Hong Kong Island
full-time
Are you the employer? Manage your company page directly.
Position Summary
We are seeking a seasoned IT Security Manager with approximately 10 years of experience in cybersecurity, particularly in the design, implementation, and maintenance of security controls across application, platform, and cloud environments. The ideal candidate will have strong technical expertise, hands-on experience with security tools and frameworks, and a proactive mindset to support the organization’s security initiatives.
Your Role
• Design, engineering, and maintain security controls across on-premise applications, platform, and cloud environments.
• Collaborate with application, infrastructure, and DevOps teams to integrate security into the system development lifecycle (SDLC).
• Conduct security assessments, and security architecture reviews to identify and mitigate risks.
• Support the deployment and tuning of security tools such as SIEM, EDR, vulnerability scanners, and IAM solutions.
• Monitor emerging threats and recommend appropriate mitigation strategies.
• Assist in incident response activities, including investigation, containment, and remediation.
• Document security configurations, procedures, and technical standards.
• Work closely with internal stakeholders and external vendors to ensure compliance with security policies and regulatory requirements.
To Succeed in the Role
• About 10 years of experience in cybersecurity, with a focus on security engineering and operations.
• Solid understanding of security principles, technologies, and best practices across application and infrastructure domains
• Experience with cloud platform is an advantage
• Familiarity with cybersecurity frameworks and standards (e.g., NIST, ISO 27001, OWASP, CIS).
• Hands-on experience with security tools
• Strong analytical and problem-solving abilities.
• Effective communication and collaboration skills.
• Demonstrated ability to drive change and influence across technical and business teams.
• Relevant certifications such as CISSP, CISM, CCSP, or equivalent are preferred.
Other Preferred Attributes
• Experience with DevSecOps and secure CICD pipelines.
• Knowledge of scripting or automation for security operations and reporting
• Exposure to regulatory and compliance requirements
• Able to work independently and as part of a cross-functional team
HKT is a technology, media, and telecommunication leader with more than 150 years of history in Hong Kong. As the city’s true 5G provider, HKT connects businesses and people locally and globally. Our end-to-end enterprise solutions make us a market-leading digital transformation partner of choice for businesses, whereas our comprehensive connectivity and smart living offerings enrich people‘s lives and cater for their diverse needs for work, entertainment, education, well-being, and even a sustainable low-carbon lifestyle. Together with our digital ventures which support digital economy development and help connect Hong Kong to the world as an international financial centre, HKT endeavours to contribute to smart city development and help our community tech forward.
HKT is part of Pacific Century Group, named by Forbes as one of the World's Best Employers 2023.
For more information, please visit www.hkt.com.
LinkedIn: linkedin.com/company/hkt
Get matched with similar opportunities at top startups
This role is hosted on hktservice's careers site.
Join our talent pool first to get notified about similar roles that match your profile.