153 Security Controls jobs in Hong Kong
Manager, Information Security Policy & Compliance
Posted 10 days ago
Job Viewed
Job Description
Join to apply for the Manager, Information Security Policy & Compliance role at The Hong Kong Jockey Club
Manager, Information Security Policy & Compliance4 days ago Be among the first 25 applicants
Join to apply for the Manager, Information Security Policy & Compliance role at The Hong Kong Jockey Club
Job Summary
Reporting to the Senior Manager, ISRA, you will be a key member involved in uplifting the Club’s information security assurance as a second line of defence. You will be developing and maintaining Information Security Policy, Acceptable Use Policy and other policies. You will also be designing and implementing a compliance self-assessment programme for the compliance of the policies. You will also be involved in other information security assurance and technology risk management activities as assigned.
Job Summary
Reporting to the Senior Manager, ISRA, you will be a key member involved in uplifting the Club’s information security assurance as a second line of defence. You will be developing and maintaining Information Security Policy, Acceptable Use Policy and other policies. You will also be designing and implementing a compliance self-assessment programme for the compliance of the policies. You will also be involved in other information security assurance and technology risk management activities as assigned.
The Job
You will:
- Develop and maintain information security policies.
- Perform compliance assessment against information security policies.
- Assist in programme management, and work with external consultants to deliver technology risk and information security projects.
- Conduct information security risk assessments and control assurance testing.
- Assist in delivering information security initiatives and prepare necessary documentation.
- Assist in technology risk management activities.
- Monitor and report on security metrics and trends to monitor the technology and information security risks.
- Promote security awareness within the organization, fostering a culture of risk management.
You should have:
- University degree in Computer Science, Information Technology, Cybersecurity, Engineering, Risk Management or related fields.
- 5 to 7 years of practical experience in Cyber Security or Technology Risk roles.
- Hands-on experience in enterprise security infrastructure, risk assessments, and security testing.
- Experience with identity and access management systems and principles.
- Familiarity with security frameworks and standards (e.g. ISO27001, NIST).
- Understand second line of defence roles and responsibilities.
- Relevant certifications such as CISSP, CISA or CISM are preferred.
The level of appointment will be commensurate with qualification and experience.
How to Apply
Please send your resume, complete with expected salary and job reference by clicking the Apply Now.
We are an equal opportunity employer. Personal data provided by job applicants will be used strictly in accordance with the Club's notice to employees and prospective employees relating to the Personal Data (Privacy) Ordinance. A copy of which will be provided immediately upon request. Seniority level
- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Information Technology
- Industries Non-profit Organizations
Referrals increase your chances of interviewing at The Hong Kong Jockey Club by 2x
Sign in to set job alerts for “Information Security Manager” roles. Cybersecurity Manager, Group Cybersecurity Senior Security Consultant/ Cybersecurity Manager (CISSP, CISA, CISM) - 60K+BKwun Tong District, Hong Kong SAR 1 month ago
Senior Manager, IT Governance and Architecture Manager, Cyber Security (DTD079/25, 10360)Kwun Tong District, Hong Kong SAR 4 days ago
Deputy Executive Manager, Security ArchitectureSha Tin District, Hong Kong SAR 1 week ago
Technology Risk Manager (IT Security) – Information Technology Department Assistant Technical Manager, Cyber SecuritySha Tin District, Hong Kong SAR 2 weeks ago
Service Delivery Manager (Cybersecurity) Cyber Engagement Lead, Mandiant Consulting, Google Cloud Manager, Operational and Strategic Risk (Cyber Security) Technical Manager, Data Security & ProtectionSha Tin District, Hong Kong SAR 1 week ago
Senior Technical Manager, Cyber Defense EngineeringSha Tin District, Hong Kong SAR 1 week ago
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrManager, Information Security Policy & Compliance
Posted 11 days ago
Job Viewed
Job Description
Join to apply for the Manager, Information Security Policy & Compliance role at The Hong Kong Jockey Club
Manager, Information Security Policy & Compliance4 days ago Be among the first 25 applicants
Join to apply for the Manager, Information Security Policy & Compliance role at The Hong Kong Jockey Club
Job Summary
Reporting to the Senior Manager, ISRA, you will be a key member involved in uplifting the Club’s information security assurance as a second line of defence. You will be developing and maintaining Information Security Policy, Acceptable Use Policy and other policies. You will also be designing and implementing a compliance self-assessment programme for the compliance of the policies. You will also be involved in other information security assurance and technology risk management activities as assigned.
Job Summary
Reporting to the Senior Manager, ISRA, you will be a key member involved in uplifting the Club’s information security assurance as a second line of defence. You will be developing and maintaining Information Security Policy, Acceptable Use Policy and other policies. You will also be designing and implementing a compliance self-assessment programme for the compliance of the policies. You will also be involved in other information security assurance and technology risk management activities as assigned.
The Job
You will:
- Develop and maintain information security policies.
- Perform compliance assessment against information security policies.
- Assist in programme management, and work with external consultants to deliver technology risk and information security projects.
- Conduct information security risk assessments and control assurance testing.
- Assist in delivering information security initiatives and prepare necessary documentation.
- Assist in technology risk management activities.
