153 Security Controls jobs in Hong Kong

Manager, Information Security Policy & Compliance

Hong Kong, Hong Kong The Hong Kong Jockey Club

Posted 10 days ago

Job Viewed

Tap Again To Close

Job Description

Manager, Information Security Policy & Compliance

Join to apply for the Manager, Information Security Policy & Compliance role at The Hong Kong Jockey Club

Manager, Information Security Policy & Compliance

4 days ago Be among the first 25 applicants

Join to apply for the Manager, Information Security Policy & Compliance role at The Hong Kong Jockey Club

Job Summary

Reporting to the Senior Manager, ISRA, you will be a key member involved in uplifting the Club’s information security assurance as a second line of defence. You will be developing and maintaining Information Security Policy, Acceptable Use Policy and other policies. You will also be designing and implementing a compliance self-assessment programme for the compliance of the policies. You will also be involved in other information security assurance and technology risk management activities as assigned.

Job Summary

Reporting to the Senior Manager, ISRA, you will be a key member involved in uplifting the Club’s information security assurance as a second line of defence. You will be developing and maintaining Information Security Policy, Acceptable Use Policy and other policies. You will also be designing and implementing a compliance self-assessment programme for the compliance of the policies. You will also be involved in other information security assurance and technology risk management activities as assigned.

The Job

You will:

  • Develop and maintain information security policies.
  • Perform compliance assessment against information security policies.
  • Assist in programme management, and work with external consultants to deliver technology risk and information security projects.
  • Conduct information security risk assessments and control assurance testing.
  • Assist in delivering information security initiatives and prepare necessary documentation.
  • Assist in technology risk management activities.
  • Monitor and report on security metrics and trends to monitor the technology and information security risks.
  • Promote security awareness within the organization, fostering a culture of risk management.


About You

You should have:

  • University degree in Computer Science, Information Technology, Cybersecurity, Engineering, Risk Management or related fields.
  • 5 to 7 years of practical experience in Cyber Security or Technology Risk roles.
  • Hands-on experience in enterprise security infrastructure, risk assessments, and security testing.
  • Experience with identity and access management systems and principles.
  • Familiarity with security frameworks and standards (e.g. ISO27001, NIST).
  • Understand second line of defence roles and responsibilities.
  • Relevant certifications such as CISSP, CISA or CISM are preferred.


Terms of Employment

The level of appointment will be commensurate with qualification and experience.

How to Apply

Please send your resume, complete with expected salary and job reference by clicking the Apply Now.

We are an equal opportunity employer. Personal data provided by job applicants will be used strictly in accordance with the Club's notice to employees and prospective employees relating to the Personal Data (Privacy) Ordinance. A copy of which will be provided immediately upon request.

Seniority level
  • Seniority level Mid-Senior level
Employment type
  • Employment type Full-time
Job function
  • Job function Information Technology
  • Industries Non-profit Organizations

Referrals increase your chances of interviewing at The Hong Kong Jockey Club by 2x

Sign in to set job alerts for “Information Security Manager” roles. Cybersecurity Manager, Group Cybersecurity Senior Security Consultant/ Cybersecurity Manager (CISSP, CISA, CISM) - 60K+B

Kwun Tong District, Hong Kong SAR 1 month ago

Senior Manager, IT Governance and Architecture Manager, Cyber Security (DTD079/25, 10360)

Kwun Tong District, Hong Kong SAR 4 days ago

Deputy Executive Manager, Security Architecture

Sha Tin District, Hong Kong SAR 1 week ago

Technology Risk Manager (IT Security) – Information Technology Department Assistant Technical Manager, Cyber Security

Sha Tin District, Hong Kong SAR 2 weeks ago

Service Delivery Manager (Cybersecurity) Cyber Engagement Lead, Mandiant Consulting, Google Cloud Manager, Operational and Strategic Risk (Cyber Security) Technical Manager, Data Security & Protection

Sha Tin District, Hong Kong SAR 1 week ago

Senior Technical Manager, Cyber Defense Engineering

Sha Tin District, Hong Kong SAR 1 week ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Manager, Information Security Policy & Compliance

The Hong Kong Jockey Club

Posted 11 days ago

Job Viewed

Tap Again To Close

Job Description

Manager, Information Security Policy & Compliance

Join to apply for the Manager, Information Security Policy & Compliance role at The Hong Kong Jockey Club

Manager, Information Security Policy & Compliance

4 days ago Be among the first 25 applicants

Join to apply for the Manager, Information Security Policy & Compliance role at The Hong Kong Jockey Club

Job Summary
Reporting to the Senior Manager, ISRA, you will be a key member involved in uplifting the Club’s information security assurance as a second line of defence. You will be developing and maintaining Information Security Policy, Acceptable Use Policy and other policies. You will also be designing and implementing a compliance self-assessment programme for the compliance of the policies. You will also be involved in other information security assurance and technology risk management activities as assigned.

