15 Technology Security jobs in Hong Kong

Information Technology Security Specialist

Chinasoft International

Posted 6 days ago

Job Viewed

Tap Again To Close

Job Description

Information Technology Security Specialist Information Technology Security Specialist

3 days ago Be among the first 25 applicants

Get AI-powered advice on this job and more exclusive features.

Direct message the job poster from Chinasoft International

Talent Acquisition | Tech | Management Consulting | Private Banking | APAC

Work Location: On-site at a Financial Regulatory Institution (Central, Hong Kong)

Company: Chinasoft International

Employment Type: Contract (12 months, renewable)

Work Location: On-site at a Financial Regulatory Institution (Central, Hong Kong)

Job Description

Chinasoft International is seeking an experienced and technically skilled IT Security Specialist to join our professional services team. The selected candidate will be seconded to a prominent financial regulatory body in Hong Kong to support mission-critical cybersecurity projects. This role requires solid experience in enterprise IT security, cybersecurity architecture, and operations. You will work closely with internal teams and external vendors to design, implement and manage the cybersecurity infrastructure and compliance initiatives of the client.

The ideal candidate will have hands-on experience in:

  • Cybersecurity domains such as identity and access management, security architecture and engineering.
  • Cybersecurity solution implementation in an enterprise environment.
Key Responsibilities
  • Serve as a Subject Matter Expert to support the research, design, procurement, implementation, operationalization, and optimization of new and revamp of the cybersecurity solutions.
  • Participate in the system development lifecycle (SDLC), such as architecture and infrastructure design, technical requirement and operation documentation, technical and user testing, user training, maintenance and support.
  • Participate in system integration developments and administer, support and troubleshoot cybersecurity Systems.
  • Develop, maintain and fine-tune system operating procedures, including back-up & disaster recovery, vulnerability, update & patch management, system maintenance and monitoring and audit.
  • Identify and mitigate security-related incidents, perform vulnerability assessments, support penetration tests, and provide recommendations for improvements.
  • Work closely with technical vendors and internal stakeholders to ensure compliance requirements are addressed and security solutions are implemented effectively.
  • Coordinate and collaborate closely with IT and business users to ensure successful enablement of cybersecurity solutions.
  • Oversee the planning, execution and delivery of cybersecurity solutions to ensure timely completion and provide regular progress updates and reports to stakeholders.
  • Develop and manage project plans, resource allocation and risk management for successful project deliverables and outcomes.
  • Stay up-to-date with emerging trends and technologies in IT security and make recommendations for their adoptions.
Requirements
  • Bachelor’s or above degree in Computer Science, Engineering or related field.
  • At least 7+ years of experience in cybersecurity consulting, operations, solution implementations, or related technology projects. Candidates with more experience will be considered for senior specialist/manager roles.
  • Proven experience in implementing cybersecurity solutions, including Identity and Access Management (IAM), Privileged Access Management (PAM), Secret Management Tools, or identity threat detect and response (ITDR), with knowledge in AI and machine learning would be a definite advantage.
  • Cybersecurity certifications such as CISSP, CISP, or CISA, are highly preferred.
  • In-depth knowledge of IT security frameworks and standards such as ISO 27001, NIST Cybersecurity Framework, Digital Policy Office (DPO) IT Security Policy, and Cybersecurity Law of the People’s Republic of China.
  • Strong understanding of computer systems, including operating systems, databases, network, infrastructure, and cloud computing.
  • Analytical thinker with the ability to understand, visualize, analyse, and resolve difficult issues.
  • Experienced with cloud computing platforms such as AWS or Azure, and DevSecOps practices and tools such as Jenkins, Docker, or Kubernetes.
  • Hands-on experience with system implementations and operations, including system hardening, vulnerability and patch management, system architecture and infrastructure design.
  • Excellent interpersonal, communication, writing, presentation skills, organizational and time management skills, with ability to work independently in a fast-paced environment and build strong relationship with stakeholders.
  • For project management role, at least 5+ years of experience in managing cybersecurity or related technology projects, with certification such as Project Management Professional (PMP) or equivalent highly preferred.

Seniority level
  • Seniority level Mid-Senior level
Employment type
  • Employment type Full-time
Job function
  • Job function Information Technology

Referrals increase your chances of interviewing at Chinasoft International by 2x

Get notified about new Information Technology Security Specialist jobs in Hong Kong SAR .