- Monitor and report on security metrics and trends to monitor the technology and information security risks.
- Promote security awareness within the organization, fostering a culture of risk management.
You should have:
- University degree in Computer Science, Information Technology, Cybersecurity, Engineering, Risk Management or related fields.
- 5 to 7 years of practical experience in Cyber Security or Technology Risk roles.
- Hands-on experience in enterprise security infrastructure, risk assessments, and security testing.
- Experience with identity and access management systems and principles.
- Familiarity with security frameworks and standards (e.g. ISO27001, NIST).
- Understand second line of defence roles and responsibilities.
- Relevant certifications such as CISSP, CISA or CISM are preferred.
The level of appointment will be commensurate with qualification and experience.
How to Apply
Please send your resume, complete with expected salary and job reference by clicking the Apply Now.
We are an equal opportunity employer. Personal data provided by job applicants will be used strictly in accordance with the Club's notice to employees and prospective employees relating to the Personal Data (Privacy) Ordinance. A copy of which will be provided immediately upon request. Seniority level
- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Information Technology
- Industries Non-profit Organizations
Referrals increase your chances of interviewing at The Hong Kong Jockey Club by 2x
Sign in to set job alerts for “Information Security Manager” roles. Cybersecurity Manager, Group Cybersecurity Senior Security Consultant/ Cybersecurity Manager (CISSP, CISA, CISM) - 60K+BKwun Tong District, Hong Kong SAR 1 month ago
Senior Manager, IT Governance and Architecture Manager, Cyber Security (DTD079/25, 10360)Kwun Tong District, Hong Kong SAR 4 days ago
Deputy Executive Manager, Security ArchitectureSha Tin District, Hong Kong SAR 1 week ago
Technology Risk Manager (IT Security) – Information Technology Department Assistant Technical Manager, Cyber SecuritySha Tin District, Hong Kong SAR 2 weeks ago
Service Delivery Manager (Cybersecurity) Cyber Engagement Lead, Mandiant Consulting, Google Cloud Manager, Operational and Strategic Risk (Cyber Security) Technical Manager, Data Security & ProtectionSha Tin District, Hong Kong SAR 1 week ago
Senior Technical Manager, Cyber Defense EngineeringSha Tin District, Hong Kong SAR 1 week ago
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrAssociate Controls Engineer, System Security (2-year contract)
Posted 10 days ago
Job Viewed
Job Description
Join to apply for the Associate Controls Engineer, System Security (2-year contract) role at Hong Kong Disneyland .
Job Responsibilities:- Manage the existing fleet of physical and virtual servers for Scientific Systems and Facility Services.
- Leverage industry knowledge for best practices in system management.
- Compile and maintain regular reports on remediation activities.
- Manage the HKDL VCenter and ESXi host memberships.
- Maintain and document OT assets inventory for warranty, support, and lifecycle forecasting.
- Install, configure, operate, maintain, and backup cyber security tools on physical servers and VMs.
- Maintain the Active Directory infrastructure for the HKDL attractions environment.
- Similar to responsibilities listed above, emphasizing server management and cybersecurity tools.
- Bachelor’s degree in relevant fields such as Computer Science, Engineering, or Cybersecurity.
- Minimum 1 year of experience in server support, or fresh graduates with relevant academic backgrounds.
- Experience with VMware/Proxmox, Windows, Active Directory, server hardware, network setup, and Linux is preferred.
- Ability to work independently and as part of a team, with good communication skills.
- Knowledge of network architectures, server security, and documentation practices.
- Willingness to work non-traditional hours, including weekends and holidays.
- Seniority level: Associate
- Employment type: Contract
- Job function: Information Technology
- Industry: Entertainment Providers
This job posting is active; no indication of expiration.
#J-18808-LjbffrAssociate Controls Engineer, System Security (2-year contract)
Posted 3 days ago
Job Viewed
Job Description
Join to apply for the Associate Controls Engineer, System Security (2-year contract) role at Hong Kong Disneyland .
Job Responsibilities:- Manage the existing fleet of physical and virtual servers for Scientific Systems and Facility Services.
- Leverage industry knowledge for best practices in system management.
- Compile and maintain regular reports on remediation activities.
- Manage the HKDL VCenter and ESXi host memberships.
- Maintain and document OT assets inventory for warranty, support, and lifecycle forecasting.
- Install, configure, operate, maintain, and backup cyber security tools on physical servers and VMs.
- Maintain the Active Directory infrastructure for the HKDL attractions environment.
- Similar to responsibilities listed above, emphasizing server management and cybersecurity tools.
- Bachelor’s degree in relevant fields such as Computer Science, Engineering, or Cybersecurity.
- Minimum 1 year of experience in server support, or fresh graduates with relevant academic backgrounds.
- Experience with VMware/Proxmox, Windows, Active Directory, server hardware, network setup, and Linux is preferred.
- Ability to work independently and as part of a team, with good communication skills.
- Knowledge of network architectures, server security, and documentation practices.
- Willingness to work non-traditional hours, including weekends and holidays.
- Seniority level: Associate
- Employment type: Contract
- Job function: Information Technology
- Industry: Entertainment Providers
This job posting is active; no indication of expiration.
