Company Description
At Cathay Pacific, we share one common aspiration: to be the worlds best airline. We believe in looking for the best in our people, in working as a team, in doing the right thing by our shareholders and our communities.
With a global team, we offer a diverse range of career choices and opportunities - in the air, on the ground; in customer service, in the office; managerial or professional roles. Our team of great people each plays a key role to deliver the quality service that we are famous for.
Notes:
- All Chinese mainland based positions are subject to local terms and conditions.
- Applicants must have the right to live and work in Chinese mainland.
- Once employment is confirmed, the employment contract and personnel file will be arranged through local FESCO/ FASCO.
Role Introduction
Responsible to execute, monitoring all IT security operation works within the company, including threat hunting and incident response process.
Equips with strong analytic skills, responsible for managing the performance and developing junior team members. This position must able to effectively communicate with all levels of staff within the organization; from different business units across the company to senior management. This position act as front-line IT security operation role. Job rotation within IT security operation is expected.
Key Responsibilities
- Provides management oversight to the IT security team
- Executing all IT security operations solutions administration and operations works.i.e. Endpoint security, Network Security, PAM solution, Cloud security monitoring, SaaS security solutions etc.
- Work on different IT security request review and approval.
- Familiarity with security vulnerabilities, exploits, malware and digital forensics as they relate to Incident Response.
- Maintain good hygiene on IT Security footprint within company IT network.
- Act as IT security SME within IT security operation team to overcome technical challenges.
- Capable to perform threat hunting process to response emerging threat landscape.
- Work with different business unit and extended IT team to overcome various IT security challenge.
- Manage the relationship with third-party vendors providing services to support incident response
- Tightly collaborate with external security operation service, i.e. SOC, Manage Defence Model and offshore engineering service.
- Audit support functions including evidence collect and update, implement the suggested controls
- Competent to work at a high technical level of forensic and investigations in IT environments, capable of identifying vectors of threats and incidents.
- Work with others to assist the education of security events and implications, and develop documentation to support the incident response process.
E&A Responsibility
- Emergency and Accident and Crisis Response responsibilities as required
Requirements
Academic Qualifications
- BA or BS degree in Information Technology, Computer Science, Computer Engineering, or Cyber Security or equivalent
Knowledge, Skills, Training and Experience
- 7 years relevant IT security experiences
- CISSP, CISM, CRISC, ISO 27001 lead auditor or relevant experience is a must.
- IT security incident investigation and relevant forensic knowledge
- Strong knowledge on compliance framework i.e. ISO 27001, PCIDSS
- Strong team development and coaching skills
- Self-motivation, willing to keep update to spanet standards and technology
Personal & Application Information
Cathay Pacific is an Equal Opportunities Employer. Personal data provided by job applicants will be used strictly in accordance with our personal data policy and for recruitment purposes only. Candidates not notified within eight weeks may consider their application unsuccessful. All related information will be kept in our file for up to 24 months. A copy of our Personal Information Collection Statement will be provided upon request by contacting our Data Protection Officer.