What Jobs are available for Security Advisor in Hong Kong?
Showing 11 Security Advisor jobs in Hong Kong
Security Advisor
Posted today
Job Viewed
Job Description
Additional Information
About Us, Our Culture & What We Can Offer You
Established over 200 years ago, Chubb Fire & Security are a global business driven by keeping people and the world safe. We provide essential systems, equipment and services, from digital CCTV surveillance and intruder alarms, to fire detection and suppression systems. Offering a full range of innovative products and services to a broad range of customers, from local independent business, to many of the FTSE 100 companies
We believe we offer a unique working culture, where you are as important to us as our customers, and we want you to feel that everyday. We are proud to offer extensive training to all of our new Advisors, fully supporting, and enabling you to thrive in your new role and beyond, with ongoing career development opportunities throughout your career journey with us.
BR-CBIs this job a match or a miss?
Security Management Specialist
Posted today
Job Viewed
Job Description
About Us
We're the world's leading provider of secure financial messaging services, headquartered in Belgium. We are the way the world moves value – across borders, through cities and overseas. No other organisation can address the scale, precision, pace and trust that this demands, and we're proud to support the global economy.
We're unique too. We were established to find a better way for the global financial community to move value – a reliable, safe and secure approach that the community can trust, completely. We're always striving to be better and are constantly evolving in an ever-changing landscape, without undermining that trust. Five decades on, our vibrant community reflects the complexity and diversity of the financial ecosystem. We innovate diligently, test exhaustively, then implement fast. In a connected and exciting era, our mission has never been more relevant. Swift now has a presence in 200+ countries and legal territories to serve a community of more than 12,000 banks and financial institutions.
Are you an experienced cyber security professional ready to dive deeper into the realm of Incident Response? Do challenging and complex investigations spanning thousands of systems sound exciting?
Then you have found the right position You will be working with a group of talented cyber security specialists, supporting the world's leading provider of secure financial messaging services. In this position your effort and expertise are highly valued and critical to the global financial market. By joining the APAC team and you will also have the opportunity to contribute to cutting-edge security initiatives at the very forefront of technology.
What To Expect
- Conduct Daily Operational Security Monitoring
- Lead complex depth Security Investigations
- Contribute to industry-leading security initiatives
- Perform Threat Hunting and Threat Intelligence activities
- Create, Update and Maintain security process documentation
- Collaborate with security teams to improve Swift's security posture
What Will Make You Successful
- Bachelor's degree in Computer Science, Engineering or other related field
- 5+ years of experience in a Cyber Security domain, preferably Incident Response
- In-depth understanding of Computer Networks, Windows and Linux OS
- Fluency in English – written and oral
- Willingness to work weekend shifts
- Professional Certifications such as GCIH, GCFA, CISSP, OSCP or others
Swift for you
- Provide extensive training opportunities such as SANS and soft-skill trainings
- Competitive package and excellent work-life balance
- We put you in control of your career
- We give you a competitive package
- We help you perform at your best
- We help you make a difference
- We give you the freedom to be yourself
We give you the freedom to be yourself. We are creating an environment of unique individuals—like you—with different perspectives on the financial industry and the world. A diverse and inclusive environment in which everyone's voice counts and where you can reach your full potential.
If you believe you require a reasonable accommodation to participate in the job application or interview process, please contact us to request accommodation.
Don't meet every single requirement? At Swift, we are dedicated to building a workplace where people can bring their full selves and ideas to the team, so if you are excited about this role, we encourage you to apply even if you do not meet every single qualification.
What We Offer
We put you in control of career
We give you a competitive package
We help you perform at your best
We help you make a difference
We give you the freedom to be yourself
We give you the freedom to be yourself. We are creating an environment of unique individuals – like you – with different perspectives on the financial industry and the world. A diverse and inclusive environment in which everyone's voice counts and where you can reach your full potential.
If you believe you require a reasonable accommodation to participate in the job application or interview process, please contact us to request accommodation.
Don't meet every single requirement? At Swift, we are dedicated to building a workplace where people can bring their full selves and ideas to the team, so if you are excited about this role, we encourage you to apply even if you do not meet every single qualification.
Is this job a match or a miss?
