---
title: "Cybersecurity and Information Security Analyst"
company: "nahc.io"
company_url: "https://www.remjobs.works/companies/nahc-io"
url: "https://www.remjobs.works/job/nahc-io-cybersecurity-and-information-security-analyst-a789ca1d-0ffc-4593-841d-a1682d86a690"
apply_url: "https://jobs.lever.co/nahc/6a43ec81-8230-49fd-aa4d-daa51db33831"
workplace: onsite
location: "Hong Kong"
employment_type: full-time
seniority: mid
role: devops-infrastructure
region: asia-pacific
date_posted: 2026-09-03T06:41:39.334Z
first_seen_by_remjobs: 2026-09-19T22:06:46.015Z
---

# Cybersecurity and Information Security Analyst

**nahc.io** · Hong Kong

Apply: https://jobs.lever.co/nahc/6a43ec81-8230-49fd-aa4d-daa51db33831

## About the role

**Overview**
 
Our client is an expanding global technology company, seeking an experienced Compliance and Information Security Analyst to safeguard its digital infrastructure and maintain top-tier international standards. You will oversee corporate compliance, audit readiness, data privacy frameworks, and threat mitigation across multi-region operating markets. This position is ideal for a detail-oriented security professional looking to drive enterprise compliance, AI data governance, and proactive risk management in a fast-paced environment.

##### What You Will Do

- Own end-to-end vulnerability management—scheduling automated scans, prioritizing SAST/DAST findings, and driving technical remediation across application and infrastructure layers.

- Lead the complete incident response lifecycle, managing security event monitoring, containment, forensic mitigation, and root-cause reporting for executive leadership.

- Direct internal and external IT audits, maintaining certification programs across ISO 27001, ISO 42001 standards and SOC compliance.

- Develop, implement, and maintain data governance and privacy frameworks (e.g., GDPR) across existing and expanding global operating regions.

- Conduct continuous threat hunting using updated threat intelligence to proactively strengthen controls and prevent security violations.

- Partner with engineering and operational squads to enforce security standards, evaluate risks in new initiatives, and conduct staff cybersecurity training.

##### What You Will Need

- 2+ years of hands-on experience in information security, IT compliance, or risk management within modern technology or cloud environments.

- Practical expertise with core compliance frameworks and standards, specifically ISO 27001, SOC reporting, and ISO 42001 (Artificial Intelligence Management Systems).

- Solid technical understanding of software development lifecycles, IT infrastructure, network architectures, vulnerability scanning, and structured incident response.

- Deep knowledge of global data privacy regulations (e.g., GDPR) and data governance frameworks.

- Industry security or compliance certifications (e.g., CISSP, CCEP, ISO Lead Implementer/Auditor, or equivalent professional credentials) are strongly preferred.

- Excellent analytical, problem-solving, and communication skills to effectively translate technical risks to cross-functional stakeholders.

---

Source: nahc.io's own career page, read by RemJobs. Canonical HTML version: https://www.remjobs.works/job/nahc-io-cybersecurity-and-information-security-analyst-a789ca1d-0ffc-4593-841d-a1682d86a690
