76 Security Architect jobs in Hong Kong
Manager (Security Architect)
Posted 7 days ago
Job Viewed
Job Description
Join to apply for the Manager (Security Architect) role at Sino Group
4 days ago Be among the first 25 applicants
Join to apply for the Manager (Security Architect) role at Sino Group
Get AI-powered advice on this job and more exclusive features.
Direct message the job poster from Sino Group
At Sino Group, we bring people together for a better future. We value your uniqueness, commit to your career development and prioritize your wellness. We provide an inclusive and collaborative workplace, all-round training and work-life balance to unleash your full potential and empower you to grow together with the Group, both personally and professionally.
We are looking for talented people to be part of our dynamic team!
Responsibilities:
The successful candidate will report to the Lead of Governance and Security in Information Technology Department. He/ She will deliver technical guidance in the areas of cyber security architecture, secure system development, drive the adoption of security architecture and secure development lifecycle practices across the Group. He/ She will lead all security architecture reviews or technical risk assessments, identify the right technology, design technical defined security architecture and ensure secure implementation. Moreover, he/ she will work with the project teams to design and document the secure architecture for the non-functional requirements of an end-to-end system encompassing security, reliability, sustainability, availability and performance.
He/ She will also organize vulnerability assessments, penetration testing and vulnerability scans for both cloud and on-premises systems and work with risk owners on the resolution of the identified risks to make sure all IT assets are properly configured with industrial security standards and patched regularly. He/ She will assist in the development and promotion of information security awareness program to raise the awareness of security risks, manage the outsourced Security Operation Centre (SOC), review and evaluate security events, trigger and manage security incident response when necessary and compile related risks and status reports for management review.
Additionally, He/ She will support the design and implementation of cutting-edge security technologies, such as Zero Trust (SASE) and Data Loss Prevention (DLP) initiatives and develop and coordinate an incident response plan for security breaches, including forensic analysis and remediation efforts.
Requirements:
- Degree holder in Computer Science, Information Engineering, Information Security or related disciplines
- Minimum 8 years of relevant work experience, in which at least 5 years of hands - on experience in Information Security, Internal Control or Operation Risk
- In-depth knowledge of IT security best practices, security technologies, secure application architectures and emerging security trends.
- Experience in penetration testing, common vulnerability assessment tools, MITRE ATT&CK or similar frameworks
- Qualification in CISA / CISM / CISSP / CCSP or any industrial-recognized IT security certificate is an advantage
- Good Knowledge on Security-related frameworks, such as ISO 27001, NIST CSF, CIS Controls, COBIT, PCI DSS, OWASP Top 10 as well as ITIL framework is an advantage
- Hands - on experience in following security domains:
- Identity and Access management (IAM)
- Vulnerability and Patch Management
- User Awareness Training and Phishing Simulation
- Experience in Cloud Security and the latest Cloud Technologies such as SAP S/4 HANA, Azure, AWS, Office 365, Azure AD (Entra ID) is an advantage
- Demonstrated ability to communicate information security and risk management concepts to both technical and business audiences.
- Strong analytical and problem-solving skills
- Able to work under pressure, proactive to initiate new projects for continuous improvement
- Excellent command of both spoken and written English and Chinese
We are an equal opportunity employer who offer an inclusive and diverse workplace where people are valued and respected.
Before submitting your application, please read the Personal Data (Privacy) Policy and Personal Information Collection Statement at our Company website. Information provided will be treated in strict confidence and used for recruitment purposes only. If we have not contacted you within 4 weeks after your submission, you may consider your application unsuccessful.
Seniority level- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Information Technology
Referrals increase your chances of interviewing at Sino Group by 2x
Sign in to set job alerts for “Security Manager” roles. Wireless Network Engineer – Professional ServicesWe’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffr[LPS] Senior Security Architect (CoE)
Posted 15 days ago
Job Viewed
Job Description
Join to apply for the (LPS) Senior Security Architect (CoE) role at LPS
Continue with Google Continue with Google
2 days ago Be among the first 25 applicants
Join to apply for the (LPS) Senior Security Architect (CoE) role at LPS
Get AI-powered advice on this job and more exclusive features.
