We are one of the specialized companies of Bank of China (Hong Kong) Limited. As a global credit card centre in Hong Kong, we strive to provide world-class credit card products and services to both domestic and overseas customers. We also play a major role in the development of e-commerce as well as...

We are one of the specialized companies of Bank of China (Hong Kong) Limited. As a global credit card centre in Hong Kong, we strive to provide world-class credit card products and services to both domestic and overseas customers. We also play a major role in the development of e-commerce as well as credit card market in Mainland China. To cope with our rapid business expansion, we are now looking for high-calibre candidates to take up the following challenging roles:

Information Security Engineer

Job level Middle
Work exp 2 Years To 3 Years
Education Bachelor Degree
Language Chinese - Cantonese, Chinese - Mandarin, English
Location Hong Kong Island
Employment type Full Time
Benefits 5-day week
Industry Banking
Job function Information Technology > Engineering - Network
Information Technology > Security / Audit
Banking / Finance > Others
Published On 18/11/2016

Responsibilities:

  • Develop & manage security governance framework & risk portfolio
  • Establish and review policies, guidelines, procedures in information security area
  • Act as a subject matter expert to provide information security consulting & advisory services
  • Research and evaluate latest security threats & technology solutions
  • Review IT initiatives on technology risk perspective and establish & implement remediating security controls
  • Provide governance and support over security tools including firewall, IPS, end point protection, DLP, vulnerability management, MDM, log management etc.
  • Conduct or manage information security assessments include vulnerability scanning independent penetration test on corporate infrastructure
  • Work with IT operation to monitor and report suspicious activity
  • Conduct regular user account and privilege review
  • Manage and coordinate security incident response, handling and investigation process.
  • Promote information security awareness across the corporation

Requirements:

  • Bachelor Degree graduates in Computing related disciplines
  • Preferably with at least one of the relevant qualifications such as CISSP, CISA, CRISC, ECSA, CEH, GSEC, Security+
  • Minimum 2-3 years’ experience and practical knowledge on implementing information security frameworks or standards, such as ISO, COBIT, ITIL is an advantage
  • Knowledge of PCI-DSS and experience in handling with IT Audit will be advantage
  • Good communication & interpersonal skills across different levels
  • Ability to work as a good team player with minimum supervision
  • Occasional travel is required

Applicants for the above position must be proficient in spoken and written Chinese (including Mandarin) and English, and be competent in MS Office applications. 

Attractive remuneration packages will be offered to suitable candidates. Interested parties please send full resume with present and expected salary to Human Resources Department, 20/F BOC Credit Card Centre, 68 Connaught Road West, H.K. (Please quote Ref. no.) OR email to recruit@boci.com.hk 

* Personal Data collected will be used for recruitment purposes only. Applicants who do not hear from us within 4 weeks may consider their applications unsuccessful and their data will be destroyed within 3 months of receipt.