Cyber Security SM - Vulnerability Management ( 90k )
* Join a reputable organisation at the forefront of cyber security, offering exposure to advanced technologies and complex environments.
- Oversee the continuous scanning of infrastructure for vulnerabilities and ensure configuration compliance across platforms, databases, networks, and voice systems.
- Lead penetration testing activities for both application and infrastructure security, ensuring robust defences against emerging threats.
- Manage the delivery of DevSecOps services by guiding secure development practices and integrating security into operations workflows.
- Directly supervise team members through hiring, training, coaching, setting objectives, and performance management to foster a collaborative and high-performing environment.
- Coordinate with external service providers and product vendors to establish, monitor, and maintain agreed service levels for vulnerability management.
- Provide oversight on the identification and remediation of vulnerabilities, ensuring timely resolution according to established priorities.
- Assess vulnerability intelligence in relation to both internal systems and the broader external threat landscape to inform risk-based decision making.
- Continuously identify gaps in controls or coverage within vulnerability management processes and propose initiatives for service enhancement.
- Develop comprehensive metrics, reports, and service highlights for presentation to business stakeholders and IT leadership.
- Act as the lead during incidents involving actively exploited or critical vulnerabilities by developing response plans and overseeing their implementation.
What you bring:
- A degree in Computer Science, Information Security or a related discipline provides you with a strong academic foundation for this role.
- Twelve years or more of relevant experience in information security roles ensures you bring deep industry knowledge.
- At least five years’ hands-on experience specifically within vulnerability management demonstrates your subject matter expertise across multiple disciplines.
- Proven track record in leading teams through hiring, training, coaching, objective setting, and performance management fosters a collaborative work environment.
- Comprehensive understanding of vulnerability management services including operating procedures enables effective oversight of critical functions.
- Exceptional logical thinking skills allow you to analyse different categories of vulnerabilities with precision.
- A customer-focused approach ensures that all services delivered meet high standards of quality and responsiveness.
- Excellent interpersonal skills support effective communication with both technical teams and business stakeholders alike.
- Experience with key technologies such as Vulnerability Assessment tools, DevSecOps methodologies, Penetration Testing frameworks, Secure Code Review processes, Attack Surface Management solutions, and Red Team exercises enhances your technical toolkit.
- Holding industry-recognised certifications such as CISSP or CISM further validates your expertise.
About the job
Contract Type: Perm
Specialism: Tech & Transformation
Focus: Cyber Security
Industry: IT
Salary: Negotiable
Workplace Type: On-site
Experience Level: Senior Management
Location: Central and Western District
FULL_TIMEJob Reference: ZNYFUN-32192334
Date posted: 15 July 2025
Consultant: Vivian Tsang
hong-kong tech-transformation/it-security 2025-07-15 2025-09-13 it Hong Kong Central and Western District HK Robert Walters https://www.robertwalters.com.hk https://www.robertwalters.com.hk/content/dam/robert-walters/global/images/logos/web-logos/square-logo.png true