Job Summary
Reporting to the Senior Manager, ISRA, you will be a key member involved in uplifting the Club’s information security assurance as a second line of defence. You will be developing and maintaining Information Security Policy, Acceptable Use Policy and other policies. You will also be designing and implementing a compliance self-assessment programme for the compliance of the policies. You will also be involved in other information security assurance and technology risk management activities as assigned.
The Job
You will:

  • Develop and maintain information security policies.
  • Perform compliance assessment against information security policies.
  • Assist in programme management, and work with external consultants to deliver technology risk and information security projects.
  • Conduct information security risk assessments and control assurance testing.
  • Assist in delivering information security initiatives and prepare necessary documentation.
  • Assist in technology risk management activities.
  • Monitor and report on security metrics and trends to monitor the technology and information security risks.
  • Promote security awareness within the organization, fostering a culture of risk management.
About You
You should have:
  • University degree in Computer Science, Information Technology, Cybersecurity, Engineering, Risk Management or related fields.
  • 5 to 7 years of practical experience in Cyber Security or Technology Risk roles.
  • Hands-on experience in enterprise security infrastructure, risk assessments, and security testing.
  • Experience with identity and access management systems and principles.
  • Familiarity with security frameworks and standards (e.g. ISO27001, NIST).
  • Understand second line of defence roles and responsibilities.
  • Relevant certifications such as CISSP, CISA or CISM are preferred.
Terms of Employment
The level of appointment will be commensurate with qualification and experience.
How to Apply
Please send your resume, complete with expected salary and job reference by clicking the Apply Now.
We are an equal opportunity employer. Personal data provided by job applicants will be used strictly in accordance with the Club's notice to employees and prospective employees relating to the Personal Data (Privacy) Ordinance. A copy of which will be provided immediately upon request. Seniority level
  • Seniority level Mid-Senior level
Employment type
  • Employment type Full-time
Job function
  • Job function Information Technology
  • Industries Non-profit Organizations

Referrals increase your chances of interviewing at The Hong Kong Jockey Club by 2x

Sign in to set job alerts for “Information Security Manager” roles. Cybersecurity Manager, Group Cybersecurity Senior Security Consultant/ Cybersecurity Manager (CISSP, CISA, CISM) - 60K+B

Kwun Tong District, Hong Kong SAR 1 month ago

Senior Manager, IT Governance and Architecture Manager, Cyber Security (DTD079/25, 10360)

Kwun Tong District, Hong Kong SAR 4 days ago

Deputy Executive Manager, Security Architecture

Sha Tin District, Hong Kong SAR 1 week ago

Technology Risk Manager (IT Security) – Information Technology Department Assistant Technical Manager, Cyber Security

Sha Tin District, Hong Kong SAR 2 weeks ago

Service Delivery Manager (Cybersecurity) Cyber Engagement Lead, Mandiant Consulting, Google Cloud Manager, Operational and Strategic Risk (Cyber Security) Technical Manager, Data Security & Protection

Sha Tin District, Hong Kong SAR 1 week ago

Senior Technical Manager, Cyber Defense Engineering

Sha Tin District, Hong Kong SAR 1 week ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Associate Controls Engineer, System Security (2-year contract)

Hong Kong, Hong Kong Hong Kong Disneyland

Posted 10 days ago

Job Viewed

Tap Again To Close

Job Description

Associate Controls Engineer, System Security (2-year contract)

Join to apply for the Associate Controls Engineer, System Security (2-year contract) role at Hong Kong Disneyland .

Job Responsibilities:
  • Manage the existing fleet of physical and virtual servers for Scientific Systems and Facility Services.
  • Leverage industry knowledge for best practices in system management.
  • Compile and maintain regular reports on remediation activities.
  • Manage the HKDL VCenter and ESXi host memberships.
  • Maintain and document OT assets inventory for warranty, support, and lifecycle forecasting.
  • Install, configure, operate, maintain, and backup cyber security tools on physical servers and VMs.
  • Maintain the Active Directory infrastructure for the HKDL attractions environment.
Job Requirements:
  • Similar to responsibilities listed above, emphasizing server management and cybersecurity tools.
Basic Qualifications:
  • Bachelor’s degree in relevant fields such as Computer Science, Engineering, or Cybersecurity.
  • Minimum 1 year of experience in server support, or fresh graduates with relevant academic backgrounds.
  • Experience with VMware/Proxmox, Windows, Active Directory, server hardware, network setup, and Linux is preferred.
  • Ability to work independently and as part of a team, with good communication skills.
  • Knowledge of network architectures, server security, and documentation practices.
  • Willingness to work non-traditional hours, including weekends and holidays.
Additional Information:
  • Seniority level: Associate
  • Employment type: Contract
  • Job function: Information Technology
  • Industry: Entertainment Providers

This job posting is active; no indication of expiration.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Associate Controls Engineer, System Security (2-year contract)

Hong Kong Disneyland

Posted 3 days ago

Job Viewed

Tap Again To Close

Job Description

Associate Controls Engineer, System Security (2-year contract)

Join to apply for the Associate Controls Engineer, System Security (2-year contract) role at Hong Kong Disneyland .

Job Responsibilities:
  • Manage the existing fleet of physical and virtual servers for Scientific Systems and Facility Services.
  • Leverage industry knowledge for best practices in system management.
  • Compile and maintain regular reports on remediation activities.
  • Manage the HKDL VCenter and ESXi host memberships.
  • Maintain and document OT assets inventory for warranty, support, and lifecycle forecasting.
  • Install, configure, operate, maintain, and backup cyber security tools on physical servers and VMs.
  • Maintain the Active Directory infrastructure for the HKDL attractions environment.
Job Requirements:
  • Similar to responsibilities listed above, emphasizing server management and cybersecurity tools.
Basic Qualifications:
  • Bachelor’s degree in relevant fields such as Computer Science, Engineering, or Cybersecurity.
  • Minimum 1 year of experience in server support, or fresh graduates with relevant academic backgrounds.
  • Experience with VMware/Proxmox, Windows, Active Directory, server hardware, network setup, and Linux is preferred.
  • Ability to work independently and as part of a team, with good communication skills.
  • Knowledge of network architectures, server security, and documentation practices.
  • Willingness to work non-traditional hours, including weekends and holidays.
Additional Information:
  • Seniority level: Associate
  • Employment type: Contract
  • Job function: Information Technology
  • Industry: Entertainment Providers

