Manager, Application Security

3 weeks ago


Eastern Ontario Ontario, Canada Manulife Insurance Malaysia Full time
Manager, Application Security

Locations: Hong Kong
Time Type: Full time
Posted on: Posted Yesterday
Job Requisition ID: JR24071021

We are a leading financial services provider committed to making decisions easier and lives better for our customers and colleagues around the world. From our environmental initiatives to our community investments, we lead with values throughout our business. To help us stand out, we help you step up, because when colleagues are healthy, respected and meaningfully challenged, we all thrive.

Working Arrangement: Hybrid

Job Description

The opportunity:

The customer is the focus of everything we do, and millions of end users rely on our products and services daily. We believe in the value of empowering our Managers, Application Security with the resources to enhance and achieve our business performance objectives for the future of our business, which is why we need you.

This position oversees and supports the key controls governance processes within the first line of defense. We help line 1b business units to ensure uninterrupted BAU on a day-to-day basis by effectively managing their information and operational risks. To achieve this, we need to ensure success in maintaining internal controls and liaison with Manulife’s line 2b of defense that owns Manulife control policies and standards.

On the job you will:

  • Take ownership of the Application security portfolio, helping to drive best practices, conducting security testing (automatic, manual), creating new ways to solve security issues and implement application security controls based on Manulife Standard and Policies;
  • Day-to-day duties include testing and validation of vulnerability findings from External Pentesters, Security Researchers from Bug Bounty Platforms, provide advisory to the Development teams on how to resolve the vulnerabilities, provide insights and review on Architectural change on the Application;
  • Support the IT Protection program with focus on the application security domains;
  • Interact with the country's developers and AppSec champions to provide guidance, best practices and technical assistance in addressing application security issues;
  • Provide expertise that ensures key checks and balances are completed to hold the 1LoD to account;
  • Collaboratively work with application development/AppSec champions and guide them to follow the security processes set in the SDLC gates;
  • Support and provide guidance to 1 LoD on risks mitigation strategies and remedial actions;
  • Work with stakeholders across the countries to promote consistent IT, Data and Application security best practices, standards and other company-wide initiatives;
  • Manage and update Key Performance Indicators (KPI’s) assigned for the team;
  • Manage monthly Application Security meetings and coordinate training for development staff;
  • Manage new projects and initiatives as needs arise and perform related duties as required.

What we are looking for:

  • University graduate with minimum 5 years of experience or more of related technology risk, application security, or information security experience;
  • Understands application security vulnerabilities, different application security testing methodologies and related application security tools;
  • Technical knowledge of application and Data security tools (e.g. DLP, NAC, SAST, DAST, WAF);
  • Knowledge on the following technologies and/or security concepts: Diverse Hybrid Cloud Computing, Security Automation, API Security, Web application Security Risks, Cloud security controls & technologies, source code/pen-test/vulnerability scanning tools, DevOps pipeline, Infrastructure as code, Kubernetes and Containers;
  • Experience in planning, designing and implementing an overall risk management process for a financial organization;
  • Good communication skills and able to work with onshore and off-shore teams;
  • Past experience in Regional role is advantageous;
  • Holding qualification of CISA, CISSP, CEH and PMP is preferable;
  • Other certifications such as OSCP, OSCE, GIAC Web Application Penetration Tester (GWAPT) will be an advantage.

Core Competencies and Skills:

  • Able to effectively articulate technical vision, possibilities, and outcomes through strong verbal and written communication;
  • Solid technology background and risk management sense and how they can impact the business;
  • Knowledge of latest technology development and financial services/insurance business an advantage;
  • Self-driven, able to meet objectives with minimal managerial oversight/supervision;
  • Can distill complex issues into simple reports, solutions, and designs;
  • Good analytical, teamwork capability and able to work independently;
  • Good interpersonal communication, management and presentation skills;
  • A team player who is able to interact with other control functions on project delivery;
  • Proficient in English, both verbal and written, proficiency in other Asian languages would be a plus.

What can we offer you?

  • A competitive salary and benefits packages;
  • A growth trajectory that extends upward and outward, encouraging you to follow your passions and learn new skills;
  • A focus on growing your career path with us;
  • Flexible work policies and strong work-life balance;
  • Professional development and leadership opportunities.

