Information Security Manager
1 week ago
Eastspring is a global asset manager with Asia at its core. We create a culture in which diversity is celebrated and inclusion assured, for our colleagues, customers, and partners. We provide a platform for our people to do their best work and make an impact to the business, and in exchange, we support our people's career ambitions. We pledge to make Eastspring a place where you can Connect, Grow and Succeed.
.
This role leads security-by-design practices across regional cloud initiatives, ensuring compliance with internal policies and regional regulations. It provides expert consultation on cloud architecture, risk mitigation, and secure technology adoption, especially within financial services. The position requires strong regulatory knowledge, hands-on experience in cloud security, and the ability to influence governance through policy development and stakeholder training..
KEY RESPONSIBILITIES
- Conduct security-by-design reviews on new programs, initiatives, projects, Cloud services and technologies regionally (in-house development, Commercial Off-The-Shelf, SaaS), ensuring sufficient documentation for compliance / audit.
- Collaborate with Group and Regional information security teams, as well as business stakeholders, to ensure project implementation aligns with security controls in accordance with policies, standards, guidelines, and regulations.
- Take part in the security architecture blueprint and design review process for the Cloud hosted solutions.
- Ensure critical vulnerabilities are tracked and remediated prior to application go-live.
- Analyze, review, and approve non-standard software/technology implementations regionally.
- Perform ad-hoc and periodic reviews of Proxy/Network/Firewall requests, designs, and configurations in Eastspring.
- Provides advisory and consultation to business units, business owners, and project teams for any Cloud Security related matters.
- Create a culture of security-by-design awareness by conducting related training for LBUs and other relevant stakeholders.
- Create, maintain, and update relevant security policies, standards, and operating procedures for Eastspring.
- Support the team leader with any assigned security operation tasks related to Identity Access Management, endpoint security, network security, data protection, DLP, VAPT, security alerts, and incidents.
EXPERIENCE / QUALIFICATIONS
- Recognized degree in Computer Science or related Engineering fields.
- 5-7 years of demonstrated experience in reviewing and identifying gaps in architecture blueprints and designing controls, especially in the Cloud domain.
- Candidates with proven experience in financial services industry is preferred.
- Must be able to recommend mitigations to threat models based on threat vectors and exploits.
- Good knowledge and experience with regulations, including PDPA, MAS guidelines, and technology/cybersecurity regulations in other Asian countries (e.g., Thailand, Malaysia, Taiwan).
- Understanding of asset and/or wealth management businesses, including trade lifecycle and operational processes, is a plus.
- Certifications such as CISA, CISSP, and CCSP are encouraged and demonstrate continuous learning and application of standard methodologies.
- Ability to understand business requirements and security risks during security assessments and consultations.
- Understanding of the company's business direction from products, solutions, market, and technology perspectives in the Cloud domain.
Eastspring is an equal opportunity employer. We provide equality of opportunity of benefits for all who apply and who perform work for our organisation irrespective of sex, race, age, ethnic origin, educational, social and cultural background, marital status, pregnancy and maternity, religion or belief, disability or part-time / fixed-term work, or any other status protected by applicable law. We encourage the same standards from our recruitment and third-party suppliers taking into account the context of grade, job and location. We also allow for reasonable adjustments to support people with individual physical or mental health requirements.
-
Taiwan: Information Security Engineer
6 days ago
Taipei, Taipei City, Taiwan Chubb Life Full timeWe are looking for an Information Security Engineer to join our team and support the operation, monitoring, and continuous improvement of our information security environment. This role works closely with internal teams and external security partners to ensure a robust and reliable security posture.Role & Responsibilities• Operate and maintain information...
-
Chief Information Security Officer
2 weeks ago
Taipei, Taipei City, Taiwan HSBC Full timeJob SummaryOur GCIO organisation plays a critical role for the bank. This team partners with the businesses to build the platforms, systems, and products that our customers use everyday. We keep people's money and data safe and are at the forefront of driving innovationfor our businesses, customers, and colleagues. Within GCIO, our cybersecurity team...
-
Risk Management and Security Manager
2 weeks ago
Taipei, Taipei City, Taiwan Mandarin Oriental Full timeAs Risk Management and Security Manager,you will be responsible for the following duties:Assist in carrying out operational and administrative duties and overall responsible for subordinate's performanceEnsure conformity of work standards and consistency in carrying out departmental operations and other security and safety related.Training – LQE, OJT &...
-
Security Engineer
2 weeks ago
Taipei, TW XREX Full timeAboutWant to build a worldwide brand from Taiwan, and to communicate our brand story to millions of users worldwide?Want to be based in Taiwan but work in a silicon-valley-like environment, and to build world-class brand and products?Want to participate in the global fintech and blockchain movement, and work at an English-speaking workplace?Come change the...
-
Information Technology Auditor
2 weeks ago
Taipei City, Taiwan 美好證券 Good Finance Full timeIT AuditorAt Good Finance, we are committed to empowering individuals to turn their visions into reality, creating greater value and a better future for society. Driven by a passion for financial technology, we aim to be a trusted force that helps people achieve their dreams. By focusing on professionalism and precision, we transform our expertise into...
-
IT Security Engineer, Senior
2 weeks ago
Taipei, Taipei City, Taiwan Qualcomm Full timeCompanyQualcomm Semiconductor LimitedJob AreaInformation Technology Group, Information Technology Group > IT SecurityGeneral SummaryThe Information Security & Risk Management organization is looking for a strong team player with industry experience in cyber security risk management, assessments, and audit compliance. The role will play a key part in the...
-
Taipei, Taiwan Chubb Full timeKey Responsibilities:
-
Group Security and Risk Management Coordinator
2 weeks ago
Taipei, TW, , Taiwan Morrison Express Full timePrimary ResponsibilitiesAssist in the setup and implementation of the Group Security & Risk Management Systems, with a focus on Operation Compliance, Cybersecurity, Physical, and Transportation Security measures.Lead the implementation and oversight of Risk Management specific projects.Revise and establish relevant procedures, along with crafting relevant...
-
Taipei City, Taiwan Chubb Full timeDescriptionKey Responsibilities:
-
Information Technology Manager
2 weeks ago
Taipei, Taipei City, Taiwan Shiseido Full timeKey ResponsibilitiesIT Strategy & Leadership:Execute the IT strategy for Shiseido Taiwan, aligning with global IT directives and local business goals.Provide visionary leadership to the IT team, fostering a culture of innovation, collaboration, and continuous improvement.Stay abreast of emerging technologies and industry best practices to recommend and...