Head of Cyber Security Management
Posted today
Job Viewed
Job Description
Cyber Security and IT Governance Cluster is the first line of defense Control Function to ensure that effective cybersecurity controls are in place in addressing the emerging cyber threats. The Cluster consists of Cyber Security Management (CSM), IT Policy and Compliance (ITPC) and Parameter and User Access Management (PUAM). Its function includes but not limited to the establishment and management of the cybersecurity organization, policies framework development, controls architecture, cybersecurity incident management, cybersecurity awareness, third party security, collaboration with external interested parties, cyber threats intelligence, cybersecurity and IT compliance monitoring, audit and compliance assessment coordination, issues remediation management, and parameter and user access management.
The role of the Head of Cyber Security Management holds the management responsibilities to the Cyber Security Management (CSM) and Parameter and User Access Management (PUAM) functions, with the following responsibilities:
- Formulate the overall strategies and goals of Cyber Security Management, establish annual and long-term cybersecurity strategies, programme.
- Develop and manage a framework for evaluating the maturity of the cybersecurity programme and a roadmap for continual improvement.
- Responsible for formulating cybersecurity control requirements, including policies, procedures and standards.
- Develop and adopt a management system to manage cybersecurity holistically and systemically in addressing the stakeholder security governance requirements and the strategic objectives, and to have appropriate management processes and systems in place that to confirm the requirements of the interested parties, such as Regulators, Head Office and Senior Management etc.
- Provide cybersecurity advice and guidance to the Control Owner on the effective design of its control measures.
- Monitor and evaluate the design and effectiveness of relevant control measures, including organizing the formulation of control effectiveness indicators and conducting regular evaluation and inspections.
- Stay abreast of emerging cybersecurity threats, trends and technologies, continuously enhancing the Bank's security postures.
- Manage team performance and support career guidance of a high performing teams the support cybersecurity management, parameter and user access management.
- Adopting management and security governance model to define and allocate roles and responsibilities for the protection of individual assets and for carrying out specific security processes.
Define the management requirements, scope, roles and responsibilities, management processes and its interfaces for the following control domains under the Cyber Security Management, and Parameter and User Access Management, oversee the delivery of the corresponding services:
Data Security Technical Control Management,
- Organization of Cyber Security (Including organizational structure, roles and responsibilities),
- Human Awareness Security,
- Policies Framework Management,
- Control Architecture Management,
- Cyber Security Incident Management,
- Threat Intelligence Management,
- Third Party Security Management,
- Secure System Development Management,
- Parameter and User Access Management.
- Provide directions, guidance and oversights to the IT Operations Center and IT Development Center on embedding cybersecurity requirements into its areas of responsibilities and functions; (i.e. Security Operations, including endpoints, network, infrastructure, operations security and Secure Development).
- Develop, manage and analyze the key monitoring indicators (e.g. KCI) to monitor and report the effectiveness of the cyber security controls.
- Present and report cybersecurity postures regularly to senior management and various levels of organization committees.
- Identify and resolve management issues, optimize management processes and operational workflows, to optimize the resources utilization and achieve operational efficiency.
- Responsible for any other responsibilities as directed by the Head of Cyber Security and IT Governance.
REQUIREMENT:
- Degree holder in Cyber Security / Computer Science / Information Technology or related discipline;
- Minimum 10 years or above of relevant experience in Cyber Security Management / Cyber Security Operations / Technology Risk Management or IT Audit, preferably with experience gained from consultancy / banking / finance industry;
- Experience in consultancy preferably Big 4 or IT Auditing is an advantage
- Holder of HKMA ECF-C recognized certifications at professional level is required;
- Customer-oriented, good communication and interpersonal skills;
- Able to work independently and under pressure with tight deadline;
- Strong problem-solving, analytical skills and presentation skills;
- Good command of written and spoken English and Mandarin;
- Possess proven managerial experience is a must;
- Possess forward planning, strategic thinking, problem solving and decision-making skills;
- Strong understanding and application of the best practices of cybersecurity management system methodology;
- Proficiency in preparing management dashboard / reporting deck and reports in Chinese is definitely an advantage
Applicants who are not contacted within 8 weeks may consider their applications unsuccessful and their personal data will be retained by the bank for a period up to two years.