This job posting is active; no indication of expiration.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Associate Director, Data Security and Compliance

Hong Kong, Hong Kong Manulife

Posted 10 days ago

Job Viewed

Tap Again To Close

Job Description

workfromhome
Associate Director, Data Security and Compliance

Join to apply for the Associate Director, Data Security and Compliance role at Manulife

Associate Director, Data Security and Compliance

2 weeks ago Be among the first 25 applicants

Join to apply for the Associate Director, Data Security and Compliance role at Manulife

The Asia Data Office (ADO) is a team of data professionals dedicated to enabling data as a strategic asset to drive business outcomes across Asia and the broader Asia segment. The team comprises Data Analysts, Architects, Engineers, and Business Intelligence professionals focused on delivering high-quality, accessible data for use cases spanning Business Intelligence, Digital Applications, and Advanced Analytics.

We are seeking a highly skilled and experienced Associate Director, Data Security and Compliance to spearhead the development and enforcement of access management frameworks and data risk policies across multiple data lakes in Asia, while ensuring alignment with global standards. This role is critical in maintaining regulatory compliance across ten markets and managing key data risks within the Asia Data Office.

Position Responsibilities

Access Management

  • Framework Development: Design, implement, and maintain robust access management frameworks and policies to ensure secure and efficient data access across Asia’s data lakes.
  • Policy Integration: Collaborate with global teams to align regional access policies with global standards.
  • Access Controls: Regularly monitor and audit access controls to ensure compliance with internal policies and security protocols.
  • User Access Management: Oversee role-based access provisioning, ensuring appropriate access levels based on responsibilities.
  • Technology Enablement: Partner with IT and architecture teams to implement tools and technologies that support access governance.

Data Governance

  • Governance Oversight: Ensure effective governance of data access, maintaining data integrity, security, and availability.
  • Quality Initiatives: Lead efforts to standardize and harmonize data access processes across the region.
  • Policy Enforcement: Ensure adherence to data governance policies by all stakeholders.

Regulatory Compliance

  • Compliance Monitoring: Track and ensure compliance with data access regulations across ten markets, adapting policies as needed.
  • Regulatory Liaison: Work closely with legal and compliance teams to meet local and international regulatory requirements.
  • Documentation: Maintain clear and comprehensive documentation of access policies and procedures.

Data Risk Management

  • Risk Identification & Mitigation: Identify, assess, and mitigate data privacy and security risks. Lead Privacy Impact Assessments (PIAs) and Data Protection Impact Assessments (DPIAs).
  • Risk Execution: Own and execute Information Risk Assessments (IRAs) for the Asia Data Office.
  • Audit & Compliance: Conduct regular audits to ensure ongoing compliance with privacy and security laws. Implement corrective actions as necessary.
  • Incident Response: Lead response efforts for data breach incidents, including investigation, reporting, and remediation.
  • Reporting: Provide regular updates on data risk status and mitigation strategies to the Asia Chief Data Officer and senior leadership.
  • Training & Awareness: Develop and deliver training programs to promote a culture of privacy and data security awareness.

Coordination & Collaboration

  • Cross-Functional Engagement: Collaborate with IT, legal, compliance, architecture, engineering, and business teams to ensure cohesive access management.
  • Culture Building: Promote data stewardship and accountability across the organization.
  • Solution Design: Work closely with solution and data architects to design access management solutions aligned with business and regulatory needs.

Required Qualifications

  • Bachelor’s or Master’s degree in Information Technology, Data Science, Business Administration, or a related field.
  • 8–10 years of experience in access management, data governance, or risk management.
  • Experience in a multinational organization with a focus on Asia.
  • Professional certifications such as CIPP, CRISC, or CDMP.
  • Strong knowledge of access frameworks, governance policies, and regulatory compliance.
  • Proficiency in technologies such as SQL, Oracle RDBMS, Microsoft Synapse, Azure Data Lake Storage (ADLS), Azure Data Factory, Cosmos DB, and Databricks.
  • Foundational understanding of emerging technologies like Generative AI and OpenAI.
  • Demonstrated experience in managing data risks and implementing mitigation strategies.
  • Excellent leadership, communication, and stakeholder management skills.
  • Ability to thrive in a fast-paced, dynamic environment with multiple priorities.

When You Join Our Team

  • We’ll empower you to learn and grow the career you want.
  • We’ll recognize and support you in a flexible environment where well-being and inclusion are more than just words.
  • As part of our global team, we’ll support you in shaping the future you want to see.

About Manulife And John Hancock

Manulife Financial Corporation is a leading international financial services provider, helping people make their decisions easier and lives better. To learn more about us, visit is an Equal Opportunity Employer

At Manulife/John Hancock, we embrace our diversity. We strive to attract, develop and retain a workforce that is as diverse as the customers we serve and to foster an inclusive work environment that embraces the strength of cultures and individuals. We are committed to fair recruitment, retention, advancement and compensation, and we administer all of our practices and programs without discrimination on the basis of race, ancestry, place of origin, colour, ethnic origin, citizenship, religion or religious beliefs, creed, sex (including pregnancy and pregnancy-related conditions), sexual orientation, genetic characteristics, veteran status, gender identity, gender expression, age, marital status, family status, disability, or any other ground protected by applicable law.

