YF Life Insurance International Ltd. is a major life insurance company in Hong Kong and Macau, providing one-stop risk- and wealth-management services. Our scope of business ranges from insurance, investment, and retirement to MPF.
To cope with our business expansion, we now invite dynamic and highly motivated individuals to join and grow with us.
Responsibilities:
- Implement and oversee Information Security policies, standards, and procedures for HK & Macau.
- Conduct security assessments, vulnerability & penetration tests, attack simulations and other industrial testing practices.
- Manage IT Security Team to deliver first Line of Defense function on cybersecurity management.
- Liaise with the Security Operations Centre (SOC) for incident management and vulnerability oversight.
- Align IT policies & standards to comply with HK & Macau regulatory requirements on cybersecurity (e.g. GL20, 網絡安全法, Macau AMCM).
- Facilitate Cybersecurity Incident Management activities, including incident reporting, classification, rectification & recovery.
- Coordinate with second Line of Defense (i.e. Risk Management) for holistic risk monitoring and KRIs reporting.
- Promote security and cyber incident awareness through training and campaigns.
- Support regular internal/external audits or regulator's query.
Requirements:
- Bachelor’s degree in Computer Science, Information Systems or elated disciplines
- At least 8 years of IT Security Lead / Manager experience
- Proven experience in cybersecurity management, preferably within the insurance or finance industry.
- In-depth knowledge of information security principles, risk management, and compliance requirements.
- Technical expertise in security technologies, threat intelligence, and vulnerability management.
- Experience in mission critical security solutions and deployments include but not limited to vulnerability scanning, penetration testing, application security testing tools, DNSSEC, SSL / e-Cert, EDR/XDR, IDS/IPS, Load Balancers, Different layers of Firewalls and DLP …etc. is an advantage
- Strong analytical, problem-solving, and communication skills, both internal and external, whether they are in business or technology capacities.
- Excellent communication skills in English and Chinese including Mandarin
- Professional certifications such as CISSP, CISM, or CRISC.
Attractive salary and fringe benefits, including 5-day work week, medical, life insurance, annual leave, pension scheme and training subsidies, etc. will be offered to this permanent appointment. Interested parties please send full resume, with academic results, current and expected salary to Human Resources Manager by clicking Apply Now . All information received will be used for recruitment purposes only.
All applications applied through our system will be delivered directly to the advertiser and privacy of personal data of the applicant will be ensured with security.