CAIA's Career Center is an easy-to-use, comprehensive resource connecting job seekers with employers in the growing AI field. Use your knowledge and credibility to advance your career or build a talented team for your organization. Opportunities targeted to CAIA Charterholders are prioritized.
In order to search for jobs specifically for CAIA Charterholders or those pursuing the CAIA Charter please enter “CAIA” in the search panel.
This will enable you to search for CAIA specific roles globally.
Analyst / Senior Consultant - Cyber Security (FSI) - Technology Risk - Risk Advisory - Hong Kong
September 10, 2019
About Deloitte China Our professionals at Deloitte China provide a full range of audit & assurance, consulting, financial advisory, risk management and tax services, and work closely within Greater China, across Asia-Pacific and around the world to provide clients of every size with local experience and international expertise. We have considerable experience in China and are one of the leading professional services providers in this marketplace.
The Deloitte purpose is about making an impact that matters to our clients. Our extensive service spectrum enables us to help clients become leaders wherever they choose to compete. Deloitte is committed to investing in our people and empowers them to achieve more than they could elsewhere. Our work combines advice with action and integrity. We believe that when our clients and society are stronger, so are we.
To learn more about how Deloitte makes an impact that matters in the China marketplace, please connect with our Deloitte China social media platforms via www2.deloitte.com/cn/en/social-media .
About Risk Advisory Risk management covers many areas including security and privacy, reputation and control. Our professionals help clients across many industries flag, analyze, evaluate and manage strategic, technology, operational and fraud risks while discovering opportunities to create value. If you want to make an impact by helping clients to prevent and manage risk-related issues while creating significant value to their businesses this may be your chance to start a remarkable career.
Technology Risk team helps our clients to improve business confidence, manage and address technology risks, and to ensure that early warning mechanisms are in place through providing comprehensive technology risk consulting services to a broad range of businesses.
Our team in Hong Kong is rapidly growing. Due to client demand, we are looking for talents to join our high performing team. At Deloitte we view technology risk as primarily a business challenge. It take not only advanced technologies to mitigate technology risk, but also strong threat awareness, sound analytics capabilities, and solid preparedness to mount an effective response to crises; on the other hand, dependable governance processes are required to support strong leadership keeping organizations focused on what really matters.
In view of this, we deliver to our clients the full range of capabilities needed to build comprehensive technology risk programs, catering to all levels, from C-suite to technology operations. This broad reach enables us to offer the most informed, innovative advisory services. By joining us, you can be part of the forces developing next-gen technology risk solutions.
Work you'll do:
Conduct regulatory compliance assessments for global and local financial institutions in meeting various regulatory requirements
Provide strategic advice to our clients in design and implementation of governance, risk management, security to address the latest Fintech business and infrastructure development (e.g. (including permissioned blockchain adoption, Cloud Computing, Robotic Process & Cognitive Automation, Big Data, Machine Learning)
Conduct various form of risk assessments (e.g. enterprise-wide, business unit based, front-to-back processes) for fintech initiatives and strategies
Establish technology risk and cybersecurity governance framework for our clients including strategies, organizations, policies, processes, standards and guidelines, etc.
Work with multi-level of our clients from C-level executives, senior and management staff to on-the-ground professionals
Work with security solution vendors, cloud providers, internal teams to deliver complex engagements both locally and overseas
Conveying pragmatic solutions to our client's complex business problems through the use of written reports and presentations
Supervising and coaching junior team members
You are also expected to:
Build own understanding of our purpose and values; explore opportunities for impact
Demonstrate strong commitment to personal learning and development; act as a brand ambassador to help attract top talent
Understand expectations and demonstrates personal accountability for keeping performance on track
Actively focus on developing effective communication and relationship-building skills
Understand how their daily work contributes to the priorities of the team and the business
Bachelor degree or above in Computer Science, Information and Communications Technology, Information Systems, Risk Management, or other related disciplines
Professional qualifications holder will be an advantage: CISA, CISM, CISSP, CCSP or equivalent, is required
3-5 years of working experience in 2 or more of the following:
Security assessment based on industry framework and standards (e.g. NIST-800, ISO27002)
SWIFT CSCF assessment
Cloud security assessment on SaaS solution (e.g. Bloomberg trade platform, Microsoft 365, Salesforce, Microsoft workday)
Cloud security assessment for platform hosting (IaaS/PaaS) with AWS/Azure/GCP/Alicloud
Practical experience with virtual banking security consultancy services/assessment will be a plus
Familiar with businesses and operational workflows in 2 or more of the following:
front to end internet/mobile banking operationsfor retail banking
front to end internet/mobile security tradingoperations
front to end financial assets trading, clearingand settlement operations (e.g. bonds, commodity derivatives, exchange tradedfunds)
front to end internet/mobile life insuranceoperations
Knowledge of cloud solution, system architecture and security requirements of banking solution (e-banking applications, core banking system, ), operating system (UNIX, Linux, Windows, AS/400, etc.), database management systems (Oracle, SQL Server, Sybase, etc.) or network devices (router, switch, firewall, load balancer, intrusion detection and prevention system) is an advantage
Hands-on experience in projects including cybersecurity control, IT audit, IT general control, IT application control, robotic process automation, cloud computing, IT system implementation is highly preferred
Able to lead/develop proposal under manager's supervision
Strong consultation, reporting writing and communication skills with highly proficiency in both spoken and written English and Chinese (Cantonese); Mandarin would be an advantage
Candidates with less experience will be considered as Analyst
Deloitte China refers to Deloitte Touche Tohmatsu in Hong Kong, Deloitte Touche Tohmatsu in Macau, Deloitte Touche Tohmatsu Certified Public Accountants LLP in the Chinese Mainland and their respective affiliates practising in Hong Kong, Macau and the Chinese Mainland.
Requisition code: CN171412
Internal Number: 6495606
eFinancialCareers is a career site specializing in financial services.