Kowloon City, Kowloon, Hong Kong
22 hours ago
Senior Manager, Resilience Risk (Technology and Cyber Security) - Global Risk

Some careers open more doors than others.

If you’re looking for a career that will unlock new opportunities, join HSBC and experience the possibilities. Whether you want a career that could take you to the top, or simply take you in an exciting new direction, HSBC offers opportunities, support and rewards that will take you further.

Global Risk is a thriving and expert risk management function supporting HSBC globally with all aspects of risk management. The team actively manages a varied and dynamic range of risk types, including security, fraud, information security, contingency, geopolitical, operational, credit, pension, insurance, market and reputation risks. All parts of the Global Risk team use their skills, insight and integrity to handle established threats and those they see emerging, acting to protect and enable HSBC to deliver sustainable growth.

We are currently seeking a high calibre professional to join our team as a Senior Manager, Resilience Risk (Technology and Cyber Security).

Principal Responsibilities

This role is responsible for the Resilience Risk Stewardship for Technology and Cyber Security and Information Security Risks in AMH and Macau markets.

This role is responsible to ensure high quality advice, expertise and guidance is available across the responsible risk types. Resilience Risk (RR) Specialists operate on an entity-wide basis and must work closely with the ERM Business and Functions aligned roles to support them by providing RR technical advice and guidance for their consumption and use in delivering their respective relationship management remits. Given the broad scope of the RR risk types, in country RR specialists will also operate within a regional RR specialist community.

The RR Specialist is responsible for supporting and delivering the following minimum outcomes:

Provide technical advice and support to AMH and Macau the ERM Business and Functions team ensure they understand and are aware of the control environment and assessment of risk within the country commensurate with the scale and nature of operationsSupport the ERM Business Functions team to explain in non-technical terms the impact of issues or events, and top and emerging risks that may require changes (for example, to controls, resources, or business operations) to remain within respective Risk Appetite. Support the ERM Business Functions teams to ensure Risk and Control Owners have clear understanding of the effectiveness of the current control environmentMonitor the local external environment to get early sight of emerging risks and provide detailed guidance on controls required to mitigate against them. Build and maintain relevant cross-organisation and industry relationshipsDeliver tailored and specific expertise across AMH and Macau enabling 1LOD to successfully deploy and operate mitigating key controlsProvide technical guidance to support development and completion of Enterprise Risk and Regulatory reporting obligations (e.g. RAS, Top Emerging Risks, Risk Profile Reporting, RMM, Board reporting where relevant, etc)Ensure the root cause of relevant local operational risk issues and events are fully understood and correctly treatedEnsure any concerns with key controls and material change programmes, relevant to their area of RR specialism, are understood and escalated (i.e. within country, to region and/or global peers) as neededWork in conjunction with the ERM Business Functions team and 1LOD to escalate any matters within the RR classes when neededLead AMH regulator and audit engagement pertaining to RR risk types; ensure regulatory compliance for the specialist area/s and timely completion of Audit actions and findingsSupport ERM Business Functions team in the development and implementation of localised Non-Financial Risk framework activity as required (e.g. Locally Significant Risks) or to meet local regulatory expectationsSupport training and capability uplift for the ERM Business Functions team and to the wider HSBC community to ensure robust understanding of all RR risk areasSupport the region/ global RR Specialist teams to leverage niche expertise and knowledge as requiredAdditional specific Country responsibilities may be added to this role profile at the direction of the CRO and the country reporting lineProvide specialist actionable and contextual guidance across all resilience risks within AMH both enabling business growth whilst maintaining related risks within appetiteResponsible for the review of controls relating to resilience risksResponsible for supporting the Generalists with internal and external events, providing insight and learnings relevant to controls

Some careers open more doors than others.

If you’re looking for a career that will unlock new opportunities, join HSBC and experience the possibilities. Whether you want a career that could take you to the top, or simply take you in an exciting new direction, HSBC offers opportunities, support and rewards that will take you further.

Global Risk is a thriving and expert risk management function supporting HSBC globally with all aspects of risk management. The team actively manages a varied and dynamic range of risk types, including security, fraud, information security, contingency, geopolitical, operational, credit, pension, insurance, market and reputation risks. All parts of the Global Risk team use their skills, insight and integrity to handle established threats and those they see emerging, acting to protect and enable HSBC to deliver sustainable growth.

We are currently seeking a high calibre professional to join our team as a Senior Manager, Resilience Risk (Technology and Cyber Security).

Principal Responsibilities

This role is responsible for the Resilience Risk Stewardship for Technology and Cyber Security and Information Security Risks in AMH and Macau markets.

This role is responsible to ensure high quality advice, expertise and guidance is available across the responsible risk types. Resilience Risk (RR) Specialists operate on an entity-wide basis and must work closely with the ERM Business and Functions aligned roles to support them by providing RR technical advice and guidance for their consumption and use in delivering their respective relationship management remits. Given the broad scope of the RR risk types, in country RR specialists will also operate within a regional RR specialist community.