Our commitment to you:

  • Values-first culture: We lead with our Values every day and bring them to life together;
  • Boundless opportunity: We create opportunities to learn and grow at every stage of your career;
  • Continuous innovation: We invite you to help redefine the future of financial services;
  • Delivering the promise of Diversity, Equity and Inclusion: We foster an inclusive workplace where everyone thrives;
  • Championing Corporate Citizenship: We build a business that benefits all stakeholders and has a positive social and environmental impact.

About Manulife and John Hancock:

Manulife Financial Corporation is a leading international financial services group that helps people make their decisions easier and lives better. With our global headquarters in Toronto, Canada, we operate as Manulife across our offices in Asia, Canada, and Europe, and primarily as John Hancock in the United States. We provide financial advice, insurance, and wealth and asset management solutions for individuals, groups and institutions.

Manulife is an Equal Opportunity Employer

At Manulife/John Hancock, we embrace our diversity. We strive to attract, develop and retain a workforce that is as diverse as the customers we serve and to foster an inclusive work environment that embraces the strength of cultures and individuals.

#J-18808-Ljbffr

  • Eastern Ontario, Ontario, Canada Metrobank Full time

    Press Tab to Move to Skip to Content Link Head, Consulting and Project Services Department TO FOLLOW Be #InGoodHands with Metrobank! Here at Metrobank, we don't simply hire employees—we hone future leaders. We provide opportunities that enhance your skills and unlock your talents, helping you evolve into a well-rounded individual. We supply you...


  • Eastern Ontario, Ontario, Canada Walmart Canada Full time

    Position Summary To provide customer service by coordinating the activities of associates to complete assigned handheld terminal activities. Ensuring a zoned and stocked salesfloor and offering assistance to meet the customer’s shopping needs. This will be accomplished by maintaining and recovering merchandise all in a safe and clean environment. This...

  • General Manager

    1 month ago


    Eastern Ontario, Ontario, Canada Lépine Apartments Full time

    Company: Lépine Corporation Position: General Manager Location: Carleton Place/Kanata Reports to: Partners/Owners About the Role: We are seeking a dynamic and experienced General Manager to lead our new business division. The General Manager will play a critical role in establishing and growing the business, managing day-to-day operations, and achieving...

  • Operations Manager

    4 weeks ago


    Eastern Ontario, Ontario, Canada Sphere Solutions Full time

    Sphere Solutions is working with a Tier 1 contracting group recognized as the leading service provider in the Water and Wastewater Infrastructure sectors in the UK.Due to securing several new contract wins and the requirement to expand the existing team, they have an exciting opportunity for an Operations Manager to lead a sizable team across the West Wales...


  • Eastern Ontario, Ontario, Canada Rocketship Public Schools Full time

    Position Description We seek a highly organized and detail-oriented professional to oversee our student records and ensure full compliance with all relevant regulations. As the School Communities Manager, Student Records and Compliance, you will be the guardian of our student data, ensuring its accuracy, confidentiality, and accessibility. This critical role...


  • Eastern Ontario, Ontario, Canada Metrobank Full time

    Head, Compensation Management DepartmentBe #InGoodHands with MetrobankHere at Metrobank, we don't simply hire employees—we hone future leaders. We provide opportunities that enhance your skills and unlock your talents, helping you evolve into a well-rounded individual. We supply you with all the pieces you need to do your best work, unleashing your...


  • Eastern Ontario, Ontario, Canada Chartwell Full time

    The Office Manager is responsible for all aspects of office routines and clerical duties for residents and employees in the retirement residence. The will assist in maintaining a safe and secure environment for residents, visitors and other staff members. The responsibilities of this role include but are not limited to: Responds to resident or family...

  • DevSecOps Engineer

    1 month ago


    Eastern Ontario, Ontario, Canada High Tech Genesis Inc. Full time

    Term: Contract We are seeking a highly skilled DevSecOps Engineer to join our dynamic software team. This role is crucial in automating the Black Duck process, ensuring the security of our code base, and providing expert guidance on security tools and practices. You will be responsible for integrating security measures into our fiber optic backbone hardware...

  • office manager

    4 weeks ago


    Eastern Ontario, Ontario, Canada ADVEX SOLUTIONS LIMITED Full time

    Durée de l'emploi: Permanent Langue de travail: Anglais Heures de travail: 30 hours per week Education Bachelor's degree Public relations/image management Business administration and management, general Finance, general Marketing research Marketing, other Work setting Urban area Remote location Consulting firm Service General...