Information Technology Cybersecurity Analyst / Specialist

Sha Tin District, Hong Kong SAR 6 days ago

Cybersecurity Analyst (Red Team), 42K Up

Sha Tin District, Hong Kong SAR 1 week ago

Sha Tin District, Hong Kong SAR 1 week ago

CYBER SECURITY AND RISK ANALYST / CYBER SECURITY ENGINEER Technology Consulting - Cyber Security - Security Governance - Senior Associate - Hong Kong Cybersecurity Detection and Response Analyst Cyber Security Analyst / Engineer (Identity and Access Management) Manager, Information Security Policy & Compliance

Sha Tin District, Hong Kong SAR 2 weeks ago

Principal IT Lead (Information Security) (Ref: IT-ISNS-PITL-IS-LI)) Information Security Governance & Support, Principal Cyber Security Analyst - Group Chief Information Officer IT Security Operations Analyst (13-month contract) Information and Technology Manager (Security Management) (Ref: ISD-AL) Technology Risk Manager (Information Security Control Division) Senior/Staff Application Security Analyst (Bangkok based, relocation provided) Senior/Staff Application Security Analyst (Bangkok based, relocation provided) Senior Digital Program Specialist - Business Analysis (Based in Beijing, China) Sr. Analyst, IAM & Cloud Security Engineering, IT

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Information Technology Security Specialist

Hong Kong, Hong Kong Chinasoft International

Posted 3 days ago

Job Viewed

Tap Again To Close

Job Description

Information Technology Security Specialist Information Technology Security Specialist

3 days ago Be among the first 25 applicants

Get AI-powered advice on this job and more exclusive features.

Direct message the job poster from Chinasoft International

Talent Acquisition | Tech | Management Consulting | Private Banking | APAC

Work Location: On-site at a Financial Regulatory Institution (Central, Hong Kong)

Company: Chinasoft International

Employment Type: Contract (12 months, renewable)

Work Location: On-site at a Financial Regulatory Institution (Central, Hong Kong)

Job Description

Chinasoft International is seeking an experienced and technically skilled IT Security Specialist to join our professional services team. The selected candidate will be seconded to a prominent financial regulatory body in Hong Kong to support mission-critical cybersecurity projects. This role requires solid experience in enterprise IT security, cybersecurity architecture, and operations. You will work closely with internal teams and external vendors to design, implement and manage the cybersecurity infrastructure and compliance initiatives of the client.

The ideal candidate will have hands-on experience in:

  • Cybersecurity domains such as identity and access management, security architecture and engineering.
  • Cybersecurity solution implementation in an enterprise environment.
Key Responsibilities
  • Serve as a Subject Matter Expert to support the research, design, procurement, implementation, operationalization, and optimization of new and revamp of the cybersecurity solutions.
  • Participate in the system development lifecycle (SDLC), such as architecture and infrastructure design, technical requirement and operation documentation, technical and user testing, user training, maintenance and support.
  • Participate in system integration developments and administer, support and troubleshoot cybersecurity Systems.
  • Develop, maintain and fine-tune system operating procedures, including back-up & disaster recovery, vulnerability, update & patch management, system maintenance and monitoring and audit.
  • Identify and mitigate security-related incidents, perform vulnerability assessments, support penetration tests, and provide recommendations for improvements.
  • Work closely with technical vendors and internal stakeholders to ensure compliance requirements are addressed and security solutions are implemented effectively.
  • Coordinate and collaborate closely with IT and business users to ensure successful enablement of cybersecurity solutions.
  • Oversee the planning, execution and delivery of cybersecurity solutions to ensure timely completion and provide regular progress updates and reports to stakeholders.
  • Develop and manage project plans, resource allocation and risk management for successful project deliverables and outcomes.
  • Stay up-to-date with emerging trends and technologies in IT security and make recommendations for their adoptions.
Requirements
  • Bachelor’s or above degree in Computer Science, Engineering or related field.
  • At least 7+ years of experience in cybersecurity consulting, operations, solution implementations, or related technology projects. Candidates with more experience will be considered for senior specialist/manager roles.
  • Proven experience in implementing cybersecurity solutions, including Identity and Access Management (IAM), Privileged Access Management (PAM), Secret Management Tools, or identity threat detect and response (ITDR), with knowledge in AI and machine learning would be a definite advantage.
  • Cybersecurity certifications such as CISSP, CISP, or CISA, are highly preferred.
  • In-depth knowledge of IT security frameworks and standards such as ISO 27001, NIST Cybersecurity Framework, Digital Policy Office (DPO) IT Security Policy, and Cybersecurity Law of the People’s Republic of China.
  • Strong understanding of computer systems, including operating systems, databases, network, infrastructure, and cloud computing.
  • Analytical thinker with the ability to understand, visualize, analyse, and resolve difficult issues.
  • Experienced with cloud computing platforms such as AWS or Azure, and DevSecOps practices and tools such as Jenkins, Docker, or Kubernetes.
  • Hands-on experience with system implementations and operations, including system hardening, vulnerability and patch management, system architecture and infrastructure design.
  • Excellent interpersonal, communication, writing, presentation skills, organizational and time management skills, with ability to work independently in a fast-paced environment and build strong relationship with stakeholders.
  • For project management role, at least 5+ years of experience in managing cybersecurity or related technology projects, with certification such as Project Management Professional (PMP) or equivalent highly preferred.
Seniority level
  • Seniority level Mid-Senior level
Employment type
  • Employment type Full-time
Job function
  • Job function Information Technology

Referrals increase your chances of interviewing at Chinasoft International by 2x

Get notified about new Information Technology Security Specialist jobs in Hong Kong SAR .

