
Associate Director - Digital Risks
- Central, Hong Kong
- Permanent
- Full-time
- Programme and project management of digital risk advisory engagements (e.g., senior stakeholder engagement, programmes scoping, managing project/programme budget, hiring key resources, delivering against an agreed plan, issue management).
- Delivering strategy and transformation projects (e.g., helping clients to define and develop robust and future-proofed digital security strategies, conducting risk assessments, supporting cyber due diligence projects etc.).
- Supporting clients as a senior advisor throughout their digital security transformation.
- Working with senior project stakeholders (e.g. gathering information from interviews, document reviews and presenting findings) while maintaining the confidence of the client through clear communication and exceptional project management skills.
- Working with external technical partners to deliver an integrated solutions and drawing out recommendations from their technical findings.
- Provide flexible and responsive support alongside our dedicated Cyber Response team for key Clients.
- Developing proposals for future client work.
- Cultivating long-term relationships with clients.
- Participating in marketing and speaking events to build the Control Risks brand.
- Project and programme scoping and planning, to support pricing and project budget.
- Contributing to and building complex, multi-service line proposals.
- Managing and mentoring team members.
- Helping to refine our cyber security methodologies and approaches.
- Contributing to our professional development and training programme.
- Educate other departments about cyber security and the services we provide.
- Identifying and hiring local talent into the Cyber Security team.
- Considerable experience of cyber security risk management within an established consultancy.
- Ability to see security from the attacker’s point of view and articulate enterprise risks to senior non-technical audiences.
- Proven experience in reviewing, designing and implement cyber security strategy projects for clients.
- Proven experience in delivering risk assessments against industry standards (e.g.NIST CSF and ISO27001).
- Proven experience working with China's information handling and technology regulations and standards.
- Broad corporate experience and understanding of the interaction between departments (such as HR, Finance and Security) and levels of governance within a commercial organisation.
- Excellent knowledge of IT and OT network infrastructure.
- Undergraduate or a post graduate degree in a field related to security, information security, intelligence, or computer science.
- CISSP, CISM, ISO27001 lead auditor, SANs or similar industry qualifications/certifications.
- Native or documented fluency in Mandarin.
- Control Risks offers a competitively positioned compensation and benefits package that is transparent and summarised in the full job offer.
- We operate a discretionary global bonus scheme that incentivises, and rewards individuals based on company and individual performance.
- Control Risks supports hybrid working arrangements, wherever possible, that emphasise the value of in-person time together - in the office and with our clients - while continuing to support flexible and remote working.
- As an equal opportunities employer, we encourage suitably qualified applicants from a wide range of backgrounds to apply and join us and are fully committed to equal treatment, free from discrimination, of all candidates throughout our recruitment process.