Turn this role into an interview — a resume and cover letter built around what this employer wants.
Direct Access Solutions Sdn. Bhd. seeks a mid-level IT operations and cybersecurity professional to support escalated IT issues, maintain AD/O365, and oversee basic server maintenance. This role will draft security manuals, monitor daily security operations, and contribute to BCP/DR planning for three financial entities.
You will handle incident responses, vulnerability management, and audits while ensuring compliance with HK SFC and MAS standards. Fluent English and Mandarin preferred.
We are seeking a mid-level technical professional with a solid foundation in IT operations and hands-on cybersecurity experience. As a core member of the group's IT team, this role will handle escalated IT support (Help Desk) and basic system/network maintenance. More importantly, this role will be independently responsible for daily security monitoring, drafting security manuals, and maintaining/executing BCP/DR plans for our three financial brokerage entities (HK, SG, US), ensuring daily IT operations comply with foundational financial security and regulatory standards.
Resolve escalated IT issues, including complex desktop troubleshooting, network connectivity issues, and in-depth troubleshooting of office software
Independently manage enterprise IT infrastructure, including Active Directory (AD), Office 365 tenant administration, Mobile Device Management (MDM), and basic server maintenance
Independently draft, update, and maintain the group's cybersecurity manuals, IT operational procedures, and user security guidelines
Conduct daily security monitoring, including reviewing firewall logs, managing antivirus/EDR consoles, triaging security alerts, and executing regular vulnerability scans and patch management
Act as the first responder for security incidents, handling medium-complexity events (e.g., phishing email analysis, malware isolation) and drafting incident reports
Responsible for writing and updating BCP and DR plan documentation for core business systems
Independently plan, coordinate, and lead regular backup restoration tests and DR drills, evaluate the results, and report improvement recommendations to management
Manage basic network devices (firewalls, routers, switches), responsible for VLAN configuration, ACL policy management, and port security
Understand and implement foundational IT compliance requirements for the financial industry (e.g., HK SFC, MAS), and provide technical evidence and remediation plans for internal/external audits
Bachelor's degree in Computer Science, Information Technology, or a related field
Above 5 years of combined experience in IT operations and cybersecurity
Prior experience in IT support or security operations within the financial industry (securities, futures, banking) is highly preferred
Proficient in Windows/Mac desktop support, with strong skills in Active Directory, Office 365 administration, and basic PowerShell scripting
Solid networking foundation, capable of independently configuring and managing enterprise firewalls (e.g., Fortinet, Palo Alto, Cisco), switches, and routers
Familiar with the operation of mainstream security tools, such as Antivirus/EDR, vulnerability scanners (e.g., Nessus, OpenVAS), and basic SIEM log analysis
Understand common cyberattack vectors (e.g., phishing, ransomware) and their defense and incident response procedures
Fluent in both English and Mandarin (as working languages), with the ability to independently write professional English security policy documents, audit reports, and emails
Strong logical analysis skills and the ability to work under pressure, capable of independently driving projects and resolving unexpected issues in a multi-tasking environment