Assistant Vice President Information Security
@ Shangri-La Group

Hong Kong, Hong Kong SAR
HK$0
On Site
Full Time
Posted 21 days ago

Your Application Journey

Personalized Resume
Apply
Email Hiring Manager
Interview

Email Hiring Manager

XXXXXXXXX XXXXXXXXXXXXX XXXXXXXXX****** @shangri-la.com
Recommended after applying

Job Details

About Shangri-La Group

Shangri-La Group is a global leader in luxury hospitality with unique Asian heritage. Headquartered in Hong Kong, the group owns over 100 hotels and resorts across key cities and stunning beachfront locations worldwide. With a legacy of over 45 years and a strong development pipeline, Shangri-La is committed to offering legendary service while investing in the learning and development of over 42,000 colleagues globally.

Role Overview: Assistant Vice President Information Security

This role supports the VP, Information Security and manages a small team of specialists overseeing all matters related to information security and data protection for the group.

Key Responsibilities

  • Develop and implement company-wide information security and data protection policies.
  • Review and improve existing security policies and procedures.
  • Collaborate with IT teams to maintain a secure operating environment.
  • Conduct periodic audits of IT infrastructure, systems, applications, vendors, and hotel operations for compliance.
  • Manage PCI-DSS and related compliance certifications.
  • Oversee risk assessment programs and implement risk mitigation plans.
  • Ensure adherence to relevant security and data privacy legislation.
  • Manage group-wide awareness programs and daily security operations.
  • Advise on security aspects of new projects and systems.
  • Administer the information security budget aligning resources with priorities.

Qualifications

  • Bachelor’s degree in relevant discipline.
  • Minimum 6 years of experience managing information security in a sizable company.
  • Hands-on experience with enterprise-level policy development and implementation.
  • Familiarity with PCI-DSS, ISO/IEC 27001, NIST and risk management methodologies.
  • Excellent planning, organizational, and communication skills (English required; Mandarin desirable).
  • Professional certifications such as CISSP, CISM, CISA, GIAC are highly desirable.

Key skills/competency

Information Security, Data Protection, PCI-DSS, ISO27001, Risk Management, IT Audit, Policy Development, Compliance, Security Operations, Budget Management

How to Get Hired at Shangri-La Group

🎯 Tips for Getting Hired

  • Customize your resume: Tailor your experience to security leadership.
  • Highlight certifications: Emphasize CISSP, CISM, or similar.
  • Research Shangri-La: Understand their luxury hospitality ethos.
  • Prepare examples: Demonstrate risk management and audit success.

📝 Interview Preparation Advice

Technical Preparation

Study PCI-DSS requirements.
Review ISO27001 and NIST controls.
Practice IT infrastructure auditing.
Understand compliance frameworks.

Behavioral Questions

Describe teamwork examples.
Explain leadership conflict management.
Discuss handling high-pressure situations.
Share problem-solving success stories.

Frequently Asked Questions