Cybersecurity Risk Advisor

Central, Hong Kong, Hong Kong Special Administrative Region

ECI

Explore ECI's robust solutions for IT infrastructure, app development, and cloud management, ensuring efficiency and scalability

View all jobs at ECI

Apply now Apply later

ECI is the leading global provider of managed services, cybersecurity, and business transformation for mid-market financial services organizations across the globe.  From its unmatched range of services, ECI provides stability, security and improved business performance, freeing clients from technology concerns and enabling them to focus on running their businesses.  More than 1,000 customers worldwide with over $3 trillion of assets under management put their trust in ECI. 

 

At ECI, we believe success is driven by passion and purpose. Our passion for technology is only surpassed by our commitment to empowering our employees around the world

 

The Opportunity: 

ECI has an exciting opportunity for an experienced Cybersecurity Risk Advisor to join our Hong Kong team.  In this role, you will be supporting clients across the Asia-Pacific (APAC) region, you will play a pivotal role in strengthening the cybersecurity posture of leading financial institutions. This role is ideal for a seasoned professional with approximately 8 years of experience in cybersecurity, risk management, or IT governance, particularly within the financial services sector. You will work closely with client leadership teams to assess risk, implement security frameworks, and ensure compliance with regional regulatory standards such as Monetary Authority of Singapore (MAS) TRM GuidelinesHKMAAPRA CPS 234, and others. You will also contribute to the development of security strategies that align with both global best practices and local regulatory expectations.

This is a hybrid role, 2-3 days per week in ECI’s Hong Kong office.

 

What you will do:

  • Develop and implement cybersecurity risk management strategies tailored to the needs of financial services clients in APAC.
  • Advise clients on compliance with regional regulatory frameworks such as MAS TRM, HKMA, APRA, and FSC Korea, as well as global standards like ISO 27001, NIST, and CIS.
  • Conduct security assessments, audits, and gap analyses to identify vulnerabilities and recommend actionable improvements.
  • Collaborate with client stakeholders, including CISOs and IT leadership, to align cybersecurity initiatives with business objectives.
  • Stay current with evolving cyber threats, regulatory updates, and industry trends across the APAC region.
  • Support clients during internal and external audits, including preparation of documentation and remediation planning.
  • Mentor junior team members and contribute to the continuous improvement of internal methodologies and knowledge sharing.
  • Respond to ad hoc client queries related to cybersecurity, risk, and compliance.
  • Travel within the APAC region up to 10% as required.
  • Other duties as

 

 

Who you are:

  • Approximately 8 years of experiencein cybersecurity, IT risk, or compliance, preferably within the financial services
  • Strong understanding of APAC-specific regulatory frameworks (e.g., MAS TRMHKMAAPRA CPS 234FSC, etc.).
  • Familiarity with global standards such as ISO 27001NIST CSFCIS Controls, and COBIT.
  • Proven experience conducting security assessments, audits, and risk analyses.
  • Industry certifications such as CISSPCISMCRISC, or CCSPare highly desirable.
  • Excellent communication and presentation skills, with the ability to engage senior stakeholders and explain complex topics in business terms.
  • Technical knowledge of IT systems and security controls (e.g., Microsoft, Cisco, endpoint protection, IAM, etc.).
  • Bachelor’s degree in Computer Science, Information Security, or a related field; a Master’s degree is a plus.
  • Self-motivated, adaptable, and capable of working independently in a fast-paced, multicultural environment.

 

Bonus points if you have:

  • Ability to work in an independent environment with moderate supervision
  • Ability to work under a moderate noise level (i.e. working on an open floor with printers, telephones, and computers)
  • Overtime may be required to meet project deadlines (including late nights and weekends)
  • Ability to travel for business and work beyond normal business hours when necessary
  • Ability to be flexible and successfully respond to multiple work pressures
  • Sitting for extended periods of time
  • Dexterity of hands and fingers to operate a computer keyboard, mouse, power tools, and to handle other computer components

 

ECI’s culture is all about connection - connection with our clients, our technology and most importantly with each other.  In addition to working with an amazing team around the world, ECI also offers a competitive compensation package, unlimited PTO, health benefit eligibility the first of the month, pet insurance, 401K with employer match and so much more!  If you believe you’d be a great fit and are ready for your best job ever, we’d like to hear from you!

 

Love Your Job, Share Your Technology Passion, Create Your Future Here!

 

#LI-Hybrid

 

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  2  0  0
Category: Compliance Jobs

Tags: Audits CCSP CISM CISSP COBIT Compliance Computer Science CRISC Governance IAM ISO 27001 NIST Risk management Security assessment Travel Vulnerabilities

Perks/benefits: 401(k) matching Competitive pay Flex hours Flex vacation Unlimited paid time off

Region: Asia/Pacific
Country: Hong Kong

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.