HongKong, Hong Kong
IT Security Engineer
Job Description:
We are looking for an experienced cybersecurity specialist with a good technical background, ideally with experience in:
- Planning, designing, and implementing cybersecurity solution in an enterprise environment.
- Developing enterprise security architecture model and governance model.
- Providing professional security consultancy to stakeholders in different levels.
Key Responsibilities
- Develop and manage a well-formulated IT security architecture model, security blueprints and reference architectures, governance model, design patterns and security standards aligned with business and IT strategies and industry standards.
- Ensure security principle and compliance are taken into consideration (shift-left) for all IT projects and systems. Provide guidance and support to project implementations and system designs.
- Advocate for cybersecurity transformation. Act as the Security Subject Matter Expert to advise on security and technology issues to stakeholders in different levels.
- Ensure system security design alignment to the security architecture model, design pattern, policies and compliance requirements by conducting the review, advice and approval processes.
- Conduct reviews on various security and technology measures. Identify and validate security compliance, area of enhancements, and best practices implemented in the enterprise.
- Establish and maintain a technology stack for security solution offerings.
- Research on the changing threat landscape, attack trends, and countermeasures.
- Provide ideas and advices and evaluate security tools on further strengthening of security to mitigate evolving threats.
Requirements
- University degree in computer science, engineering or related fields.
- At least 7 years of experience in cybersecurity architecture, solution design and implementation in enterprise environment.
- Demonstrable experience in gaining buy-in and influencing executives, ability to convey key strategic messages, with strong communication skills and ability to influence and network both internally and externally.
- In depth understanding of data privacy, security principles, and knowledge of emerging technologies and related security patterns.
- Effective problem-solving capable, such as studying a problem, analysing options, and suggesting solutions. Ability to approach a problem from different angles, including a technical person and senior management.
- Strong interpersonal, communication, writing, and presentation skills. Experience in client-facing role or management consultancy is highly preferred.
- Security and architecture certifications such as CISSP, CISM, TOGAF, and SABSA are
preferred.
Required Skills:
Security