Compliance and Information Security Analyst

SleekFlow

Hong Kong

On-site

HKD 320,000 - 520,000

Full time

2 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

13th-month salary
Stock options
Diverse international team
Birthday leave
Flexible work-from-home policy
Work From Anywhere

Job summary

SleekFlow is seeking an experienced Compliance and InfoSec Analyst to join our growing team in Hong Kong. The successful candidate will ensure adherence to legal standards and in-house policies, with a focus on audits, risk assessments, data governance, and incident response.

You will conduct audits, manage certifications (ISO 27001), perform risk assessments, oversee security testing, and collaborate with engineering and business squads to educate teams and improve security readiness globally.

Qualifications

  • Audit & Certification Management: Conduct internal and external IT/compliance audits, maintain industry certifications (e.g., ISO 27001), and manage the documentation and enterprise compliance surveys requested by clients.
  • Risk & Vulnerability Assessments: Perform continuous risk assessments, oversee application security testing (SAST/DAST), and manage vulnerability scanning schedules to proactively identify and mitigate hidden risks.
  • Data Governance & Privacy: Develop and explore data governance frameworks, policies, and privacy standards (e.g., GDPR) across our existing and expanding global operating markets.
  • Security Operations & Incident Response: Monitor daily security alerts across cloud infrastructure and own the incident response lifecycle, from containment and forensic mitigation to reporting for senior leadership.
  • Threat Intelligence & Mitigation: Proactively hunt for hidden threats using updated intelligence data, improving control systems continuously to prevent compliance or security violations.
  • Cross-Departmental Collaboration: Partner with engineering and business squads to monitor enforcement standards, assess risks in future business ventures, and design cybersecurity readiness training for global teams.

Responsibilities

  • Audit & Certification Management: Conduct internal and external IT/compliance audits, maintain industry certifications (e.g., ISO 27001), and manage the documentation and enterprise compliance surveys requested by clients.
  • Risk & Vulnerability Assessments: Perform continuous risk assessments, oversee application security testing (SAST/DAST), and manage vulnerability scanning schedules to proactively identify and mitigate hidden risks.
  • Data Governance & Privacy: Develop and explore data governance frameworks, policies, and privacy standards (e.g., GDPR) across our existing and expanding global operating markets.
  • Security Operations & Incident Response: Monitor daily security alerts across cloud infrastructure and own the incident response lifecycle, from containment and forensic mitigation to reporting for senior leadership.
  • Threat Intelligence & Mitigation: Proactively hunt for hidden threats using updated intelligence data, improving control systems continuously to prevent compliance or security violations.
  • Cross-Departmental Collaboration: Partner with engineering and business squads to monitor enforcement standards, assess risks in future business ventures, and design cybersecurity readiness training for global teams.

Skills

InfoSec
Compliance
Risk management
Audit experience
Data governance

Job description

SleekFlow is an AI Suite for Revenue-Driving Conversations. We are trusted by over 2,000 enterprises globally. But we are more than just a SaaS company; we are an AI-native movement redefining the B2C relationship across 70+ countries.

At our core is AgentFlow—an AI GTM workforce that learns, improves, and acts as a self-healing knowledge base for businesses. From first-click conversion to long-term retention, we turn every conversation into a data-backed growth opportunity. Headquartered in Singapore with a global presence in Hong Kong, the UAE, and the US, we are looking for exceptional people to help us build an AI operating system that matters.

Join us and rewrite how the world engages at scale.

Learn more from our blogs for developers: https://sleekflow.io/blog/category/developer-blog

Mid level
Location: Hong Kong
Overview

We are seeking an experienced Compliance and InfoSec Analyst to join our growing team. The successful candidate will be responsible for ensuring that our company adheres to legal standards and in-house policies. This person will be tasked with enforcing regulations in all aspects and levels of business as well as provide guidance on compliance matters. This person must have a good understanding of computer networks and systems, and must be able to identify potential security risks and develop strategies for mitigating those risks. A keen eye for detail and a commitment to upholding the highest standards of confidentiality and integrity are essential for success in this role.

Responsibilities
  • Audit & Certification Management: Conduct internal and external IT/compliance audits, maintain industry certifications (e.g., ISO 27001), and manage the documentation and enterprise compliance surveys requested by clients.
  • Risk & Vulnerability Assessments: Perform continuous risk assessments, oversee application security testing (SAST/DAST), and manage vulnerability scanning schedules to proactively identify and mitigate hidden risks.
  • Data Governance & Privacy: Develop and explore data governance frameworks, policies, and privacy standards (e.g., GDPR) across our existing and expanding global operating markets.
  • Security Operations & Incident Response: Monitor daily security alerts across cloud infrastructure and own the incident response lifecycle, from containment and forensic mitigation to reporting for senior leadership.
  • Threat Intelligence & Mitigation: Proactively hunt for hidden threats using updated intelligence data, improving control systems continuously to prevent compliance or security violations.
  • Cross-Departmental Collaboration: Partner with engineering and business squads to monitor enforcement standards, assess risks in future business ventures, and design cybersecurity readiness training for global teams.
Qualifications
  • A minimum of 2 years of proven experience in an info sec, compliance or risk manager role.
  • Good knowledge of legal requirements and procedures.
  • Brilliant oral and written communication skills.
  • Highly-analytical with strong attention to detail.
  • Professional certification related to compliance (e.g., Certified Compliance & Ethics Professional (CCEP), Certified Information Systems Security Professional (CISSP)).
  • Experience with ISO 27001 and other industry-standard certifications.
  • Solid understanding of data governance frameworks and best practices, including data classification, data quality management, and data privacy regulations (e.g. GDPR) across markets that the company has operations in.
  • Proficiency in risk management and industry-specific security standards.
  • Technical background with an understanding of software development and IT infrastructure.
What We Offer
  • Attractive compensation package including a 13th-month salary
  • Stock options in a rapidly growing startup
  • A fun, diverse, and international team culture
  • Paid birthday leave
  • Flexible work-from-home policy
  • "Work From Anywhere" scheme
  • Rewarding continuous learning from experienced team leads
  • Many more exciting perks and growth opportunities!

Confidence can sometimes hold us back from applying for a job. But we'll let you in on a secret: there's no such thing as a 'perfect' candidate.

SleekFlow is a place where everyone can grow. So however you identify and whatever background you bring with you, please apply if this is a role that would make you excited to come into work every day.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Staff Engineer
Staff Engineer

SleekFlow • Hong Kong

Hybrid
HKD 600,000 - 900,000
13th-month salary
Stock options
International team culture
+3
Remote-Friendly InfoSec & Compliance Analyst
Remote-Friendly InfoSec & Compliance Analyst

SleekFlow • Hong Kong

On-site
HKD 320,000 - 520,000
13th-month salary
Stock options
Diverse international team
+3
Software Quality Assurance Lead
Software Quality Assurance Lead

SleekFlow • Hong Kong

Hybrid
HKD 520,000 - 900,000
13th-month salary
Stock options
Flexible work-from-home policy
+3
Technical Sales Manager
Technical Sales Manager

SleekFlow • Hong Kong

On-site
HKD 900,000 - 1,300,000
13th-month salary
Stock options
Work From Anywhere
+3
Customer Support Specialist (AI & SaaS)
Customer Support Specialist (AI & SaaS)

SleekFlow • Hong Kong

On-site
HKD 201,000 - 312,000
13th-month salary
Stock options
Diverse international team
+2
InfoSec & Compliance Analyst (1.5 LoD)
InfoSec & Compliance Analyst (1.5 LoD)

Mavence Group • Hong Kong

On-site
HKD 480,000 - 720,000
Senior / Customer Success Associate (B2B)
Senior / Customer Success Associate (B2B)

SleekFlow • Hong Kong

Hybrid
HKD 50,000 - 70,000
13th-month salary
Stock options
Flexible work-from-home policy
+2
InfoSec & Compliance Analyst (1.5 LoD)
InfoSec & Compliance Analyst (1.5 LoD)

Mavence Group Limited • Hong Kong

On-site
HKD 350,000 - 550,000
Corporate Secretary Executive - Hong Kong Clients
Corporate Secretary Executive - Hong Kong Clients

Sleek • Hong Kong

On-site
Work from home / remote flexibility
Generous paid time off
Employee share ownership plan
+1
Compliance & Information Security Specialist | World-class AI product
Compliance & Information Security Specialist | World-class AI product

Osmium Consulting Group Limited • Hong Kong

On-site
HKD 420,000 - 540,000