It is our priority to remove barriers to provide equal access to employment. A Human Resources representative will work with applicants who request a reasonable accommodation during the application process. All information shared during the accommodation request process will be stored and used in a manner that is consistent with applicable laws and Manulife/John Hancock policies. To request a reasonable accommodation in the application process, contact

Working Arrangement

Hybrid

Seniority level
  • Seniority level Mid-Senior level
Employment type
  • Employment type Full-time
Job function
  • Job function Other
  • Industries Insurance

Referrals increase your chances of interviewing at Manulife by 2x

Get notified about new Director of Security jobs in Hong Kong, Hong Kong SAR .

Corporate Bank - Head of Securities Services - Director/ VP Director/ Deputy Director, Client Development

Shenzhen, Guangdong, China CN¥20,000.00-CN¥0,000.00 2 years ago

Treasury Director, Chinese Securities, 85k Security Operations Manager (MNC Retail) Manager, Infrastructure and Network Operations, Global IT Security and Operation Specialist (Asst Manager Level) Senior Operations Manager, Securities Brokerage

Shenzhen, Guangdong, China CN 0,000.00-CN 0,000.00 2 years ago

Security Architect - Director/Executive Level Data Engineer, Director P4, Institutional Securities Technology Manager/Associate Director, Cyber Security (Strategy, Governance & Risk), Technology Consulting Manager/Associate Director, Cyber Security (Simulated Attack), Technology Consulting Manager, Cyber Security Operations (MJ006042) Manager/Associate Director , Cloud Security, Technology Consulting Manager/Associate Director, Data Privacy and Protection, Technology Consulting Assistant Manager (Ant Bank - For Securities Operations) Manager - Professional Environment Services (Facilities & Office Operation) - Hong Kong(314235) Marketing Officer/ Senior Marketing Officer

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Associate Director, Data Security and Compliance

Hong Kong, Hong Kong Manulife

Posted 26 days ago

Job Viewed

Tap Again To Close

Job Description

**Associate Director, Data Security and Compliance**
The Asia Data Office (ADO) is a team of data professionals dedicated to enabling data as a strategic asset to drive business outcomes across Asia and the broader Asia segment. The team comprises Data Analysts, Architects, Engineers, and Business Intelligence professionals focused on delivering high-quality, accessible data for use cases spanning Business Intelligence, Digital Applications, and Advanced Analytics.
We are seeking a highly skilled and experienced Associate Director, Data Security and Compliance to spearhead the development and enforcement of access management frameworks and data risk policies across multiple data lakes in Asia, while ensuring alignment with global standards. This role is critical in maintaining regulatory compliance across ten markets and managing key data risks within the Asia Data Office.
**Position Responsibilities:**
**Access Management**
+ **Framework Development:** Design, implement, and maintain robust access management frameworks and policies to ensure secure and efficient data access across Asia's data lakes.
+ **Policy Integration:** Collaborate with global teams to align regional access policies with global standards.
+ **Access Controls:** Regularly monitor and audit access controls to ensure compliance with internal policies and security protocols.
+ **User Access Management:** Oversee role-based access provisioning, ensuring appropriate access levels based on responsibilities.
+ **Technology Enablement:** Partner with IT and architecture teams to implement tools and technologies that support access governance.
**Data Governance**
+ **Governance Oversight:** Ensure effective governance of data access, maintaining data integrity, security, and availability.
+ **Quality Initiatives:** Lead efforts to standardize and harmonize data access processes across the region.
+ **Policy Enforcement:** Ensure adherence to data governance policies by all stakeholders.
**Regulatory Compliance**
+ **Compliance Monitoring:** Track and ensure compliance with data access regulations across ten markets, adapting policies as needed.
+ **Regulatory Liaison:** Work closely with legal and compliance teams to meet local and international regulatory requirements.
+ **Documentation:** Maintain clear and comprehensive documentation of access policies and procedures.
**Data Risk Management**
+ **Risk Identification & Mitigation:** Identify, assess, and mitigate data privacy and security risks. Lead Privacy Impact Assessments (PIAs) and Data Protection Impact Assessments (DPIAs).
+ **Risk Execution:** Own and execute Information Risk Assessments (IRAs) for the Asia Data Office.
+ **Audit & Compliance:** Conduct regular audits to ensure ongoing compliance with privacy and security laws. Implement corrective actions as necessary.
+ **Incident Response:** Lead response efforts for data breach incidents, including investigation, reporting, and remediation.
+ **Reporting:** Provide regular updates on data risk status and mitigation strategies to the Asia Chief Data Officer and senior leadership.
+ **Training & Awareness:** Develop and deliver training programs to promote a culture of privacy and data security awareness.
**Coordination & Collaboration**
+ **Cross-Functional Engagement:** Collaborate with IT, legal, compliance, architecture, engineering, and business teams to ensure cohesive access management.
+ **Culture Building:** Promote data stewardship and accountability across the organization.
+ **Solution Design:** Work closely with solution and data architects to design access management solutions aligned with business and regulatory needs.
**Required Qualifications:**
+ Bachelor's or Master's degree in Information Technology, Data Science, Business Administration, or a related field.
+ 8-10 years of experience in access management, data governance, or risk management.
+ Experience in a multinational organization with a focus on Asia.
+ Professional certifications such as CIPP, CRISC, or CDMP.
+ Strong knowledge of access frameworks, governance policies, and regulatory compliance.
+ Proficiency in technologies such as SQL, Oracle RDBMS, Microsoft Synapse, Azure Data Lake Storage (ADLS), Azure Data Factory, Cosmos DB, and Databricks.
+ Foundational understanding of emerging technologies like Generative AI and OpenAI.
+ Demonstrated experience in managing data risks and implementing mitigation strategies.
+ Excellent leadership, communication, and stakeholder management skills.
+ Ability to thrive in a fast-paced, dynamic environment with multiple priorities.
**_When you join our team:_**
+ We'll empower you to learn and grow the career you want.
+ We'll recognize and support you in a flexible environment where well-being and inclusion are more than just words.
+ As part of our global team, we'll support you in shaping the future you want to see.
**Acerca de Manulife y John Hancock**
Manulife Financial Corporation es un importante proveedor internacional de servicios financieros que ayuda a las personas a tomar decisiones de una manera más fácil y a vivir mejor. Para obtener más información acerca de nosotros, visite .
**Manulife es un empleador que ofrece igualdad de oportunidades**
En Manulife/John Hancock, valoramos nuestra diversidad. Nos esforzamos por atraer, formar y retener una fuerza laboral tan diversa como los clientes a los que prestamos servicios, y para fomentar un entorno laboral inclusivo en el que se aprovechen las fortalezas de las culturas y las personas. Estamos comprometidos con la equidad en las contrataciones, la retención de talento, el ascenso y la remuneración, y administramos todas nuestras prácticas y programas sin discriminación por motivos de raza, ascendencia, lugar de origen, color, origen étnico, ciudadanía, religión o creencias religiosas, credo, sexo (incluyendo el embarazo y las afecciones relacionadas con este), orientación sexual, características genéticas, condición de veterano, identidad de género, expresión de género, edad, estado civil, estatus familiar, discapacidad, o cualquier otro aspecto protegido por la ley vigente.
Nuestra prioridad es eliminar las barreras para garantizar la igualdad de acceso al empleo. Un representante de Recursos Humanos trabajará con los solicitantes que requieran una adaptación razonable durante el proceso de solicitud. Toda la información que se haya compartido durante el proceso de solicitud de adaptación se almacenará y utilizará de manera congruente con las leyes y las políticas de Manulife/John Hancock correspondientes. Para solicitar una adaptación razonable en el proceso de solicitud, envíenos un mensaje a .
**Modalidades de Trabajo**
Híbrido
This advertiser has chosen not to accept applicants from your region.