#J-18808-LjbffrAssociate Director, Data Security and Compliance
Posted 10 days ago
Job Viewed
Job Description
Join to apply for the Associate Director, Data Security and Compliance role at Manulife
Associate Director, Data Security and Compliance2 weeks ago Be among the first 25 applicants
Join to apply for the Associate Director, Data Security and Compliance role at Manulife
The Asia Data Office (ADO) is a team of data professionals dedicated to enabling data as a strategic asset to drive business outcomes across Asia and the broader Asia segment. The team comprises Data Analysts, Architects, Engineers, and Business Intelligence professionals focused on delivering high-quality, accessible data for use cases spanning Business Intelligence, Digital Applications, and Advanced Analytics.
We are seeking a highly skilled and experienced Associate Director, Data Security and Compliance to spearhead the development and enforcement of access management frameworks and data risk policies across multiple data lakes in Asia, while ensuring alignment with global standards. This role is critical in maintaining regulatory compliance across ten markets and managing key data risks within the Asia Data Office.
Position Responsibilities
Access Management
- Framework Development: Design, implement, and maintain robust access management frameworks and policies to ensure secure and efficient data access across Asia’s data lakes.
- Policy Integration: Collaborate with global teams to align regional access policies with global standards.
- Access Controls: Regularly monitor and audit access controls to ensure compliance with internal policies and security protocols.
- User Access Management: Oversee role-based access provisioning, ensuring appropriate access levels based on responsibilities.
- Technology Enablement: Partner with IT and architecture teams to implement tools and technologies that support access governance.
- Governance Oversight: Ensure effective governance of data access, maintaining data integrity, security, and availability.
- Quality Initiatives: Lead efforts to standardize and harmonize data access processes across the region.
- Policy Enforcement: Ensure adherence to data governance policies by all stakeholders.
- Compliance Monitoring: Track and ensure compliance with data access regulations across ten markets, adapting policies as needed.
- Regulatory Liaison: Work closely with legal and compliance teams to meet local and international regulatory requirements.
- Documentation: Maintain clear and comprehensive documentation of access policies and procedures.
- Risk Identification & Mitigation: Identify, assess, and mitigate data privacy and security risks. Lead Privacy Impact Assessments (PIAs) and Data Protection Impact Assessments (DPIAs).
- Risk Execution: Own and execute Information Risk Assessments (IRAs) for the Asia Data Office.
- Audit & Compliance: Conduct regular audits to ensure ongoing compliance with privacy and security laws. Implement corrective actions as necessary.
- Incident Response: Lead response efforts for data breach incidents, including investigation, reporting, and remediation.
- Reporting: Provide regular updates on data risk status and mitigation strategies to the Asia Chief Data Officer and senior leadership.
- Training & Awareness: Develop and deliver training programs to promote a culture of privacy and data security awareness.
- Cross-Functional Engagement: Collaborate with IT, legal, compliance, architecture, engineering, and business teams to ensure cohesive access management.
- Culture Building: Promote data stewardship and accountability across the organization.
- Solution Design: Work closely with solution and data architects to design access management solutions aligned with business and regulatory needs.
- Bachelor’s or Master’s degree in Information Technology, Data Science, Business Administration, or a related field.
- 8–10 years of experience in access management, data governance, or risk management.
- Experience in a multinational organization with a focus on Asia.
- Professional certifications such as CIPP, CRISC, or CDMP.
- Strong knowledge of access frameworks, governance policies, and regulatory compliance.
- Proficiency in technologies such as SQL, Oracle RDBMS, Microsoft Synapse, Azure Data Lake Storage (ADLS), Azure Data Factory, Cosmos DB, and Databricks.
- Foundational understanding of emerging technologies like Generative AI and OpenAI.
- Demonstrated experience in managing data risks and implementing mitigation strategies.
- Excellent leadership, communication, and stakeholder management skills.
- Ability to thrive in a fast-paced, dynamic environment with multiple priorities.
- We’ll empower you to learn and grow the career you want.
- We’ll recognize and support you in a flexible environment where well-being and inclusion are more than just words.
- As part of our global team, we’ll support you in shaping the future you want to see.
Manulife Financial Corporation is a leading international financial services provider, helping people make their decisions easier and lives better. To learn more about us, visit is an Equal Opportunity Employer
At Manulife/John Hancock, we embrace our diversity. We strive to attract, develop and retain a workforce that is as diverse as the customers we serve and to foster an inclusive work environment that embraces the strength of cultures and individuals. We are committed to fair recruitment, retention, advancement and compensation, and we administer all of our practices and programs without discrimination on the basis of race, ancestry, place of origin, colour, ethnic origin, citizenship, religion or religious beliefs, creed, sex (including pregnancy and pregnancy-related conditions), sexual orientation, genetic characteristics, veteran status, gender identity, gender expression, age, marital status, family status, disability, or any other ground protected by applicable law.
It is our priority to remove barriers to provide equal access to employment. A Human Resources representative will work with applicants who request a reasonable accommodation during the application process. All information shared during the accommodation request process will be stored and used in a manner that is consistent with applicable laws and Manulife/John Hancock policies. To request a reasonable accommodation in the application process, contact
Working Arrangement
Hybrid Seniority level
- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Other
- Industries Insurance
Referrals increase your chances of interviewing at Manulife by 2x
Get notified about new Director of Security jobs in Hong Kong, Hong Kong SAR .
