Text size
aA+ aA-
Click here to print

Senior Analyst – Information Security

Country : Area Hong Kong Area Hong Kong

Town : 香港

Category : Retail

Contract type : Permanent

Availability : Full time

Company presentation

Organized in 1899, VF Corporation is a global leader in branded lifestyle apparel, footwear and accessories, with global iconic brands, 64,000 associates and $12.4 billion in revenue. Our businesses and brands are organized into four categories called coalitions, comprising: Outdoor & Action Sports, Jeanswear, Imagewear, and Sportswear. While VF is highly diversified across brands, products, distribution channels and geographies, our One VF culture and approach to doing business provide a unique and powerful competitive advantage.

Job description

Principal Accountabilities:
As a member of the Information Security team, which reports to the office of the Global Chief Information Security Officer (CISO), you will play a key role in executing several aspects of information security for the Asia Pacific region. You will report to the Senior Manager - Information Security and will work with multiple levels of staff and management to help enforce and support VF's information security strategy, policies and processes. You will work closely with APAC Digital Technology team, business functions and brands, conducting vulnerability assessments, third party vendor assessments and cloud security reviews.
Key Result Areas :
- Perform threat and vulnerability assessments on applications and infrastructure
- Co-ordinate code-scanning and penetration testing for applications and infrastructure
- Identify security threats and vulnerabilities and provide specific recommendations to mitigate the same
- Perform vendor risk assessments and draft reports
- Ensure vulnerability remediation by respective vendors within prescribed timeline
- Manage reporting for the result areas


Behavioral Competencies -
(Please refer to VF guiding principles)
- Experience working in large multi-national corporations
- Ability to work with minimal supervision
- Ability to act with confidence and make recommendations
- Ability to handle multiple tasks
- Adaptability/Flexibility
- Influence/NegotiationFunctional Competencies -
List down specific set of functional skills required to perform in this role
- Strong knowledge and experience in threat and vulnerability management, scanning tools
- Good knowledge on application security, SAST / DAST / IAST & DevSecOps
- Strong information security knowledge
- Strong written and verbal communication skills
- Ability to communicate in both English and local language
- Flexibility to occasionally work outside of local business hours/time zone
- Ability to work with a global team located in the Americas, Asia and EuropeExperience
Minimum Relevant Experience: 3-5 years
Minimum Supervisory Experience: NA
Nature of Work: Threat and Vulnerability management & vendor risk management
Academic Qualifications
Minimum Degree Held: Bachelor's degree (Computer Science preferred)
Subject Expert In: Information security
Certifications Required : CISSP / CISA / CISM/ CEH / OSCP / Cloud Security certification is preferred
Language Proficiency:
- Fluent in : English
- Average in : Cantonese / Mandarin / any other Asian language is desirableSpecific Working Conditions
Frequency of Travel: NA
Other Specific Working Conditions : Attend calls out of normal working hours to collaborate with US / EMEA teams required.
Click here to print

Website reserved for fashion, luxury and beauty industry professionals.