Associate Director (Information Technology) – IT Security

The Hong Kong Monetary Authority (HKMA) is charged with the responsibility for maintaining the stability and integrity of the monetary and financial systems of Hong Kong.  There is now an excellent opportunity for eligible candidates to apply for the following position:

Associate Director (Information Technology) – IT Security

 

Key Responsibilities

 

  • Lead the strategic design, implementation, and continuous improvement of the Security Operations Center (SOC) to ensure proactive detection, response, and mitigation of cyber threats
  • Oversee the integration and optimization of Security Orchestration, Automation, and Response (SOAR) platforms to streamline incident response workflows, reduce mean time to respond (MTTR), and enhance operational efficiency
  • Drive the adoption of AI-powered security analytics and machine learning models within the SOC to improve threat detection accuracy, reduce false positives, and enable predictive threat intelligence
  • Develop and maintain comprehensive playbooks for common attack vectors (e.g., ransomware, phishing, insider threats) leveraging SOAR automation to standardize and accelerate incident response
  • Champion the integration of AI SecOps practices-such as automated behavioral analysis, anomaly detection, and self-healing security controls-into daily SOC
  • Ensure SOC processes align with industry standards (e.g., MITRE ATT&CK, NIST CSF, ISO 27001) and regulatory requirements (e.g., GDPR, PDPO, PCI-DSS)
  • Monitor and report on key security performance indicators (KPIs) and key risk indicators (KRIs), including detection rates, response times, false positive ratios, and incident volume trends
  • Conduct regular audits, tabletop exercises, and post-incident reviews to evaluate SOC effectiveness, identify gaps, and implement corrective actions
  • Provide executive-level reporting on cybersecurity posture, threat landscape trends, SOC performance, and recommendations for strategic improvements

 

Requirements

 

  • University degree in computer science, information technology, cybersecurity or related field; professional certifications such as Certified Information Systems Security Professional (CISSP), Certified Incident Handler (GCIH), or Splunk Certified Enterprise Security Admin highly preferred
  • At least 3 years of experience in information security and in a leadership role within a SOC environment, including hands-on experience in SIEM, SOAR, and security automation
  • Proven track record in designing and deploying SOAR-enabled security operations, including workflow automation, case management, and integration with third-party tools (e.g., EDR, firewalls, ticketing systems)
  • Strong understanding of cyber threat intelligence (CTI), attack lifecycle modeling (MITRE ATT&CK), and advanced persistent threats (APTs)
  • Excellent analytical and problem-solving skills with the ability to interpret complex data sets and derive actionable insights
  • Exceptional communication, presentation, and leadership abilities; capable of influencing senior stakeholders and driving cross-functional collaboration
  • Demonstrated ability to lead digital transformation initiatives in security operations and champion innovation through technology adoption

 

Conditions of service

 

  • Appointment will be made on fixed contract terms
  • A competitive remuneration package will be offered.  There is flexibility to take account of additional experience and qualifications
  • Fringe benefits include medical and dental benefits, paid annual leave and contract-end gratuity

 

How to apply

 

You may submit an application via one of the following channels:

  1. Online application
  2. By Mail

Send in the hard copy application form (available either at the HKMA’s reception counter or website https://www.hkma.gov.hk) to:

Recruitment Officer
Hong Kong Monetary Authority
55/F., Two International Finance Centre
8 Finance Street, Central, Hong Kong

Copies of transcripts together with a full résumé including details of past experience should be attached to the application.  Please mark your correspondence address and the position applied for on the envelope.

Completed application should reach the HKMA, via the designated submission channel, by 28 February 2026.  Applicants may wish to submit their applications in advance of the deadline to allow for any unexpected delays, e.g. with internet traffic, including file size restrictions and system maintenance downtime.  Those not contacted by the HKMA within three months from the closing date for applications should consider their applications filed for future reference.

Personal data provided by applicants will be used strictly in accordance with our personal data policies, a copy of which will be provided upon request.  You may contact the Recruitment Officer at the above address.

The HKMA is an equal opportunities employer.  More information on the HKMA can be found at the website https://www.hkma.gov.hk.

The Online Application System is scheduled to perform regular system maintenance from Hong Kong time 6:00 a.m. to 8:00 a.m. every Wednesday.  During this time, online application will not be available.

Last revision date : 13 February 2026