Corporate Bank - Head of Securities Services - Director/ VP Director/ Deputy Director, Client DevelopmentShenzhen, Guangdong, China CN¥20,000.00-CN¥0,000.00 2 years ago
Treasury Director, Chinese Securities, 85k Security Operations Manager (MNC Retail) Manager, Infrastructure and Network Operations, Global IT Security and Operation Specialist (Asst Manager Level) Senior Operations Manager, Securities BrokerageShenzhen, Guangdong, China CN 0,000.00-CN 0,000.00 2 years ago
Security Architect - Director/Executive Level Data Engineer, Director P4, Institutional Securities Technology Manager/Associate Director, Cyber Security (Strategy, Governance & Risk), Technology Consulting Manager/Associate Director, Cyber Security (Simulated Attack), Technology Consulting Manager, Cyber Security Operations (MJ006042) Manager/Associate Director , Cloud Security, Technology Consulting Manager/Associate Director, Data Privacy and Protection, Technology Consulting Assistant Manager (Ant Bank - For Securities Operations) Manager - Professional Environment Services (Facilities & Office Operation) - Hong Kong(314235) Marketing Officer/ Senior Marketing OfficerWe’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrAssociate Director, Data Security and Compliance
Posted 26 days ago
Job Viewed
Job Description
The Asia Data Office (ADO) is a team of data professionals dedicated to enabling data as a strategic asset to drive business outcomes across Asia and the broader Asia segment. The team comprises Data Analysts, Architects, Engineers, and Business Intelligence professionals focused on delivering high-quality, accessible data for use cases spanning Business Intelligence, Digital Applications, and Advanced Analytics.
We are seeking a highly skilled and experienced Associate Director, Data Security and Compliance to spearhead the development and enforcement of access management frameworks and data risk policies across multiple data lakes in Asia, while ensuring alignment with global standards. This role is critical in maintaining regulatory compliance across ten markets and managing key data risks within the Asia Data Office.
**Position Responsibilities:**
**Access Management**
+ **Framework Development:** Design, implement, and maintain robust access management frameworks and policies to ensure secure and efficient data access across Asia's data lakes.
+ **Policy Integration:** Collaborate with global teams to align regional access policies with global standards.
+ **Access Controls:** Regularly monitor and audit access controls to ensure compliance with internal policies and security protocols.
+ **User Access Management:** Oversee role-based access provisioning, ensuring appropriate access levels based on responsibilities.
+ **Technology Enablement:** Partner with IT and architecture teams to implement tools and technologies that support access governance.
**Data Governance**
+ **Governance Oversight:** Ensure effective governance of data access, maintaining data integrity, security, and availability.
+ **Quality Initiatives:** Lead efforts to standardize and harmonize data access processes across the region.
+ **Policy Enforcement:** Ensure adherence to data governance policies by all stakeholders.
**Regulatory Compliance**
+ **Compliance Monitoring:** Track and ensure compliance with data access regulations across ten markets, adapting policies as needed.
+ **Regulatory Liaison:** Work closely with legal and compliance teams to meet local and international regulatory requirements.
+ **Documentation:** Maintain clear and comprehensive documentation of access policies and procedures.
**Data Risk Management**
+ **Risk Identification & Mitigation:** Identify, assess, and mitigate data privacy and security risks. Lead Privacy Impact Assessments (PIAs) and Data Protection Impact Assessments (DPIAs).
+ **Risk Execution:** Own and execute Information Risk Assessments (IRAs) for the Asia Data Office.
+ **Audit & Compliance:** Conduct regular audits to ensure ongoing compliance with privacy and security laws. Implement corrective actions as necessary.
+ **Incident Response:** Lead response efforts for data breach incidents, including investigation, reporting, and remediation.
+ **Reporting:** Provide regular updates on data risk status and mitigation strategies to the Asia Chief Data Officer and senior leadership.
+ **Training & Awareness:** Develop and deliver training programs to promote a culture of privacy and data security awareness.
**Coordination & Collaboration**
+ **Cross-Functional Engagement:** Collaborate with IT, legal, compliance, architecture, engineering, and business teams to ensure cohesive access management.
+ **Culture Building:** Promote data stewardship and accountability across the organization.
+ **Solution Design:** Work closely with solution and data architects to design access management solutions aligned with business and regulatory needs.
**Required Qualifications:**
+ Bachelor's or Master's degree in Information Technology, Data Science, Business Administration, or a related field.
+ 8-10 years of experience in access management, data governance, or risk management.
+ Experience in a multinational organization with a focus on Asia.
+ Professional certifications such as CIPP, CRISC, or CDMP.
+ Strong knowledge of access frameworks, governance policies, and regulatory compliance.
+ Proficiency in technologies such as SQL, Oracle RDBMS, Microsoft Synapse, Azure Data Lake Storage (ADLS), Azure Data Factory, Cosmos DB, and Databricks.
+ Foundational understanding of emerging technologies like Generative AI and OpenAI.
