Assistant Manager - IT Security Governance
Company Overview
Hang Lung Properties Limited, a constituent stock of the Hang Seng Index and Hang Seng Corporate Sustainability Indices in Hong Kong, is a leading real estate developer in Hong Kong and mainland China. Boasting a diversified portfolio of investment properties in Hong Kong, we have progressively branched out into the Mainland since the 1990s, building, owning and managing world-class commercial complexes in key cities that have earned international acclaim for their exceptional quality of architectural design, services and sustainable features.
Our people are the most precious asset of the Hang Lung family and the key to our success. They drive forward our development through their commitment, professionalism and caring services. As we extend our business horizons, we continue to devote significant resources and energy to developing the expertise and skills of our outstanding team.
We are looking for people who are talented, energetic, self-motivated team players. Are you ready to join us now?
Responsibilities:
- Develop & enforce IT policies & standards
- Develop and maintain security and AI governance awareness program
- Manage IT document life cycle through controlled and automated process
- Develop & maintain IT Key Control Matrix & IT Risk Matrix
- Manage various IT audit activities with internal auditor and external auditor
- Track and inspect cyber security compliance of all IT functions, deliver compliance assessment report
- Collaborate with IT and business stakeholders and play a multi-faceted support role to identify any risks or gaps for improvement
- Participate in infrastructure, application and security project and implementation
- Implement RPA/automation to improve team efficiency
- Occasional business trip is required
Requirements:
- Attained professional security certification such as CISA, CISM or CRISC over 2 years
- Hand-on IT security and compliance assessment experience within in-house IT function is a must
- Experience in development & maintenance of IT Policies and Standards
- Familiar with IT key control matrix development for different IT functions like IT operations, IT infrastructure, IT security operations and IT application development, etc.
- Experience in managing IT auditing activities with internal and external stakeholders
- Experience in GenAI adoption and governance process will be an advantage
- Holder of other security certification (CISSP, CEH, CSSLP, OSCP, CCSP) will be an advantage
- Good communication skill
- Positive attitude with teamwork mindset
- Good English and Chinese Language skill
- Embracing our values of integrity, sustainability, excellence and openness
We are an equal opportunity employer and welcome applications from all qualified candidates. We offer an attractive remuneration package and excellent prospects for career advancement to the right candidate. Please send detailed resume to Human Resources Department by clicking “Easy Apply” button. For more information about our Company, please visit our website: http://www.hanglung.com/ Please read the following Personal Information Collection Statement before applying.
Personal Information Collection Statement of Hang Lung Properties Limited
“Personal Data” in this statement has the same meaning as “personal data” in the Personal Data (Privacy) Ordinance (Chapter 486 of the Laws of Hong Kong) (“PDPO”). Personal Data collected by Hang Lung Properties Limited and/or its associated companies (the “Hang Lung Group”) will be treated in strict confidence and be used exclusively for recruitment and other employment-related purposes and will be disclosed or transferred to the responsible person(s) concerned with applicants’ applications. The provision of true, complete, accurate and up-to-date Personal Data required in support of applications is necessary for selection purposes. Failure to do so may affect the processing and outcome of applications. Personal Data provided by successful candidates will be retained as part of Hang Lung Group’s employee records for employment and benefit-related purposes. Applicants who do not hear from Hang Lung Group within 8 weeks from the date of application may consider their applications unsuccessful and their Personal Data will be deleted or destroyed within 12 months from the date of application. Applicants have the right to request access to and/or correction of their Personal Data in accordance with the provisions of the PDPO. Any such request for access to and/or correction of Personal Data should be in writing, made in accordance with the PDPO and sent to the Data Protection Officer of Hang Lung Properties Limited at (if by post) 28/F, Standard Chartered Bank Building, 4 Des Voeux Road Central, Hong Kong or at (if by email) privacyofficer@hanglung.com.
For further information, please refer to Hang Lung Properties Limited’s Privacy Statement at https://www.hanglung.com/en-us/special-pages/privacy-policy-statement.
#LI-BS1