All information provided by applicants will be used for recruitment purposes only and will be used strictly in accordance with the bank's personal data policies, a copy of which will be provided upon request.
Is this job a match or a miss?
Officer to Deputy Manager, Security Management
Posted today
Job Viewed
Job Description
- To monitor and maintain physical security and fire system operated in the Banks' premises. Including branches, offsite ATMs and offices
- Assist to manage daily operations of Access Control System, including but not limited access card issue and access report preparation
- Assist to prepare payment application and manage the billing cycle
- To maintain register on security and fire safety system
- To prepare management reports and perform data analysis
- To handle any ad-hoc task assigned by management
- To support the team for operations actvities e.g. Training, safty inspections
- Bachelor Degree
- Sound knowledge on physical security, security system and access control system
- Ability to work independently with strong communication and interpersonal skills
- Ability to provide precise report to Management
- At least 3 years of security operation experience in sizable organization
- Good command of spoken and written English and Chinese, especially in Mandarin
Is this job a match or a miss?
APAC Risk Assessment Analyst
Posted today
Job Viewed
Job Description
Interactive Brokers Group, Inc. (Nasdaq: IBKR) is a global financial services company headquartered in Greenwich, CT, USA, with offices in over 15 countries. We have been at the forefront of financial innovation for over four decades, known for our cutting-edge technology and client commitment.
IBKR affiliates provide global electronic brokerage services around the clock on stocks, options, futures, currencies, bonds, and funds to clients in over 200 countries and territories. We serve individual investors and institutions, including financial advisors, hedge funds and introducing brokers. Our advanced technology, competitive pricing, and global market help our clients to make the most of their investments.
Barron's has recognized Interactive Brokers as the #1 online broker for six consecutive years. Join our dynamic, multi-national team and be a part of a company that simplifies and enhances financial opportunities using state-of-the-art technology.
Job Description
Interactive Brokers Hong Kong Limited ("IBHK") is expanding its Risk Assessment Team (RA) within the New Accounts Department at our Hong Kong office. We are searching for candidates with prior experience in the financial services industry, exceptional attention to detail, and strong communication skills. The RA department liaises with Interactive Brokers' retail and professional clients.
The IBHK RA is accountable for providing high-quality reviews of Anti-Money Laundering (AML), Know-Your-Customer (KYC), sanctions, and Politically Exposed Persons (PEP) issues for retail customers, financial advisors, hedge fund operators, and other broker-dealers. We aim to facilitate client onboarding by providing regulatory and compliance guidance while building and maintaining long-term client relationships as we expand our global service offerings.
Responsibilities
- Perform Enhanced Due Diligence (EDD) reviews on individual and corporate applications following policies and desktop procedures; identify and escalate potential AML risks
Analyze and verify source of funds/wealth information through public domain sources or documentation - Investigate and process alerts from multiple queues, sourcing information as appropriate from external sources and/or internal personnel to investigate and process alerts effectively
- Evaluate and resolve negative news and/or red flags or potential PEP matches escalated by other New Account Teams
- Run checks in the Offshore Leaks Database and conduct public domain searches for negative information related to applicants and associated entities
- Provide advice on issues and escalations to other New Account Teams to address difficult applications and independently recommend risk-based decisions to AML
- Responsible for timely escalation of suspected financial crime to AML
- Work closely with other New Account Teams and AML to review and evaluate all financial crime risks
Qualifications, Skills & Attributes
- Bachelor's degree
- Experience: 2–3 years in client service and/or financial services preferred. Fresh graduates with a relevant academic background who are motivated and demonstrate the right aptitude will also be considered
- Minimum of 2 years' experience and familiarity, preferably gained in a brokerage or corporate banking environment, with onboarding or reviewing high-risk client relationships and conducting EDD
- Excellent written and oral communication skills in English and Cantonese; Mandarin is advantageous
- Strong research, investigatory, and problem-solving skills
- Ability to make risk-based recommendations and articulate them persuasively to other departments
- Able to multitask across various projects and firm initiatives
- Prior experience in a highly automated environment and/or a high degree of comfort with computers and technology
- Intermediate experience with MS Outlook, MS Word, and MS Excel
- Ability to work and thrive in a fast-paced, medium-sized office environment
Core Competencies
- Ability to identify, analyze, and escalate complex issues
- Excellent troubleshooting and problem-resolution skills
- Takes personal responsibility for identifying client needs while providing a high-value experience
- Efficient, self-motivated, and hard-working
- Able to multitask in a high-pressure environment
Company Benefits & Perks
- Competitive salary, annual performance-based bonus, and stock grant
- Excellent health and welfare benefits including medical, dental, specialist, and inpatient coverage
- Competitive annual leave package
- Daily lunch ordered in-house with a fully stocked kitchen
- Modern offices with multi-monitor setups
- Great work-life balance
- Unique opportunity to gain exposure to global financial products, markets, and clientele
- Opportunities for career progression and job scope expansion in a global company with a growing local presence
- Hybrid work arrangement, where permitted
Is this job a match or a miss?
