Lalamove

Senior Technology Risk Analyst / Lead

HK · On-site · Full-time

Apply on the employer’s site ↗See how well you match this job

You apply directly with the employer. ROLIVA does not submit applications from this page and is not the employer.

Role details

Does the apply link above not work?

About the employer

  • EmployerLalamove
  • Open roles on ROLIVA186 open roles
  • Where this posting comes fromListed on the employer’s own careers site: jobs.lever.co

About the role

Description from the employer’s posting. Check the employer’s page for the current version.

At Lalamove, we believe in the power of community. Millions of drivers and customers use our technology every day to connect with one another and move things that matter. Delivery is what we do best and we ensure it is always fast and simple. Since 2013, we have tackled the logistics industry head on to find the most innovative solutions for the world’s delivery needs. We are full steam ahead to make Lalamove synonymous with delivery and on a mission to impact as many local communities we can. We have massively scaled our efforts across Asia and now have our sights on taking our best in class technology to the rest of the world. And we are looking for talented professionals to join us in this journey! We are seeking an experienced Senior Network and Security Analyst/Lead to deploy, optimize, and maintain robust cybersecurity solutions and network infrastructure across our enterprise environment. In this role, you will lead vulnerability management operations, strengthen defense and incident response capabilities, and ensure network security systems are optimized to mitigate risks.

What you will do: Risk Assessment & Tracking: Maintain the enterprise risk register and conduct comprehensive risk assessments across IT infrastructure, cloud environments, and the System Development Life Cycle (SDLC) for various organizational projects and technical assets. Remediation Coordination: Coordinate risk remediation plans across different teams and meticulously track risk acceptance decisions. Reporting & Visibility: Develop and maintain risk dashboards, generating clear, high-level executive summaries for management review. Emerging Tech Governance: Champion and drive AI security governance initiatives to ensure the safe and compliant adoption of artificial intelligence technologies Audit & Compliance: Actively support internal audit initiatives and facilitate robust security control testing. Maintain and continuously improve the Information Security Management System (ISMS) in compliance with ISO 27001 standards. Conduct regular PCI DSS assessments. What you will need: Education: Bachelor’s degree in Cybersecurity, Information Technology, Risk Management, Business Administration, or a related field. Experience: 5+ years of experience in IT Risk Management, Information Security, Compliance, or IT Audit. Technical Skills: Strong understanding of risk assessment methodologies and frameworks (e.g., NIST CSF, ISO 27001, PCI DSS). Experience maintaining risk registers and tracking remediation lifecycles. Solid knowledge of IT infrastructure (networks, databases, cloud architecture) and secure system development practices (e.g., DevSecOps, CI/CD pipelines, secure architecture) to accurately identify and evaluate technical vulnerabilities. Familiarity with privacy regulations and emerging AI governance standards. Soft Skills: Exceptional communication skills with the ability to translate complex technical risks into business terms for management and stakeholders. Certifications (Preferred): CRISC, CISA, CISM, ISO 27001 Lead Auditor or similar industry-recognized risk and audit certifications. To all candidates- Lalamove respects your privacy and is committed to protecting your personal data. This Notice will inform you how we will use your personal data, explain your privacy rights and the protection you have by the law when you apply to join us. Please take time to read and understand this Notice. Candidate Privacy Notice: https://www.lalamove.com/en-hk/candidate-privacy-notice

Staying safe while you apply

  • Never pay to apply, interview or accept an offer — ROLIVA never asks you for payment to apply to a job.
  • Apply only through the official button above, on the employer’s own site, and check that a recruiter’s email uses that employer’s own domain rather than a free email address.
  • Be cautious of an offer made with no real interview, or pressure to decide quickly or share financial details early.

Does something look wrong with this listing? Use “Report broken link” above, or read ROLIVA’s full job-safety guidance ↗.

Preparing for this role with ROLIVA

  • Check the fit.

    Compare the requirements with the experience you have confirmed, including gaps.

  • Prepare honestly.

    Build interview stories and application drafts from your own evidence.

  • Keep track.

    Save the role and record your own application status and follow-ups.

Create a free workspace or log in.

Explore similar roles

Similar jobs