89 Information Security jobs in Hong Kong

Head of Information Security - APAC

BSI

Posted 2 days ago

Job Viewed

Tap Again To Close

Job Description

workfromhome

Join to apply for the Head of Information Security - APAC role at BSI

Join to apply for the Head of Information Security - APAC role at BSI

Get AI-powered advice on this job and more exclusive features.

Great that you're thinking about a career with BSI!

Head of Information Security – APAC

Hong Kong OR Kuala Lumpur – Hybrid

About The Role

As the Head of Information Security for our APAC region, you be the business facing part of the information security team within the region. You will work to partner and engage with the business to provide consultancy, support, guidance and advice on all Information Security matters. You will also help support projects and programmes relating to the region and any changes required.

Responsibilities

  • Support the implementation of global policies, strategies, processes, standards, procedures, roles and controls within the region.
  • Act as regional contact for all IT Security related incidents, providing support the IT Security Operations team, IT Infrastructure teams and local business to resolve the incident quickly.
  • Investigate and report on hazards, potential risk events within a specific function or business area and carry out risk assessments as directed.
  • Take responsibility for understanding client requirements, collecting data, delivering analysis and problem resolution in relation to information security.
  • Review compliance to information security policies and standards, taking legal and regulatory requirements into consideration.
  • Ensuring security controls are reviewed, implemented and maintained where appropriate.
  • Provide authoritative advice and guidance on security strategies to manage identified risk and ensure adoption.
  • Continue to develop and maintain knowledge within technical specialism, and keep up to date with technical specialism across BSI, industries and appropriate professional and trade bodies.


To Be Successful In The Role, You Will Have

  • Previous experience working in a multi-national, matrix style organisation.
  • Demonstrable experience working with teams across multiple time-zones.
  • High levels of risk management experience (quantify, assess, document and manage).
  • Experience of working with/for businesses in China.
  • Great understanding of PIPL.
  • Fluent language skills in Cantonese and/or Mandarin.
  • English language skills both written and verbal to business conversation level.


It is not essential, but if you have the following it would be beneficial:

  • Previous hands on technical background.
  • An understanding of both highly regulated and lesser regulated industries.
  • Previous experience of training within the Information Security sector.
  • Experience and or interest in AI.
  • Network security skills.
  • Security architecture experience.


Grow your career and expand your skills and knowledge. At BSI, we offer opportunities to work across industries and across the globe. You’ll benefit from the different perspectives and experiences of your international colleagues, as well as ongoing training and development. We offer flexible working, as well as competitive local benefits.

We’re building an organisation that meets the challenges of tomorrow. Want to grow with us?

We exist to have a positive impact. Our people influence international thinking and action on important issues. Our 86,000 customers are based in 193 countries across the globe.

Now we’re taking on society’s biggest challenges. We’re developing standards and guidelines that will help our customers get to net zero, and we’re defining the way new technologies such as AI impact all our lives.

We’re focused on our future – and we’re looking for people who want to grow with us as we take on the challenges of tomorrow. At BSI, you’ll find a workplace where everyone can flourish and thrive, where innovation is encouraged and where learning is part of your everyday. You’ll contribute to work that shapes industries and enhances lives – and you’ll take pride in what you do.

We’re looking for passionate people who want to make a difference in a purpose-led organisation. If that sounds like you, apply now. Together, we can help create a better society and a more sustainable world.

D&I Policy

The world needs fresh thinking and new perspectives to tackle its biggest challenges. It’s why, at BSI, we’re committed to creating a collaborative environment where everyone can contribute. Whatever your background, experience or outlook, here you can be your best self and do your best work.

If you have a disability or a health condition, please let us know if you need any reasonable adjustments to the recruitment process.

Our Excellence Behaviours: Client-centric, Agile, Collaborative. These three behaviours represent how we do things at BSI. They help us ensure that BSI is a great place to work and a highly successful business.

BSI is conducting face-to-face interviews where appropriate and possible. If you are invited to a face-to-face interview but feel more comfortable with conducting the interview virtually, please speak to a member of our recruitment team.

Seniority level
  • Seniority level Executive
Employment type
  • Employment type Full-time
Job function
  • Job function Information Technology
  • Industries Professional Services

Referrals increase your chances of interviewing at BSI by 2x

Get notified about new Head of Information Security jobs in Hong Kong SAR .

