Verified current Job

Lead, Risk Operations (Infomation Security)

At Lalamove, we believe in the power of community. Millions of drivers and customers use our technology every day to connect with one another and move things that matter. Delivery

Job Full source details
Lalamove Hong Kong, Hong Kong SAR Source published Sep 28, 2026 Verified 52 minutes ago
✓ 100% verification score · Source: lalamove (lever) · Always confirm final requirements on the original source.
Complete source information imported The available role or programme description, requirements, benefits and source facts were imported from the public official endpoint and formatted for reading.
EmploymentFull-time

Overview

At Lalamove, we believe in the power of community. Millions of drivers and customers use our technology every day to connect with one another and move things that matter. Delivery

Full job description

At Lalamove, we believe in the power of community. Millions of drivers and customers use our technology every day to connect with one another and move things that matter. Delivery is what we do best and we ensure it is always fast and simple. Since 2013, we have tackled the logistics industry head on to find the most innovative solutions for the world’s delivery needs. We are full steam ahead to make Lalamove synonymous with delivery and on a mission to impact as many local communities we can. We have massively scaled our efforts across Asia and now have our sights on taking our best in class technology to the rest of the world. And we are looking for talented professionals to join us in this journey!

We are seeking an experienced Lead, Rsk Operations (Information Security)- to oversee the formulation, implementation of office security strategies, conducting audits, monitoring, and violation handling around employee data security risks to safeguard the company's data assets globally. This role requires close collaboration with Legal, HR, IT, and overseas business teams to drive continuous optimization of the security operations system.

Office Security Strategy Operations Lead daily policy configuration, operations monitoring, and alert handling for office security software (DLP, IM, encryption software, etc.); Drive implementation of data classification and grading policies in office scenarios to ensure sensitive data is manageable, controllable, and traceable; Employee Risk Audit Establish and operate an employee data security risk monitoring system, identifying insider threat risks through multi-source data such as DLP alerts, UEBA behavior analysis, and business audit logs; Through high-risk scenario operations and audit analysis, complete business risk assessments and deliver governance, risk mitigation, and control solutions to business lines; responsible for onboarding, acceptance, and quality control of business system audit logs to ensure log integrity and compliance; Conduct traceability analysis and impact assessment for security incidents such as data leakage, unauthorized outbound transmission, and unauthorized access, and lead or assist in emergency response and remediation; Conduct preliminary verification, evidence collection, interviews, risk assessment, and grading based on violation leads, and form professional investigation opinions to ensure handling is standardized, efficient, and traceable; Establish tiered and categorized violation handling standards and SOPs, and drive closed-loop management of violation handling.

Cross-functional Collaboration and System Development Work closely with Legal, Compliance, HR, IT, GRC, and other teams to coordinate the establishment of security-related frameworks; Participate in drafting and revising overseas trade secret management policies and operating procedures to ensure compliance with global data protection regulations such as GDPR, CCPA, and PDPA; Organize and deliver employee information security awareness training and communications.

Full-time bachelor's degree or above, preferably in Information Security, Cybersecurity, Computer Science, Audit, or related fields; 5+ years of experience in data security, information security, or related fields; background in Internet or foreign-invested enterprises preferred. Familiar with office network security architecture, with experience in developing and operating data security policies for office endpoints, networks, email, and other scenarios. Excellent English and Mandarin, with proficiency in cross-border team communication, English document writing, and overseas business reporting; Excellent cross-functional communication and coordination skills, with the ability to effectively overcome cross-cultural collaboration challenges; Holding information security-related certifications such as CISA or CISSP; Security operations experience in overseas/going-global business;

Tips for this job

Practical JobOpportunity guidance. These tips do not replace official rules or create new eligibility requirements.

  1. Tailor the CV and application to the responsibilities and required skills stated on the official employer page.
  2. Use concrete evidence of relevant work, projects and measurable results rather than generic claims.
  3. Confirm location, work authorization, remote restrictions and sponsorship terms before applying.
  4. Apply through the original employer or official recruitment destination shown on this page.

Verification notes

laptop-ats-crawler v3

Original authoritative source

JobOpportunity is the discovery and verification layer. Confirm eligibility, dates, salary/funding and application instructions on the original source before submitting anything.

Apply through JobOpportunity →

Browse current JobOpportunity listings from lalamove (lever) →

More ways to save

Discover deals, coupons and free courses on our sister site.

Explore DealVorio
Save more with DealVorio: deals, coupons, free courses, apps and books