AML Manager, Risk Model Design and Assessment
Posted today
Job Viewed
Job Description
- Handle the risk requirement and reporting related to other risks on departmental level
- Handle all sorts of business action plan and strategy report of the department
- Assist to conduct regular analysis to identify emerging AML/CFT risks faced by the Bank and other relevant changes of risk
- Provide comment independently and assist on the development and design, review and ongoing optimization of the AML /CFT risk assessment framework and relevant model
- Follow-up and conduct monitoring on the recommendations made to the model by internal and external auditor, regulator and other compliance team
- Bachelor degree or above in related disciplines
- Required to obtain CAMLP of HKAB or other internationally recognized professional qualifications
- 5 years or above of working experience in banking, law enforcement and regulatory institution or other industry related to AML and sanctions compliance
- Candidate with more experience would be considered as Senior AML Manager
- Require to master at least 1 or more of the following key fields: AML policy and compliance requirement; customer and product due diligence; AML risk model; compliance review; formulate business and product risk control measures; suspicious transaction case investigation; AML system model management; fraud and corruptions risk control, prevent and investigation
- Good command of execution capabilities, independently and proactively coordinate with each team to implement relevant control measures and requirement to ensure completing the work timely
- Good command of analytic capabilities, conduct analysist on all sorts of data and information, propose risk points in various fields and make recommendations on corresponding controls
- Good command of communication skills and capabilities to organize report and information, coordinate the communication among each divisions and departments proactively and process information efficiently and systematically
- Good command of both written and spoken English and Chinese and report writing ability
- Agree and carry out corporate values, abide by law and regulations and be responsible and dedicated
Is this job a match or a miss?
Senior AML Manager, Risk Model Design and Assessment
Posted today
Job Viewed
Job Description
- Handle the risk requirement and reporting related to other risks on departmental level
- Handle all sorts of business action plan and strategy report of the department
- Assist to conduct regular analysis to identify emerging AML/CFT risks faced by the Bank and other relevant changes of risk
- Provide comment independently and assist on the development and design, review and ongoing optimization of the AML /CFT risk assessment framework and relevant model
- Follow-up and conduct monitoring on the recommendations made to the model by internal and external auditor, regulator and other compliance team
- Bachelor degree or above in related disciplines
- Required to obtain CAMLP of HKAB or other internationally recognized professional qualifications
- 5 years or above of working experience in banking, law enforcement and regulatory institution or other industry related to AML and sanction compliance
- Require to master at least 1 or more of the following key fields: AML policy and compliance requirement; customer and product due diligence; AML risk model; compliance review; formulate business and product risk control measures; suspicious transaction case investigation; AML system model management; fraud and corruptions risk control, prevent and investigation
- Good command of execution capabilities, independently and proactively coordinate with each team to implement relevant control measures and requirement to ensure completing the work timely
- Good command of analytic capabilities, conduct analysist on all sorts of data and information, propose risk points in various fields and make recommendations on corresponding controls
- Good command of communication skills and capabilities to organize report and information, coordinate the communication among each divisions and departments proactively and process information efficiently and systematically
- Good command of both written and spoken English and Chinese and report writing ability
- Agree and carry out corporate values, abide by law and regulations and be responsible and dedicated
Is this job a match or a miss?
