Information Security Manager

Job Summary

Responsible for leading the Bank’s information security function, including the implementation and operation of an effective ISMS aligned with ISO/IEC 27001, while ensuring robust cybersecurity controls to protect information assets, systems, and services. Authorized to enforce information security requirements, escalate unacceptable risks, and require remediation of security control deficiencies.

Job Description

  • Establish, maintain, and continually improve the Information Security Management System (ISMS) in line with ISO/IEC 27001.
  • Define and enforce information security policies, standards, and controls across the Bank.
  • Conduct and manage information security risk assessments and risk treatment activities.
  • Maintain ISMS documentation including scope, risk register, and Statement of Applicability.
  • Oversee cybersecurity operations including access control, endpoint protection, vulnerability management, and security monitoring.
  • Manage information security and cyber incident responses, including escalation and regulatory notification.
  • Assess and monitor information security risks associated with third parties and service providers.
  • Support internal audit, regulatory reviews, and external assessments related to information security.
  • Develop and deliver security awareness and phishing simulation programs for employees.
  • Report security risks, incidents, and performance metrics to management committees.

Job Requirements

  • Bachelor’s degree in information security, IT, or related discipline.
  • ISO/IEC 27001 Lead Implementer or Lead Auditor certification preferred.
  • Minimum 7 years of experience in information security or cybersecurity roles.
  • Experience in banking or regulated financial environments preferred. Key Skills
  • Strong knowledge of ISO/IEC 27001 and information security risk management.
  • Understanding cybersecurity controls and banking technology environments.
  • Ability to engage regulators, auditors, and senior management.
  • Strong documentation, communication, and stakeholder management skills.

Key Interfaces

  • Technology Operations
  • Risk Management
  • Compliance
  • Internal Audit
  • Business Units
  • Vendors and Service Providers

Allowance & Benefits

  • Sat and Sun Off
  • Ferry Provide
  • Annual Bonus
  • Promotion Opportunities

Apply Now

Job Summary

  • Published on:July 18, 2026
  • Employment Status:Full-time