Head of Information Security Engineering Head of Information & Cyber Security Risk Associate Director, Cloud and Infrastructure Compliance Principal IT Lead (Information Security) (Ref: IT-ISNS-PITL-IS-LI)) Manager/Associate Director, Cyber Security (Simulated Attack), Technology Consulting Manager/Associate Director, Cyber Security (Strategy, Governance & Risk), Technology Consulting Assistant Manager, Corporate Technology Services Application Security Solution Architect - AVP - Information Security - IT

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Senior Information Security Specialist

OSL

Posted 5 days ago

Job Viewed

Tap Again To Close

Job Description

5 days ago Be among the first 25 applicants

Join our fast-paced team as a Senior Information Security Specialist, contributing to global security operations across various entities at the group level. In this role, you'll utilize advanced tools for threat detection, incident response, and proactive security measures, ensuring robust protection against emerging cyber threats.

Responsibilities

  • Utilize cybersecurity tools like SIEM, EDR, and SOAR for effective threat management.
  • Stay updated on emerging cyber threats, vulnerabilities, and mitigation techniques.
  • Lead incident response, management, and investigations.
  • Conduct purple team exercises and threat hunting to identify risks.
  • Analyze threat actors and their tactics through detailed research.
  • Perform malware analysis to prevent future attacks.
  • Oversee actionable Threat Intelligence (TI) collection and execution.
  • Propose and implement security initiatives to combat emerging threats.
  • Develop and update playbooks and documentation for security processes.
  • Provide expertise in creating and maintaining security frameworks and policies.
  • Evaluate new software or products for security projects.
  • Promote security awareness and conduct role-based training.
  • Communicate cybersecurity risks effectively to stakeholders.

Requirements

  • Must have 5-8 years of experience in Information Security with hands-on expertise in Security Engineering, Operations, Cyber Threat Intelligence, Digital Forensics, Incident Response, Endpoint, or Cloud Security.
  • Must be skilled with security event tools and incident response within a blue team context.
  • Nice to have: Experience in Red Teaming and Penetration Testing (PenTest), as well as in-house security operations.
  • Proficient with SIEM, EDR, SOAR, Vulnerability Management, and Open-Source Tools.
  • Familiar with cloud environments such as AWS, Azure, and GCP.
  • Knowledge of malware reverse-engineering techniques.
  • Proficient in one coding language (Python, Java, etc.).
  • Strong understanding of the MITRE ATT&CK framework.
  • Professional English proficiency; Chinese is a plus.

About OSL

As a subsidiary of the publicly listed OSL Group (HKEX: 863.HK), OSL Digital Securities is Hong Kong’s first and most established SFC-licensed and insured digital asset platform. Operating since 2018, the platform provides institutional-grade digital asset services to corporations, financial institutions, professional and retail investors.

OSL Core Values

Be customer-centered

Be a high-performing team

Be relentlessly innovative

Be an owner

Be geared toward action

Be compliant

Seniority level
  • Seniority level Mid-Senior level
Employment type
  • Employment type Full-time
Job function
  • Job function Finance, Accounting/Auditing, and Information Technology
  • Industries Securities and Commodity Exchanges and Financial Services

Referrals increase your chances of interviewing at OSL by 2x

Sign in to set job alerts for “Information Security Specialist” roles. Information Technology Cybersecurity Analyst / Specialist CYBER SECURITY AND RISK ANALYST / CYBER SECURITY ENGINEER Information Technology Security Specialist Technology Consulting - Cyber Security - Security Governance - Senior Associate - Hong Kong Cybersecurity Detection and Response Analyst Principal IT Lead (Information Security) (Ref: IT-ISNS-PITL-IS-LI)) Sr. Analyst, IAM & Cloud Security Engineering, IT

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Insurance - Information Security Manager

Michael Page

Posted 8 days ago

Job Viewed

Tap Again To Close

Job Description

Insurance - Information Security Manager

Join to apply for the Insurance - Information Security Manager role at Michael Page

Insurance - Information Security Manager

1 day ago Be among the first 25 applicants

Join to apply for the Insurance - Information Security Manager role at Michael Page

About Our Client

The hiring company is a large organization within the insurance industry, known for its strong market presence and commitment to innovation. The company offers a collaborative environment and focuses on delivering high-quality services to its clients in Hong Kong.

  • Strategic Impact
  • Professional Growth


About Our Client

The hiring company is a large organization within the insurance industry, known for its strong market presence and commitment to innovation. The company offers a collaborative environment and focuses on delivering high-quality services to its clients in Hong Kong.