Sign in to access AI-powered advicesContinue with Google Continue with Google
Continue with Google Continue with Google
Continue with Google Continue with Google
Continue with Google Continue with Google
Continue with Google Continue with Google
Continue with Google Continue with Google
We are Lenovo. We do what we say. We own what we do. We WOW our customers.
Lenovo is a US$57 billion revenue global technology powerhouse, ranked #248 in the Fortune Global 500, and serving millions of customers every day in 180 markets. Focused on a bold vision to deliver Smarter Technology for All, Lenovo has built on its success as the world’s largest PC company with a full-stack portfolio of AI-enabled, AI-ready, and AI-optimized devices (PCs, workstations, smartphones, tablets), infrastructure (server, storage, edge, high performance computing and software defined infrastructure), software, solutions, and services. Lenovo’s continued investment in world-changing innovation is building a more equitable, trustworthy, and smarter future for everyone, everywhere. Lenovo is listed on the Hong Kong stock exchange under Lenovo Group Limited (HKSE: 992) (ADR: LNVGY).
This transformation together with Lenovo’s world-changing innovation is building a more inclusive, trustworthy, and smarter future for everyone, everywhere. To find out more visit and read about the latest news via our StoryHub.
To lead the development of our Center of Excellence (CoE) for Cybersecurity services within our IT service organization. This role will be pivotal in designing and delivering innovative cybersecurity solutions to our clients, enhancing their security posture, and driving business growth
The Job
- Strategic Leadership:
- Define and implement a strategic vision for the Cybersecurity CoE, aligning with business goals.
- Lead multidisciplinary teams to develop and enhance cybersecurity service offerings.
- Service Development:
- Create and refine cybersecurity services, including assessments, incident response, solutions implementation and managed security services
- Establish best practices and frameworks for service delivery, ensuring high-quality outcomes.
- Client Engagement:
- Collaborate with clients to understand their cybersecurity needs and provide tailored solutions.
- Conduct risk assessments and security audits to identify vulnerabilities and recommend actionable improvements.
- Training and Support:
- Develop training programs for clients to enhance their cybersecurity awareness and capabilities.
- Provide ongoing support and guidance to clients in implementing cybersecurity measures.
- Innovation and Research:
- Stay abreast of emerging cybersecurity trends, threats, and technologies to ensure our services remain cutting-edge.
- Evaluate and integrate new tools and technologies to enhance service offerings.
- Collaboration:
- Work closely with sales, marketing, and technical teams to promote cybersecurity services.
- Build relationships with external partners and vendors to enhance service capabilities.
- Bachelor’s degree in Computer Science, Information Technology, or a related field. Have the relevant certifications (CEH, CISP, CISSP, CISM, etc.)
- At least 12 years of experience in cybersecurity, with a focus on service delivery in an IT service provider environment.
- Proven track record in designing and implementing cybersecurity solutions for clients.
- In-depth knowledge of cybersecurity frameworks (NIST, ISO 27001) and regulatory requirements.
- Strong analytical, problem-solving, and project management skills.
- Excellent communication and interpersonal skills for client interaction.
We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age, religion, sexual orientation, gender identity, national origin, status as a veteran, and basis of disability or any federal, state, or local protected class. Seniority level
- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Information Technology
- Industries IT Services and IT Consulting
Referrals increase your chances of interviewing at LPS by 2x
Get notified about new Senior Security Architect jobs in Hong Kong, Hong Kong SAR .
