Information Security Manager

1 week ago


Taipei, Taiwan Eastspring Investments Full time

Eastspring is a global asset manager with Asia at its core. We create a culture in which diversity is celebrated and inclusion assured, for our colleagues, customers, and partners. We provide a platform for our people to do their best work and make an impact to the business, and in exchange, we support our people's career ambitions. We pledge to make Eastspring a place where you can Connect, Grow and Succeed.

.

This role leads security-by-design practices across regional cloud initiatives, ensuring compliance with internal policies and regional regulations. It provides expert consultation on cloud architecture, risk mitigation, and secure technology adoption, especially within financial services. The position requires strong regulatory knowledge, hands-on experience in cloud security, and the ability to influence governance through policy development and stakeholder training.

.

  • KEY RESPONSIBILITIES

  • Conduct security-by-design reviews on new programs, initiatives, projects, Cloud services and technologies regionally (in-house development, Commercial Off-The-Shelf, SaaS), ensuring sufficient documentation for compliance / audit.
  • Collaborate with Group and Regional information security teams, as well as business stakeholders, to ensure project implementation aligns with security controls in accordance with policies, standards, guidelines, and regulations.
  • Take part in the security architecture blueprint and design review process for the Cloud hosted solutions.
  • Ensure critical vulnerabilities are tracked and remediated prior to application go-live.
  • Analyze, review, and approve non-standard software/technology implementations regionally.
  • Perform ad-hoc and periodic reviews of Proxy/Network/Firewall requests, designs, and configurations in Eastspring.
  • Provides advisory and consultation to business units, business owners, and project teams for any Cloud Security related matters.
  • Create a culture of security-by-design awareness by conducting related training for LBUs and other relevant stakeholders.
  • Create, maintain, and update relevant security policies, standards, and operating procedures for Eastspring.
  • Support the team leader with any assigned security operation tasks related to Identity Access Management, endpoint security, network security, data protection, DLP, VAPT, security alerts, and incidents.
  • EXPERIENCE / QUALIFICATIONS

  • Recognized degree in Computer Science or related Engineering fields.
  • 5-7 years of demonstrated experience in reviewing and identifying gaps in architecture blueprints and designing controls, especially in the Cloud domain.
  • Candidates with proven experience in financial services industry is preferred.
  • Must be able to recommend mitigations to threat models based on threat vectors and exploits.
  • Good knowledge and experience with regulations, including PDPA, MAS guidelines, and technology/cybersecurity regulations in other Asian countries (e.g., Thailand, Malaysia, Taiwan).
  • Understanding of asset and/or wealth management businesses, including trade lifecycle and operational processes, is a plus.
  • Certifications such as CISA, CISSP, and CCSP are encouraged and demonstrate continuous learning and application of standard methodologies.
  • Ability to understand business requirements and security risks during security assessments and consultations.
  • Understanding of the company's business direction from products, solutions, market, and technology perspectives in the Cloud domain.

Eastspring is an equal opportunity employer.  We provide equality of opportunity of benefits for all who apply and who perform work for our organisation irrespective of sex, race, age, ethnic origin, educational, social and cultural background, marital status, pregnancy and maternity, religion or belief, disability or part-time / fixed-term work, or any other status protected by applicable law. We encourage the same standards from our recruitment and third-party suppliers taking into account the context of grade, job and location. We also allow for reasonable adjustments to support people with individual physical or mental health requirements.



  • Taipei, Taipei City, Taiwan Chubb Life Full time

    We are looking for an Information Security Engineer to join our team and support the operation, monitoring, and continuous improvement of our information security environment. This role works closely with internal teams and external security partners to ensure a robust and reliable security posture.Role & Responsibilities• Operate and maintain information...


  • Taipei, Taipei City, Taiwan HSBC Full time

    Job SummaryOur GCIO organisation plays a critical role for the bank. This team partners with the businesses to build the platforms, systems, and products that our customers use everyday. We keep people's money and data safe and are at the forefront of driving innovationfor our businesses, customers, and colleagues. Within GCIO, our cybersecurity team...


  • Taipei, Taipei City, Taiwan Mandarin Oriental Full time

    As Risk Management and Security Manager,you will be responsible for the following duties:Assist in carrying out operational and administrative duties and overall responsible for subordinate's performanceEnsure conformity of work standards and consistency in carrying out departmental operations and other security and safety related.Training – LQE, OJT &...

  • Security Engineer

    2 weeks ago


    Taipei, TW XREX Full time

    AboutWant to build a worldwide brand from Taiwan, and to communicate our brand story to millions of users worldwide?Want to be based in Taiwan but work in a silicon-valley-like environment, and to build world-class brand and products?Want to participate in the global fintech and blockchain movement, and work at an English-speaking workplace?Come change the...


  • Taipei City, Taiwan 美好證券 Good Finance Full time

    IT AuditorAt Good Finance, we are committed to empowering individuals to turn their visions into reality, creating greater value and a better future for society. Driven by a passion for financial technology, we aim to be a trusted force that helps people achieve their dreams. By focusing on professionalism and precision, we transform our expertise into...


  • Taipei, Taipei City, Taiwan Qualcomm Full time

    CompanyQualcomm Semiconductor LimitedJob AreaInformation Technology Group, Information Technology Group > IT SecurityGeneral SummaryThe Information Security & Risk Management organization is looking for a strong team player with industry experience in cyber security risk management, assessments, and audit compliance. The role will play a key part in the...


  • Taipei, Taiwan Chubb Full time

    Key Responsibilities:


  • Taipei, TW, , Taiwan Morrison Express Full time

    Primary ResponsibilitiesAssist in the setup and implementation of the Group Security & Risk Management Systems, with a focus on Operation Compliance, Cybersecurity, Physical, and Transportation Security measures.Lead the implementation and oversight of Risk Management specific projects.Revise and establish relevant procedures, along with crafting relevant...


  • Taipei City, Taiwan Chubb Full time

    DescriptionKey Responsibilities:


  • Taipei, Taipei City, Taiwan Shiseido Full time

    Key ResponsibilitiesIT Strategy & Leadership:Execute the IT strategy for Shiseido Taiwan, aligning with global IT directives and local business goals.Provide visionary leadership to the IT team, fostering a culture of innovation, collaboration, and continuous improvement.Stay abreast of emerging technologies and industry best practices to recommend and...