and experienced Chief Information Security Officer to join our team at Classy Wheeler Limited. As the primary point of contact for all IT security-related matters, you will be responsible for leading and conducting audit assignments, assessing control effectiveness, and providing recommendations for...


  • Hong Kong, Central and Western District, Hong Kong SAR China Bank of China Full time

    About the Role:As a Chief Information Security Officer - IT Risk Management at Bank of China, you will be responsible for identifying and mitigating risks associated with IT operations. This includes implementing effective detection and control measures to ensure production operation safety and effectiveness.Main Responsibilities:Conduct risk assessments and...


  • Hong Kong, Central and Western District, Hong Kong SAR China Shangri-La Full time

    At Shangri-La, we are seeking a seasoned professional to lead our Information Security function. As Assistant Vice President, Information Security, you will be responsible for developing and implementing robust information security policies and procedures that align with our company's objectives.Key Responsibilities:Develop and implement enterprise-level...


  • Hong Kong, Central and Western District, Hong Kong SAR China CHUBB Full time

    Job Summary:The Regional Information Security Specialist will be responsible for overseeing the information security program across assigned countries and business units. This role will involve driving security management outcomes, building a strong security-aware culture, and demonstrating support aligned to Chubb's Global Information Security...


  • Hong Kong, Central and Western District, Hong Kong SAR China Aptitude Asia Full time

    About Aptitude AsiaAptitude Asia is a leading company in the industry, known for its expertise and innovation.Job SummaryWe are seeking an experienced Information Security Lead for Asset Management to join our team. As a key member of our organization, you will be responsible for overseeing information security compliance and ensuring the implementation of...


  • Hong Kong, Central and Western District, Hong Kong SAR China Global Executive Consultants Ltd. Full time

    About the RoleGlobal Executive Consultants Ltd. is seeking a seasoned Technology Risk Manager to join our team. As a Chief Information Security Architect, you will play a critical role in ensuring the security and compliance of our client's IT systems.Key ResponsibilitiesDevelop and implement robust IT security risk assessments and mitigation strategies to...


  • Hong Kong, Central and Western District, Hong Kong SAR China Citi Full time

    Job SummaryThe Information Security Senior Analyst is a senior-level professional responsible for driving efforts to support governance, risk, and compliance for Citi. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's cyber and information security policy and country...


  • Hong Kong, Central and Western District, Hong Kong SAR China Aptitude Asia Full time

    As a key member of our team at Aptitude Asia, you will be responsible for ensuring the security and integrity of our asset management operations.Conduct thorough risk assessments and maturity analysis to identify potential security threats and vulnerabilities.Develop and implement effective security controls and measures to mitigate these risks and ensure...


  • Hong Kong, Central and Western District, Hong Kong SAR China Classy Wheeler Limited Full time

    Job SummaryClassy Wheeler Limited, a fast-growing software house and IT solutions provider in Hong Kong, is seeking an experienced Chief Information Security Officer (CISO) to join its team. As a key member of our organization, the successful candidate will be responsible for developing and implementing robust IT security policies, procedures, and standards...


  • Hong Kong, Central and Western District, Hong Kong SAR China CHUBB Full time

    Job DescriptionAt Chubb Life, we are seeking a highly skilled Regional Information Security Specialist to join our team. This is a challenging role that requires a strong understanding of information security principles and practices.Key Responsibilities:Cyber Governance: Monitor the effectiveness of our Global Information Security program across assigned...


  • Hong Kong, Central and Western District, Hong Kong SAR China Classy Wheeler Limited Full time

    Classy Wheeler Limited is seeking a Chief Information Security Architect to join our team.About the RoleWe are looking for an experienced and skilled professional to lead our information security efforts. As a Chief Information Security Architect, you will be responsible for ensuring the confidentiality, integrity, and availability of our IT systems and...


  • Hong Kong, Central and Western District, Hong Kong SAR China Classy Wheeler Limited Full time

    Job Summary:We are seeking a skilled Strategic Security Risk Manager to join our team at Classy Wheeler Limited. In this role, you will be responsible for identifying and evaluating security risks internally and externally to provide timely intelligence and analysis of security incidents and related activity.About the Role:You will conduct daily verbal...


  • Hong Kong, Central and Western District, Hong Kong SAR China Meliora Full time

    OverviewMeliora is a Top Insurance Company in Hong Kong seeking an experienced IT Security Manager to join its dynamic team.Job DescriptionWe are looking for a skilled Chief Information Security Strategist to conduct regular threat and vulnerability assessments, analyze and prioritize vulnerabilities based on risk and impact, provide actionable remediation...


  • Hong Kong, Central and Western District, Hong Kong SAR China Cathay Pacific Airways Limited Full time

    Job DescriptionCathay Pacific Airways Limited seeks a skilled Airline Security Risk Manager to join our team.About the RoleThis is a challenging and exciting opportunity for an experienced security professional to lead our airline's security risk management efforts.Responsibilities:Develop and implement data-driven security risk management strategies to...


  • Hong Kong, Central and Western District, Hong Kong SAR China Aptitude Asia Full time

    Job SummaryAt Aptitude Asia, we are seeking a highly skilled Chief Information Security Officer, Asset Management Expert to lead our organization's information security efforts. The ideal candidate will have a strong background in risk management, compliance, and security governance.Key ResponsibilitiesPerform risk assessments, maturity analysis, and...


  • Hong Kong, Central and Western District, Hong Kong SAR China Classy Wheeler Limited Full time

    Classy Wheeler Limited is a renowned regional IT solutions provider seeking an exceptional candidate to join their Government project team as Chief Information Security Officer.Job Overview: This is a highly rewarding opportunity for experienced security professionals who want to leverage their skills and knowledge in the field of information security.Key...