Security Architect - Director/Executive LevelShenzhen, Guangdong, China
CN¥30,000.00
-
CN¥0,000.00
2 years ago
Shenzhen, Guangdong, China
CN 2,000.00
-
CN 5,000.00
2 years ago
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffr[LPS] Senior Security Architect (CoE)
Posted 7 days ago
Job Viewed
Job Description
Join to apply for the (LPS) Senior Security Architect (CoE) role at LPS
Continue with Google Continue with Google
2 days ago Be among the first 25 applicants
Join to apply for the (LPS) Senior Security Architect (CoE) role at LPS
Get AI-powered advice on this job and more exclusive features.
Sign in to access AI-powered advicesContinue with Google Continue with Google
Continue with Google Continue with Google
Continue with Google Continue with Google
Continue with Google Continue with Google
Continue with Google Continue with Google
Continue with Google Continue with Google
We are Lenovo. We do what we say. We own what we do. We WOW our customers.
Lenovo is a US$57 billion revenue global technology powerhouse, ranked #248 in the Fortune Global 500, and serving millions of customers every day in 180 markets. Focused on a bold vision to deliver Smarter Technology for All, Lenovo has built on its success as the world’s largest PC company with a full-stack portfolio of AI-enabled, AI-ready, and AI-optimized devices (PCs, workstations, smartphones, tablets), infrastructure (server, storage, edge, high performance computing and software defined infrastructure), software, solutions, and services. Lenovo’s continued investment in world-changing innovation is building a more equitable, trustworthy, and smarter future for everyone, everywhere. Lenovo is listed on the Hong Kong stock exchange under Lenovo Group Limited (HKSE: 992) (ADR: LNVGY).
This transformation together with Lenovo’s world-changing innovation is building a more inclusive, trustworthy, and smarter future for everyone, everywhere. To find out more visit and read about the latest news via our StoryHub.
To lead the development of our Center of Excellence (CoE) for Cybersecurity services within our IT service organization. This role will be pivotal in designing and delivering innovative cybersecurity solutions to our clients, enhancing their security posture, and driving business growth
The Job
- Strategic Leadership:
- Define and implement a strategic vision for the Cybersecurity CoE, aligning with business goals.
- Lead multidisciplinary teams to develop and enhance cybersecurity service offerings.
- Service Development:
- Create and refine cybersecurity services, including assessments, incident response, solutions implementation and managed security services
- Establish best practices and frameworks for service delivery, ensuring high-quality outcomes.
- Client Engagement:
- Collaborate with clients to understand their cybersecurity needs and provide tailored solutions.
- Conduct risk assessments and security audits to identify vulnerabilities and recommend actionable improvements.
- Training and Support:
- Develop training programs for clients to enhance their cybersecurity awareness and capabilities.
- Provide ongoing support and guidance to clients in implementing cybersecurity measures.
- Innovation and Research:
- Stay abreast of emerging cybersecurity trends, threats, and technologies to ensure our services remain cutting-edge.
- Evaluate and integrate new tools and technologies to enhance service offerings.
- Collaboration:
- Work closely with sales, marketing, and technical teams to promote cybersecurity services.
- Build relationships with external partners and vendors to enhance service capabilities.
- Bachelor’s degree in Computer Science, Information Technology, or a related field. Have the relevant certifications (CEH, CISP, CISSP, CISM, etc.)
- At least 12 years of experience in cybersecurity, with a focus on service delivery in an IT service provider environment.
- Proven track record in designing and implementing cybersecurity solutions for clients.
- In-depth knowledge of cybersecurity frameworks (NIST, ISO 27001) and regulatory requirements.
- Strong analytical, problem-solving, and project management skills.
- Excellent communication and interpersonal skills for client interaction.
We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age, religion, sexual orientation, gender identity, national origin, status as a veteran, and basis of disability or any federal, state, or local protected class. Seniority level
- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Information Technology
- Industries IT Services and IT Consulting
Referrals increase your chances of interviewing at LPS by 2x
Get notified about new Senior Security Architect jobs in Hong Kong, Hong Kong SAR .