Job Description

  • Deliver expert guidance on security matters related to solution design, business initiatives, and general security inquiries.
  • Create and update documentation for security policies and procedures, ensuring consistency with corporate security frameworks and standards.
  • Perform risk evaluations on technology implementations and security controls to uncover vulnerabilities and propose mitigation strategies. Maintain a risk log and communicate potential impacts to relevant stakeholders.
  • Lead and manage end-to-end security assessments and ISO compliance audits.
  • Assist with external audit and regulatory compliance activities, and formulate action plans to address any identified gaps.
  • Supervise the handling of security incidents, supporting frontline teams to ensure prompt identification, response, and resolution.
  • Regularly assess and refine security policies and operational workflows to strengthen control measures.
  • Compile and present security reports to the Chief Security Officer and senior leadership.


The Successful Applicant

  • Minimum of 5 years' experience in cybersecurity, risk management, or a related discipline.
  • Bachelor's degree in Cybersecurity, Computer Science, Information Systems, or a similar field.
  • Proven success in driving and executing effective security programs and initiatives.
  • Strong analytical skills with the ability to navigate complex business environments and work independently.
  • Exceptional communication and presentation abilities, capable of translating technical security concepts into business-friendly language.
  • Experience in a global or multinational corporate setting is preferred.
  • Proficiency in English, both spoken and written.
  • Possession of relevant certifications such as CISSP, CISA, OSCP, CEH, ISO 27001, NIST, or equivalent is advantageous.


What's on Offer

  • Competitive annual salary in the range of HKD 660,000 to HKD 816,000.
  • Opportunity to work in a large organization within the insurance industry with a focus on innovation.
  • Collaborative company culture that values professional growth and development.


If you are ready to take on a leadership role in information security assurance, apply now to join a respected organization in the insurance industry.

Contact: Nicholas Ng

Quote job ref: JN-082025-6803700

Seniority level
  • Seniority level Mid-Senior level
Employment type
  • Employment type Full-time
Job function
  • Job function Information Technology and Engineering
  • Industries Insurance, Financial Services, and Capital Markets

Referrals increase your chances of interviewing at Michael Page by 2x

Get notified about new Information Security Manager jobs in Hong Kong, Hong Kong SAR .

Technology Risk Manager (IT Security) – Information Technology Department Manager / Lead / Senior Engineer - IT Security Administration Senior Manager & Team Head – Information Security and Technology Risk Management

Sha Tin District, Hong Kong SAR 1 week ago

IT Security and Operation Specialist (Asst Manager Level) Associate Director, Cloud and Infrastructure Compliance Head of Technology Risk Management, Risk Management Group Senior Manager - Infrastructure - Information Technology Services - Hong Kong(314489) Senior Technology Risk Manager (Overseas Branch) Senior Manager / Manager, IT Audit - SAP Consultant/ Senior Consultant/ Manager - Data Privacy and Protection (Technical) - Cyber - Hong Kong(314380) Technology Risk Management – Manager (Overseas Branch) Senior Audit Manager, Technology & Architecture

Kwun Tong District, Hong Kong SAR 2 months ago

Deputy Executive Manager, Business Information Security Office

Sha Tin District, Hong Kong SAR 2 weeks ago

IT Security / Cybersecurity Manager - FS Manager – Application Security & Governance, Information Technology

Kwai Tsing District, Hong Kong SAR 1 week ago

Technology Risk Manager (Information Security Control Division) Information and Technology Manager (Security Management) (Ref: ISD-AL)

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Lead, Information Security Assurance

AXA Hong Kong and Macau

Posted 9 days ago

Job Viewed

Tap Again To Close

Job Description

Join to apply for the Lead, Information Security Assurance role at AXA Hong Kong and Macau

2 days ago Be among the first 25 applicants

Join to apply for the Lead, Information Security Assurance role at AXA Hong Kong and Macau

  • Provide professional security advisory and recommendations on solutions architecture, business project requirements, and security related enquiry.
  • Develop and maintain security policies and process documentation. Ensure alignment with Corporate Security standards and controls.
  • Conduct security risk assessment on technology solutions and/or technical controls to identify potential security threats and vulnerabilities and develop strategies to mitigate risks. Maintain security risk register, and communicate identified risks and impacts to stakeholders.
  • Conduct security assessment and ISO audit and managing the exercise from end-to-end.
  • Support external security audits and compliance assessments, devising mitigation measures to effectively address findings.
  • Oversee security incident management and support the first line to ensure timely detection, response, and resolution of security incidents.
  • Periodically review and update security policies and operational processes for security control enhancement.
  • Prepare management reports for the Chief Security Officer and the Management team.

