Back to search:
Information Security / Hong Kong
Information Security Analyst (Public Enterprise)
Hong Kong
Classy Wheeler Limited
Published on www.allthetopbananas.com
16 Aug 2024
Information Security Analyst (Public Enterprise)
Client Description:
Well-established public enterprise.
Job Description:
Perform technical advisory in assigned project area for ensuring identified information security risks are mitigated and controls are implemented.
Coordinate and conduct IS assurance activities on application software and system to identify security exposures. Support and advise IT colleagues on remediation efforts.
Coordinate and implement various security solutions and security controls. Support and advise IT colleagues on risk treatments.
Work with IT teams in adopting secure programming practices throughout the system development lifecycle; and work with application and technology architects to assess the risk and impact to business of existing and future business applications implementations.
Design, plan, execute, and document information security architecture and related security framework.
Job Requirements:
At least 5 years working experience in IT industry with 3 years of experience in IT Infrastructure and IT Operations.
Good understanding of information security, application architecture, risk assessment, and risk management integrated into the application development lifecycle.
Qualified professional certifications such as CISSP, CISA, CEH, CSSLP or their equivalent would be an advantage.
Excellent analytical skills and ability to present technical information and statistics to enable management to make sound decisions.
Good knowledge of security, web, mobile, and enterprise application infrastructure and design. Good understanding of data analytics and visualization.
Knowledge of OWASP Top 10 and ISO27001.
Solid experience with Windows, Linux, AD, Group Policy, Virtualization, and other Security Solutions.
Knowledge of DevOps processes and related tools including Jenkins, JIRA, GitHub, Ansible, UrbanCode, or other similar tools would be an advantage.
Knowledge of application penetration testing, vulnerability scanners, security testing tools, and methodologies would be desirable.
Function:
Information Technology
Employment Type:
Direct contract with employee benefits (2-year renewable).
#J-18808-Ljbffr
View all