Security Architect - Director/Executive LevelShenzhen, Guangdong, China
CN¥30,000.00
-
CN¥0,000.00
2 years ago
Shenzhen, Guangdong, China
CN 2,000.00
-
CN 5,000.00
2 years ago
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrSecurity Architect - IT Service Provider - CEH, CISP, CISSP, CISM - Perm
Posted 14 days ago
Job Viewed
Job Description
Get AI-powered advice on this job and more exclusive features.
The team is currently seeking for technically strong and self-motivated Security professional to join them.
Your role:
- Conduct comprehensive risk and control assessments to identify, evaluate, monitor, and mitigate risks across IT systems, applications, and network operations.
- Conduct red/purple team operation and penetration testing to identify vulnerabilities and assess the effectiveness of security controls.
- Implement remediation plans based on test findings to strengthen the security posture.
- Support security teams in defining, assessing, and managing security operations through appropriate policies, procedures, and control frameworks.
- Proactively evaluate IT control processes and activities to ensure the control environment is effectively designed and functioning.
- Facilitate audit and security control reviews with internal teams and external parties, prioritizing and mitigating risks to acceptable levels.
- Enhance security measures such as threat detection, attack penetration, and mitigation based on current and emerging threats.
- Promote communication and collaboration between internal teams and external parties on risk and cybersecurity matters.
To succeed in this role:
- Bachelor’s or Master’s degree in Cybersecurity, Computer Science, Software Engineering, or related fields.
- 5+ years of hands-on experience in red/purple team exercises, penetration testing, and DevSecOps.
- Sound knowledge in Information Security, Business Continuity, Project Management, Application Security and industry best practices.
- OR Experience in 24/7 SOC with experience in SIEM, EDR, IDS/IPS, and SOAR solutions will also be considered, but not mandatory
- It will be a plus to hold the following certifications: CISSP, CISA, CISM, OSCP, CEH, CRTP, and CRT
- Excellent presentation and communication skills in English and Chines
For candidates who are interested, please submit your application with your latest CV attached. Please note that only shortlisted profiles will be notified.
Seniority level- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Information Technology
- Industries Information Services, Technology, Information and Media, and IT Services and IT Consulting
Referrals increase your chances of interviewing at PrimePeak Group by 2x
Get notified about new Security Consultant jobs in Hong Kong, Hong Kong SAR .
Consulting - Financial Services - Cyber Security - Cyber Governance - Senior Consultant - Hong Kong Technology Consulting - Cyber Security and Privacy Protection - Senior Associate - Hong Kong Technology Consulting - Cyber Security - Security Governance - Senior Associate - Hong Kong Senior IT Operations and Security Manager - Prominent Tech Firm Consultant/Senior Consultant, Cyber Security (Strategy, Governance & Risk), Technology Consulting Manager/Associate Director , Cloud Security, Technology Consulting Manager, Cyber Security Operations (MJ006042) Manager/Associate Director, Cyber Security (Strategy, Governance & Risk), Technology Consulting Consultant / Senior Consultant, Cyber Transformation (Cloud), Technology Consulting (MJ003676)Eastern District, Hong Kong SAR 1 week ago
Securities Trade Data Modeling Business Analyst - Leading Investment Bank Business Analyst / Project Manager | Securities Services Analyst, Cyber Security (Ref: DTD194/25, 10514) CYBER SECURITY AND RISK ANALYST / CYBER SECURITY ENGINEERCentral & Western District, Hong Kong SAR 4 days ago
IT Support Analyst for Security Financing ELV System Engineer or Manager(ICT & Security)We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrSecurity Architect - IT Service Provider - CEH, CISP, CISSP, CISM - Perm
Posted 7 days ago
Job Viewed
Job Description
Get AI-powered advice on this job and more exclusive features.
The team is currently seeking for technically strong and self-motivated Security professional to join them.
Your role:
- Conduct comprehensive risk and control assessments to identify, evaluate, monitor, and mitigate risks across IT systems, applications, and network operations.