Responsibilities

  • Provide professional security advisory and recommendations on solutions architecture, business project requirements, and security related enquiry.
  • Develop and maintain security policies and process documentation. Ensure alignment with Corporate Security standards and controls.
  • Conduct security risk assessment on technology solutions and/or technical controls to identify potential security threats and vulnerabilities and develop strategies to mitigate risks. Maintain security risk register, and communicate identified risks and impacts to stakeholders.
  • Conduct security assessment and ISO audit and managing the exercise from end-to-end.
  • Support external security audits and compliance assessments, devising mitigation measures to effectively address findings.
  • Oversee security incident management and support the first line to ensure timely detection, response, and resolution of security incidents.
  • Periodically review and update security policies and operational processes for security control enhancement.
  • Prepare management reports for the Chief Security Officer and the Management team.

Qualifications

  • 5+ years of experience in information security, security risk, or a related area.
  • Degree in Information Security, Computer Science, Information Management Systems, or a related field.
  • Demonstrated track record in leading and implementing successful information security initiatives and programs.
  • Ability to apply analytical rigor to understand complex business scenarios, with strong problem-solving skills and the ability to work independently.
  • Excellent presentation and communication skills, with the ability to convey complex security concepts in clear, business-intelligible language.
  • Experience working in a multinational organization is advantageous.
  • Fluent in English (verbal and written).
  • Relevant certifications (e.g., CISSP, CISA, OSCP, CEH, ISO 27001, NIST, or equivalent) are a plus.

This position offers an exciting opportunity to Security function and contribute to the overall security posture of the organization. We encourage qualified candidates who are passionate about security to apply.

About AXA Hong Kong And Macau

AXA Hong Kong and Macau is a member of the AXA Group, a leading global insurer with presence in 50 markets and serving 95 million customers worldwide. Our purpose is to act for human progress by protecting what matters.

As one of the most diversified insurers in Hong Kong, we offer integrated solutions across Life, Health and General Insurance. We are the largest General Insurance provider and a major Health and Employee Benefits provider. Our aim is to not only be the insurer to provide comprehensive protection to our customers, but also a holistic partner to the individuals, businesses and community we serve. At the core of our service commitment is continuous product & service innovation and customer experience enrichment, which is achieved through actively listening to our customers’ needs and leveraging and investing in technology and digital transformation.

We embrace our responsibility to be a driving force against climate change and a force for good to create shared value for our community. We are proud to be the first to address the importance of mental health through different products and services and thought leading iconic research. Our overall Sustainability Strategy, with emphasis on climate strategy and biodiversity commitment, is developed based on TCFD recommendations. We are committed to integrating environmental, social and governance factors across our business and strive to contribute to a sustainable future through 3 distinct roles - as an investor, an insurer and an exemplary company.

AXA is an equal opportunity employer. We are committed to promoting Diversity and Inclusion (D&I) by creating a work environment where all employees are treated with dignity, respect, and where individual differences are valued. We welcome and treasure diverse profiles to join our big family, and to build an inclusive culture together which allows everyone to maximise their personal potential.

Our people strategies are designed to enhance employee well-being and professional growth, ultimately empowering them to excel within the company.

Click here to learn more about our Benefits ( , Culture ( & Career Development ( level
  • Seniority level Not Applicable
Employment type
  • Employment type Full-time
Job function
  • Job function Information Technology
  • Industries Insurance

Referrals increase your chances of interviewing at AXA Hong Kong and Macau by 2x

Get notified about new Information Security Specialist jobs in Hong Kong, Hong Kong SAR .

Information Technology Cybersecurity Analyst / Specialist Technology Risk Manager (IT Security) – Information Technology Department CYBER SECURITY AND RISK ANALYST / CYBER SECURITY ENGINEER Assistant Manager, Information Security Assurance

Sha Tin District, Hong Kong SAR 1 day ago

Deputy Executive Manager, Business Information Security Office

Sha Tin District, Hong Kong SAR 2 weeks ago

Information Security Engineer - Associate - Security Services - IT - 12months contract Manager, Information Security Policy & Compliance

Sha Tin District, Hong Kong SAR 1 day ago

Cybersecurity Detection and Response Analyst Senior/Junior Information Security Consultant (Governance, Risk and Compliance) Information Technology Security Specialist Cyber Security Analyst / Engineer (Identity and Access Management) Technology Consulting - Cyber Security - Security Governance - Senior Associate - Hong Kong Analyst, Governance, Risk and Compliance Manager – Application Security & Governance, Information Technology IT Manager (Security Management) - Top Tier Bank Threat Intelligence Analyst (In-house) 30K

