Facebook   LinkedIn   WeChat   YouTube 警示名單
Manager / Assistant Manager - Information Technology, Corporate Affairs

Ref.: SFC/M/AM/IT/CA/220715

Duties & Responsibilities:

  • Maintain the information security framework.
  • Defining and maintaining access privileges, control structures and resources to safeguard critical information assets and systems
  • Evaluate the adequacy of internal security controls to ensure compliance with the information security policy while providing practical recommendations.
  • Provide advice on security/auditability/controls related to information security in new systems.
  • Assist in developing and implementing the information security strategy, methodologies, standards, framework, and techniques.
  • Evaluate, recommend, and implement feasible security solutions to enhance system security for the Commission based on business needs.
  • Manage security projects and actively collect project requirements, tendering, proposal evaluation, project kick-off, tracking, project delivery and post-project follow-up.
  • Supervise security vendors and supporting staff to ensure their provided services and deliverables meet the service requirements and the committed service level


  • Hold a degree in Computer Science, Information Management or any other related field.
  • Have at least 7 years of working experience in application security assessment, vulnerability management and maintaining information security review framework. Applicants with less experience will be considered for the position of Assistant Manager.
  • Hands-on experience analyzing source codes, logs, network data and other attack artifacts
  • Experience and knowledge of different database security, endpoint security, web application firewall, and vulnerability scanning solutions will be an advantage
  • Knowledge of cybersecurity frameworks and industry practices such as OWASP, NIST, and ISO27001 would be an advantage
  • Certifications preferred: CISA, CISSP, OCSP, OSWE
  • A strong sense of responsibility and impeccable integrity is preferred.
  • Mature, proactive, quick-thinking with solid organizing & planning skills
  • Excellent interpersonal and writing/presentation skills in both English and Chinese.

Please quote the reference and apply by 29 July 2022 with details of qualifications, previous experience, current and expected salary to:

Recruitment Manager
Securities & Futures Commission
54/F, One Island East,
18 Westlands Road, Quarry Bay, Hong Kong
(E-mail address : ca_recruit@sfc.hk)

All applications will be handled in strict confidence by authorised personnel and will only be used for recruitment related purposes. Applicants who do not hear from us within six months from the application deadline may consider their applications as unsuccessful. All information on unsuccessful candidates will be destroyed after six months.


最後更新日期: 2022年7月15日

免责声明 Disclaimer statement




The Securities and Futures Commission (SFC) provides a character-based conversion software (this Software) free of charge in this website. Permission is granted for users to use this Software to convert the web content from traditional Chinese character version to simplified Chinese character version. The SFC undertakes no liability for defects in this Software and gives no warranty in relation to its quality and performance and in particular, but without prejudice to the generality of the foregoing, the SFC shall have no such liability regarding the fitness for purpose, quality or merchantability of this Software, whether express or implied, statutory or otherwise.

The SFC expressly states that it has not approved or endorsed the simplified Chinese character version of the web content and the SFC accepts no responsibility or liability (whatsoever and howsoever caused) for such simplified Chinese character version of the web content. The SFC also expressly states that this simplified Chinese character version of the website is solely established by converting the characters in the traditional Chinese character version via this Software, which involves no corresponding conversion between the terms and expressions used in the Hong Kong SAR and Mainland China. The SFC accepts no responsibility or liability for the fitness of the content of the simplified Chinese character version. Under no circumstances should users treat the simplified Chinese character version of the web content as an equivalent of the traditional Chinese character version thereof. Users should verify the simplified Chinese character version of the web content by making reference to the published traditional Chinese character version thereof, and should at their own costs seek independent legal advice on the legal status, validity and effect of the simplified Chinese character version of the web content before relying or acting upon it.

If you transmit the content of this simplified Chinese character version website or its URL to any third party, you agree to forward this Disclaimer Statement at the same time to the third party and guarantee that the third party agrees to accept this Disclaimer Statement before browsing the content of the simplified Chinese character version of this website.