Associate Director, Data Security and Compliance

Hong Kong, Hong Kong Manulife

Posted 3 days ago

Job Viewed

Tap Again To Close

Job Description

Associate Director, Data Security and Compliance

Join to apply for the Associate Director, Data Security and Compliance role at Manulife

Associate Director, Data Security and Compliance

2 weeks ago Be among the first 25 applicants

Join to apply for the Associate Director, Data Security and Compliance role at Manulife

The Asia Data Office (ADO) is a team of data professionals dedicated to enabling data as a strategic asset to drive business outcomes across Asia and the broader Asia segment. The team comprises Data Analysts, Architects, Engineers, and Business Intelligence professionals focused on delivering high-quality, accessible data for use cases spanning Business Intelligence, Digital Applications, and Advanced Analytics.
We are seeking a highly skilled and experienced Associate Director, Data Security and Compliance to spearhead the development and enforcement of access management frameworks and data risk policies across multiple data lakes in Asia, while ensuring alignment with global standards. This role is critical in maintaining regulatory compliance across ten markets and managing key data risks within the Asia Data Office.
Position Responsibilities
Access Management

  • Framework Development: Design, implement, and maintain robust access management frameworks and policies to ensure secure and efficient data access across Asia’s data lakes.
  • Policy Integration: Collaborate with global teams to align regional access policies with global standards.
  • Access Controls: Regularly monitor and audit access controls to ensure compliance with internal policies and security protocols.
  • User Access Management: Oversee role-based access provisioning, ensuring appropriate access levels based on responsibilities.
  • Technology Enablement: Partner with IT and architecture teams to implement tools and technologies that support access governance.
Data Governance
  • Governance Oversight: Ensure effective governance of data access, maintaining data integrity, security, and availability.
  • Quality Initiatives: Lead efforts to standardize and harmonize data access processes across the region.
  • Policy Enforcement: Ensure adherence to data governance policies by all stakeholders.
Regulatory Compliance
  • Compliance Monitoring: Track and ensure compliance with data access regulations across ten markets, adapting policies as needed.
  • Regulatory Liaison: Work closely with legal and compliance teams to meet local and international regulatory requirements.
  • Documentation: Maintain clear and comprehensive documentation of access policies and procedures.
Data Risk Management
  • Risk Identification & Mitigation: Identify, assess, and mitigate data privacy and security risks. Lead Privacy Impact Assessments (PIAs) and Data Protection Impact Assessments (DPIAs).
  • Risk Execution: Own and execute Information Risk Assessments (IRAs) for the Asia Data Office.
  • Audit & Compliance: Conduct regular audits to ensure ongoing compliance with privacy and security laws. Implement corrective actions as necessary.
  • Incident Response: Lead response efforts for data breach incidents, including investigation, reporting, and remediation.
  • Reporting: Provide regular updates on data risk status and mitigation strategies to the Asia Chief Data Officer and senior leadership.
  • Training & Awareness: Develop and deliver training programs to promote a culture of privacy and data security awareness.
Coordination & Collaboration
  • Cross-Functional Engagement: Collaborate with IT, legal, compliance, architecture, engineering, and business teams to ensure cohesive access management.
  • Culture Building: Promote data stewardship and accountability across the organization.
  • Solution Design: Work closely with solution and data architects to design access management solutions aligned with business and regulatory needs.
Required Qualifications
  • Bachelor’s or Master’s degree in Information Technology, Data Science, Business Administration, or a related field.
  • 8–10 years of experience in access management, data governance, or risk management.
  • Experience in a multinational organization with a focus on Asia.
  • Professional certifications such as CIPP, CRISC, or CDMP.
  • Strong knowledge of access frameworks, governance policies, and regulatory compliance.
  • Proficiency in technologies such as SQL, Oracle RDBMS, Microsoft Synapse, Azure Data Lake Storage (ADLS), Azure Data Factory, Cosmos DB, and Databricks.
  • Foundational understanding of emerging technologies like Generative AI and OpenAI.
  • Demonstrated experience in managing data risks and implementing mitigation strategies.
  • Excellent leadership, communication, and stakeholder management skills.
  • Ability to thrive in a fast-paced, dynamic environment with multiple priorities.
When You Join Our Team
  • We’ll empower you to learn and grow the career you want.
  • We’ll recognize and support you in a flexible environment where well-being and inclusion are more than just words.
  • As part of our global team, we’ll support you in shaping the future you want to see.
About Manulife And John Hancock
Manulife Financial Corporation is a leading international financial services provider, helping people make their decisions easier and lives better. To learn more about us, visit is an Equal Opportunity Employer
At Manulife/John Hancock, we embrace our diversity. We strive to attract, develop and retain a workforce that is as diverse as the customers we serve and to foster an inclusive work environment that embraces the strength of cultures and individuals. We are committed to fair recruitment, retention, advancement and compensation, and we administer all of our practices and programs without discrimination on the basis of race, ancestry, place of origin, colour, ethnic origin, citizenship, religion or religious beliefs, creed, sex (including pregnancy and pregnancy-related conditions), sexual orientation, genetic characteristics, veteran status, gender identity, gender expression, age, marital status, family status, disability, or any other ground protected by applicable law.
It is our priority to remove barriers to provide equal access to employment. A Human Resources representative will work with applicants who request a reasonable accommodation during the application process. All information shared during the accommodation request process will be stored and used in a manner that is consistent with applicable laws and Manulife/John Hancock policies. To request a reasonable accommodation in the application process, contact
Working Arrangement
Hybrid Seniority level
  • Seniority level Mid-Senior level
Employment type
  • Employment type Full-time
Job function
  • Job function Other
  • Industries Insurance

