Cyber Security Manager

Classy Wheeler Limited

Hong Kong

On-site

HKD 700,000 - 900,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

A leading retailer in Hong Kong is looking for an experienced Application Security Evangelist to enhance security practices and manage application security frameworks. You will be responsible for training developers, integrating security tools into the software lifecycle, and ensuring compliance with security standards. Ideal candidates will have over 5 years of experience in application security and hold relevant professional qualifications. A strong command of English and Chinese is required, with Mandarin as an advantage.

Qualifications

  • Over 5 years’ experience in IT Application security and risk management area.
  • Strong technical skills related to IT applications and infrastructure.
  • Knowledge and experience in Fintech is desirable.
  • Possess at least two professional qualifications such as CISM, CISA, CISSP, CEH.

Responsibilities

  • Translate security concepts for developers.
  • Improve and maintain secure development standards.
  • Integrate security tools into the SDLC.
  • Train developers in security knowledge.

Skills

Application security
Risk management
Cyber security controls
Incident handling
Leadership
Communication
Analytical skills
Development lifecycle knowledge

Education

University degree in Computer Science or related disciplines

Job description

Leading retailers and wholesalers of a number of top-selling sports, lifestyle and outdoors brands of apparel, footwear and accessories products.

Job Description
  • Being an Application Security Evangelist who translates security concepts for developers
  • Improving and maintaining secure development standards and managing application security framework improvement projects
  • Integrating security tools, standards and processes into the Software Development Life Cycle (SDLC)
  • Ensuring that developers are trained with the appropriate level of security knowledge to perform their daily activities
  • Improving and supporting application security tool deployments including static analysis and runtime testing tools
  • Producing metrics reporting the state of application security programs and performance of development teams against requirements
  • Supporting Vendor Security activities to ensure third party software and development meets security standards
  • Supporting the incident response and architecture review processes whenever application security expertise is needed
  • Holding third party’s accountable for code quality
  • Integrating threat modeling practices into the product life cycle
  • Conducting application security design reviews and prioritize all application security issues
  • Providing security requirements for test‑driven design
  • Partnering with third parties to provide penetration testing services
Job Requirements
  • University degree in Computer Science or related disciplines
  • Over 5 years’ experience in IT Application security and risk management area
  • Strong technical or security skills related to IT applications and infrastructure Solid experience in cyber security controls and incident handling
  • Good knowledge in Companying environment
  • Knowledge and experience in Fintech is desirable
  • Strong knowledge of Companying regulations / guidelines relating to cyber security and technology risk management
  • Strong self‑motivation, with good leadership, communication, interpersonal and analytical skills
  • Great sense of ownership and servicing mindset
  • Good command of both spoken and written English and Chinese; Mandarin is an advantage
  • Possess at least two of the professional qualification such as CISM, CISA, CISSP, CEH, GWAPT, GPEN and OSCP
  • Experienced in web and mobile application development/penetration testing preferred
  • Experienced in performing security risk assessment and audits based on industry standards
  • Familiar with various cybersecurity related framework such as ISO 27001 ISMS, CIS CSC (CIS Critical Security Controls) and NIST Cyber Security Framework
  • Candidates with less experience will be considered as Assistant Manager
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager - Cyber-Security (Application)
Manager - Cyber-Security (Application)

Classy Wheeler Limited • Hong Kong

On-site
HKD 600,000 - 900,000
IT Security Manager (banking) (Finance/up to 70K)
IT Security Manager (banking) (Finance/up to 70K)

Manpower Services (Hong Kong) Limited • Hong Kong Island

On-site
HKD 469,000 - 781,000
IT Security Manager / Associate Director
IT Security Manager / Associate Director

Recruit Squad Limited • Hong Kong Island

On-site
HKD 900,000 - 1,600,000
IT Security Manager - IC
IT Security Manager - IC

Classy Wheeler Limited • Hong Kong

On-site
HKD 600,000 - 900,000
IT Cyber Security Manager
IT Cyber Security Manager

Recruit Squad Limited • Hong Kong

On-site
HKD 600,000 - 900,000
Cybersecurity Manager (Technical Controls, Infrastructure Security) (Bank)
Cybersecurity Manager (Technical Controls, Infrastructure Security) (Bank)

Classy Wheeler Limited • Hong Kong

On-site
HKD 800,000 - 1,200,000
(Senior) echnology Risk Manager (Cyber Security Control Division)
(Senior) echnology Risk Manager (Cyber Security Control Division)

Bank of China (Hong Kong) • Hong Kong

On-site
HKD 500,000 - 800,000
Medical insurance
Life insurance
Various allowances
Cyber Security Operations Manager
Cyber Security Operations Manager

Classy Wheeler Limited • Hong Kong

On-site
HKD 900,000 - 1,200,000
IT Security Manager (Finance/up to 70K)
IT Security Manager (Finance/up to 70K)

Manpower Services (Hong Kong) Limited • Hong Kong Island

On-site
HKD 900,000 - 1,400,000
Manager / Assistant Manager, Security Services
Manager / Assistant Manager, Security Services

CITIC Telecom International CPC Limited • Hong Kong

On-site
HKD 900,000 - 1,500,000