+ Demonstrated experience in managing data risks and implementing mitigation strategies.
+ Excellent leadership, communication, and stakeholder management skills.
+ Ability to thrive in a fast-paced, dynamic environment with multiple priorities.
**_When you join our team:_**
+ We'll empower you to learn and grow the career you want.
+ We'll recognize and support you in a flexible environment where well-being and inclusion are more than just words.
+ As part of our global team, we'll support you in shaping the future you want to see.
**Acerca de Manulife y John Hancock**
Manulife Financial Corporation es un importante proveedor internacional de servicios financieros que ayuda a las personas a tomar decisiones de una manera más fácil y a vivir mejor. Para obtener más información acerca de nosotros, visite .
**Manulife es un empleador que ofrece igualdad de oportunidades**
En Manulife/John Hancock, valoramos nuestra diversidad. Nos esforzamos por atraer, formar y retener una fuerza laboral tan diversa como los clientes a los que prestamos servicios, y para fomentar un entorno laboral inclusivo en el que se aprovechen las fortalezas de las culturas y las personas. Estamos comprometidos con la equidad en las contrataciones, la retención de talento, el ascenso y la remuneración, y administramos todas nuestras prácticas y programas sin discriminación por motivos de raza, ascendencia, lugar de origen, color, origen étnico, ciudadanía, religión o creencias religiosas, credo, sexo (incluyendo el embarazo y las afecciones relacionadas con este), orientación sexual, características genéticas, condición de veterano, identidad de género, expresión de género, edad, estado civil, estatus familiar, discapacidad, o cualquier otro aspecto protegido por la ley vigente.
Nuestra prioridad es eliminar las barreras para garantizar la igualdad de acceso al empleo. Un representante de Recursos Humanos trabajará con los solicitantes que requieran una adaptación razonable durante el proceso de solicitud. Toda la información que se haya compartido durante el proceso de solicitud de adaptación se almacenará y utilizará de manera congruente con las leyes y las políticas de Manulife/John Hancock correspondientes. Para solicitar una adaptación razonable en el proceso de solicitud, envíenos un mensaje a .
**Modalidades de Trabajo**
Híbrido
Associate Director, Data Security and Compliance
Posted 3 days ago
Job Viewed
Job Description
Join to apply for the Associate Director, Data Security and Compliance role at Manulife
Associate Director, Data Security and Compliance2 weeks ago Be among the first 25 applicants
Join to apply for the Associate Director, Data Security and Compliance role at Manulife
The Asia Data Office (ADO) is a team of data professionals dedicated to enabling data as a strategic asset to drive business outcomes across Asia and the broader Asia segment. The team comprises Data Analysts, Architects, Engineers, and Business Intelligence professionals focused on delivering high-quality, accessible data for use cases spanning Business Intelligence, Digital Applications, and Advanced Analytics.
We are seeking a highly skilled and experienced Associate Director, Data Security and Compliance to spearhead the development and enforcement of access management frameworks and data risk policies across multiple data lakes in Asia, while ensuring alignment with global standards. This role is critical in maintaining regulatory compliance across ten markets and managing key data risks within the Asia Data Office.
Position Responsibilities
Access Management
- Framework Development: Design, implement, and maintain robust access management frameworks and policies to ensure secure and efficient data access across Asia’s data lakes.
- Policy Integration: Collaborate with global teams to align regional access policies with global standards.
- Access Controls: Regularly monitor and audit access controls to ensure compliance with internal policies and security protocols.
- User Access Management: Oversee role-based access provisioning, ensuring appropriate access levels based on responsibilities.
- Technology Enablement: Partner with IT and architecture teams to implement tools and technologies that support access governance.
- Governance Oversight: Ensure effective governance of data access, maintaining data integrity, security, and availability.
- Quality Initiatives: Lead efforts to standardize and harmonize data access processes across the region.
- Policy Enforcement: Ensure adherence to data governance policies by all stakeholders.
- Compliance Monitoring: Track and ensure compliance with data access regulations across ten markets, adapting policies as needed.
- Regulatory Liaison: Work closely with legal and compliance teams to meet local and international regulatory requirements.
- Documentation: Maintain clear and comprehensive documentation of access policies and procedures.
- Risk Identification & Mitigation: Identify, assess, and mitigate data privacy and security risks. Lead Privacy Impact Assessments (PIAs) and Data Protection Impact Assessments (DPIAs).
- Risk Execution: Own and execute Information Risk Assessments (IRAs) for the Asia Data Office.
- Audit & Compliance: Conduct regular audits to ensure ongoing compliance with privacy and security laws. Implement corrective actions as necessary.
- Incident Response: Lead response efforts for data breach incidents, including investigation, reporting, and remediation.
- Reporting: Provide regular updates on data risk status and mitigation strategies to the Asia Chief Data Officer and senior leadership.
- Training & Awareness: Develop and deliver training programs to promote a culture of privacy and data security awareness.
- Cross-Functional Engagement: Collaborate with IT, legal, compliance, architecture, engineering, and business teams to ensure cohesive access management.
- Culture Building: Promote data stewardship and accountability across the organization.
- Solution Design: Work closely with solution and data architects to design access management solutions aligned with business and regulatory needs.