- Conduct red/purple team operation and penetration testing to identify vulnerabilities and assess the effectiveness of security controls.
- Implement remediation plans based on test findings to strengthen the security posture.
- Support security teams in defining, assessing, and managing security operations through appropriate policies, procedures, and control frameworks.
- Proactively evaluate IT control processes and activities to ensure the control environment is effectively designed and functioning.
- Facilitate audit and security control reviews with internal teams and external parties, prioritizing and mitigating risks to acceptable levels.
- Enhance security measures such as threat detection, attack penetration, and mitigation based on current and emerging threats.
- Promote communication and collaboration between internal teams and external parties on risk and cybersecurity matters.
To succeed in this role:
- Bachelor’s or Master’s degree in Cybersecurity, Computer Science, Software Engineering, or related fields.
- 5+ years of hands-on experience in red/purple team exercises, penetration testing, and DevSecOps.
- Sound knowledge in Information Security, Business Continuity, Project Management, Application Security and industry best practices.
- OR Experience in 24/7 SOC with experience in SIEM, EDR, IDS/IPS, and SOAR solutions will also be considered, but not mandatory
- It will be a plus to hold the following certifications: CISSP, CISA, CISM, OSCP, CEH, CRTP, and CRT
- Excellent presentation and communication skills in English and Chines
For candidates who are interested, please submit your application with your latest CV attached. Please note that only shortlisted profiles will be notified.
Seniority level- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Information Technology
- Industries Information Services, Technology, Information and Media, and IT Services and IT Consulting
Referrals increase your chances of interviewing at PrimePeak Group by 2x
Get notified about new Security Consultant jobs in Hong Kong, Hong Kong SAR .
Consulting - Financial Services - Cyber Security - Cyber Governance - Senior Consultant - Hong Kong Technology Consulting - Cyber Security and Privacy Protection - Senior Associate - Hong Kong Technology Consulting - Cyber Security - Security Governance - Senior Associate - Hong Kong Senior IT Operations and Security Manager - Prominent Tech Firm Consultant/Senior Consultant, Cyber Security (Strategy, Governance & Risk), Technology Consulting Manager/Associate Director , Cloud Security, Technology Consulting Manager, Cyber Security Operations (MJ006042) Manager/Associate Director, Cyber Security (Strategy, Governance & Risk), Technology Consulting Consultant / Senior Consultant, Cyber Transformation (Cloud), Technology Consulting (MJ003676)Eastern District, Hong Kong SAR 1 week ago
Securities Trade Data Modeling Business Analyst - Leading Investment Bank Business Analyst / Project Manager | Securities Services Analyst, Cyber Security (Ref: DTD194/25, 10514) CYBER SECURITY AND RISK ANALYST / CYBER SECURITY ENGINEERCentral & Western District, Hong Kong SAR 4 days ago
IT Support Analyst for Security Financing ELV System Engineer or Manager(ICT & Security)We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrInformation Security Analyst
Posted 8 days ago
Job Viewed
Job Description
Direct message the job poster from I-TRACING
Human Resources Generalist | Cybersecurity | MBA CandidateI-TRACING is looking for a new talent to join our growing team in Hong Kong!
Reporting to the APAC SOC Manager, you will:
Job Duties & Responsibilities:
- Monitor the SIEM for suspicious events and anomalous activity
- Provide first level response for security events (up to L3)
- Handle event triaging by criticality
- Conduct proactive threat hunting
- Validate suspicious events and incidents by using open-source and proprietary intelligence sources
- Incident management, response, and reporting
- Participate to continuous improvement, alert design and workflow management
- Provide information to the client regarding intrusion events, security incidents, warning information and other threat indications
The ideal candidate has:
- Engineering/IT/Cybersecurity degree
- Good knowledge of networks and systems protocols
- Strong grasp on IT Security methodologies and approaches
- Understanding and experience with incident response methodologies
- Working knowledge of security issues, vulnerabilities, exploits, regulatory and legal changes, and security standards that may impact information security
- Ability to display superb listening, verbal, and written communication skills in English
Don’t hesitate and join us!
