Responsibilities
& Specific Requirements (Information Security):
Assist senior manager to formulate and manage information security policies, standards and procedures. Plan and conduct information security assessment and IT risk evaluation in area covering IT general controls, information asset management, access controls and endpoint security review, etc. Plan and carry out various information security assurance activities, such asputer accounts re-certification. Review the initiation of security configuration changes, such as access rules, data leakage prevention policies. Co-operates with system administrators to deploy various information security controls or tools, and take lead to conduct appropriate remedial action on security incidents. Act as a subject matter expert to assist business units and cross-functional teams in identifying and mitigating information security risks and/or control gaps, and rmends remediation initiatives. General Job Requirements: Degree holder inputer Science or other degree majoring in Information Systems, or related discipline. Over 4 years of experience in IT security, technology risk, risk management,pliance or IT audit function, gained from other sizable financial institutions Holding at least one recognized professional qualification under HKMA enhancedpetency framework such as CISA, CISSP, CRISC is preferable. Familiar with HKMA TMG-1, TM-E-1, PCI-DSS, ISO 2700-series or other security risk management framework is an advantage Goodmand of written and spoken English with Mandarin is preferable and Goodmunication and interpersonal skills; Flexibility in traveling. Candidate with less experience will be considered as Assistant Manager. Job ID 499438