Cyber Security Risk Management Lead

5 days ago


Hong Kong, Central and Western District, Hong Kong SAR China Citi Full time
Cyber Security Risk Management Lead

We are seeking a highly skilled Cyber Security Risk Management Lead to join our team at Citi. As a senior level professional, you will be responsible for driving efforts to support governance, risk and compliance for the Chief Information Security Officer (CISO) at Citi.

About the Role

The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's cyber and information security policy and country regulatory related requirements. You will be part of the Cyber Governance, Control and Policy Team.

Key Responsibilities
  • Manage and Validate Deliverables: Ensure closure per agreed timelines and goals for all Information Security (IS) programs.
  • Process Improvement: Work closely with Global & Regional Information Security teams to improve processes and reduce risk, and support IS regulatory related activities for both Hongkong and Macau.
  • Cyber Resilience Assessment Framework (C-RAF): Prior successful C-RAF delivery experience in a senior capacity is essential.
  • Cyber Attack Simulations and Penetration Testing: Manage internal/external resources to organize and oversee vulnerability, mitigation/remediation/correction action plans, and issues management process.
  • Complex Regulatory Assessments: Accountable for delivery of the associated remediation from regulatory assessments.
  • Reporting and Communication: Proficiency in preparing periodic updates/reports/presentation deck for both internal stakeholders and regulators.
  • Stakeholder Management: Provide timely and appropriate updates to regional and global stakeholders; escalate issues in a timely manner to senior management.
Qualifications and Requirements

To be successful in this role, you will need to have:

  • Minimum 5 Years of Relevant Experience: In Cyber Security Management/Cyber Security Operations/Technology Risk Management/Third-party Risk Management or IT Audit, preferably with experience gained from banking/finance services industry/consultancy/control compliance or legal disciplines.
  • Cyber Regulatory Compliance: Experience in assessing cyber regulatory compliance such as HKMA C-RAF (IRA, MA and iCAST), TM-E-1, etc.
  • Risk and Security Management: Relevant professional qualifications with Risk/Security management e.g. CISSP, CRISC, CISM, CISA, or equivalent.
  • Strong Understanding of International Standards/Frameworks: Such as NIST, ISO 27001 series, COBIT, CIS, GDPR, DORA, etc.
  • Excellent Project Management and Organizational Skills: With proficiency in interpreting and applying policies, standards and procedures.
  • Strong Consultation, Reporting Writing and Communication Skills: With highly proficiency in both spoken and written English.
Education

A Bachelor's/University degree or equivalent experience in Computer Science, Cyber Security, Computer/Information Engineering, Information Technology or a related discipline is preferred.

Salary

This is a full-time position offering an estimated salary range of $120,000 - $180,000 per year, depending on experience.


  • Cyber Security Lead

    1 week ago


    Hong Kong, Central and Western District, Hong Kong SAR China FortisHill Consulting Limited Full time

    Job Title: Cyber Security LeadEstimated Salary: $120,000 - $180,000 per annum.About UsFortisHill Consulting Limited is a leading provider of cyber security services. We are seeking a highly skilled Cyber Security Lead to join our team.Job DescriptionAs a Cyber Security Lead at FortisHill Consulting Limited, you will be responsible for developing and...


  • Hong Kong, Central and Western District, Hong Kong SAR China KPMG China Full time

    Company OverviewKPMG China is a leading professional services firm that provides multidisciplinary services from audit and tax to advisory, with a strong focus on serving our clients' needs and their industries. We strive to become a responsible corporate citizen that has a positive impact on our environment and community.About the RoleWe are seeking an...

  • Cyber Security Lead

    3 weeks ago


    Hong Kong, Central and Western District, Hong Kong SAR China KPMG China Full time

    At KPMG China, we are looking for a talented Cyber Security Lead to join our team in Hong Kong. As a leader in the field of cyber security, you will have the opportunity to work with leading financial institutions and multinational corporations, driving business growth and delivering exceptional results.About UsKPMG China is committed to being an equal...


  • Hong Kong, Central and Western District, Hong Kong SAR China Control Risks Full time

    About the RoleThis is a unique opportunity to work in a highly capable and truly global team of cyber experts and to play a critical part in shaping the Cyber Protect offering at Control Risks. As an experienced candidate, you will join our rapidly growing Cyber Protect team in our key Hong Kong market.Key Responsibilities• Delivered client projects...


  • Hong Kong, Central and Western District, Hong Kong SAR China Bank Of China (Hong Kong) Limited Full time

    We are seeking a talented Cyber Security Risk Specialist to join our team at Bank Of China (Hong Kong) Limited. As a key member of our Technology Risk Management team, you will be responsible for providing incident response operation and support, coordinating cross-country cyber incident response drills, and managing SOC, Offensive Security, and DevSecOps...


  • Hong Kong, Central and Western District, Hong Kong SAR China KPMG China Full time

    Cyber Security Manager Job DescriptionKPMG China is seeking a highly skilled Cyber Security Manager to join our team. As a Cyber Security Manager, you will be responsible for leading cyber security engagements, including security strategy, policy, and architecture, information privacy, and governance. You will also communicate technical issues in business...