Information Technology Cybersecurity Analyst / Specialist

Sha Tin District, Hong Kong SAR 6 days ago

Cybersecurity Analyst (Red Team), 42K Up

Sha Tin District, Hong Kong SAR 1 week ago

Sha Tin District, Hong Kong SAR 1 week ago

CYBER SECURITY AND RISK ANALYST / CYBER SECURITY ENGINEER Technology Consulting - Cyber Security - Security Governance - Senior Associate - Hong Kong Cybersecurity Detection and Response Analyst Cyber Security Analyst / Engineer (Identity and Access Management) Manager, Information Security Policy & Compliance

Sha Tin District, Hong Kong SAR 2 weeks ago

Principal IT Lead (Information Security) (Ref: IT-ISNS-PITL-IS-LI)) Information Security Governance & Support, Principal Cyber Security Analyst - Group Chief Information Officer IT Security Operations Analyst (13-month contract) Information and Technology Manager (Security Management) (Ref: ISD-AL) Technology Risk Manager (Information Security Control Division) Senior/Staff Application Security Analyst (Bangkok based, relocation provided) Senior/Staff Application Security Analyst (Bangkok based, relocation provided) Senior Digital Program Specialist - Business Analysis (Based in Beijing, China) Sr. Analyst, IAM & Cloud Security Engineering, IT

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Technology Risk Manager (IT Security) – Information Technology Department

Chiyu Banking Corporation Limited

Posted 10 days ago

Job Viewed

Tap Again To Close

Job Description

Technology Risk Manager (IT Security) – Information Technology Department

3 days ago Be among the first 25 applicants

Get AI-powered advice on this job and more exclusive features.

Chiyu Banking Corporation Limited has been a licensed bank since 1947. Based in Hong Kong, we provide cross-border banking and financial services to customers in Hong Kong, mainland China, and overseas Chinese communities. We uphold core values of “Sincerity, Flexibility, Tailor-made Service, and Professionalism” to deliver premium services that help grow wealth, create value, and generate returns for stakeholders and staff.

We value our employees as our greatest asset and offer stimulating careers to support your personal growth. Join us for the following position.

Responsibilities
  • Participate in the design, development, and implementation of Information and Cyber Security projects.
  • Assist in planning technology-related risk management strategies, processes, and work plans.
  • Formulate and manage information security policies, standards, and procedures.
  • Conduct information security assessments and IT risk evaluations covering IT general controls, asset management, access controls, and security reviews.
  • Assist business units and cross-functional teams in identifying and mitigating information security risks.
  • Communicate security risk issues and control gaps to relevant teams and recommend remediation initiatives.
  • Create and manage information security awareness training programs for all employees, contractors, and system users.
Requirements
  • Degree in Computer Science, Information Systems, or related discipline.
  • Over 3 years of experience in IT security, risk management, or system development management.
  • Experience working with regulators and external auditors.
  • Professional qualifications such as CISA, CISSP, CISM, or CCSP are preferred.
  • Good command of written and spoken English and Mandarin is preferred.
  • Independent, proactive, and passionate about information security and cybersecurity.

We offer competitive packages and promising career opportunities. Please send your full resume, current salary, expected salary, and availability to The Human Resources Department, Chiyu Banking Corporation Ltd, 1/F, No. 100 Queen's Road Central, Hong Kong or fax to 2986-3233 , or click Apply Now .

All personal data will be kept confidential and used solely for recruitment purposes. Unsuccessful applicants' data will be destroyed after the process. A Personal Information Collection Statement is available upon request.

Additional Information
  • Seniority level: Mid-Senior level
  • Employment type: Full-time
  • Job function: Finance and Information Technology
  • Industry: Accounting
#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Technology Risk Manager (IT Security) – Information Technology Department

Hong Kong, Hong Kong Chiyu Banking Corporation Limited

Posted 3 days ago

Job Viewed

Tap Again To Close

Job Description

Technology Risk Manager (IT Security) – Information Technology Department

3 days ago Be among the first 25 applicants

Get AI-powered advice on this job and more exclusive features.

Chiyu Banking Corporation Limited has been a licensed bank since 1947. Based in Hong Kong, we provide cross-border banking and financial services to customers in Hong Kong, mainland China, and overseas Chinese communities. We uphold core values of “Sincerity, Flexibility, Tailor-made Service, and Professionalism” to deliver premium services that help grow wealth, create value, and generate returns for stakeholders and staff.

We value our employees as our greatest asset and offer stimulating careers to support your personal growth. Join us for the following position.

Responsibilities
  • Participate in the design, development, and implementation of Information and Cyber Security projects.
  • Assist in planning technology-related risk management strategies, processes, and work plans.
  • Formulate and manage information security policies, standards, and procedures.
  • Conduct information security assessments and IT risk evaluations covering IT general controls, asset management, access controls, and security reviews.
  • Assist business units and cross-functional teams in identifying and mitigating information security risks.
  • Communicate security risk issues and control gaps to relevant teams and recommend remediation initiatives.
  • Create and manage information security awareness training programs for all employees, contractors, and system users.
Requirements
  • Degree in Computer Science, Information Systems, or related discipline.
  • Over 3 years of experience in IT security, risk management, or system development management.
  • Experience working with regulators and external auditors.
  • Professional qualifications such as CISA, CISSP, CISM, or CCSP are preferred.
  • Good command of written and spoken English and Mandarin is preferred.
  • Independent, proactive, and passionate about information security and cybersecurity.