- Bachelor’s or Master’s degree in Information Technology, Data Science, Business Administration, or a related field.
- 8–10 years of experience in access management, data governance, or risk management.
- Experience in a multinational organization with a focus on Asia.
- Professional certifications such as CIPP, CRISC, or CDMP.
- Strong knowledge of access frameworks, governance policies, and regulatory compliance.
- Proficiency in technologies such as SQL, Oracle RDBMS, Microsoft Synapse, Azure Data Lake Storage (ADLS), Azure Data Factory, Cosmos DB, and Databricks.
- Foundational understanding of emerging technologies like Generative AI and OpenAI.
- Demonstrated experience in managing data risks and implementing mitigation strategies.
- Excellent leadership, communication, and stakeholder management skills.
- Ability to thrive in a fast-paced, dynamic environment with multiple priorities.
- We’ll empower you to learn and grow the career you want.
- We’ll recognize and support you in a flexible environment where well-being and inclusion are more than just words.
- As part of our global team, we’ll support you in shaping the future you want to see.
Manulife Financial Corporation is a leading international financial services provider, helping people make their decisions easier and lives better. To learn more about us, visit is an Equal Opportunity Employer
At Manulife/John Hancock, we embrace our diversity. We strive to attract, develop and retain a workforce that is as diverse as the customers we serve and to foster an inclusive work environment that embraces the strength of cultures and individuals. We are committed to fair recruitment, retention, advancement and compensation, and we administer all of our practices and programs without discrimination on the basis of race, ancestry, place of origin, colour, ethnic origin, citizenship, religion or religious beliefs, creed, sex (including pregnancy and pregnancy-related conditions), sexual orientation, genetic characteristics, veteran status, gender identity, gender expression, age, marital status, family status, disability, or any other ground protected by applicable law.
It is our priority to remove barriers to provide equal access to employment. A Human Resources representative will work with applicants who request a reasonable accommodation during the application process. All information shared during the accommodation request process will be stored and used in a manner that is consistent with applicable laws and Manulife/John Hancock policies. To request a reasonable accommodation in the application process, contact
Working Arrangement
Hybrid Seniority level
- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Other
- Industries Insurance
Referrals increase your chances of interviewing at Manulife by 2x
Get notified about new Director of Security jobs in Hong Kong, Hong Kong SAR .
Corporate Bank - Head of Securities Services - Director/ VP Director/ Deputy Director, Client DevelopmentShenzhen, Guangdong, China CN¥20,000.00-CN¥0,000.00 2 years ago
Treasury Director, Chinese Securities, 85k Security Operations Manager (MNC Retail) Manager, Infrastructure and Network Operations, Global IT Security and Operation Specialist (Asst Manager Level) Senior Operations Manager, Securities BrokerageShenzhen, Guangdong, China CN 0,000.00-CN 0,000.00 2 years ago
Security Architect - Director/Executive Level Data Engineer, Director P4, Institutional Securities Technology Manager/Associate Director, Cyber Security (Strategy, Governance & Risk), Technology Consulting Manager/Associate Director, Cyber Security (Simulated Attack), Technology Consulting Manager, Cyber Security Operations (MJ006042) Manager/Associate Director , Cloud Security, Technology Consulting Manager/Associate Director, Data Privacy and Protection, Technology Consulting Assistant Manager (Ant Bank - For Securities Operations) Manager - Professional Environment Services (Facilities & Office Operation) - Hong Kong(314235) Marketing Officer/ Senior Marketing OfficerWe’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrBe The First To Know
About the latest Security controls Jobs in Hong Kong !
Manager, Risk Management
Posted 10 days ago
Job Viewed
Job Description
Join to apply for the Manager, Risk Management role at Mastercard
Join to apply for the Manager, Risk Management role at Mastercard
Our Purpose
Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.
Our Purpose
Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.
Title And Summary
Manager, Risk Management
Who is Mastercard?
Mastercard is a global technology company in the payments industry. Our mission is to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart, and accessible. Using secure data and networks, partnerships and passion, our innovations and solutions help individuals, financial institutions, governments, and businesses realize their greatest potential.
Our decency quotient, or DQ, drives our culture and everything we do inside and outside of our company. With connections across more than 210 countries and territories, we are building a sustainable world that unlocks priceless possibilities for all.
Overview
The Asia-Pacific Business & Enterprise Risk team is looking for a Manager of Risk Management in Hong Kong to drive our business and enterprise risk strategies by consistently innovating and problem-solving. The ideal candidate is passionate about driving a thoughtful risk-taking culture, highly motivated, intellectually curious, analytical, and possesses an entrepreneurial mindset.
Role
Reporting to the Asia Pacific Business Risk Manager, this role is responsible for managing business, enterprise, technology and cyber risk exposures to the company, its customers, shareholders, employees, and assets.
This role will support the business and enterprise risk function which includes responsibilities such as:
- Support regional risk committee meetings and related tasks.
- Support the development and implementation of policies and procedures to minimize business and enterprise risk exposure
- Support cross-functional initiatives, including product/service risk assessments to deliver on risk goals, policies, and procedures
- Interface with other risk functions to support RFI/RFP reviews and to participate in regulatory compliance project/taskforce as a representative of the business and enterprise risk function
- Prepare and maintain risk metrics, dashboards, and management reports
- Manages and supports thoughtful risk-taking and/or policies and procedures
- Support committee meetings and related tasks.