  • Hong Kong, Central and Western District, Hong Kong SAR China KPMG China Full time

    We are seeking a highly skilled Cyber Security Specialist to join our team in KPMG China.Job DescriptionThe ideal candidate will have a minimum of 2 years of experience working within an IT internal audit, IT risk or IT compliance function as an internal employee or as part of a professional consultancy firm. A Bachelor's degree from an accredited...


  • Hong Kong, Central and Western District, Hong Kong SAR China Control Risks Full time

    Cyber Security StrategistWe are seeking an experienced Cyber Security Strategist to join our Cyber Protect team in Hong Kong. As a key member of our team, you will play a critical part in shaping our Cyber Protect offering and expanding our capability in the region.The successful candidate will have a deep understanding of cyber security challenges facing...


  • Hong Kong, Central and Western District, Hong Kong SAR China KPMG China Full time

    Cyber Security Role OverviewKPMG China is seeking a skilled Cyber Security professional to join our Technology Consulting practice. As a Cyber Security Consultant, you will play a key role in managing topical cyber security issues for our clients by helping them identify cyber security risks within their organization and defining strategies to address these...


  • Hong Kong, Central and Western District, Hong Kong SAR China BTI Executive Search Pte Ltd Full time

    Job Summary: We are seeking a visionary leader to lead our cyber security strategy initiatives. As Global Head of Cyber Security Engineering, you will be responsible for defining strategies, controls, minimum standards, metrics, and thresholds for the Group, aligned to regulatory expectations, best practices, and an evolving cyber-threat landscape.About the...


  • Hong Kong, Central and Western District, Hong Kong SAR China Bank of China Full time

    We are seeking a highly skilled Technology Risk and Cyber Security Expert to join our team at Bank of China. This is an exciting opportunity for a motivated individual to play a key role in ensuring the security and integrity of our technology systems.Job SummaryThe successful candidate will be responsible for reviewing IT initiatives from a technology risk...


  • Hong Kong, Central and Western District, Hong Kong SAR China HSBC Full time

    Senior Cyber Security ManagerHang Seng Bank is committed to service excellence and seeks a high-calibre professional to join our department as Senior Cyber Security Manager.Key ResponsibilitiesPlan, design, and implement Cybersecurity services and best practices.Collaborate with global, regional, and country representatives of Technology to implement team...


  • Hong Kong, Central and Western District, Hong Kong SAR China Citi Full time

    Citi is seeking an experienced Cyber Security Management Professional to drive efforts supporting governance, risk, and compliance for the Chief Information Security Officer (CISO). This senior-level role ensures the execution of information security directives and activities in alignment with Citi's cyber and information security policy and country...


  • Hong Kong, Central and Western District, Hong Kong SAR China Classy Wheeler Limited Full time

    Job Title:Cyber Security ManagerAbout Classy Wheeler Limited:We are a leading retailer and wholesaler of top-selling sports, lifestyle, and outdoors brands. Our company is built on the values of quality, innovation, and customer satisfaction.Salary:$120,000 - $180,000 per year, depending on experience.Job Description:We are seeking an experienced Cyber...


  • Hong Kong, Central and Western District, Hong Kong SAR China KPMG China Full time

    Job SummaryAt KPMG China, we are seeking a highly skilled Cyber Security Consultant to join our Technology Consulting practice. As a key member of our team, you will play a critical role in helping our clients manage cyber security risks and develop effective strategies to protect their organizations. Key ResponsibilitiesDeliver cyber security engagements,...


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Group Full time

    About the JobWizlynx Group, a trusted global Cyber Security provider since 1992, is seeking a highly skilled Cyber Security Engagement Manager to join our team. Our vision is to be a best-in-class global Cyber Security company, enabling customers to focus on their core business by providing high-quality, value-added, and innovative Cyber Security...


  • Hong Kong, Central and Western District, Hong Kong SAR China Bank Of China (Hong Kong) Limited Full time

    We are seeking a highly skilled Cyber Security Specialist - Threat Management to join our team at Bank Of China (Hong Kong) Limited.Company OverviewBank Of China (Hong Kong) Limited is a leading financial institution in Hong Kong, providing a wide range of banking services to individuals and corporations.Job DescriptionThe Cyber Security Specialist - Threat...


  • Hong Kong, Central and Western District, Hong Kong SAR China Citi Full time

    Job SummaryThe Information Security Senior Analyst is a senior-level professional responsible for driving efforts to support governance, risk, and compliance for CISO at Citi. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's cyber and information security policy and...


  • Hong Kong, Central and Western District, Hong Kong SAR China 11062 Citibank, N.A. Hong Kong Full time

    Cyber Risk Management Job DescriptionWe are seeking a highly skilled Cyber Risk Management professional to join our team at Citibank, N.A. Hong Kong. As a key member of our Risk Management team, you will be responsible for identifying, assessing, and mitigating cyber risks to our business.Key Responsibilities:Develop and implement effective cyber risk...


  • Hong Kong, Central and Western District, Hong Kong SAR China HSBC Full time

    A Career with HSBC HSBC is committed to service excellence. Our people are our most important asset and play a vital role in our efforts to continually enhance our performance for customers and provide best-in-class products and services. We seek to attract high-calibre talent by offering a dynamic working environment, good career development...