RVC
JobsFor Employers
  1. Jobs
  2. /
  3. Cybersecurity and Information Security Analyst

Cybersecurity and Information Security Analyst

nahc.io | Technology
2h 28m ago
On-site
Full Time
Hong Kong

Overview

Our client is an expanding global technology company, seeking an experienced Compliance and Information Security Analyst to safeguard its digital infrastructure and maintain top-tier international standards. You will oversee corporate compliance, audit readiness, data privacy frameworks, and threat mitigation across multi-region operating markets. This position is ideal for a detail-oriented security professional looking to drive enterprise compliance, AI data governance, and proactive risk management in a fast-paced environment. 


What You Will Do
  • Own end-to-end vulnerability management—scheduling automated scans, prioritizing SAST/DAST findings, and driving technical remediation across application and infrastructure layers.
  • Lead the complete incident response lifecycle, managing security event monitoring, containment, forensic mitigation, and root-cause reporting for executive leadership.
  • Direct internal and external IT audits, maintaining certification programs across ISO 27001, ISO 42001 standards and SOC compliance.
  • Develop, implement, and maintain data governance and privacy frameworks (e.g., GDPR) across existing and expanding global operating regions.
  • Conduct continuous threat hunting using updated threat intelligence to proactively strengthen controls and prevent security violations.
  • Partner with engineering and operational squads to enforce security standards, evaluate risks in new initiatives, and conduct staff cybersecurity training.


What You Will Need
  • 2+ years of hands-on experience in information security, IT compliance, or risk management within modern technology or cloud environments.
  • Practical expertise with core compliance frameworks and standards, specifically ISO 27001, SOC reporting, and ISO 42001 (Artificial Intelligence Management Systems).
  • Solid technical understanding of software development lifecycles, IT infrastructure, network architectures, vulnerability scanning, and structured incident response.
  • Deep knowledge of global data privacy regulations (e.g., GDPR) and data governance frameworks.
  • Industry security or compliance certifications (e.g., CISSP, CCEP, ISO Lead Implementer/Auditor, or equivalent professional credentials) are strongly preferred.
  • Excellent analytical, problem-solving, and communication skills to effectively translate technical risks to cross-functional stakeholders.


Required Skills

dastgdpriso_27001sastsoftware_development_lifecycle

Required Languages

🇬🇧 English

Related searches

  • Mid-Level Jobs
1 jobs
Sort by
2h 28m ago

Cybersecurity and Information Security Analyst

nahc.io·Technology
dastgdpriso_27001sast+1
🏢On-site
|Hong Kong
General InfoSec
No similar jobs match these filters. Try changing or clearing a filter.
Remote roles
PythonJavaReactTypeScriptGoDevOpsNode.jsC# / .NET
Countries
United StatesUnited KingdomCanadaUS & EMEAGermanyPolandSpainNetherlandsPortugal
Experience
SeniorMid-levelJunior
R© 2026 RVC Globalbuild e499125c
AboutPricingContactPrivacyCookiesRefundsTerms & ConditionsFor Employers