Key Responsibilities
• Identify, assess and monitor technology and cyber risks across banking systems, applications and infrastructure
• Conduct technology risk assessments, control reviews and thematic reviews in line with regulatory and internal requirements
• Provide independent challenge and advisory on technology risk matters, including system development, cloud adoption, outsourcing and third-party risk.
• Review IT policies, standards and procedures to ensure alignment with best practices and regulatory expectations
• Track remediation of technology risk issues and support continuous improvement of the control environment
• Collaborate closely with IT, information security and business stakeholders on risk-related initiatives Requirements
• Bachelor's degree in Information Systems, Computer Science, Risk Management, Finance or a related discipline
• Fluent in Chinese (Cantonese and/or Mandarin) with a good command of English
• 3-8 years' experience in technology risk, IT risk, cybersecurity, internal audit, or related roles within banking or financial services (Big 4 candidates are welcome)
• Strong understanding of banking technology environments, including infrastructure, applications, cybersecurity and data management
• Knowledge of regulatory frameworks and standards such as HKMA guidelines, ISO 27001, NIST, COBIT or ITIL
• Experience in technology risk assessments, control testing or audit activities
• Professional certifications such as CISA, CISM, CRISC or CISSP are highly preferred.
What you need to do now
If you're interested in this role, click 'apply now' to forward an up-to-date copy of your CV.
FULL TIME
manager
4/14/2026
You will be redirected to Hays's application portal.