The RR Specialist is responsible for supporting and delivering the following minimum outcomes:

Provide technical advice and support to AMH and Macau the ERM Business and Functions team ensure they understand and are aware of the control environment and assessment of risk within the country commensurate with the scale and nature of operationsSupport the ERM Business Functions team to explain in non-technical terms the impact of issues or events, and top and emerging risks that may require changes (for example, to controls, resources, or business operations) to remain within respective Risk Appetite. Support the ERM Business Functions teams to ensure Risk and Control Owners have clear understanding of the effectiveness of the current control environmentMonitor the local external environment to get early sight of emerging risks and provide detailed guidance on controls required to mitigate against them. Build and maintain relevant cross-organisation and industry relationshipsDeliver tailored and specific expertise across AMH and Macau enabling 1LOD to successfully deploy and operate mitigating key controlsProvide technical guidance to support development and completion of Enterprise Risk and Regulatory reporting obligations (e.g. RAS, Top Emerging Risks, Risk Profile Reporting, RMM, Board reporting where relevant, etc)Ensure the root cause of relevant local operational risk issues and events are fully understood and correctly treatedEnsure any concerns with key controls and material change programmes, relevant to their area of RR specialism, are understood and escalated (i.e. within country, to region and/or global peers) as neededWork in conjunction with the ERM Business Functions team and 1LOD to escalate any matters within the RR classes when neededLead AMH regulator and audit engagement pertaining to RR risk types; ensure regulatory compliance for the specialist area/s and timely completion of Audit actions and findingsSupport ERM Business Functions team in the development and implementation of localised Non-Financial Risk framework activity as required (e.g. Locally Significant Risks) or to meet local regulatory expectationsSupport training and capability uplift for the ERM Business Functions team and to the wider HSBC community to ensure robust understanding of all RR risk areasSupport the region/ global RR Specialist teams to leverage niche expertise and knowledge as requiredAdditional specific Country responsibilities may be added to this role profile at the direction of the CRO and the country reporting lineProvide specialist actionable and contextual guidance across all resilience risks within AMH both enabling business growth whilst maintaining related risks within appetiteResponsible for the review of controls relating to resilience risksResponsible for supporting the Generalists with internal and external events, providing insight and learnings relevant to controlsStrong leader with the ability to influence at the senior levels of the organisationStrong level, Technology and Cyber Security risk management knowledge and relevant deep experience Strong level of business knowledge and experience of working in the key resilience risk specialist areas Ability to communicate effectively, building strong relationships and influence senior internal and external stakeholdersComprehensive knowledge of the external environment (threat, regulatory, geopolitical, competitor, technological landscapes)Comprehensive knowledge of the internal control environment (local regulatory environment)A BA or BS University Degree, plus a professional certificate in one or more RR specialist disciplines, an advantageProfessional qualifications (e.g. HKMA Enhanced Competency Framework on Cybersecurity, Information Systems Audit and Control Association certification or equivalent qualification from a recognized professional body) may be advantageous

You’ll achieve more when you join HSBC.

http://www.hsbc.com/careers

HSBC is committed to building a culture where all employees are valued, respected and opinions count. We take pride in providing a workplace that fosters continuous professional development, flexible working and opportunities to grow within an inclusive and diverse environment. Personal data held by the Bank relating to employment applications will be used in accordance with our Privacy Statement, which is available on our website.

Issued by The Hongkong and Shanghai Banking Corporation Limited.

Strong leader with the ability to influence at the senior levels of the organisationStrong level, Technology and Cyber Security risk management knowledge and relevant deep experience Strong level of business knowledge and experience of working in the key resilience risk specialist areas Ability to communicate effectively, building strong relationships and influence senior internal and external stakeholdersComprehensive knowledge of the external environment (threat, regulatory, geopolitical, competitor, technological landscapes)Comprehensive knowledge of the internal control environment (local regulatory environment)A BA or BS University Degree, plus a professional certificate in one or more RR specialist disciplines, an advantageProfessional qualifications (e.g. HKMA Enhanced Competency Framework on Cybersecurity, Information Systems Audit and Control Association certification or equivalent qualification from a recognized professional body) may be advantageous

You’ll achieve more when you join HSBC.

http://www.hsbc.com/careers

HSBC is committed to building a culture where all employees are valued, respected and opinions count. We take pride in providing a workplace that fosters continuous professional development, flexible working and opportunities to grow within an inclusive and diverse environment. Personal data held by the Bank relating to employment applications will be used in accordance with our Privacy Statement, which is available on our website.

Issued by The Hongkong and Shanghai Banking Corporation Limited.

Confirm your E-mail: Send Email