Why should you join us?
At I-TRACING we are passionate about cybersecurity, but not only!
Choosing I-TRACING means joining a company:
- Who makes the well-being of its employees a priority, recognized by the label “Happy At Work”
- Who implements local support for each employee with a technical manager, responsible for a team on a human scale. This guarantees the monitoring of your activity and the development of your career (personalized training plan, certifications, career development, internal mobility).
- Which gives you opportunities around the world (France, Montreal, Hong Kong, Kuala Lumpur, Shanghai)
- Whose technical expertise, commitment and sense of customer service are recognized in the market
- Strong values of cohesion, curiosity, initiative, solidarity and kindness
About I-TRACING
I-TRACING, the leading French pure-player of cybersecurity services, supports more than 430 customers worldwide in controlling their cyber risks from the anticipation of threats to the ability to react to attacks and limit their consequences.
I-TRACING achieved a turnover of 90 million euros in 2022 and has 550 employees worldwide.
Through a full range of cybersecurity services ranging from consulting to integration, to managed services, SOC and CERT, I-TRACING brings together all the technical expertise and engineering experience to support its customers on all their security issues.
Our CyberSOC represents more than 50 major account customers and large companies for the most part in 24/7, in collaboration with our subsidiaries around the world as part of our "Follow-the-sun" offer.
Our philosophy: open environments for a better rise in skills, varied tools and technologies, and internal knowledge sharing to help each other.
We are also accompanied by our team of security toolmakers and our SIEM engineers for continuous and tailor-made improvement.
To learn more about us and our commitments, please visit our website at
Seniority level- Seniority level Associate
- Employment type Full-time
- Job function Information Technology
- Industries Computer and Network Security
Referrals increase your chances of interviewing at I-TRACING by 2x
Sign in to set job alerts for “Information Security Analyst” roles. Securities Trade Data Modeling Business Analyst - Leading Investment Bank Business Analyst / Project Manager | Securities Services Information Technology Cybersecurity Analyst / SpecialistEastern District, Hong Kong SAR 2 weeks ago
Analyst, Cyber Security (Ref: DTD194/25, 10514) IT Support Analyst for Security Financing Analyst, Credit Monitoring, Securities FinancingWe’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrBe The First To Know
About the latest Security architect Jobs in Hong Kong !
Information Security Manager
Posted 10 days ago
Job Viewed
Job Description
Join to apply for the Information Security Manager role at Michael Page .
1 day ago Be among the first 25 applicants.
About Our ClientOur client is a well-established organization within the financial services sector. With a large workforce and a solid market presence in Hong Kong, they are committed to maintaining high standards in technology and information security.
Job DescriptionAs a 'Manager, Information Security,' your main responsibilities will include:
- Overseeing the implementation and maintenance of the bank's information security systems.
- Conducting regular audits and risk assessments to ensure adherence to security protocols.
- Developing and implementing information security policies and procedures.
- Training and mentoring staff on information security best practices.
- Conducting cybersecurity assessments, including penetration testing and infrastructure/web application reviews.
- Managing and maintaining security systems such as firewalls, NAC, IPS, and SIEM.
- Leading and coordinating information security projects across departments.
- Managing incident responses and investigations into security breaches.
- Staying updated on the latest trends and developments in information security.
- Reporting on the status of information security to senior management.
A Successful 'Manager, Information Security' Should Have
- A degree in Computer Science, Information Security, or a related field.
- Proven experience in a managerial role within the field of information security.
- Familiarity with information security regulations and standards in the financial services industry.
- Exceptional leadership and communication skills.
- The ability to handle sensitive information with discretion and integrity.
- A competitive salary in the range of HKD 648,000 - HKD 792,000 per annum.
- Standard benefits package.
- The chance to work in a fast-paced, technology-driven environment within the financial services industry.