We offer competitive packages and promising career opportunities. Please send your full resume, current salary, expected salary, and availability to The Human Resources Department, Chiyu Banking Corporation Ltd, 1/F, No. 100 Queen's Road Central, Hong Kong or fax to 2986-3233 , or click Apply Now .

All personal data will be kept confidential and used solely for recruitment purposes. Unsuccessful applicants' data will be destroyed after the process. A Personal Information Collection Statement is available upon request.

Additional Information
  • Seniority level: Mid-Senior level
  • Employment type: Full-time
  • Job function: Finance and Information Technology
  • Industry: Accounting
#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Manager/Associate Director , Cloud Security, Technology Consulting

KPMG China

Posted 10 days ago

Job Viewed

Tap Again To Close

Job Description

Manager/Associate Director , Cloud Security, Technology Consulting

Join to apply for the Manager/Associate Director , Cloud Security, Technology Consulting role at KPMG China

Manager/Associate Director , Cloud Security, Technology Consulting

1 year ago Be among the first 25 applicants

Join to apply for the Manager/Associate Director , Cloud Security, Technology Consulting role at KPMG China

KPMG China provides multidisciplinary services from audit and tax to advisory, with a strong focus on serving our clients’ needs and their industries. Not only do we have an overriding commitment to provide the highest quality services for our clients, but we also strive to become a responsible corporate citizen that has a positive impact on our environment and community. At KPMG, you’ll translate insights into action and reveal opportunities for all—our teams, our clients and our world.

Service Line Overview

At KPMG's Consulting practice, we do not limit ourselves to either strategy or implementation. We deliver both. Our Hong Kong division is the fastest growing within KPMG China and represents a young and enthusiastic team that always pushes for success. Since our inception, we have acquired in-depth knowledge of an incredibly broad range of sectors and services.

KPMG is the firm that views cyber security as a business enabler, and not just an IT issue. From the boardroom to back office, we help clients through Strategy and Governance, Transformation, Cyber Defense and Cyber Response. So that they are prepared for uncertainty and use cyber security to advance the business, not stand in the way.

Our wide range of projects includes Cyber Strategy, Cyber Digital Transformation, Governance & Risk, as well as a growing presence in Attack & Penetration Tester or Ethical Hacker. We are keen to speaking with cyber security specialists with various expertise and experiences to join our growth story.

We are now seeking Manager/Associate Director candidates for Cloud Security Team.

Key Responsibilities

  • Lead the delivery of large and complex client cloud security engagements, cloud governance and compliance framework, DevSecOps transformation, cloud data protection, cloud security review and testing, and others
  • Drive differentiated technology architecture and implementation discussions with clients related to cloud security; in particular, demonstrate expertise related to cloud service provider platforms including Microsoft Azure, AWS, and Ali cloud and their embedded security, as well as multi-cloud security management technologies
  • Use skill in enterprise cloud environments and knowledge of current IT environment and industry IT trends to identify engagement and client issues, and communicate this information to the engagement team and client management through written correspondence and verbal presentations
  • Lead and execute client engagements focusing on assessment, review, design and/or implementation of Cloud infrastructure/platform/software security; identify improvement opportunities in the areas of process efficiency and security including role-based security and identify and access management based on KPMG's methodology for cloud environments
  • Build lasting client relationships through demonstrated excellence in engagement delivery and personal networking; drive business development and sales activities to secure client engagements
  • Identify and evaluate complex business and technology risks and remediation methods to mitigate risks
  • Contribute to practice growth in the solution area by leading solution design and innovation related to cloud security platforms


Additional Responsibilities for Associate Director:

  • Drive team built and growth in HK and GBA region
  • Write and present clear and concise reports and presentations containing meaningful observations and recommendations to clients, and document procedures performed and conclusions reached related to projects
  • Lead proposal and business development activities by building propositions, identifying of new target clients, building business relationships with key executives, developing/presenting proposals, and assisting with client presentations
  • Engagement management including them an aging of scoping, financial management, delivery risk management and the review of deliverables
  • Provide oversight, leadership and coaching to KPMG team members regarding deliverables, project plans, and performance management while contributing to industry and regulatory publications, writing professional and thought leadership articles, and speaking at related conferences and seminars


Experience & Background

  • A minimum of 5 years of experience in any of the following areas: cloud security assessment and strategy;solution architecture and design with emphasis on security, security operations and integration with cloud IaaS/PaaS/SaaS security platforms such as AWS, Microsoft Azure and Alicloud; IT risk management
  • Bachelor's degree in an appropriate field from an accredited college/university
  • Possess baseline security certification such as CISM/CISSP/GSEC/CISA/cloud certification for Microsoft Azure/AWS/Google Cloud Platform
  • Excellent written and verbal communication in both English and Chinese (Cantonese or Mandarin), facilitation, leadership, business development, and presentation skills
  • Additional Qualifications for Associate Director
  • A minimum of eight years of relevant experience
  • Demonstrated ability to identify business opportunities, lead project engagements, attract new business, and build lasting professional relationships with senior client executives


About KPMG

At KPMG China, we are committed to being an equal opportunity employer, with zero tolerance for any form of discrimination against any persons. It is important for us to create an inclusive, diverse and agile workplace for our people to develop and thrive at both a personal and

professional level.

