hirly

Apply with hirly

Manager, Identity Access Management

Ocbc · OCBC Hong Kong

Upload your resume to see how well you match this job — free, in seconds, no account needed.

Your resume is used only to score it against this job. If you don't create an account, it is deleted within 24 hours.

Who We

ARE: As Singapore’s longest established bank, we have been dedicated to enabling individuals and businesses to achieve their aspirations since 1932. How? By taking the time to truly understand people. From there, we provide support, services, solutions, and career paths that meet their individual needs and desires. Today, we’re on a journey of transformation. Leveraging technology and creativity to become a future-ready learning organisation. But for all that change, our strategic ambition is consistently clear and bold, which is to be Asia’s leading financial services partner for a sustainable future. We invite you to build the bank of the future. Innovate the way we deliver financial services. Work in friendly, supportive teams. Build lasting value in your community. Help people grow their assets, business, and investments. Take your learning as far as you can. Or simply enjoy a vibrant, future-ready career. Your Opportunity Starts Here. Role Overview This role is responsible for both Identity and Access Management (IAM) operations and security process automation, supporting the secure, compliant, and efficient management of user identities and access across Hong Kong and Macau. The position oversees end-to-end user lifecycle management, privileged access administration, access governance, periodic access reviews, audit support, and incident response related to identity and access controls. In addition to operational responsibilities, the role drives the transformation of IAM processes through automation by identifying and implementing opportunities to streamline access provisioning, recertification, and legacy system administration. The position also explores automation opportunities across broader cybersecurity functions, and pilots emerging security technologies to enhance operational efficiency, control effectiveness, and cyber resilience. What you will be doing: o Daily Operation (50%)

  • Maintain day-to-day and time-bound systems and applications user access provisioning, de-provisioning, certifications to production and non-production environment; privileged access onboarding/offboarding.
  • Act as escalation point for IAM and related processes, working with users and stakeholders as needed to resolve all issues quickly and efficiently.
  • Coordinate and execute periodic User Access Review exercises for locally maintained applications to ensure access appropriateness and regulatory compliance.
  • Provide end-to-end account administration for Macau-specific regulatory, industry, and government-connected systems that require locally managed credentials.
  • Act as the subject matter expert for investigating and resolving identity-related cyber security incident and access anomalies alert.
  • Active engagement on IAM related audit matters, including management of audit response and implementation of recommended improvement plans and remediation.
  • undefined o Automation (50%)
  • Identify manual and repetitive effort/process cases for automation in existing ID management, Legacy systems & applications access request and re-certification process.
  • Integrate local regulatory and government applications IDs management into ID administration solution.
  • Extending automation use case identification to other cyber security functions, e.g. vulnerability management and security testing, etc.
  • Research pilot emerging security technologies and automation platforms. Who are we looking for:
  • Education: Bachelor’s degree in computer science is preferred.
  • IAM Experience: Basic experience in ID administration, preferably within the financial services sector.
  • Automation Experience: workflow and reporting development is preferred.
  • Technical Skills: programming language hands-on experience in Python, Java, etc. System knowledge in Windows directory, Linux, Database, Kubernetes/Openshift, DevOps development, etc.
  • Security Concepts: knowledge of Least Privilege principles, and Role-Based Access Control (RBAC), Zero Trust architecture.
  • Certifications: Preferred certifications include Certified Information Systems Auditor (CISA), Certified Identity Management Professional (CIMP), or vendor-specific credentials.
  • Communication: Possesses initiative, good interpersonal and communication skills. Self-motivated with the ability to prioritize and manage changing priorities. What we offer: Competitive base salary. A suite of holistic, flexible benefits to suit every lifestyle. Community initiatives. Industry-leading learning and professional development opportunities. Your wellbeing, growth and aspirations are every bit as cared for as the needs of our customers.