Sha Tin District, Hong Kong SAR 2 days ago

Information Security Governance & Support, Principal Technology Risk Manager (Information Security Control Division)

Shenzhen, Guangdong, China CN¥45,000.00-CN¥65,000.00 2 years ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Network Security Engineer (1 year contract)

One Advisors

Posted 9 days ago

Job Viewed

Tap Again To Close

Job Description

Network Security Engineer (1 year contract) Network Security Engineer (1 year contract)

2 days ago Be among the first 25 applicants

  • Configure and manage network security tools, such as firewalls, intrusion prevention systems (IPS), network detection and response (NDR) appliances, network taps, network threat analysis (NTA) brokers, network packet brokers (NPBs), and SSL decryption technology, for data center projects.
  • Integrate newly implemented network security infrastructure with the Security Operations Center (SOC) to ensure effective threat detection and incident response.
  • Develop standard operating procedures and technical guidelines, and contribute to process and quality improvements.
  • Collaborate with teams and vendors to address technical support and change management issues.
  • Create project documentation, test plans, and briefings, and coordinate disaster recovery (DR) drills and user acceptance testing (UAT).
  • Provide on-call support for emergencies or ad-hoc requests outside regular office hours when necessary.

Requirements

  • Bachelor’s degree in Information Technology, Computer Science, or a related field.
  • At least 1 year of hands-on experience with network security tools, with proficiency in at least two of the following: firewalls, IPS, NDR appliances, network taps, NTA brokers, NPBs, or SSL decryption technology.
  • CCNA or CISSP certification preferred.
  • Strong problem-solving and interpersonal skills, with a focus on customer service.
  • Ability to work independently in a fast-paced environment and meet tight deadlines.
  • Fluent in spoken and written English; Mandarin proficiency is a plus.
Seniority level
  • Seniority level Associate
Employment type
  • Employment type Contract
Job function
  • Job function Engineering and Information Technology
  • Industries Computer and Network Security, IT Services and IT Consulting, and IT System Operations and Maintenance

Referrals increase your chances of interviewing at One Advisors by 2x

Get notified about new Network Security Engineer jobs in Hong Kong, Hong Kong SAR .

Network Security Specialist : Palo Alto, Fortinet, Cisco CCIE Security : APAC CYBER SECURITY AND RISK ANALYST / CYBER SECURITY ENGINEER Security Engineer (1 year renewable contract) Network Specialist (SDWAN) Design & Implementation Network Engineer - In-house Perm Role / Global Fintech Co.

Wan Chai District, Hong Kong SAR HK$30,000.00-HK$45,000.00 21 hours ago

Wan Chai District, Hong Kong SAR 2 weeks ago

Senior IT Network Engineer (1 year contract)

Eastern District, Hong Kong SAR 2 weeks ago

System Engineer (Azure Cloud) - Stable inhouse environment

Central & Western District, Hong Kong SAR 4 weeks ago

Central & Western District, Hong Kong SAR 1 week ago

Wan Chai District, Hong Kong SAR 2 weeks ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Application Security Specialist & Penetration Tester

wizlynx group

Posted 10 days ago

Job Viewed

Tap Again To Close

Job Description

Application Security Specialist & Penetration Tester Location: Hong Kong

Key Role

As Application Security Specialist & Penetration Tester, you will lead and execute a variety of engagements, conducting secure code review and advanced hands-on penetration testing beyond automated tool validation, which will focus on targets that may include network devices, servers, web and mobile apps, web APIs, wireless infrastructures, IoT devices, and other information systems.

You will have the opportunity to combine technical expertise with your imagination to conduct targeted attacks and discover vulnerabilities, with the goal of ensuring wizlynx group’s customers remain one step ahead of its adversaries.

This role will be part of a team of Cyber Security Experts, providing excellent services to customers and internal teams.

What your key responsibilities will be

Responsibilities may include the following, but are not limited to:

  • Lead and execute secure code review, network, web application, and wireless penetration tests that will vary in level of complexity from simple to potentially complex.
  • Author quality secure code review and penetration test reports with professional documentation of identified and exploited vulnerabilities/weaknesses.
  • Serve as a consultant in pre-sales, including assessment of client needs, project scopes, and proposal preparation.
  • Share all knowledge and training with internal colleagues and teams.
  • Maintain up-to-date knowledge of the IT security industry, including awareness of new or revised security solutions, security standards, trends/best practices, offensive techniques, tools, and software development paradigms.