We strive to make ESG (environmental, social and governance) a watermark running through our organisation; from empowering our people to become agents of positive change, to providing better solutions and services to our clients to help them achieve their ESG goals. View Our Impact Plan to learn more about our ESG commitments and progress across four key pillars - Governance, People, Planet and Prosperity – and how we make a positive impact on our people, environment and society.

We encourage you to come as you are, and we welcome all qualified candidates to apply, and hope you unlock opportunities with us. Visit KPMG China website for more company information.

You acknowledge and agree that all personal information hereby provided regarding yourself will be used by KPMG China for its candidate selection purposed only. KPMG China collects, uses, processes, and retains your personal information in accordance with KPMG China’s Online Privacy Statement and/or KPMG China Privacy Statement (collectively "Privacy Statement "). During the recruitment process, KPMG China may need to store personal information of candidates in a designated third-party application tracking platform.

If you have any questions regarding the information you provided in the form or your job application in general, please contact KPMG China’s HR personnel in the location where your application is submitted (see here).

Seniority level
  • Seniority level Mid-Senior level
Employment type
  • Employment type Full-time
Job function
  • Job function Other, Information Technology, and Management
  • Industries Professional Services

Referrals increase your chances of interviewing at KPMG China by 2x

Get notified about new Director of Security jobs in Wong Chuk Hang, Hong Kong SAR .

Corporate Bank - Head of Securities Services - Director/ VP CBS - Quality and Risk Management – Regional Security Manager - Hong Kong CBS - Quality and Risk Management - Greater China Regional Security Manager - Hong Kong

Shenzhen, Guangdong, China CN¥20,000.00-CN¥0,000.00 2 years ago

APAC Operation and Security Director, Logistic Service, Precious Goods Manager, Infrastructure and Network Operations, Global Assistant Operation Manager (Security Industry) IT Security and Operation Specialist (Asst Manager Level) IT Manufacturing Systems Director - Global Enterprise Control Manager - Securities Services Operations - Associate Senior Operations Manager, Securities Brokerage

Shenzhen, Guangdong, China CN 0,000.00-CN 0,000.00 2 years ago

Security Architect - Director/Executive Level Manager/Associate Director, Cyber Security (Strategy, Governance & Risk), Technology Consulting Manager/Associate Director, Cyber Security (Simulated Attack), Technology Consulting Manager, Cyber Security Operations (MJ006042) Manager/Associate Director, Data Privacy and Protection, Technology Consulting Assistant Manager (Ant Bank - For Securities Operations)

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Manager/Associate Director , Cloud Security, Technology Consulting

Hong Kong, Hong Kong KPMG China

Posted 11 days ago

Job Viewed

Tap Again To Close

Job Description

Manager/Associate Director , Cloud Security, Technology Consulting

Join to apply for the Manager/Associate Director , Cloud Security, Technology Consulting role at KPMG China

Manager/Associate Director , Cloud Security, Technology Consulting

1 year ago Be among the first 25 applicants

Join to apply for the Manager/Associate Director , Cloud Security, Technology Consulting role at KPMG China

KPMG China provides multidisciplinary services from audit and tax to advisory, with a strong focus on serving our clients’ needs and their industries. Not only do we have an overriding commitment to provide the highest quality services for our clients, but we also strive to become a responsible corporate citizen that has a positive impact on our environment and community. At KPMG, you’ll translate insights into action and reveal opportunities for all—our teams, our clients and our world.
Service Line Overview
At KPMG's Consulting practice, we do not limit ourselves to either strategy or implementation. We deliver both. Our Hong Kong division is the fastest growing within KPMG China and represents a young and enthusiastic team that always pushes for success. Since our inception, we have acquired in-depth knowledge of an incredibly broad range of sectors and services.
KPMG is the firm that views cyber security as a business enabler, and not just an IT issue. From the boardroom to back office, we help clients through Strategy and Governance, Transformation, Cyber Defense and Cyber Response. So that they are prepared for uncertainty and use cyber security to advance the business, not stand in the way.
Our wide range of projects includes Cyber Strategy, Cyber Digital Transformation, Governance & Risk, as well as a growing presence in Attack & Penetration Tester or Ethical Hacker. We are keen to speaking with cyber security specialists with various expertise and experiences to join our growth story.
We are now seeking Manager/Associate Director candidates for Cloud Security Team.
Key Responsibilities