Referrals increase your chances of interviewing at Manulife by 2x

Get notified about new Director of Security jobs in Hong Kong, Hong Kong SAR .

Corporate Bank - Head of Securities Services - Director/ VP Director/ Deputy Director, Client Development

Shenzhen, Guangdong, China CN¥20,000.00-CN¥0,000.00 2 years ago

Treasury Director, Chinese Securities, 85k Security Operations Manager (MNC Retail) Manager, Infrastructure and Network Operations, Global IT Security and Operation Specialist (Asst Manager Level) Senior Operations Manager, Securities Brokerage

Shenzhen, Guangdong, China CN 0,000.00-CN 0,000.00 2 years ago

Security Architect - Director/Executive Level Data Engineer, Director P4, Institutional Securities Technology Manager/Associate Director, Cyber Security (Strategy, Governance & Risk), Technology Consulting Manager/Associate Director, Cyber Security (Simulated Attack), Technology Consulting Manager, Cyber Security Operations (MJ006042) Manager/Associate Director , Cloud Security, Technology Consulting Manager/Associate Director, Data Privacy and Protection, Technology Consulting Assistant Manager (Ant Bank - For Securities Operations) Manager - Professional Environment Services (Facilities & Office Operation) - Hong Kong(314235) Marketing Officer/ Senior Marketing Officer

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.
Be The First To Know

About the latest Security controls Jobs in Hong Kong !

Manager, Risk Management

Mastercard

Posted 10 days ago

Job Viewed

Tap Again To Close

Job Description

Join to apply for the Manager, Risk Management role at Mastercard

Join to apply for the Manager, Risk Management role at Mastercard

Our Purpose

Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.

Our Purpose

Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.

Title And Summary

Manager, Risk Management

Who is Mastercard?

Mastercard is a global technology company in the payments industry. Our mission is to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart, and accessible. Using secure data and networks, partnerships and passion, our innovations and solutions help individuals, financial institutions, governments, and businesses realize their greatest potential.

Our decency quotient, or DQ, drives our culture and everything we do inside and outside of our company. With connections across more than 210 countries and territories, we are building a sustainable world that unlocks priceless possibilities for all.

Overview

The Asia-Pacific Business & Enterprise Risk team is looking for a Manager of Risk Management in Hong Kong to drive our business and enterprise risk strategies by consistently innovating and problem-solving. The ideal candidate is passionate about driving a thoughtful risk-taking culture, highly motivated, intellectually curious, analytical, and possesses an entrepreneurial mindset.

Role

Reporting to the Asia Pacific Business Risk Manager, this role is responsible for managing business, enterprise, technology and cyber risk exposures to the company, its customers, shareholders, employees, and assets.