- Providing risk management guidance to Business Owners on the scope of coverage of relevant governmental regulations and internal policies and procedures.
- Monitor critical activities which are outsourced, to identify any change in scope of services being provided and ensure that risk assessment is re-evaluated in scenarios where there are changes in scope of services being provided by the service provider
- Identify and schedule risk assessment for the committee each year basis the external and internal requirements
- Review, prioritize, assess, and act on results of risk assessments/controls in conjunction with the business and the 2nd line risk teams
- Facilitate remediation of issues or gaps identified as part of ongoing monitoring and strives to identify and mitigate potential risk (e.g., strategic, financial, operational, legal/ regulatory, brand/ reputation) to the company and provides risk management analysis, support, coordination, and oversight for the committee
The ideal candidate for this position should:
- Experience managing a complex business, computer security and cyber risk operation including professional qualifications such as ISC2 Certified Information Security System Professional (CISSP) or Information Systems Security Management Professional (ISSMP) or ISACA Certified Information Systems Auditor (CISA)
- Experience collaborating cross-functionally to identify and implement best practice risk processes
- Experience working regionally, creating risk strategies to optimize risk-related policies and ensure compliance
- Demonstrated successful oversight of the management and resolution of high-risk issues to ensure completeness and efficiency
- Have the ability to manage regulatory notification and have prior regulatory interaction experience to manage and respond regulatory queries in alignment with relevant stakeholder teams
- Experience working with senior stakeholders
- A strong, confident, and exacting writer and speaker, able to communicate your vision and roadmap effectively to a wide variety of stakeholders
- Always look for potential solutions to solve problems
- Ability to communicate complex ideas effectively both verbally and in writing – in English and Cantonese, to engage with a diverse range of internal and external stakeholders.
All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:
- Abide by Mastercard’s security policies and practices;
- Ensure the confidentiality and integrity of the information being accessed;
- Report any suspected information security violation or breach, and
- Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines.
- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Finance and Sales
- Industries Financial Services, IT Services and IT Consulting, and Technology, Information and Internet
Referrals increase your chances of interviewing at Mastercard by 2x
Get notified about new Manager Risk Management jobs in Wan Chai District, Hong Kong SAR .
Risk Manager (Credit Policy and Portfolio Management) - Credit Risk Management Manager to Senior Manager, Risk Management (internal rating based approach) Assistant Manager of Risk Management department - HKB Senior Manager, Third Party Risk ManagementCentral & Western District, Hong Kong SAR 1 week ago
Senior Manager, Compliance & Internal Control (SEAA & MEIA)Sha Tin District, Hong Kong SAR 6 days ago
Kowloon City District, Hong Kong SAR 6 days ago
Senior Risk Manager, Trustworthy Shopping Experience Senior Financial Institution Credit Risk Manager - Global Risk FSO - Risk Consulting - FSRM (Model Quant for Credit & Climate) - Experienced Senior/Manager - Hong Kong Assistant Vice President, Business Compliance & Operational Risk Senior Manager, Southeast Asian Management Division, Legal & Compliance and Operational Risk Management Department Assistant Manager, Customer RelationshipWan Chai District, Hong Kong SAR 1 day ago
Manager (Long Term Business – Group-wide Supervision) Senior Technology Risk Manager (Overseas Branch)We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrManager, Risk Management
Posted 3 days ago
Job Viewed
Job Description
Join to apply for the Manager, Risk Management role at Mastercard
Join to apply for the Manager, Risk Management role at Mastercard
Our Purpose
Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.
Our Purpose
Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.
Title And Summary
Manager, Risk Management
Who is Mastercard?
Mastercard is a global technology company in the payments industry. Our mission is to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart, and accessible. Using secure data and networks, partnerships and passion, our innovations and solutions help individuals, financial institutions, governments, and businesses realize their greatest potential.
Our decency quotient, or DQ, drives our culture and everything we do inside and outside of our company. With connections across more than 210 countries and territories, we are building a sustainable world that unlocks priceless possibilities for all.
Overview
The Asia-Pacific Business & Enterprise Risk team is looking for a Manager of Risk Management in Hong Kong to drive our business and enterprise risk strategies by consistently innovating and problem-solving. The ideal candidate is passionate about driving a thoughtful risk-taking culture, highly motivated, intellectually curious, analytical, and possesses an entrepreneurial mindset.
Role
Reporting to the Asia Pacific Business Risk Manager, this role is responsible for managing business, enterprise, technology and cyber risk exposures to the company, its customers, shareholders, employees, and assets.
This role will support the business and enterprise risk function which includes responsibilities such as:
- Support regional risk committee meetings and related tasks.
- Support the development and implementation of policies and procedures to minimize business and enterprise risk exposure
- Support cross-functional initiatives, including product/service risk assessments to deliver on risk goals, policies, and procedures
- Interface with other risk functions to support RFI/RFP reviews and to participate in regulatory compliance project/taskforce as a representative of the business and enterprise risk function
- Prepare and maintain risk metrics, dashboards, and management reports
- Manages and supports thoughtful risk-taking and/or policies and procedures
- Support committee meetings and related tasks.
