The hiring company is looking for information security manager to help develop group-level security strategy, roadmap and policy.about the job.
- Develop and implement information security strategies, policies, and procedures that align with the organization's business objectives and regulatory requirements.
- Monitor internal and external policy compliance and ensure both vendors and employees understand the cybersecurity risk management policies operate within that framework.
- Design and implement security controls to protect data and systems from unauthorized access, modification, or destruction.
- Work with security vendors to conduct regular risk assessments and vulnerability assessments to identify potential threats and vulnerabilities in the organization's systems, networks, and applications.
- Oversee information security audits, whether performed by organization or third-party personnel.
- Serve as a focal point of contact for the information security team and the customer or organization.
- Communicate information security goals and new programs effectively with other department managers within the organization.
- Plan and execute security awareness and training programs to promote a culture of security awareness across the organization.
- Collaborate with internal stakeholders to ensure compliance with relevant laws, regulations, and industry standards.
- Maintain up-to-date knowledge of the latest trends, technologies, and best practices in information security.
- Develop and manage security budgets, contracts, and vendor relationships.
skills & experiences required.
- Bachelor's degree in Computer Science, Information Technology, or related field.
- At least 8 years of experience in information security management, and governance.
- Strong knowledge of security frameworks, standards, and regulations (e.g., ISO 27001, NIST CSF, GDPR, HIPAA).
- Experience with vulnerability assessment tools, penetration testing tools, and security incident response tools.
- Excellent communication and interpersonal skills, with the ability to collaborate effectively with internal and external stakeholders.
- Relevant certifications such as CISSP, CISM, or CISA are preferred.
- Strong oral, verbal and written communication skills in English, Cantonese & Mandarin.
If you’re interested in this exciting opportunity please don’t delay and click APPLY NOW for more information you can reach out to Wendy Fung at wendy.fung@randstad.com.hk with the resume.