This role will support the business and enterprise risk function which includes responsibilities such as:

  • Support regional risk committee meetings and related tasks.
  • Support the development and implementation of policies and procedures to minimize business and enterprise risk exposure
  • Support cross-functional initiatives, including product/service risk assessments to deliver on risk goals, policies, and procedures


Advises and support local and/or regional business strategies such as market entry and localization etc.; partners with local teams to optimize risk-related policies and a holistic risk perspective

  • Interface with other risk functions to support RFI/RFP reviews and to participate in regulatory compliance project/taskforce as a representative of the business and enterprise risk function
  • Prepare and maintain risk metrics, dashboards, and management reports
  • Manages and supports thoughtful risk-taking and/or policies and procedures


This role will also lead the work of the Hong Kong Risk Committee which includes responsibilities such as:

  • Support committee meetings and related tasks.
  • Providing risk management guidance to Business Owners on the scope of coverage of relevant governmental regulations and internal policies and procedures.
  • Monitor critical activities which are outsourced, to identify any change in scope of services being provided and ensure that risk assessment is re-evaluated in scenarios where there are changes in scope of services being provided by the service provider
  • Identify and schedule risk assessment for the committee each year basis the external and internal requirements
  • Review, prioritize, assess, and act on results of risk assessments/controls in conjunction with the business and the 2nd line risk teams
  • Facilitate remediation of issues or gaps identified as part of ongoing monitoring and strives to identify and mitigate potential risk (e.g., strategic, financial, operational, legal/ regulatory, brand/ reputation) to the company and provides risk management analysis, support, coordination, and oversight for the committee


All About You

The ideal candidate for this position should:

  • Experience managing a complex business, computer security and cyber risk operation including professional qualifications such as ISC2 Certified Information Security System Professional (CISSP) or Information Systems Security Management Professional (ISSMP) or ISACA Certified Information Systems Auditor (CISA)
  • Experience collaborating cross-functionally to identify and implement best practice risk processes
  • Experience working regionally, creating risk strategies to optimize risk-related policies and ensure compliance
  • Demonstrated successful oversight of the management and resolution of high-risk issues to ensure completeness and efficiency
  • Have the ability to manage regulatory notification and have prior regulatory interaction experience to manage and respond regulatory queries in alignment with relevant stakeholder teams
  • Experience working with senior stakeholders
  • A strong, confident, and exacting writer and speaker, able to communicate your vision and roadmap effectively to a wide variety of stakeholders
  • Always look for potential solutions to solve problems
  • Ability to communicate complex ideas effectively both verbally and in writing – in English and Cantonese, to engage with a diverse range of internal and external stakeholders.


Corporate Security Responsibility

All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:

  • Abide by Mastercard’s security policies and practices;
  • Ensure the confidentiality and integrity of the information being accessed;
  • Report any suspected information security violation or breach, and
  • Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines.

Seniority level
  • Seniority level Mid-Senior level
Employment type
  • Employment type Full-time
Job function
  • Job function Finance and Sales
  • Industries Financial Services, IT Services and IT Consulting, and Technology, Information and Internet

Referrals increase your chances of interviewing at Mastercard by 2x

Get notified about new Manager Risk Management jobs in Wan Chai District, Hong Kong SAR .

Risk Manager (Credit Policy and Portfolio Management) - Credit Risk Management Manager to Senior Manager, Risk Management (internal rating based approach) Assistant Manager of Risk Management department - HKB Senior Manager, Third Party Risk Management

Central & Western District, Hong Kong SAR 1 week ago

Senior Manager, Compliance & Internal Control (SEAA & MEIA)

Sha Tin District, Hong Kong SAR 6 days ago

Kowloon City District, Hong Kong SAR 6 days ago

Senior Risk Manager, Trustworthy Shopping Experience Senior Financial Institution Credit Risk Manager - Global Risk FSO - Risk Consulting - FSRM (Model Quant for Credit & Climate) - Experienced Senior/Manager - Hong Kong Assistant Vice President, Business Compliance & Operational Risk Senior Manager, Southeast Asian Management Division, Legal & Compliance and Operational Risk Management Department Assistant Manager, Customer Relationship

Wan Chai District, Hong Kong SAR 1 day ago

Manager (Long Term Business – Group-wide Supervision) Senior Technology Risk Manager (Overseas Branch)

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Manager, Risk Management

Hong Kong, Hong Kong Mastercard

Posted 3 days ago

Job Viewed

Tap Again To Close

Job Description

Join to apply for the Manager, Risk Management role at Mastercard

Join to apply for the Manager, Risk Management role at Mastercard

Our Purpose

Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.

Our Purpose
Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.
Title And Summary
Manager, Risk Management
Who is Mastercard?
Mastercard is a global technology company in the payments industry. Our mission is to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart, and accessible. Using secure data and networks, partnerships and passion, our innovations and solutions help individuals, financial institutions, governments, and businesses realize their greatest potential.
Our decency quotient, or DQ, drives our culture and everything we do inside and outside of our company. With connections across more than 210 countries and territories, we are building a sustainable world that unlocks priceless possibilities for all.
Overview
The Asia-Pacific Business & Enterprise Risk team is looking for a Manager of Risk Management in Hong Kong to drive our business and enterprise risk strategies by consistently innovating and problem-solving. The ideal candidate is passionate about driving a thoughtful risk-taking culture, highly motivated, intellectually curious, analytical, and possesses an entrepreneurial mindset.
Role
Reporting to the Asia Pacific Business Risk Manager, this role is responsible for managing business, enterprise, technology and cyber risk exposures to the company, its customers, shareholders, employees, and assets.
This role will support the business and enterprise risk function which includes responsibilities such as:

  • Support regional risk committee meetings and related tasks.
  • Support the development and implementation of policies and procedures to minimize business and enterprise risk exposure
  • Support cross-functional initiatives, including product/service risk assessments to deliver on risk goals, policies, and procedures
Advises and support local and/or regional business strategies such as market entry and localization etc.; partners with local teams to optimize risk-related policies and a holistic risk perspective
  • Interface with other risk functions to support RFI/RFP reviews and to participate in regulatory compliance project/taskforce as a representative of the business and enterprise risk function
  • Prepare and maintain risk metrics, dashboards, and management reports
  • Manages and supports thoughtful risk-taking and/or policies and procedures
This role will also lead the work of the Hong Kong Risk Committee which includes responsibilities such as:
  • Support committee meetings and related tasks.
  • Providing risk management guidance to Business Owners on the scope of coverage of relevant governmental regulations and internal policies and procedures.
  • Monitor critical activities which are outsourced, to identify any change in scope of services being provided and ensure that risk assessment is re-evaluated in scenarios where there are changes in scope of services being provided by the service provider
  • Identify and schedule risk assessment for the committee each year basis the external and internal requirements
  • Review, prioritize, assess, and act on results of risk assessments/controls in conjunction with the business and the 2nd line risk teams
  • Facilitate remediation of issues or gaps identified as part of ongoing monitoring and strives to identify and mitigate potential risk (e.g., strategic, financial, operational, legal/ regulatory, brand/ reputation) to the company and provides risk management analysis, support, coordination, and oversight for the committee
All About You
The ideal candidate for this position should:
  • Experience managing a complex business, computer security and cyber risk operation including professional qualifications such as ISC2 Certified Information Security System Professional (CISSP) or Information Systems Security Management Professional (ISSMP) or ISACA Certified Information Systems Auditor (CISA)
  • Experience collaborating cross-functionally to identify and implement best practice risk processes
  • Experience working regionally, creating risk strategies to optimize risk-related policies and ensure compliance
  • Demonstrated successful oversight of the management and resolution of high-risk issues to ensure completeness and efficiency
  • Have the ability to manage regulatory notification and have prior regulatory interaction experience to manage and respond regulatory queries in alignment with relevant stakeholder teams
  • Experience working with senior stakeholders
  • A strong, confident, and exacting writer and speaker, able to communicate your vision and roadmap effectively to a wide variety of stakeholders
  • Always look for potential solutions to solve problems
  • Ability to communicate complex ideas effectively both verbally and in writing – in English and Cantonese, to engage with a diverse range of internal and external stakeholders.
Corporate Security Responsibility
All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:
  • Abide by Mastercard’s security policies and practices;
  • Ensure the confidentiality and integrity of the information being accessed;
  • Report any suspected information security violation or breach, and
  • Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines.
Seniority level
  • Seniority level Mid-Senior level
Employment type
  • Employment type Full-time
Job function
  • Job function Finance and Sales
  • Industries Financial Services, IT Services and IT Consulting, and Technology, Information and Internet

Referrals increase your chances of interviewing at Mastercard by 2x

Get notified about new Manager Risk Management jobs in Wan Chai District, Hong Kong SAR .

Risk Manager (Credit Policy and Portfolio Management) - Credit Risk Management Manager to Senior Manager, Risk Management (internal rating based approach) Assistant Manager of Risk Management department - HKB Senior Manager, Third Party Risk Management

Central & Western District, Hong Kong SAR 1 week ago

Senior Manager, Compliance & Internal Control (SEAA & MEIA)

Sha Tin District, Hong Kong SAR 6 days ago

Kowloon City District, Hong Kong SAR 6 days ago

Senior Risk Manager, Trustworthy Shopping Experience Senior Financial Institution Credit Risk Manager - Global Risk FSO - Risk Consulting - FSRM (Model Quant for Credit & Climate) - Experienced Senior/Manager - Hong Kong Assistant Vice President, Business Compliance & Operational Risk Senior Manager, Southeast Asian Management Division, Legal & Compliance and Operational Risk Management Department Assistant Manager, Customer Relationship

Wan Chai District, Hong Kong SAR 1 day ago

Manager (Long Term Business – Group-wide Supervision) Senior Technology Risk Manager (Overseas Branch)

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Manager, Market Risk Management, Risk

CLSA

Posted 10 days ago

Job Viewed

Tap Again To Close

Job Description

Join to apply for the Manager, Market Risk Management, Risk role at CLSA

1 day ago Be among the first 25 applicants

Join to apply for the Manager, Market Risk Management, Risk role at CLSA

The role of this position is to be responsible for day-to-day risk management, risk monitoring & reporting for FICC and CSI overall.

Key Areas of Responsibilities

  • Manage and monitor the risk of each FICC trading desk appropriately, and manage their risk limits on daily basis.
  • Produce overall risk report on regular basis (weekly/monthly) for senior management.
  • Produce risk reports as required on regular basis (daily/monthly) and ad-hoc.
  • Perform risk analysis such as stress testing and scenario analysis.
  • Liaise with front office closely to understand the business models, identify the risks.
  • Work with risk model team closely to understand the risk models and parameter settings, to be able to explain the risk numbers.
  • Work with risk IT team (BJ) on the risk data maintenance.
  • Participate in various projects as required.

Requirements

  • Bachelor degree (above) holder in Risk Management / Finance / Economics / Financial Engineering / Mathematics or related discipline(s).
  • 3-8 years relevant experience in market risk management.
  • Very good knowledge of financial products, as well as their risks.
  • Wide and deep understanding of the market.
  • Solid background on quantitative analysis and computer skills.
  • Excellent communication and interpersonal skills, can work under pressure.
  • Excellent command of spoken and written communications in English & Chinese (including Putonghua).
Seniority level
  • Seniority level Not Applicable
Employment type
  • Employment type Full-time
Job function
  • Job function Finance

Referrals increase your chances of interviewing at CLSA by 2x

Sign in to set job alerts for “Market Risk Manager” roles. First Vice President, Head of Credit Card Team Head, Unsecured & Secured - Consumer Credit Recovery

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.
 

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All Security Controls Jobs