Be The First To Know
About the latest Security advisor Jobs in Hong Kong !
Senior AML Manager, Risk Model Design and Assessment
Posted today
Job Viewed
Job Description
- Coordinate other risk-related control requirements and reporting at the department level
- Coordinate business action plans, strategy reports, and other initiatives within the headquarters
- Conduct periodic analysis to identify emerging money laundering and terrorist financing risks faced by the Bank and related risk changes
- Provide independent advice and support for the development, design, review, and continuous improvement of the ML/TF risk assessment framework and related models
- Monitor follow-up actions on model recommendations made by internal/external auditors, regulators, and other compliance teams
- Supervise and support the subordinates
- Bachelor degree or above in Law, Banking and Finance, Accounting or related disciplines
- Relevant qualification in CAMS, ECF (AML/CFT) Core Level, FRM, CPA, ACCA will be an advantage
- Prior experience in IT audit is preferred
- Good Knowledge in one or more of key areas on AML policies and compliance requirements, customer and product due diligence, AML risk modeling, compliance inspections, development of business and product risk control measures, suspicious transaction case investigations, AML system model management, fraud and corruption risk prevention and investigation.
- Strong execution capabilities, independently and proactively coordinating across teams to implement relevant control measures and requirements, ensuring timely completion of tasks
- Possess analytical skills to analyze diverse data and information, identify risk points across domains, and propose corresponding controls
- Excellent communication and report/information organization capabilities
- Exhibit project promotion capabilities to actively coordinate and drive projects assigned by superiors
Is this job a match or a miss?
Manager/Associate Director, Cyber Security(Simulated Attack), Tech Consulting
Posted today
Job Viewed
Job Description
KPMG China provides multidisciplinary services from audit and tax to advisory, with a strong focus on serving our clients' needs and their industries. Not only do we have an overriding commitment to provide the highest quality services for our clients, but we also strive to become a responsible corporate citizen that has a positive impact on our environment and community. At KPMG, you'll translate insights into action and reveal opportunities for all—our teams, our clients and our world.
Service Line Overview
At KPMG's Consulting practice, we do not limit ourselves to either strategy or implementation. We deliver both. Our Hong Kong division is the fastest growing within KPMG China and represents a young and enthusiastic team that always pushes for success. Since our inception, we have acquired in-depth knowledge of an incredibly broad range of sectors and services.
KPMG is the firm that views cyber security as a business enabler, and not just an IT issue. From the boardroom to back office, we help clients through Strategy and Governance, Transformation, Cyber Defense and Cyber Response. So that they are prepared for uncertainty and use cyber security to advance the business, not stand in the way.
To expand our team, we are seeking Cyber simulated attack managers to join our Cyber Defence team. This role focuses on various technical areas such as red teaming, purple teaming, simulation attack, iCAST, TIBAS, advanced security assessment and infrastructure penetration testing, and social engineering simulation.
Key Responsibilities
- Lead various cyber-attack simulation projects using red team / blue team / purple team exercises
- Conduct social engineering and email phishing attacks to simulate the theft of passwords, infiltrate systems, and download malware / ransomware
- Lead advanced security assessment and infrastructure penetration tests on different complex platforms and emerging technologies
- Report testing results to senior stakeholders, e.g. Board and Audit Committee
- Develop proposal, project scoping, and the review of deliverables
- Drive continuously improvement in security assessment methodologies
- Develop marketing and training materials to help develop staff awareness within the company and communicate KPMG's capabilities to clients
- Build and maintain relationships with existing and prospective clients, and develop / improve your network of business contacts
- Coach and develop team members through sharing of experience and knowledge
Additional Responsibilities for Associate Director
- Drive team built and growth in Hong Kong and GBA region
- Identify business opportunities and work with wider team to generate growth
- Lead business development activities by building propositions, identifying of new target clients, building business relationships with key executives, drive client presentations, speaking at industrial conferences
- Develop internal networks and maintain excellent relationships with colleagues across KPMG
- Plans, and performance management while contributing to industry and regulatory publications, writing
Experience & Background
- Bachelor's degree in computer science, Information Technology, or related field.