  • Lead the delivery of large and complex client cloud security engagements, cloud governance and compliance framework, DevSecOps transformation, cloud data protection, cloud security review and testing, and others
  • Drive differentiated technology architecture and implementation discussions with clients related to cloud security; in particular, demonstrate expertise related to cloud service provider platforms including Microsoft Azure, AWS, and Ali cloud and their embedded security, as well as multi-cloud security management technologies
  • Use skill in enterprise cloud environments and knowledge of current IT environment and industry IT trends to identify engagement and client issues, and communicate this information to the engagement team and client management through written correspondence and verbal presentations
  • Lead and execute client engagements focusing on assessment, review, design and/or implementation of Cloud infrastructure/platform/software security; identify improvement opportunities in the areas of process efficiency and security including role-based security and identify and access management based on KPMG's methodology for cloud environments
  • Build lasting client relationships through demonstrated excellence in engagement delivery and personal networking; drive business development and sales activities to secure client engagements
  • Identify and evaluate complex business and technology risks and remediation methods to mitigate risks
  • Contribute to practice growth in the solution area by leading solution design and innovation related to cloud security platforms
Additional Responsibilities for Associate Director:
  • Drive team built and growth in HK and GBA region
  • Write and present clear and concise reports and presentations containing meaningful observations and recommendations to clients, and document procedures performed and conclusions reached related to projects
  • Lead proposal and business development activities by building propositions, identifying of new target clients, building business relationships with key executives, developing/presenting proposals, and assisting with client presentations
  • Engagement management including them an aging of scoping, financial management, delivery risk management and the review of deliverables
  • Provide oversight, leadership and coaching to KPMG team members regarding deliverables, project plans, and performance management while contributing to industry and regulatory publications, writing professional and thought leadership articles, and speaking at related conferences and seminars
Experience & Background
  • A minimum of 5 years of experience in any of the following areas: cloud security assessment and strategy;solution architecture and design with emphasis on security, security operations and integration with cloud IaaS/PaaS/SaaS security platforms such as AWS, Microsoft Azure and Alicloud; IT risk management
  • Bachelor's degree in an appropriate field from an accredited college/university
  • Possess baseline security certification such as CISM/CISSP/GSEC/CISA/cloud certification for Microsoft Azure/AWS/Google Cloud Platform
  • Excellent written and verbal communication in both English and Chinese (Cantonese or Mandarin), facilitation, leadership, business development, and presentation skills
  • Additional Qualifications for Associate Director
  • A minimum of eight years of relevant experience
  • Demonstrated ability to identify business opportunities, lead project engagements, attract new business, and build lasting professional relationships with senior client executives
About KPMG
At KPMG China, we are committed to being an equal opportunity employer, with zero tolerance for any form of discrimination against any persons. It is important for us to create an inclusive, diverse and agile workplace for our people to develop and thrive at both a personal and
professional level.
We strive to make ESG (environmental, social and governance) a watermark running through our organisation; from empowering our people to become agents of positive change, to providing better solutions and services to our clients to help them achieve their ESG goals. View Our Impact Plan to learn more about our ESG commitments and progress across four key pillars - Governance, People, Planet and Prosperity – and how we make a positive impact on our people, environment and society.
We encourage you to come as you are, and we welcome all qualified candidates to apply, and hope you unlock opportunities with us. Visit KPMG China website for more company information.
You acknowledge and agree that all personal information hereby provided regarding yourself will be used by KPMG China for its candidate selection purposed only. KPMG China collects, uses, processes, and retains your personal information in accordance with KPMG China’s Online Privacy Statement and/or KPMG China Privacy Statement (collectively "Privacy Statement "). During the recruitment process, KPMG China may need to store personal information of candidates in a designated third-party application tracking platform.
If you have any questions regarding the information you provided in the form or your job application in general, please contact KPMG China’s HR personnel in the location where your application is submitted (see here). Seniority level
  • Seniority level Mid-Senior level
Employment type
  • Employment type Full-time
Job function
  • Job function Other, Information Technology, and Management
  • Industries Professional Services

Referrals increase your chances of interviewing at KPMG China by 2x

Get notified about new Director of Security jobs in Wong Chuk Hang, Hong Kong SAR .

Corporate Bank - Head of Securities Services - Director/ VP CBS - Quality and Risk Management – Regional Security Manager - Hong Kong CBS - Quality and Risk Management - Greater China Regional Security Manager - Hong Kong

Shenzhen, Guangdong, China CN¥20,000.00-CN¥0,000.00 2 years ago

APAC Operation and Security Director, Logistic Service, Precious Goods Manager, Infrastructure and Network Operations, Global Assistant Operation Manager (Security Industry) IT Security and Operation Specialist (Asst Manager Level) IT Manufacturing Systems Director - Global Enterprise Control Manager - Securities Services Operations - Associate Senior Operations Manager, Securities Brokerage

Shenzhen, Guangdong, China CN 0,000.00-CN 0,000.00 2 years ago

Security Architect - Director/Executive Level Manager/Associate Director, Cyber Security (Strategy, Governance & Risk), Technology Consulting Manager/Associate Director, Cyber Security (Simulated Attack), Technology Consulting Manager, Cyber Security Operations (MJ006042) Manager/Associate Director, Data Privacy and Protection, Technology Consulting Assistant Manager (Ant Bank - For Securities Operations)

