Manager - Cybersecurity and Technology Risk Management
KOS International Holdings
·May 22, 2026
- Type
- Full-time
- Department
- Finance
- Seniority
- Manager
- Experience
- 10+ years
- Closing date
- Today
- Source
- Vincere
Description
Responsibilities
-
Monitor security events, network traffic, and system logs to detect and respond to threats.
-
Manage security tools including firewalls, IDS/IPS, EDR/XDR, SIEM, VPN, and WAF.
-
Lead incident response, including investigation, containment, recovery, and reporting.
-
Conduct vulnerability assessments, penetration testing, and security audits.
-
Implement and enforce security controls, policies, and compliance requirements.
-
Oversee Technology Risk Management (TRM), including risk governance, reporting, and risk register maintenance.
-
Perform vendor risk assessments and ensure ongoing compliance with regulatory standards.
-
Collaborate with IT, Legal, and Compliance on audits, policies, and remediation.
-
Drive security awareness and stay updated on emerging threats and technologies.
Requirements
-
Bachelor’s degree in Cybersecurity, IT, or related field.
-
10+ years of experience in cybersecurity or IT security within enterprise environments.
-
Relevant certifications (e.g., CISSP, CISM, CCSP) preferred.
-
Strong hands-on experience with security tools (e.g., SIEM, SOAR, EDR/XDR, cloud security).
-
Experience in Technology Risk Management and regulatory compliance.
-
Familiarity with cloud platforms (Azure, AWS) and security technologies (e.g., Sentinel, Defender, Fortinet).
-
Ability to work independently and manage end-to-end security operations.
-
Knowledge of AI risk governance is a plus.
-
Proficiency in Cantonese, Mandarin, and English.