Cyber Threat Analyst @ Hong Kong Exchanges and Clearing Limited (HKEX)
Your Application Journey
Email Hiring Manager
Job Details
About the Cyber Threat Analyst Role
This entry-level position within the Information Security team at the London Metal Exchange (LME) is responsible for conducting penetration testing of LME systems and applications. The role involves scoping, performing assessments, identifying vulnerabilities, documenting exploitation steps, and providing remediation recommendations.
Key Responsibilities
Penetration Testing & Security Assessments: Participate in offensive assessments including red/blue team testing, breach and attack simulation, and bug bounty initiatives. Support incident response and threat handling, including on-call and after-hours support. Review intelligence feeds, generate advisories, support threat hunting, and optimize detection and response rules.
Security Engineering & Automation: Assist in deploying and maintaining security tools (e.g., E-Mail Security, DLP, SIEM, Endpoint Protection). Develop automation solutions using scripting languages such as Python, PowerShell, and Bash, and contribute to Infrastructure as Code efforts using tools like Terraform or Ansible.
Operational Support: Provide support for incident response, security tooling troubleshooting, and access control issues. Maintain documentation, standards, and participate in on-call and weekend support rotations as needed.
Qualifications / Skills
Desirable qualifications include a University degree in a STEM subject and entry-level certifications such as CompTIA Security+, Microsoft SC-900, or AWS Cloud Practitioner. Relevant hands-on experience through platforms like TryHackMe, HackTheBox, or OSCP-related training, as well as demonstrable activity on Github, are highly valued.
Required knowledge includes a basic understanding of ethical hacking, penetration testing, networking and security protocols, operating systems, and scripting or programming. Familiarity with CI/CD tools and cloud platforms, as well as security tooling like EDR, SIEM, and Antivirus, is also required.
Work Environment
The role reports to the UK Division Information Technology team, is based in London and follows a standard 40-hour work week within a permanent, corporate grade framework.
Key skills/competency
- Penetration Testing
- Security Assessments
- Incident Response
- Scripting
- Automation
- Threat Hunting
- Red/Blue Team
- Security Tooling
- Cloud Platforms
- Documentation
How to Get Hired at Hong Kong Exchanges and Clearing Limited (HKEX)
🎯 Tips for Getting Hired
- Craft tailored resume: Highlight cybersecurity projects and certifications.
- Emphasize practical skills: Include penetration testing and scripting expertise.
- Research HKEX culture: Understand their global trading environment.
- Prepare for technical interviews: Review security frameworks and automation tools.