  • Eastern Ontario, Ontario, Canada Amazon Full time

    Our Sr. Operations Managers are responsible for all budgetary, people development, and operations objectives. The Sr. Operations Managers oversee all aspects of operation or functions at the site. Additional responsibilities include managing and leading a team of Operations and Area Managers, coaching and mentoring the team to ensure performance objectives...


  • Eastern Ontario, Ontario, Canada Amazon Canada Fulfillment Services, ULC - B85 Full time

    Minimum Qualifications: Bachelor’s Degree or 2+ years Amazon experience. 7+ years direct management experience, including a salaried workforce, in a manufacturing, production or distribution environment. Prior experience with performance metrics, process improvement and Lean techniques. Prior experience with the full staffing lifecycle, including...


  • Eastern Ontario, Ontario, Canada Ottawa Senators Full time

    SUMMARY The VP, Technology provides strategic technology leadership to the Senators Sports and Entertainment group (SSE), including the NHL, AHL and NLL operations, Canadian Tire Centre, Senators Community Foundation and the Sensplex facilities. This role oversees the planning, design, installation, integration and sustainment of arena and business...

  • EHS Specialist

    1 month ago


    Eastern Ontario, Ontario, Canada Amazon Full time

    One focus area of the Amazon Workplace Health & Safety (WHS) mission is to provide tools, resources, and environments that support safe, efficient, healthy behaviors and encourage employees to proactively manage their health and wellbeing. To support this focus area, Amazon is seeking a full-time WHS Specialist (WHSS) to serve as a designated representative...


  • Eastern Ontario, Ontario, Canada Hydro Ottawa Full time

    Director, Distribution Engineering and Asset ManagementApply locations: Ottawa, ONTime type: Full timePosted on: Posted 2 Days AgoJob requisition id: R003923Please Note: If you are a current Hydro Ottawa employee with access to Workday, apply to this job via the Workday application.At Hydro Ottawa, we empower the lives of the people in the communities we...

  • Project Manager

    4 weeks ago


    Eastern Ontario, Ontario, Canada ML6 Search + Talent Advisory Full time

    ML6 is seeking a dedicated and skilled professional to join our clients team in the dewatering services industry. This role involves preparing, submitting, and delivering construction proposals, tenders, and estimates while assisting in the development and administration of project contracts, budgets, quality control, and job costing.What You'll Be...

  • Aquatics Manager

    4 weeks ago


    Eastern Ontario, Ontario, Canada Aqua-Tots Swim Schools Kanata Full time

    The Aquatics Manager ensures that the service (swimming lessons) is delivered to clients at the highest possible standard. In conjunction with delivering an exceptional level of service the Aquatics Manager is responsible for ensuring a safe environment on the pool deck in adherence with regulatory mandates including but not limited to municipal and...

  • Project Manager

    4 weeks ago


    Eastern Ontario, Ontario, Canada Colliers Project Leaders Full time

    OverviewAt Colliers Project Leaders, we deliver capital project solutions to fulfill our clients’ needs across the built environment. The work we do makes a difference in communities and for the people who live there. We have a passion for it.Our commitment to realizing our clients' vision inspires us to look beyond the immediate – to the...


  • Eastern Ontario, Ontario, Canada Level AI Full time

    Level AI was founded in 2019 and is a Series C startup headquartered in Mountain View, California. Level AI revolutionizes customer engagement by transforming contact centers into strategic assets. Our AI-native platform leverages advanced technologies such as Large Language Models to extract deep insights from customer interactions. By providing actionable...

  • Senior HVAC Engineer

    4 weeks ago


    Eastern Ontario, Ontario, Canada ZipRecruiter Full time

    Job DescriptionYou will be involved in concept design, feasibility studies, front-end engineering design (FEED), and detailed engineering for HVAC systems in Green and Brownfield projects across Carbon Capture, Hydrogen, Pharmaceutical, Chemical, and Oil & Gas sectors.You will work independently and collaborate with a high-performing team to complete varying...

  • Brand Manager

    1 month ago


    Eastern Ontario, Ontario, Canada Reckitt Benckiser LLC Full time

    Brand Manager - Toddler & Whitespaces City: Kanata We are Reckitt Home to the world's best loved and trusted hygiene, health, and nutrition brands. Our purpose defines why we exist: to protect, heal and nurture in the relentless pursuit of a cleaner, healthier world. We are a global team united by this purpose. Join us in our fight to make access to...