- Opportunities for career progression and professional development.
- A supportive and collaborative company culture.
We encourage all candidates who believe they can fulfill these responsibilities and possess the necessary qualifications and skills to apply. This is a fantastic opportunity to join a leading financial organization in Hong Kong and make a significant impact in the field of Information Security.
Contact: Alexis Wee
Quote job ref: JN-052025-6742617
Seniority level- Mid-Senior level
- Full-time
- Information Technology and Engineering
- Financial Services, Accounting, and Banking
Principal, Information Security
Posted 15 days ago
Job Viewed
Job Description
Join to apply for the Principal, Information Security role at AIA Hong Kong and Macau
Continue with Google Continue with Google
Join to apply for the Principal, Information Security role at AIA Hong Kong and Macau
Get AI-powered advice on this job and more exclusive features.
Sign in to access AI-powered advicesContinue with Google Continue with Google
Continue with Google Continue with Google
Continue with Google Continue with Google
Continue with Google Continue with Google
Continue with Google Continue with Google
Continue with Google Continue with Google
At AIA we’ve started an exciting movement to create a healthier, more sustainable future for everyone.
As pioneering innovators for over 100 years, we’re now transforming our organisation to be faster, simpler and more connected. Because we want to be even better equipped to develop digital solutions and experiences that help more people live Healthier, Longer, Better Lives.
To get there, we need people with tech/digital/analytics expertise and passion to help develop positive, sustainable change through digitally enhanced experiences that will impact the lives of millions of people and create a healthier future for everyone.
If you believe in developing a better tomorrow, read on.
About The Role
This position plays a significant role in supporting management and Director of Information Security to promote and enhance the maturity of Information and cyber security of the organisation, as well as related business entities. This is to be done through a robust governance, Information security risk management and compliance programmes, coupled with well-planned communications and awareness-raising programmes tailored for different internal and external stakeholders. Therefore, while the individual taking up this role may not need to be an Information Security expert, he or she must be a quick learner who can grasp a wide range of IT/cyber security topics. The individual must also be a great communicator who can convey messages in English and Chinese involving highly technical IT/cyber risk concepts to all levels of staff (for instance, for awareness-raising campaigns) and to strategic stakeholders (such as regulators, auditors and corporate clients) in an efficient and professional manner.
(Daily operation) Regulatory and Information Security Compliance
- Develop and manage the Information security governance framework & risk portfolio, which follows the AIA’s security standards and guidelines.
- Be the subject matter expert to provide advice on regulatory requirements related to information security.
- Lead and coordinate internal efforts to support compliance assessment against regulatory requirements and IT audits conducted by internal/external auditors;
- Coordinate inputs and craft accurate and appropriate responses to enquiries coming from regulators and auditors;
- Organise regular and frequent activities and develop localised materials to raise the awareness of staff at all levels on various cybersecurity controls and practices, and other topical issues of Information Security.
- Maintain and curate the internal Information Hub for education and sharing.
- Lead ad-hoc cross-functional teams on special projects or strategic initiatives relating to Information Security
- Communicate with group offices, business partners, corporate clients, IT vendors and external parties, as and when needed
- Degree holder in Computer Science, Information Systems, Business, Finance, Risk Management, or a related discipline.
- Minimum of 10 years of relevant and solid experience in Information Security risk management and control, gained from international financial institutions, professional firms or financial regulators.
- Holder of relevant IT audit professional qualification and/or IT security certificates preferred (such as CISA, CISM, CISSP etc.).
- Solid experience in handling cybersecurity assessments and IT audit-related assignments and familiar with relevant control requirements from different regulatory bodies such as Hong Kong Insurance Authority, Mandatory Provident Fund Schemes Authority, Macau AMCM etc.
- Excellent communication (written and oral) skills, and demonstratable experience as a highly effective facilitator of cross functional teams.
- Excellent leadership and management skills and proven ability to build, manage and foster a team-oriented environment.
