- Company Name
- Hong Kong Exchanges and Clearing Limited (HKEX)
- Job Title
- Junior Security Engineer
- Job Description
-
Job Title: Junior Security Engineer
Role Summary
Entry‑level security engineer supporting secure delivery and operation of infrastructure, applications, identity and access management (IAM), and secure configuration management. Focus on automation, IaC, and integration of security controls into DevOps pipelines.
Expectations
- 0‑2 years experience in IT, security engineering or DevOps.
- Curiosity, analytical mindset, strong communication, teamwork.
- Willingness to learn, adapt in a fast‑paced environment.
Key Responsibilities
1. Deploy and maintain security tools (E‑mail security, DLP, SIEM, endpoint protection).
2. Automate security tool configuration, updates, and IaC using Python, PowerShell, Bash, Terraform, or Ansible.
3. Maintain secure configurations across Windows, Linux, and Kubernetes environments.
4. Implement RBAC, least privilege, and IAM workflows in code; integrate into CI/CD pipelines.
5. Automate access governance, onboarding/offboarding, and access reviews.
6. Embed security controls (SAST, DAST, secrets management) into CI/CD.
7. Support incident response, Red/Blue testing, and penetration testing.
8. Document standards, procedures, and maintain security knowledge base.
9. Participate in on‑call and weekend support rotations.
Required Skills
- Scripting/programming: Python, Bash, PowerShell.
- IaC: Terraform, Ansible.
- IAM: LDAP, OAuth, IdP, RBAC, least privilege.
- Security tooling: EDR, SIEM, DLP, antivirus.
- CI/CD: Bitbucket, pipelines, secrets management, SAST/DAST.
- Cloud platforms: AWS, Azure, basic familiarity with services.
- Networking: TCP/IP, HTTPS, DNS, firewalls, proxies.
- Operating systems: Windows, Linux/Unix, Kubernetes.
Required Education & Certifications
- University degree or equivalent in Computer Science, Engineering, Information Systems, or related STEM field.
- Entry‑level certifications (preferred): CompTIA Security+, Microsoft SC‑900, AWS Cloud Practitioner.