Assistant Manager - Cyber Security Ops - Tech Risk & Security Assessment

New Galaxy Entertainment 2006 Company Limited

Hong Kong

On-site

HKD 420,000 - 700,000

Full time

4 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

New Galaxy Entertainment 2006 Company Limited seeks an Assistant Manager to lead Cyber Security Ops within Tech Risk & Security Assessment. The role coordinates risk assessments, remediation, and audits across enterprise systems, with a focus on strong governance and security controls.

Requirements include a 4+ year background in security risk, vulnerability management, and compliance, plus fluency in English and Chinese.

Qualifications

  • Bachelor’s degree in Computer Science, Cybersecurity, or related field or equivalent experience.
  • 4+ years in cybersecurity risk assessment, vulnerability management, or compliance.
  • Hands-on with vulnerability scanning and remediation processes.
  • Good understanding of ISO 27001, NIST CSF, PCI-DSS or equivalent.
  • Ability to communicate security risks to non-technical stakeholders in English and Chinese.

Responsibilities

  • Lead enterprise-wide cybersecurity risk assessments and risk analysis.
  • Oversee vulnerability management and remediation tracking.
  • Support security governance, controls, and regulatory compliance.
  • Provide security advisory, design reviews, and cloud security input.
  • Design social engineering simulations and run awareness programs.
  • Engage IT and business teams to align risk treatment and report to stakeholders.

Skills

Risk assessment
Vulnerability management
Security compliance
Stakeholder communication
English & Chinese

Education

Bachelor’s degree in Computer Science or Cybersecurity

Tools

Vulnerability scanning tools

Job description

Assistant Manager - Cyber Security Ops - Tech Risk & Security Assessment

The Senior Analyst - Cyber Security Ops is responsible for leading enterprise-wide cybersecurity risk assessments, vulnerability management, and compliance initiatives. The role ensures that security risks are identified, assessed, and mitigated in alignment with organizational risk appetite and regulatory requirements. This position acts as a key liaison between cybersecurity, IT, and business stakeholders to strengthen the overall security posture.

PRIMARY RESPONSIBILITIES:
  • Contribute the team working as the cyber security “Subject Matter Expert” and "Advisor" for GEG covering:
  • - Conduct enterprise-wide cybersecurity risk assessments
  • - Perform cyber, tech and business impact and risk analysis
  • - Develop risk treatment and remediation plans
  • 2. Vulnerability Management
  • - Support in the identification of vulnerabilities through scanning and threat intelligence
  • - Prioritize risks based on severity and business context
  • - Track and oversee remediation activities
  • 3. Security Governance & Compliance
  • - Ensure compliance with frameworks (ISO 27001, NIST CSF, PCI-DSS, etc.)
  • - Support internal/external audits
  • - Review and manage policy exceptions
  • 4. Security Advisory & Solution Review
  • - Perform security assessments on new systems and cloud services
  • - Provide secure design and architecture recommendations
  • 5. Security Awareness & Testing
  • - Design and execute social engineering simulations
  • - Support cybersecurity awareness programs
  • 6. Stakeholder Engagement
  • - Collaborate with IT and business teams to align risk treatment
  • - Communicate risks to senior and non-technical stakeholders
REQUIREMENTS:
Must-Have Qualifications
  • - Bachelor’s degree in Computer Science, Cybersecurity, or a related field (or equivalent experience)
  • - Minimum 4+ years of experience in:
  • - Cybersecurity risk assessment
  • - Vulnerability management
  • - Security compliance or audit support
  • - Hands-on experience with:
  • - Vulnerability scanning and remediation processes
  • - Good understanding of cybersecurity frameworks and standards (e.g., ISO 27001, NIST CSF, MCSL)
  • - Proven ability to perform risk impact analysis and develop actionable remediation plans
  • Strong ability to communicate security risks to non-technical stakeholders
  • - Able to communicate in English and Chinese, including writing and reading
Preferred Qualifications
  • - Industry certifications such as CISSP, CISM, CRISC, CEH, GIAC, GSEC
  • - Experience with cloud security environments (AWS, Azure, GCP, Aliyun)
  • - Experience supporting internal/external audits or regulatory compliance
  • - Exposure to security architecture review or secure design practices
  • - Experience in social engineering or security awareness programs
Technical Skills
  • - Risk assessment and risk treatment planning
  • - Vulnerability identification, prioritization, and tracking
  • - Security control evaluation and compliance validation
  • - Basic knowledge of implementing or managing security controls
  • - Familiarity with threat intelligence and security monitoring concepts
Core Competencies
  • - Strong analytical and problem-solving ability
  • - Effective stakeholder communication and presentation skills
  • - Ability to work independently and manage priorities
  • - Strong planning, time management, and organizational skills
  • - Collaborative mindset with cross-functional teams

Your application will include the following questions:

  • Which of the following statements best describes your right to work in Hong Kong?
  • What's your expected monthly basic salary?
  • How many years' experience do you have as a Cyber Security Analyst?
  • What is your highest level of education?
  • How many years of Security Risk Assessment experience do you have?
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Assistant Manager - Cyber Security Ops
Assistant Manager - Cyber Security Ops

Galaxy Entertainment Group • Hong Kong

On-site
HKD 900,000 - 1,300,000
(Senior) echnology Risk Manager (Cyber Security Control Division)
(Senior) echnology Risk Manager (Cyber Security Control Division)

Bank of China (Hong Kong) • Hong Kong

On-site
HKD 500,000 - 800,000
Medical insurance
Life insurance
Various allowances
Cyber Security Operations Manager
Cyber Security Operations Manager

Classy Wheeler Limited • Hong Kong

On-site
HKD 900,000 - 1,200,000
IT Security Manager (Finance/up to 70K)
IT Security Manager (Finance/up to 70K)

Manpower Services (Hong Kong) Limited • Hong Kong Island

On-site
HKD 900,000 - 1,400,000
CYBER SECURITY AND RISK ANALYST / CYBER SECURITY ENGINEER
CYBER SECURITY AND RISK ANALYST / CYBER SECURITY ENGINEER

Henderson Land Development Company Limited • Hong Kong

On-site
HKD 420,000 - 660,000
Fringe benefits
IT Security Manager / Associate Director
IT Security Manager / Associate Director

Recruit Squad Limited • Hong Kong Island

On-site
HKD 900,000 - 1,600,000
Manager - Cyber-Security (Application)
Manager - Cyber-Security (Application)

Classy Wheeler Limited • Hong Kong

On-site
HKD 600,000 - 900,000
Assistant Vice President, Cybersecurity
Assistant Vice President, Cybersecurity

Randstad Hong Kong Limited • Hong Kong

On-site
HKD 1,100,000 - 1,800,000
IT Security Manager (banking) (Finance/up to 70K)
IT Security Manager (banking) (Finance/up to 70K)

Manpower Services (Hong Kong) Limited • Hong Kong Island

On-site
HKD 469,000 - 781,000
Technology Risk Manager (Information Security Control Division)
Technology Risk Manager (Information Security Control Division)

Bank of China (Hong Kong) • Hong Kong

On-site
HKD 700,000 - 1,000,000