What we are looking for

  • Bachelor’s degree, preferably in computer science or information systems, or equivalent work experience.
  • Minimum of one year professional experience in penetration testing and code review.
  • Technical knowledge across a broad range of computing platforms and network protocols.
  • High proficiency in a variety of operating systems such as Unix/Linux/Mac/Windows, including bash and PowerShell.
  • High proficiency in manual techniques for penetration testing (network equipment, servers, web applications, APIs, wireless, mobile, databases, and other information systems).
  • Proven professional experience testing web applications for common web application security vulnerabilities as defined by OWASP, including input validation vulnerabilities, broken access controls, session management vulnerabilities, cross-site scripting issues, SQL injection, and web server configuration issues.
  • Good knowledge of both static and dynamic analysis of an application, be it web-based, mobile app, or standalone.
  • Experience with tools such as Microfocus Fortify or Checkmarx are an asset.
  • Ability in reviewing source code, including the evaluation of best practices for the platform/framework in use.
  • Very good knowledge of one or more of the following programming languages & frameworks: Python, .NET, Perl, and Java.
  • Strong oral and written communication skills, including a demonstrated ability to prepare quality documentation and presentations for technical and non-technical audiences.
  • Certifications such as OSCP, OSCE, OSWE, CREST CRT, GIAC (GXPN, GWAPT, GPEN, GMOB, GWEB) are an asset.

Language Skills:

  • Excellent communication skills in English and Cantonese (written and spoken); other languages are an advantage.

Soft Skills:

  • Excellent interpersonal skills, capable of interacting with people at all levels; team player.
  • Action-oriented and results-driven.
  • Organized with strong time-management skills.
  • Ability to dynamically switch among different tasks.
  • Customer-friendly approach and appearance.
  • Willingness to travel.
  • Strong problem-solving and analytical skills.

What we are offering you

You will get the opportunity to work with the best cyber security experts in a multi-cultural environment.

At wizlynx group, you will also have the chance to go to conferences, participate in ethical hacking competitions, attend advanced trainings, and pass highly recognized certifications. We are offering you to work in a thrilling, challenging but fun environment where what you do is important and meaningful. At wizlynx, there is no limit but the sky. If you wish to learn and get involved in other areas of cyber security or the business, we will ensure that you get all the help you need to succeed. Furthermore, as a senior penetration tester, you will be part of the wizlynx red teaming services consisting of emulating real-world threats using cybercriminals' TTPs. You will get dedicated time for security research on topics that interest you the most.

Who we are

wizlynx group is an ethical, trustworthy, and vendor-agnostic Swiss Cyber Security provider. Our customers rely on us to effectively protect their business and trade secrets against any form of cybercrime, such as malware outbreaks, malicious insiders, cyberattacks, cyber espionage, data leakage, and more.

We live and breathe Cyber Security! For this reason, we have designed a service portfolio that covers the entire risk management lifecycle to ensure our customers benefit the most from our passion and experience, but primarily to maximize their protection.

Our Cyber Security Services rely on highly skilled security professionals and penetration testers with long-lasting experience, both in defense and offense, while holding the most recognized certifications in the industry.

Apply now if you think you are a good match! We will respond to let you know what the next steps are, but in the meantime feel free to check us out:

APPLY NOW

Your Full Name

Your Email

Upload Resume

Your Full Name Your Email Upload Resume I grant wizlynx group my consent to the processing of my personal information for the job application purposes.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Technology Risk Manager (Information Security Control Division)

Bank of China (Hong Kong)

Posted 10 days ago

Job Viewed

Tap Again To Close

Job Description

Technology Risk Manager (Information Security Control Division)

Job No.: 499438
Employment Type: Full time
Departments: Information Technology Department
Job Functions: Information Technology

Roles and Responsibilities & Specific Requirements (Application Security):

  • Assist in reviewing IT initiatives and provide advisory from technology risk perspectives.
  • Assist to establish and review policies, guidelines, procedures in application security area.
  • Provide advisory and practical guidance to support technology risk and information security assessments, including vulnerability scanning, penetration tests, etc.
  • Conduct regular assessments on application security.
  • Familiar with security testing tools e.g. Fortify, AppScan, and Open Source Scanning tools; technologies on DevSecOps and industry good practice OWASP is preferable.