- At least one professionally qualification required: CREST Certified Simulated Attack Manager, GXPN, OSCE3, OSEE or other relevant qualifications·
- Minimum of 5 years of experience working in Red Teaming, Purple Teaming, simulation attack, iCAST, Web/Mobile/Network/OT/IoT/other Penetration Tests, Vulnerability Assessment, Source Code Review, Appliance/System/Cloud - Configuration Review, Malware development, Social Engineering
- Strong knowledge in threat intelligence, reverse engineering, security products, incident response, SOC operation or other related areas will be an advantage·
- Delivered projects in accordance with industry recognised testing standards and experience in common red teaming tools·
- Strong knowledge base in enterprise technologies and operations, enterprise networking, internet application security, database security evaluation and architecture, with self-motivated learning ability·
- Be able to lead a team·
- Have strong analytical, problem solving and inter -personal skills·
- Commands excellent written and oral communication skills with the ability to present ideas and results to technical and non-technical audiences
- Possess a recognised Degree in Computer Science, Cyber Security, Computer/Information Engineering,Information Technology or a related discipline (STEM) is preferred·
- Excellent written and verbal communication skills in English and Chinese (Mandarin or Cantonese)
Benefits we offer:
- KPMG is looking for someone who is passionate about helping our clients with their cyber security challenges. In return, we are helping you to develop your skills and career within the KPMG network.
- Well-structured career development and learning path, 1-to-1 coaching by our cybersecurity partners
- Access to various cyber security learning resources
- Wide exposure to working with leading financial institutions and multi-national corporations
- Continuous sponsorship and support on professional certificate development (i.e. Offensive Security, GIAC, CREST, etc.)
- Opportunities to attend overseas Cyber Events – such as KPMG HackNet / BlackHat
- Work in a passionate team with blended cybersecurity talents
About KPMG
At KPMG China, we are committed to being an equal opportunity employer, with zero tolerance for any form of discrimination against any persons. It is important for us to create an inclusive, diverse and agile workplace for our people to develop and thrive at both a personal and professional level.
We strive to make ESG (environmental, social and governance) a watermark running through our organisation; from empowering our people to become agents of positive change, to providing better solutions and services to our clients to help them achieve their ESG goals. View Our Impact Plan to learn more about our ESG commitments and progress across four key pillars - Governance, People, Planet and Prosperity – and how we make a positive impact on our people, environment and society.
We encourage you to come as you are, and we welcome all qualified candidates to apply, and hope you unlock opportunities with us. Visit KPMG China website for more company information.
You acknowledge and agree that all personal information hereby provided regarding yourself will be used by KPMG China for its candidate selection purposed only. KPMG China collects, uses, processes, and retains your personal information in accordance with KPMG China's Online Privacy Statement and/or KPMG China Privacy Statement (collectively "Privacy Statement"). During the recruitment process, KPMG China may need to store personal information of candidates in a designated third-party application tracking platform.
If you have any questions regarding the information you provided in the form or your job application in general, please contact KPMG China's HR personnel in the location where your application is submitted (see here).
Is this job a match or a miss?
Consulting - Cyber Security and Privacy Protection - Senior Associate - Hong Kong
Posted today
Job Viewed
Job Description
Consulting – Cyber Security and Privacy Protection – Senior Consultant – Hong Kong
The opportunity
Cyber threats, social media, massive data storage, privacy requirements and continuity of the business as usual require heavy information security and privacy protection measures. EY is a global leading service provider in this area, we look forward to people with enthusiasm, knowledge and experience to join us. You will be working with leading class talent in a collaborative environment.
Description of our work
As a consultant, under the leadership of the project manager, carry out various consulting services in an orderly manner to ensure that the work is completed on time and with high quality.
Depends on the nature and scope of the different services, a consultant's work could fall into below categories (but is not limited to):
- Information security management and compliance:
- Develop information security governance/management framework, policies, standards and procedures.
- Establish information security management system such as ISO27001, including planning, implementation, assessment and audit.
- Assess the compliance status based on regional applicable laws, regulations and industry standards.
- Cyber-attack simulation and penetration testing:
- Review the architecture and configurations of IT systems.
- Carry out vulnerability scanning and penetration testing, and simulate real cyber-attack scenarios, actively discover potential security risks of the application and systems.
