Role IntroductionReports to: IT Security Controls Senior LeadThis role is part of the Information Technology Department, dedicated to maintaining a secure and resilient digital environment through continuous monitoring and enhancement of IT security controls.As the IT Security Controls Specialist, y
JSfirm
IT Security Controls Specialist
Job Description:
Role Introduction

Reports to: IT Security Controls Senior Lead

This role is part of the Information Technology Department, dedicated to maintaining a secure and resilient digital environment through continuous monitoring and enhancement of IT security controls.

As the IT Security Controls Specialist, you will be responsible for evaluating the day-to-day effectiveness of the company’s IT security controls, identifying control gaps, and ensuring that defined measures achieve their intended outcomes. You will collaborate with extended IT security teams to respond to various security-related requests and support daily operational processes.

To broaden your knowledge and experience, you will also take part in a structured job rotation program within the Information Technology Department, gaining exposure to different security functions and building a strong foundation for long-term career development.

Key Responsibilities
  • Working knowledge on Firewall requests, change plans, project plans etc., work on different IT security request review and approval as part of BAU
  • Implement & review the IT security controls process and act to validate all defined controls effectiveness.
  • Perform the end-to-end vulnerability management handling of different VM tools like Infrastructure vulnerabilities and ensure compliance within the SLA
  • Understand and have hands on experiences for compliance framework of ISO27001, PCIDSS, NIST standard
  • Revisit existing security governance, procedure to ensure its up to date as per company IT security policy. Work with various IT function teams including business unit to measure different IT security controls effectiveness.
  • Perform the vulnerability management exemption handling process for different tools like IAST, SCA, etc.,
  • Audit support functions including evidence collection and update, implement the suggested controls
  • Work with extended IT security team members to revisit and update controls as per emerging threat landscape.
  • Good understanding and execution on different security concepts/ solutions e.g. Vulnerability Management, Privilege Identity Management, MFA, Threat Intel, Network Security, SIEM etc. across on-premises and cloud environments.
  • Understanding of up-to-date spanet standards, able to translate the state of art knowledge to IT security controls process. Co-ordinate with multiple teams and vendors to ensure the migration completes as per the schedule
Requirements
  • Bachelor degree in Information Technology, Computer Science, Computer is preferred
  • Around 2 years relevant IT experiences
  • CISSP, CISM, CRISC, ISO 27001 lead auditor or relevant experience preferred
  • Knowledge on compliance framework i.e. ISO 27001, PCIDSS
  • Self-motivation, willing to keep update to spanet standards and technology
  • Engineering, or Cyber Security preferred
Personal & Application Information

Cathay Pacific is an Equal Opportunities Employer. Personal data provided by job applicants will be used strictly in accordance with our personal data policy and for recruitment purposes only. Candidates not notified within eight weeks may consider their application unsuccessful. All related information will be kept in our file for up to 24 months. A copy of our Personal Information Collection Statement will be provided upon request by contacting our Data Protection Officer.

Company Details
Cathay Pacific
Cathay Pacific City
8 Scenic Road
Hong Kong, Hong Kong (SAR) Hong Kong (SAR), International .. International
www.cathaypacific.com
90 Open Jobs Available
Founded in 1946 Cathay Pacific is the largest airline in Hong Kong with worldwide facilities in areas such as the United States, Australia, France, Peru, and many more.

Benefits:
Please inquire

Supported Manufacturers:
Airbus, Boeing

Supported Models:
A330-300, A340-300, A350-900, A350-1000, 777-300ER, 747, 747-400, 7779X
(Job and company information not to be copied, shared, scraped, or otherwise disseminated/distributed without explicit consent of JSfirm, LLC)
Job Info
Location
Hong Kong, Hong Kong (SAR), Hong Kong (SAR)
Type
Contractor
Company Details
Cathay Pacific
Cathay Pacific City
8 Scenic Road
Hong Kong, Hong Kong (SAR) Hong Kong (SAR), International .. International
www.cathaypacific.com
90 Open Jobs Available
Founded in 1946 Cathay Pacific is the largest airline in Hong Kong with worldwide facilities in areas such as the United States, Australia, France, Peru, and many more.

Benefits:
Please inquire

Supported Manufacturers:
Airbus, Boeing

Supported Models:
A330-300, A340-300, A350-900, A350-1000, 777-300ER, 747, 747-400, 7779X

JSfirm, LLC

Roanoke, TX

jobs@jsfirm.com

JSfirm LLC, Privacy Policy

All rights reserved. 2001-2025 JSfirm