Talent.com
IT Security Controls Lead

IT Security Controls Lead

Cathay Pacific Airways LimitedHong Kong SAR (China)
30 天前
职位描述

Role Introduction

Reports to : IT Security Controls Senior Lead

Assist Team manager to develop, monitor and validate IT security controls within the company IT environment. Coaching junior analyst to keep improve all IT security controls effectiveness

Equips with strong technical knowledge, responsible for managing the performance and developing junior team members. This position must be able to effectively communicate with all levels of staff within the organization; from different business units across the company to senior management, in order to ensure that everyone is on the same page to align with the defined process, procedure and standard. Job rotation within IT Security Team is expected.

Key Responsibilities

  • Implement the IT security controls process and act to validate all defined controls effectiveness.
  • Understand compliance framework of ISO27001 and PCIDSS standard, translate the technical controls requirement to enforceable technical controls requirement.
  • Work as second layer of defence within IT departments to revisit existing controls gate and report any abnormal situation
  • Work with various IT function teams including business unit to measure different IT controls effectiveness.
  • Audit support functions including evidence collect and update, implement the suggested controls
  • Strong understanding on Vulnerability Management across on-premises and cloud environments.
  • Work with extended IT security team members to revisit and update controls as per emerging threat landscape.
  • Understand the update to date market standard, able to translate the state of art knowledge to IT security controls process.
  • Assist on IT security incident monitoring and response
  • Assist on IT security operation solution administration and operation.
  • Assist on relevant IT security project implementation and transition.

Strong coaching skills to junior security analyst within the team

Requirements

  • 8 years relevant IT security experiences
  • CISSP, CISM, CRISC, ISO 27001 lead auditor or relevant experience.
  • Strong knowledge on compliance framework i.e. ISO 27001, PCIDSS
  • Strong team development and coaching skills
  • Self-motivation, willing to keep update to market standards and technology
  • BA or BS degree in Information Technology, Computer Science, Computer Engineering, or Cyber Security preferred
  • Personal & Application Information

    Cathay Pacific is an Equal Opportunities Employer. Personal data provided by job applicants will be used strictly in accordance with our personal data policy and for recruitment purposes only. Candidates not notified within eight weeks may consider their application unsuccessful. All related information will be kept in our file for up to 24 months. A copy of our Personal Information Collection Statement will be provided upon request by contacting our Data Protection Officer.

    为此搜索创建职位提醒

    Security • Hong Kong SAR (China)

    相关职位
    Fresh Grad Hire - Security Policy Engineer

    Fresh Grad Hire - Security Policy Engineer

    moomooHong Kong, Hong Kong, HK
    Quick Apply
    As the "Guardians of Security" for Futu's financial ecosystem, we focus on leveraging technology to combat risks and safeguard trust. Lead or deeply participate in the end-to-end development of adva...展示更多最后更新时间: 4天前
    Data Center Procurement Killer!

    Data Center Procurement Killer!

    RM Staffing B.V.Shenzhen, GD, CN
    Reboot Monkey is a leading provider of comprehensive data center management solutions, offering services such as managed colocation, smart hands, and rack and stack solutions.We ensure fast deploym...展示更多上次更新时间:30 天前
    Engineering Lead, Risk (Web 3)

    Engineering Lead, Risk (Web 3)

    moomooShenzhen, Guangdong Province, CN
    Quick Apply
    As the technical decision-maker for the exchange's risk control system, responsible for the end-to-end risk control system architecture design and technical breakthrough for margin trading, spot le...展示更多最后更新时间: 22天前
    Fresh Grad Hire - Backend Developer (Financial Securities System R&D Focus)

    Fresh Grad Hire - Backend Developer (Financial Securities System R&D Focus)

    moomooShenzhen, Guangdong Province, CN
    Quick Apply
    We are responsible for building the capabilities of financial securities platforms, providing secure, stable, highly specialized, and scalable financial securities systems for the company's interna...展示更多最后更新:1 天前
    Testing Engineer (Wallet & Digital Assets)

    Testing Engineer (Wallet & Digital Assets)

    moomooShenzhen, Guangdong Province, CN
    Quick Apply
    Responsible for quality assurance of financial business systems, primarily covering Web3 wallets, coin deposits / withdrawals, custody, and other on-chain / off-chain digital asset businesses.This incl...展示更多最后更新时间: 22天前
    Fresh Grad Hire - System Testing Engineer (Banking Business)

    Fresh Grad Hire - System Testing Engineer (Banking Business)

    moomooShenzhen, Guangdong Province, CN
    Quick Apply
    Airstar Bank is a Hong Kong digital bank primarily backed by Futu Group.Our testing team serves as the cornerstone of high-quality banking services, dedicated to ensuring stability, security, and e...展示更多最后更新时间: 5天前
    Fresh Grad Hire - System Testing Engineer (OTC Trading Platform)

    Fresh Grad Hire - System Testing Engineer (OTC Trading Platform)

    moomooShenzhen, Guangdong Province, CN
    Quick Apply
    As the core engine of futu's business, the department is dedicated to providing secure, professional, and efficient integrated financial services for global retail and institutional clients.Its com...展示更多最后更新时间: 5天前
    Middleware Vulnerability Management Consultant

    Middleware Vulnerability Management Consultant

    Sopra Steria I2SHong Kong, Hong Kong, HK
    Quick Apply
    Sopra Steria is a listed European tech leader specializing in Consulting, Digital Services, and Software.With 60,000 employees worldwide across Europe, North America and Asia, Singapore serves as t...展示更多最后更新时间: 29天前
    Engineering Architect, Risk (Web 3)

    Engineering Architect, Risk (Web 3)

    moomooHong Kong, Hong Kong, HK
    Quick Apply
    Design and optimize the architecture of real-time risk control engines, lead the technology selection and development of core modules, ensuring the system supports millisecond-level response and hi...展示更多最后更新时间: 22天前
    Sr. Manager Processes & Systems AMEA

    Sr. Manager Processes & Systems AMEA

    FedExHong Kong, New Territories, HK
    The primary responsibility of the Sr.Manager Processes & Systems is standardizing and optimizing processes across the region and supporting the transformation to CargoWise One, and ongoing continuo...展示更多上次更新时间:30 天前