Overview
As Information Security Manager, you will oversee the Asia Information Security Management System, enabling secure operations across Hong Kong and Beijing. You’ll partner with cross-border stakeholders to maintain policies, risk, and audit readiness within a global security function. This is a high-impact role shaping governance, awareness, and incident response for complex, multinational initiatives. A strong focus on ISO 27001 and audits will enable you to drive continuous improvement and measurable security outcomes.
Pay / Benefits
- Comprehensive benefits
Responsibilities
- Manage day-to-day operation and continuous improvement of the Asia ISMS
- Maintain information security policies, risk registers, incident registers and exception registers
- Coordinate ISO 27001 internal and external audits and oversee remediation activities
- Prepare security metrics and management reports for governance meetings
- Support information security awareness and training initiatives
- Act as the primary Information Security representative for stakeholders across Hong Kong and Beijing
- Provide security oversight and guidance for projects, technology changes and business operations
Key requirements
- Strong knowledge of ISO 27001, ideally supported by Lead Implementer or Lead Auditor certification
- Previous experience within Information Security, Governance, Risk & Compliance (GRC) or related security discipline
- Strong stakeholder management and communication skills
- Fluent English and Mandarin language skills; Cantonese advantageous
- Ability to travel to Hong Kong and Beijing several times per year
- With right to work in UK
- Stakeholder management
- Communication skills
- Cross-cultural collaboration
- ISO 27001
- GRC (Governance, Risk & Compliance)
- Security governance and incident management
…