- Confident and trustworthy; keen to earn the respect and trust of, and inspire, others. Independent and strong self-initiative to work creatively and analytically when solving problems.
- You are required to obtain the relevant licence(s) if your job involves regulated activities.
You must provide all requested information, including Personal Data, to be considered for this career opportunity. Failure to provide such information may influence the processing and outcome of your application. You are responsible for ensuring that the information you submit is accurate and up-to-date. Seniority level
- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Information Technology
- Industries Insurance
Referrals increase your chances of interviewing at AIA Hong Kong and Macau by 2x
Get notified about new Information Security Specialist jobs in Hong Kong, Hong Kong SAR .
Information Technology Cybersecurity Analyst / SpecialistEastern District, Hong Kong SAR 1 hour ago
Assistant Information Security Consultant Technology Risk Manager (IT Security) – Information Technology Department Regional Information Security Engineer - Renewable Contract CYBER SECURITY AND RISK ANALYST / CYBER SECURITY ENGINEER Associate - IT Security (Corporate Bank) Senior Officer - Information Technology (Cyber Security) (Contract period up to 31 August 2026) (Ref: IT/06/245) Cybersecurity Detection and Response Analyst Analyst, Cyber Security (Ref: DTD194/25, 10514) Cyber Security Analyst / Engineer (Identity and Access Management) Global Security GRC Analyst (Governance, Risk, and Compliance) Senior/Junior Information Security Consultant (Governance, Risk and Compliance) Senior Manager, Group Information Security Assistant Vice President, IT Security - IT Operations Department Analyst, IT Security Operations & Engineering Assistant Manager, Business Information Security Office IT Support Analyst for Security FinancingShenzhen, Guangdong, China CN¥45,000 - CN¥5,000 2 years ago
Shenzhen, Guangdong, China CN 5,000 - CN 0,000 1 year ago
Technology Risk Manager (Information Security Control Division)We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrInformation Security Manager
Posted 7 days ago
Job Viewed
Job Description
Join to apply for the Information Security Manager role at Michael Page .
1 day ago Be among the first 25 applicants.
About Our ClientOur client is a well-established organization within the financial services sector. With a large workforce and a solid market presence in Hong Kong, they are committed to maintaining high standards in technology and information security.
Job DescriptionAs a 'Manager, Information Security,' your main responsibilities will include:
- Overseeing the implementation and maintenance of the bank's information security systems.
- Conducting regular audits and risk assessments to ensure adherence to security protocols.
- Developing and implementing information security policies and procedures.
- Training and mentoring staff on information security best practices.
- Conducting cybersecurity assessments, including penetration testing and infrastructure/web application reviews.
- Managing and maintaining security systems such as firewalls, NAC, IPS, and SIEM.
- Leading and coordinating information security projects across departments.
- Managing incident responses and investigations into security breaches.
- Staying updated on the latest trends and developments in information security.
- Reporting on the status of information security to senior management.
A Successful 'Manager, Information Security' Should Have
- A degree in Computer Science, Information Security, or a related field.
- Proven experience in a managerial role within the field of information security.
- Familiarity with information security regulations and standards in the financial services industry.
- Exceptional leadership and communication skills.
- The ability to handle sensitive information with discretion and integrity.
- A competitive salary in the range of HKD 648,000 - HKD 792,000 per annum.
- Standard benefits package.
- The chance to work in a fast-paced, technology-driven environment within the financial services industry.
- Opportunities for career progression and professional development.
- A supportive and collaborative company culture.
We encourage all candidates who believe they can fulfill these responsibilities and possess the necessary qualifications and skills to apply. This is a fantastic opportunity to join a leading financial organization in Hong Kong and make a significant impact in the field of Information Security.
Contact: Alexis Wee
Quote job ref: JN-052025-6742617
Seniority level- Mid-Senior level
- Full-time
- Information Technology and Engineering
- Financial Services, Accounting, and Banking