IT Security & Risk Analyst - Based in Hong Kong

$40k – $70k
Published: 1 month ago
Avatar for CXC Australasia

CXC Australasia

Working anywhere is possible by working with CXC global

Job Location

Job Type

Full Time

Visa Sponsorship

Not Available

Relocation

Allowed

Hiring contact

Charles Lai

The Role

** Key Responsibilities**
Conduct IT Risk and Security assessments to identify Security risks and follow up mitigation items.
Provide an advisory role to IT and the Business to specify pragmatic security requirements
Participate in Audits and provide advisory to remediate the findings
Evaluate and perform benefit analysis security products
Report to senior management concerning residual risk, vulnerabilities and other security exposures, including misuse of information assets and noncompliance
Assist in the development of security architecture, security policies, principles and standards
Provide SME support in the resolution of reported security incidents and provide leadership where required
Maintain up-to-date understanding of the latest threats, vulnerabilities, mitigation and industry best practices
Develop Security awareness material and conduct Security awareness training to Cathay Pacific staff
Advise on exception-based security requests
Participate and Contribute in development and improvement of Data Governance and Data classification principles
Contribute in overall Data Governance principles and methodologies in CPA
Advisory to business units and IT to identify risks, raise awareness and recommend pragmatic measures to reduce the risk level
Conduct risk assessments of new initiatives and participate in Security audits
Developing IT Security policies and guidelines
Developing security awareness material and conducting training for the client staff

**
**Requirements

All of the following experience and qualifications are preferred, but not mandatory:
Certification in information security disciplines such as CISM, CISA or CISSP
University graduate in IT
4 years in IT Security field
Experience with common information security management frameworks, such as ISO 27001, NIST, CobiT, ITIL, PCI
Experience with implementation of security technologies such as: DLP, SIEM, IPS, Antimalware, Vulnerability Management, Web Proxy, Advance Threat Protection tools & technologies, PKI, and cloud security

Similar Jobs

SnagR company logo
SnagR
A picture's worth a thousand words
FinSurge company logo
FinSurge
FinSurge is a Fintech company
Hedgevista company logo
Hedgevista
Technology solutions for fund managers
C&R Wise AI company logo
C&R Wise AI
We make cities smarter, friendlier and happier
Hush Home company logo
Hush Home
A new digital brand that offers amazing sleep products at a comfortable price