Shenzhen, Chinese mainland
8 hours ago
IT Security Controls Analyst
Company Description

At Cathay Pacific, we share one common aspiration: to be the world's best airline. We believe in looking for the best in our people, in working as a team, in doing the right thing by our shareholders and our communities.

 

With a global team, we offer a diverse range of career choices and opportunities - in the air, on the ground; in customer service, in the office; managerial or professional roles. Our team of great people each plays a key role to deliver the quality service that we are famous for.

Notes:

All Chinese mainland based positions are subject to local terms and conditions.Applicants must have the right to live and work in Chinese mainland.Once employment is confirmed, the employment contract and personnel file will be arranged through local FESCO/ FASCO.Role Introduction

Responsible for monitoring the day-to-day security controls effectiveness of company’s IT security environment, identify the controls gap and ineffective outcome of defined controls set. Assist and work with extended IT security teams to response different security requests. Involve in daily security operation process. Job rotation within IT security department.

Key Responsibilities
Execute to setup and monitoring mechanism to as per the defined security controls pattern.Work with extended IT team and business unit to measure the effectives of defined security controlsSolid hands-on knowledge to translate the technical controls requirement to pragmatic and enforceable action.Understand compliance framework of ISO27001 and PCIDSS standard, translate the technical controls requirement to enforceable technical controls requirement.Work as second layer of defence within IT departments to revisit existing controls gate and report any abnormal situationWork with various IT function teams including business unit to measure different IT controls effectiveness.Audit support functions including evidence collect and update, implement the suggested controlsWork with extended IT security team members to revisit and update controls as per emerging threat landscape.Assist on IT security incident monitoring and responseAssist on IT security operation solution administration and operation.

E&A Responsibility

Emergency and Accident and Crisis Response responsibilities as requiredRequirements

Academic Qualifications

Bachelor degree or above, Masters preferred

 

Knowledge, Skills, Training and Experience

5 years relevant IT experiencesCISSP, CISM, CRISC, ISO 27001 lead auditor or relevant experience preferred.Knowledge on compliance framework i.e. ISO 27001, PCIDSSSelf-motivation, willing to keep update to market standards and technologyBA or BS degree in Information Technology, Computer Science, Computer Engineering, or Cyber Security preferredPersonal & Application Information

Cathay Pacific is an Equal Opportunities Employer. Personal data provided by job applicants will be used strictly in accordance with our personal data policy and for recruitment purposes only. Candidates not notified within eight weeks may consider their application unsuccessful. All related information will be kept in our file for up to 24 months. A copy of our Personal Information Collection Statement will be provided upon request by contacting our Data Protection Officer.

Apply now

Share

Confirm your E-mail: Send Email