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Technology Risk Manager (Information Security Control Division)

Bank of China (Hong Kong)

Posted 10 days ago

Job Viewed

Tap Again To Close

Job Description

Technology Risk Manager (Information Security Control Division)

Job No.: 499438
Employment Type: Full time
Departments: Information Technology Department
Job Functions: Information Technology

Roles and Responsibilities & Specific Requirements (Application Security):

  • Assist in reviewing IT initiatives and provide advisory from technology risk perspectives.
  • Assist to establish and review policies, guidelines, procedures in application security area.
  • Provide advisory and practical guidance to support technology risk and information security assessments, including vulnerability scanning, penetration tests, etc.
  • Conduct regular assessments on application security.
  • Familiar with security testing tools e.g. Fortify, AppScan, and Open Source Scanning tools; technologies on DevSecOps and industry good practice OWASP is preferable.

General Job Requirements:

  • Degree holder in Computer Science or other degree majoring in Information Systems, or related discipline.
  • Over 4 years of experience in IT security, technology risk, risk management, compliance, or IT audit function, gained from other sizable financial institutions.
  • Holding at least one recognized professional qualification under HKMA enhanced competency framework such as CISA, CISSP, CRISC is preferable.
  • Familiar with HKMA TM-E-1, PCI-DSS, ISO 2700-series or other security risk management frameworks is an advantage.
  • Good command of written and spoken English; knowledge of Mandarin is preferable.
  • Good communication and interpersonal skills.

Back to Search Results

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.
Be The First To Know

About the latest Technology security Jobs in Hong Kong !

Technology Risk Manager (Information Security Control Division)

Hong Kong, Hong Kong Bank of China (Hong Kong)

Posted 3 days ago

Job Viewed

Tap Again To Close

Job Description

Technology Risk Manager (Information Security Control Division)

Job No.: 499438
Employment Type: Full time
Departments: Information Technology Department
Job Functions: Information Technology

Roles and Responsibilities & Specific Requirements (Application Security):

  • Assist in reviewing IT initiatives and provide advisory from technology risk perspectives.
  • Assist to establish and review policies, guidelines, procedures in application security area.
  • Provide advisory and practical guidance to support technology risk and information security assessments, including vulnerability scanning, penetration tests, etc.
  • Conduct regular assessments on application security.
  • Familiar with security testing tools e.g. Fortify, AppScan, and Open Source Scanning tools; technologies on DevSecOps and industry good practice OWASP is preferable.

General Job Requirements:

  • Degree holder in Computer Science or other degree majoring in Information Systems, or related discipline.
  • Over 4 years of experience in IT security, technology risk, risk management, compliance, or IT audit function, gained from other sizable financial institutions.
  • Holding at least one recognized professional qualification under HKMA enhanced competency framework such as CISA, CISSP, CRISC is preferable.
  • Familiar with HKMA TM-E-1, PCI-DSS, ISO 2700-series or other security risk management frameworks is an advantage.
  • Good command of written and spoken English; knowledge of Mandarin is preferable.
  • Good communication and interpersonal skills.

Back to Search Results

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Manager – Application Security & Governance, Information Technology

Hong Kong Maxim's Group

Posted 10 days ago

Job Viewed

Tap Again To Close

Job Description

Manager – Application Security & Governance, Information Technology Manager – Application Security & Governance, Information Technology

1 day ago Be among the first 25 applicants

Founded in 1956, Maxim’s Group is one of Asia’s leading food and beverage companies, operating Chinese, Western, Japanese and Southeast Asian restaurants, quick service outlets, bakery shops and cafes, and an institutional catering service. Maxim's Group also produces a range of festive products, including the award-winning Hong Kong MX Mooncakes, and is a licensee of Starbucks Coffee, Genki Sushi, IPPUDO, The Cheesecake Factory and Shake Shack in various territories. Altogether, the Group has over 40,000 employees and 2,000 outlets in Asia.

Proud of our heritage and humbled by our success, we are committed to a sustainable and innovative future. To learn more about Maxim’s, visit

Job Responsibilities:

  • Conduct technical security assessments on IT and digital initiatives, with a focus on application security
  • Identify and mitigate security vulnerabilities in applications, APIs, and software development processes
  • Collaborate with development teams to integrate security practices into the Software Development Lifecycle (SDLC) and CI/CD pipelines
  • Develop and enforce secure coding standards and guidelines for application development
  • Assess and implement tools and technologies for application security testing (e.g., SAST, DAST, SCA)
  • Provide awareness training on application security best practices
  • Investigate and manage application-related cybersecurity incidents
  • Stay updated on emerging application security threats and trends to proactively address risks
  • Assist in defining technical solutions to protect company assets, with a focus on application security
  • Regularly review internal policies and global standards (e.g., NIST, ISO 27001, PCI DSS) to ensure ongoing compliance
  • Assist IT teams in internal and external audits, including pre-audit review, liaison with auditors and stakeholders, and post-audit follow-up
  • Investigate and manage cyber security incidents