- Providing risk management guidance to Business Owners on the scope of coverage of relevant governmental regulations and internal policies and procedures.
- Monitor critical activities which are outsourced, to identify any change in scope of services being provided and ensure that risk assessment is re-evaluated in scenarios where there are changes in scope of services being provided by the service provider
- Identify and schedule risk assessment for the committee each year basis the external and internal requirements
- Review, prioritize, assess, and act on results of risk assessments/controls in conjunction with the business and the 2nd line risk teams
- Facilitate remediation of issues or gaps identified as part of ongoing monitoring and strives to identify and mitigate potential risk (e.g., strategic, financial, operational, legal/ regulatory, brand/ reputation) to the company and provides risk management analysis, support, coordination, and oversight for the committee
The ideal candidate for this position should:
- Experience managing a complex business, computer security and cyber risk operation including professional qualifications such as ISC2 Certified Information Security System Professional (CISSP) or Information Systems Security Management Professional (ISSMP) or ISACA Certified Information Systems Auditor (CISA)
- Experience collaborating cross-functionally to identify and implement best practice risk processes
- Experience working regionally, creating risk strategies to optimize risk-related policies and ensure compliance
- Demonstrated successful oversight of the management and resolution of high-risk issues to ensure completeness and efficiency
- Have the ability to manage regulatory notification and have prior regulatory interaction experience to manage and respond regulatory queries in alignment with relevant stakeholder teams
- Experience working with senior stakeholders
- A strong, confident, and exacting writer and speaker, able to communicate your vision and roadmap effectively to a wide variety of stakeholders
- Always look for potential solutions to solve problems
- Ability to communicate complex ideas effectively both verbally and in writing – in English and Cantonese, to engage with a diverse range of internal and external stakeholders.
All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:
- Abide by Mastercard’s security policies and practices;
- Ensure the confidentiality and integrity of the information being accessed;
- Report any suspected information security violation or breach, and
- Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines.
- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Finance and Sales
- Industries Financial Services, IT Services and IT Consulting, and Technology, Information and Internet
Referrals increase your chances of interviewing at Mastercard by 2x
Get notified about new Manager Risk Management jobs in Wan Chai District, Hong Kong SAR .
Risk Manager (Credit Policy and Portfolio Management) - Credit Risk Management Manager to Senior Manager, Risk Management (internal rating based approach) Assistant Manager of Risk Management department - HKB Senior Manager, Third Party Risk ManagementCentral & Western District, Hong Kong SAR 1 week ago
Senior Manager, Compliance & Internal Control (SEAA & MEIA)Sha Tin District, Hong Kong SAR 6 days ago
Kowloon City District, Hong Kong SAR 6 days ago
Senior Risk Manager, Trustworthy Shopping Experience Senior Financial Institution Credit Risk Manager - Global Risk FSO - Risk Consulting - FSRM (Model Quant for Credit & Climate) - Experienced Senior/Manager - Hong Kong Assistant Vice President, Business Compliance & Operational Risk Senior Manager, Southeast Asian Management Division, Legal & Compliance and Operational Risk Management Department Assistant Manager, Customer RelationshipWan Chai District, Hong Kong SAR 1 day ago
Manager (Long Term Business – Group-wide Supervision) Senior Technology Risk Manager (Overseas Branch)We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrManager, Market Risk Management, Risk
Posted 10 days ago
Job Viewed
Job Description
Join to apply for the Manager, Market Risk Management, Risk role at CLSA
1 day ago Be among the first 25 applicants
Join to apply for the Manager, Market Risk Management, Risk role at CLSA
The role of this position is to be responsible for day-to-day risk management, risk monitoring & reporting for FICC and CSI overall.
Key Areas of Responsibilities
- Manage and monitor the risk of each FICC trading desk appropriately, and manage their risk limits on daily basis.
- Produce overall risk report on regular basis (weekly/monthly) for senior management.
- Produce risk reports as required on regular basis (daily/monthly) and ad-hoc.
- Perform risk analysis such as stress testing and scenario analysis.
- Liaise with front office closely to understand the business models, identify the risks.
- Work with risk model team closely to understand the risk models and parameter settings, to be able to explain the risk numbers.
- Work with risk IT team (BJ) on the risk data maintenance.
- Participate in various projects as required.
Requirements
- Bachelor degree (above) holder in Risk Management / Finance / Economics / Financial Engineering / Mathematics or related discipline(s).
- 3-8 years relevant experience in market risk management.
- Very good knowledge of financial products, as well as their risks.
- Wide and deep understanding of the market.
- Solid background on quantitative analysis and computer skills.
- Excellent communication and interpersonal skills, can work under pressure.
- Excellent command of spoken and written communications in English & Chinese (including Putonghua).
- Seniority level Not Applicable
- Employment type Full-time
- Job function Finance
Referrals increase your chances of interviewing at CLSA by 2x
Sign in to set job alerts for “Market Risk Manager” roles. First Vice President, Head of Credit Card Team Head, Unsecured & Secured - Consumer Credit RecoveryWe’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffr