Information Security Manager

PCCW Solutions

Hong Kong

On-site

HKD 800,000 - 1,200,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A leading IT service provider in Hong Kong is seeking an experienced professional in Information Security Management. This role requires approximately 10 years of experience in cybersecurity, a strong understanding of IT Security policies, and the ability to manage audit and disaster recovery processes. Responsibilities include leading IT security audits, conducting gap analyses, and enhancing the overall security posture. Relevant certifications such as CISM or CISSP are preferred, and strong analytical and communication skills are essential.

Qualifications

  • Approximately 10 years of experience in information security management or related fields.
  • Strong understanding of IT policies and regulatory frameworks.
  • Proven experience collaborating across technical teams and engaging with stakeholders.

Responsibilities

  • Maintain and review IT Security Policies and related documentation.
  • Lead and manage IT security audits and security testing projects.
  • Perform gap analyses against internal policies and regulatory requirements.

Skills

Information security management
Cybersecurity
IT policies and frameworks
Analytical capabilities
Effective communication

Education

Relevant certifications (CISM, CISA, CISSP)

Job description

We are seeking an experienced professional in Information Security Management. The ideal candidate should have a strong understanding of IT Security policies, industry control frameworks, and local regulatory requirements, as well as the ability to manage audit lifecycle and participate in disaster recovery (DR) planning. This role will be responsible for managing security policies and standards, conducting control gap analyses and assessments, overseeing IT Security audit and testing activities, and presenting assessment results to management. The candidate must be detail-oriented, possess strong technical comprehension, communicate effectively with technical teams, and be proficient in professional technical writing.

Your Role:
  • Maintain and review IT Security Policies and related documentation.
  • Lead and manage IT security audits and security testing projects in entire lifecycle.
  • Perform gap analyses against internal policies and regulatory requirements, and manage the necessary follow-up actions.
  • Act as the primary point of contact for inquiries related to Information Security Policies, audit activities, and control gap assessments.
  • Assist in technology disaster recovery planning (DRP) and preparation of DR drills.
  • Provide ad hoc support for security-related projects as needed.
  • Drive continuous improvements in overall information security posture from a governance and compliance perspective.
To Succeed in this Role:
  • Approximately 10 years of experience in information security management, cybersecurity, or related fields.
  • Strong understanding of IT policies, control, and risk frameworks (e.g., ISO 27001/22301, NIST, COBIT).
  • Solid understanding of Hong Kong’s information security regulatory requirements.
  • Proven experience collaborating across technical teams and engaging with stakeholders across different levels.
  • Excellent written and reading skills in English.
  • Strong analytical capabilities with attention to detail and the ability to consolidate information effectively.
  • Relevant certifications (e.g., CISM, CISA, CISSP, ISO 27001 Lead Auditor) are highly desirable.
Preferred Attributes:
  • Strategic mindset with a hands‑on approach to problem‑solving and the ability to work independently.
  • Experience in regulated industries (e.g., finance, healthcare) is a plus.
  • Knowledge of emerging technologies (e.g., Generative AI) is an advantage.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Security Manager - IC
IT Security Manager - IC

Classy Wheeler Limited • Hong Kong

On-site
HKD 600,000 - 900,000
IT Security Manager (Finance/up to 70K)
IT Security Manager (Finance/up to 70K)

Manpower Services (Hong Kong) Limited • Hong Kong Island

On-site
HKD 900,000 - 1,400,000
Senior Information Security Officer
Senior Information Security Officer

Gfi World • Tsuen Wan

On-site
HKD 800,000 - 1,200,000
Technology Risk Manager (Information Security Control Division)
Technology Risk Manager (Information Security Control Division)

Bank of China (Hong Kong) • Hong Kong

On-site
HKD 700,000 - 1,000,000
Senior Analyst, Information Security (Architecture & Change)
Senior Analyst, Information Security (Architecture & Change)

PFCC Group • Hong Kong

On-site
HKD 180,000 - 240,000
Technology Risk Manager (Information Security Control Division)
Technology Risk Manager (Information Security Control Division)

Bank of China (Hong Kong) Limited • Sha Tin

On-site
HKD 700,000 - 1,100,000
Insurance - Manager, Technology Risk & Security
Insurance - Manager, Technology Risk & Security

Cornerstone Global Partners • Hong Kong

On-site
HKD 900,000 - 1,500,000
Information Security Consultant
Information Security Consultant

Zurich 56 Company Ltd • Hong Kong

On-site
HKD 600,000 - 800,000
Information Security & Audit Governance Lead
Information Security & Audit Governance Lead

PCCW Solutions • Hong Kong

On-site
HKD 800,000 - 1,200,000
IT Security Manager / Associate Director
IT Security Manager / Associate Director

Recruit Squad Limited • Hong Kong Island

On-site
HKD 900,000 - 1,600,000