Job Requirements:

  • Minimum 8 years or more of hands-on experience in application security, preferably in a sizable organization with a regional presence in AP (e.g., China, Southeast Asian Market)
  • Strong practical experience in application security testing, vulnerability management, and secure coding practices
  • Familiarity with application security tools (e.g., Burp Suite, Veracode, SonarQube, OWASP ZAP) and methodologies (e.g., OWASP Top 10)
  • Knowledge of integrating security into DevOps practices (DevSecOps) and CI/CD pipelines
  • Excellent communication and interpersonal skills to collaborate with development teams and stakeholders
  • Proactive, problem-solving mindset with the ability to work under pressure
  • Possession of relevant certifications (e.g., OSCP, CISSP, CEH, GWAPT, CSSLP) is a strong advantage

Interested parties please apply with full resume, state current and expected salaries by clicking "Apply Now".

All applications and data collected will be treated in strict confidence and used exclusively for recruitment purposes. Only short listed candidates will be invited for interview. The company will retain the applications for a maximum period of 24 months and may refer suitable candidates to other vacancies within the Group.

Seniority level
  • Seniority level Mid-Senior level
Employment type
  • Employment type Full-time
Job function
  • Job function Management and Information Technology
  • Industries Food and Beverage Services, Hospitality, and Retail

Referrals increase your chances of interviewing at Hong Kong Maxim's Group by 2x

Get notified about new Application Security Manager jobs in Kowloon, Hong Kong SAR .

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Manager – Application Security & Governance, Information Technology

Kowloon, Kowloon Hong Kong Maxim's Group

Posted 3 days ago

Job Viewed

Tap Again To Close

Job Description

Manager – Application Security & Governance, Information Technology Manager – Application Security & Governance, Information Technology

1 day ago Be among the first 25 applicants

Founded in 1956, Maxim’s Group is one of Asia’s leading food and beverage companies, operating Chinese, Western, Japanese and Southeast Asian restaurants, quick service outlets, bakery shops and cafes, and an institutional catering service. Maxim's Group also produces a range of festive products, including the award-winning Hong Kong MX Mooncakes, and is a licensee of Starbucks Coffee, Genki Sushi, IPPUDO, The Cheesecake Factory and Shake Shack in various territories. Altogether, the Group has over 40,000 employees and 2,000 outlets in Asia.

Proud of our heritage and humbled by our success, we are committed to a sustainable and innovative future. To learn more about Maxim’s, visit

Job Responsibilities:

  • Conduct technical security assessments on IT and digital initiatives, with a focus on application security
  • Identify and mitigate security vulnerabilities in applications, APIs, and software development processes
  • Collaborate with development teams to integrate security practices into the Software Development Lifecycle (SDLC) and CI/CD pipelines
  • Develop and enforce secure coding standards and guidelines for application development
  • Assess and implement tools and technologies for application security testing (e.g., SAST, DAST, SCA)
  • Provide awareness training on application security best practices
  • Investigate and manage application-related cybersecurity incidents
  • Stay updated on emerging application security threats and trends to proactively address risks
  • Assist in defining technical solutions to protect company assets, with a focus on application security
  • Regularly review internal policies and global standards (e.g., NIST, ISO 27001, PCI DSS) to ensure ongoing compliance
  • Assist IT teams in internal and external audits, including pre-audit review, liaison with auditors and stakeholders, and post-audit follow-up
  • Investigate and manage cyber security incidents

Job Requirements:

  • Minimum 8 years or more of hands-on experience in application security, preferably in a sizable organization with a regional presence in AP (e.g., China, Southeast Asian Market)
  • Strong practical experience in application security testing, vulnerability management, and secure coding practices
  • Familiarity with application security tools (e.g., Burp Suite, Veracode, SonarQube, OWASP ZAP) and methodologies (e.g., OWASP Top 10)
  • Knowledge of integrating security into DevOps practices (DevSecOps) and CI/CD pipelines
  • Excellent communication and interpersonal skills to collaborate with development teams and stakeholders
  • Proactive, problem-solving mindset with the ability to work under pressure
  • Possession of relevant certifications (e.g., OSCP, CISSP, CEH, GWAPT, CSSLP) is a strong advantage

Interested parties please apply with full resume, state current and expected salaries by clicking "Apply Now".

All applications and data collected will be treated in strict confidence and used exclusively for recruitment purposes. Only short listed candidates will be invited for interview. The company will retain the applications for a maximum period of 24 months and may refer suitable candidates to other vacancies within the Group.

Seniority level
  • Seniority level Mid-Senior level
Employment type
  • Employment type Full-time
Job function
  • Job function Management and Information Technology
  • Industries Food and Beverage Services, Hospitality, and Retail

Referrals increase your chances of interviewing at Hong Kong Maxim's Group by 2x

Get notified about new Application Security Manager jobs in Kowloon, Hong Kong SAR .

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All Technology Security Jobs