General Job Requirements:

  • Degree holder in Computer Science or other degree majoring in Information Systems, or related discipline.
  • Over 4 years of experience in IT security, technology risk, risk management, compliance, or IT audit function, gained from other sizable financial institutions.
  • Holding at least one recognized professional qualification under HKMA enhanced competency framework such as CISA, CISSP, CRISC is preferable.
  • Familiar with HKMA TM-E-1, PCI-DSS, ISO 2700-series or other security risk management frameworks is an advantage.
  • Good command of written and spoken English; knowledge of Mandarin is preferable.
  • Good communication and interpersonal skills.

Back to Search Results

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.
Be The First To Know

About the latest Information security Jobs in Hong Kong !

(Senior) Cyber Security Consultant & Penetration Tester

wizlynx group

Posted 11 days ago

Job Viewed

Tap Again To Close

Job Description

(Senior) Cyber Security Consultant & Penetration Tester Location: Hong Kong

Key Role

As (Senior) Cyber Security Consultant & Penetration Tester, you will execute a variety of engagements, conducting advanced hands-on penetration testing beyond automated tool validation, which will focus on targets that may include network devices, servers, web and mobile apps, web APIs, wireless infrastructures, IoT devices, and other information systems.

You will have the opportunity to combine technical expertise with your imagination to conduct targeted attacks and discover vulnerabilities, with the goal of ensuring wizlynx group’s customers remain one step ahead of its adversaries.

What your key responsibilities will be

  • Lead & execute network, web and mobile application, wireless, and social engineering penetration tests that will vary in level of complexity from simple to potentially complex.
  • Maintain up-to-date knowledge of the IT security industry, including awareness of new or revised security solutions, security standards, trends / best practices, offensive techniques, and tools.
  • Author quality penetration test reports with professional documentation of identified and exploited vulnerabilities/weaknesses, providing detailed remediation guidance for findings.
  • Serve as a consultant in pre-sales, including assessment of client needs, project scopes and proposal preparation.

What we are looking for

  • Bachelor's degree, preferably in computer science or information systems, or equivalent work experience.
  • One to three years security experience in a security analyst, engineer, architect, consultant or a similar role, including a minimum of 6 months to a year experience in penetration testing.
  • Proficiency in a variety of operating systems such as Unix/Linux/Mac/Windows operating systems, including bash and PowerShell.
  • Know-how in manual techniques for penetration testing (network equipment, servers, web applications, APIs, wireless, mobile, databases, and other information systems).
  • Familiarity with Penetration Testing tools like Burp Suite and Kali Linux.
  • Familiarity with OWASP Top 10 security vulnerabilities.
  • Certifications such as OSCP, CREST CPSA, GWAPT, GPEN, and others are an asset.

Language Skills:

  • Excellent communication skills in English and Cantonese (written and spoken).

Soft Skills:

  • Excellent interpersonal skills, capable of interacting with people at all levels; team player.
  • Organized with strong time-management skills.
  • Customer-friendly approach and appearance.
  • Strong problem-solving and analytical skills.
  • Proactive and initiative driven.

What we are offering you

You will get the opportunity to work with the best cyber security experts in a multi-cultural environment.

At wizlynx group, you will also have the chance to go to conferences, participate in ethical hacking competitions, attend advanced trainings, and pass highly recognized certifications.

We are offering you to work in a thrilling, challenging but fun environment where what you do is important and meaningful. At wizlynx, there is no limit but the sky. If you wish to learn and get involved in other areas of cyber security or the business, we will ensure that you get all the help you need to succeed.

You will also get dedicated time for security research on topics that interest you the most.

Who we are

wizlynx group is an ethical, trustworthy, and vendor agnostic Swiss Cyber Security provider. Our customers rely on us to effectively protect their business and trade secrets against any form of cybercrime, such as malware outbreak, malicious insiders, cyberattacks, cyber espionage, data leakage, and more.

We live and breathe Cyber Security! For this reason, we have designed a service portfolio that covers the entire risk management lifecycle to ensure our customer benefits the most from our passion and experience, but primarily to maximize their protection.

Our Cyber Security Services rely on highly skilled security professionals and penetration testers with long-lasting experience, both in defense and offense, while holding the most recognized certifications in the industry.

Apply now if you think you are a good match! We will respond to let you know what the next steps are, but in the meantime feel free to check us out:

APPLY NOW

Your Full Name

Your Email

Upload Resume

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Head of Information Security

Michael Page

Posted 11 days ago

Job Viewed

Tap Again To Close

Job Description

Join to apply for the Head of Information Security role at Michael Page .

