Hong Kong [Change Country] Hong Kong JobsHong Kong Information Technology (IT) JobsHong Kong IT Management Jobs Employers / Post Job
[ Log On ]

Information Security Manager (Ref: 19-22/JDB)

John Swire & Sons (HK) Limited

  • Company Industries:Trading and Distribution

Job Information

  • Post Date:2019-04-11
  • Career Level:Senior
  • Location:Not Specified
  • Yr(s) of Exp:10 years
  • Qualification:Degree
  • Employment Type:Full Time, Permanent
  • Job Function:IT Project Management / Team Lead  IT Management  Security  

Job Description

The incumbent will establish and maintain a corporate information security management programme to ensure that information assets are adequately protected. The incumbent will also work proactively with business units to implement practices that meet defined policies and standards for information security.  Further, the incumbent will identify, evaluate and report on information security risks in a manner that meets compliance and regulatory requirements, aligns with and supports the risk posture of the company.   
 
The Job:

  • Develop, implement and monitor a strategic enterprise information security and IT risk management programme to ensure that the integrity, confidentiality and availability of information is controlled by the company.
  • Act as an internal consultant to evaluate current and emerging technologies and business user’s requests.
  • Work with business users and the JSSHK IT team on new projects to ensure information security requirements are in place.
  • Conduct internal/external security assessments including, but not limited to vulnerability scans and penetration tests and recommend remedial actions.
  • Lead and manage the implementation of various security related projects.
  • Be able to negotiate contracts and deals with various service providers.
  • Provide security guidance to IT team on daily security operations.
  • Promote ongoing information security awareness campaigns to all users.
  • Develop and maintain the head office cyber security incidents response plan.

 
Requirements:

  • Bachelor's degree in Computer Science, Information Systems or related field.
  • Minimum 10 years of IT experience, including at least 5 years in security management and IT governance, preferably in a company which operates across Greater China. 
  • Practical experience and working knowledge of information security frameworks, audit principles, security administration processes, metrics collection and reporting.
  • Deep knowledge of best practices in Information Security and solid understanding of technologies including, firewalls, intrusion prevention, penetration testing, data loss prevention, disaster recovery and other security solutions.
  • Good understanding of network and system security principles such as defense in depth, least privilege, security information management, blue team/red team exercises and how they can be applied across organisations.
  • Proven experience in formulating and executing IT governance, compliance initiatives and risk management.
  • Proven success in developing, implementing, sustaining, and enhancing enterprise information security and risk management programmes.
  • Ability to meet deadlines, to conduct and direct research into IT issues and products, and to take initiative in the development and completion of projects. 
  • Must be a team player and able to work collaboratively with others.
  • Excellent verbal and written communication skills to communicate with both technical staff and senior management.
  • Fluent in Cantonese, Mandarin and English.
  • Strong project management, organizational and time management skills. 
  • Excellent problem solving, analytical and evaluative skills. 
  • CISSP, CISM, CISA, CRISC certification(s) preferred.
  • Familiarity with NIST CSF, ISO 27000, COBIT, SANS and ITIL security frameworks  

 
Application:
 
We offer a competitive package to the right candidate. Qualified and interested parties please send application quoting the above reference number and detailing contact information, education and employment background, and salary expectation through one of the following means:

Postal address:

Head of Staff Department
John Swire & Sons (H.K.) Limited
GPO Box 1, Hong Kong
Fax number: (852) 2946 8402


Only shortlisted candidates will be contacted.
 
We are an equal opportunity employer. All applications received will be used exclusively for selection purposes and handled confidentially by authorized personnel only. Your application may also be considered for other suitable positions within the Swire group.  (Please indicate clearly on your application if you would not like to be considered for other positions within the group.)  Unsuccessful applications will be destroyed after an appropriate time.

Company Info

The Swire group is a multi-national, multi-disciplined commercial group, with its principal areas of operations in the Asia Pacific region, and centred on the Greater China area. We pride ourselves on being original and forward-looking, setting standards for operational excellence wherever we do business – qualities that have guided our operations for 200 years.

John Swire & Sons (H.K.) Limited is the holding company of the publicly-listed conglomerate, Swire Pacific Ltd. Our Group Internal Audit Department invites applications for the following position:

Apply
Position Company Location Update
Subscribe job alert by email:
Email marketing by Spread