Manager (Cyber Resilience)
Hong Kong Interbank Clearing Limited
- Ngau Tau Kok, Hong Kong
- Permanent
- Full-time
- large-value interbank fund transfers denominated in HKD, USD, Euro and RMB;
- interbank money settlement of equity and debt securities transactions in Hong Kong via the linkages with the Hong Kong Securities Clearing Company Limited and the HKMA’s Central Moneymarkets Unit (CMU) system;
- small-value interbank fund transfers denominated in HKD and RMB via the HKD and RMB Faster Payment System; and
- interbank clearing and/or money settlement of retail payments, such as paper cheques, autocredits, credit card payments, etc. in Hong Kong.
- Manage the company’s cyber security posture
- Initiate and develop mitigation actions for any identified improvement areas or adverse trends
- Establish process for cyber threat intelligence collection, analysis and dissemination process
- Conduct cyber resilience related assessments for the company and provide input to risk metrics reporting
- Coordinate and develop cyber resilience strategy for the company, provide interpretation of cyber resilience controls and regulatory requirements, and recommend industry practices in implementation
- Provide cyber security advisory services on architectural design for IT projects
- Coordination with relevant parties for preparing cyber security budget
- Manage the Security Operations Center (SOC)
- Liaise with internal and external auditors in performing cyber resilience assessment and intelligence-led cyber attack simulation testing (iCAST)
- Liaise with regulators on cyber security matters
- Perform any other ad hoc duties or projects as assigned
- University degree preferably in information technology, cyber security, computer science or related discipline
- Minimum 6 years of experience in cyber security, technology risk management and/or auditing
- Good understanding of technology risk management and cyber security best practices, with broad knowledge of Fintech, data privacy and/or industry practices
- Familiar with ISO27001, CSA STAR, and HKMA CFI 2.0 framework, technology risk management and cyber security related guidelines.
- CISA, CISM, CDPSE, CRISC, CISSP, CEH, CCSP and/or other cyber resilience related certifications preferred
- Team player with sound interpersonal and communication skills
- Excellent problem solving and analytical skills
- Good command of written and spoken English and Chinese
CTgoodjobs