1 day ago Be among the first 25 applicants.

About Our Client

Our client is a well-established insurance firm, recognized as a large organization in the industry. Operating in a competitive and fast-paced environment, they are heavily focused on technological innovation and security. Their commitment to maintaining the highest standards of information security is one of their top priorities.

Job Description

As a Head of Information Security , your main responsibilities will include:

  1. Defining and implementing the company's information security strategy and roadmap.
  2. Developing and maintaining the ISMS based on ISO 27001.
  3. Conducting regular information security risk assessments.
  4. Ensuring compliance with regulatory requirements related to information security.
  5. Managing the information security incident response process.
  6. Providing information security training and awareness to all staff.
  7. Working closely with the IT department to ensure the security of the IT infrastructure.
  8. Reporting to management on information security status and initiatives.
The Successful Applicant

A Successful 'Head Of Information Security' Should Have

  • A degree in Information Technology, Computer Science, or a related field.
  • Professional certifications such as CISSP, CISM, or CISA.
  • Proven experience in developing and managing ISMS based on ISO 27001.
  • Strong knowledge of information security principles and practices.
  • Ability to conduct information security risk assessments and audits.
  • Experience in managing information security incidents.
  • Strong communication and leadership skills.
What's on Offer
  • A competitive salary range of around HKD 1,080,000 to HKD 1,200,000.
  • Standard benefits package including health insurance and retirement plans.
  • Opportunity to work in a technologically advanced environment.
  • A supportive and collaborative work culture.

We are looking for an ambitious and dedicated professional to join our team in this critical role. If you have the necessary skills and experience, we would love to hear from you. Apply today to secure your future in a highly rewarding career in the insurance industry.

Contact: Alexis Wee

Quote job ref: JN-052025-6742521

Seniority level
  • Director
Employment type
  • Full-time
Job function
  • Information Technology and Engineering
Industries
  • Insurance, Financial Services, and Capital Markets
#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Technology Risk Manager (IT Security) – Information Technology Department

Chiyu Banking Corporation Limited

Posted 11 days ago

Job Viewed

Tap Again To Close

Job Description

Technology Risk Manager (IT Security) – Information Technology Department

3 days ago Be among the first 25 applicants

Get AI-powered advice on this job and more exclusive features.

Chiyu Banking Corporation Limited has been a licensed bank since 1947. Based in Hong Kong, we provide cross-border banking and financial services to customers in Hong Kong, mainland China, and overseas Chinese communities. We uphold core values of “Sincerity, Flexibility, Tailor-made Service, and Professionalism” to deliver premium services that help grow wealth, create value, and generate returns for stakeholders and staff.

We value our employees as our greatest asset and offer stimulating careers to support your personal growth. Join us for the following position.

Responsibilities
  • Participate in the design, development, and implementation of Information and Cyber Security projects.
  • Assist in planning technology-related risk management strategies, processes, and work plans.
  • Formulate and manage information security policies, standards, and procedures.
  • Conduct information security assessments and IT risk evaluations covering IT general controls, asset management, access controls, and security reviews.
  • Assist business units and cross-functional teams in identifying and mitigating information security risks.
  • Communicate security risk issues and control gaps to relevant teams and recommend remediation initiatives.
  • Create and manage information security awareness training programs for all employees, contractors, and system users.
Requirements
  • Degree in Computer Science, Information Systems, or related discipline.
  • Over 3 years of experience in IT security, risk management, or system development management.
  • Experience working with regulators and external auditors.
  • Professional qualifications such as CISA, CISSP, CISM, or CCSP are preferred.
  • Good command of written and spoken English and Mandarin is preferred.
  • Independent, proactive, and passionate about information security and cybersecurity.

We offer competitive packages and promising career opportunities. Please send your full resume, current salary, expected salary, and availability to The Human Resources Department, Chiyu Banking Corporation Ltd, 1/F, No. 100 Queen's Road Central, Hong Kong or fax to 2986-3233 , or click Apply Now .

All personal data will be kept confidential and used solely for recruitment purposes. Unsuccessful applicants' data will be destroyed after the process. A Personal Information Collection Statement is available upon request.

Additional Information
  • Seniority level: Mid-Senior level
  • Employment type: Full-time
  • Job function: Finance and Information Technology
  • Industry: Accounting
#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.
 

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All Information Security Jobs