- Provide recommendation for the optimization of Cybersecurity protection measure based on the discovered
- Cybersecurity defence and operations:
- Monitor the cybersecurity situation in real time
- Respond to and deal with various security incidents in a timely manner, ensure the stable operation of the enterprise network infrastructure and information system
- Continuously optimize the defence strategy, and improve the overall security protection capability.
- Cybersecurity technologies planning:
- Design cutting-edge security protection technical solutions (such as IAM, EDR, DLP, Zero Trust, etc.) based on security risk management requirements, leading enterprise security technology innovation and upgrading.
- Aid in technical solution implementation project management.
- Privacy protection management and compliance:
- Responsible for the multi-country privacy protection compliance management of enterprises with in-depth understanding to the applicable laws and standards in the region.
- Build and improve the data privacy management system (such as ISO27701), facilitate the compliance of enterprises in the whole lifecycle of data collection, storage, transfer, use and disposal, and safeguard the privacy rights and interests of users.
- Assist the enterprise to conduct privacy compliance assessments such as PIA and CBDT.
Work experience requirements
We expect candidates to have work experience in one or more of the following relevant areas:
- Engaged in enterprise information security governance/management, familiar with regional applicable laws and standards, understand relevant solutions, and familiar with the planning, implementation, evaluation and audit methods of information security management system (such as ISO
- Have experience in multi-country privacy protection compliance management, understand regional privacy protection laws and standards, be able to skilfully use relevant tools, and understand how to build and operate data privacy management systems (such as ISO
- Engaged in enterprise security technology testing, attack defence and operation, with practical experience, can effectively cope with various cybersecurity challenges.
- Participated in enterprise security technology solution planning, implementation and operation, with deep understanding and practical experience of common security technology solution packages (such as IAM, EDR, DLP, zero trust, etc.).
We also warmly welcome ambitious people who are eager to develop in professional areas of cybersecurity and privacy protection, even he/she may have no direct experience in the areas before. The potential candidate should have one or more of the following experiences in information technology management:
- Server and network management, familiar with network architecture and server operation management.
- Cloud computing management, understand the security features and management methods of cloud computing platforms.
- Database management, understand database security protection and data management technology.
- Application development, with security coding awareness and application security vulnerability prevention capabilities.
- AI application, can apply AI technology to the field of security and improve the level of intelligent security protection.
- OT/IOT application, familiar with security challenges and coping strategies in industrial Internet and Internet of Things environment.
- Data governance, understand data classification, grading and data security management.
Knowledge and skill requirements
- Basic knowledge reserve: Regardless of past experience, candidates should have solid basic knowledge of information security and privacy protection, and have a clear understanding of relevant concepts, technologies and solutions.
- Learning and enthusiasm: Have a high degree of enthusiasm for learning, always maintain a keen insight into new knowledge and new technology, and actively improve their professionalism.
- Communication and collaboration skills: Have good customer communication skills, be able to work effectively with team members from different backgrounds, be brave in taking responsibility, be willing to share work pressure for colleagues, and jointly overcome difficulties.
- Work attitude and delivery ability: Adhere to the attitude of diligent work, deliver work tasks with high quality in strict accordance with time nodes, and ensure the accuracy and efficiency of work.
- Language skills: Excellent written Chinese and English skills, fluent oral English, Cantonese and/or Mandarin.
- Related qualifications: Ideally, the candidate should have one or more industry certifications such as CISSP, CISA, CISM, CCSP, OSCP, CEH, CIPM, CIPP/E or equivalent.
What will EY offer
- Broad development platform: stay at the forefront of the industry, participate in various large-scale projects, accumulate rich practical experience, and help individuals to promote rapidly.
- Professional training and growth: Provide regular professional training courses, invite industry experts to share cutting-edge technology and practical experience, support employees to obtain relevant professional certifications, and continuously empower employees for career development.
- Favorable welfare benefits: competitive salary benefits, perfect five insurances and one fund, paid annual leave, holiday benefits, etc., pay attention to the balance between life and work of employees.
- Harmonious team atmosphere: open and inclusive corporate culture, positive team atmosphere, encouraging innovation and sharing, making work a pleasure.
Apply now
Is this job a match or a miss?