Software Compliance Manager (Senior IT Secuirty Audit Roles)
Job ref no. | FK |
Job level | |
Work experience | |
Education | Bachelor Degree |
Location | Hong Kong Island |
Employment type | Full Time |
Benifits | |
Industry | Information Technology |
Job function | Information Technology (IT) |
Post on | 2025-07-17 |
Key Responsibilities:
-
Develop and maintain departmental IT security policies, guidelines, and standards in line with ISO/IEC 27001 and OGCIO requirements.
-
Implement and oversee IT security initiatives and prepare departmental returns on IT security matters.
-
Review and approve software design documents and system change requests to ensure compliance with internal controls and international security standards.
-
Conduct Security Risk Assessments (SRA) and compliance audits for system development projects.
-
Provide expert advice to project teams and senior managers on secure system design and development practices.
-
Assist in the investigation of security incidents and follow through with rectification and reporting.
-
Monitor regulatory changes and recommend updates to IT security practices.
-
Perform other duties as assigned by IT management.
Requirements:
-
Degree or above in Computer Science, Information Systems, or related discipline.
-
At least 5 years of relevant experience in IT security, compliance, or software risk governance, preferably in public sector or large-scale enterprise environments.
-
Required to be a valid holder of an internationally accredited security certification (e.g. CISSP, CISA, CISM, CRISC, etc.)
-
Strong communication, risk analysis, and stakeholder management skills
-
Fluent in written and spoken English and Chinese.