Marcus Or
Manager, Technology Risk Management and Compliance at Crypto.com- Claim this Profile
Click to upgrade to our gold package
for the full feature experience.
-
Cantonese Native or bilingual proficiency
-
English Full professional proficiency
-
Mandarin Full professional proficiency
-
Hokkien Full professional proficiency
Topline Score
Bio
Dicky K. H. Loung
I was working with Marcus in the same team at Deloitte three years ago. He knows a lot and is always willing to share his experience to the team (not just technical). His insights helped the team to move forward. And a very nice guy personally! Wonderful to work together with him! As a team member, Marcus earns my highest recommendation.
Dicky K. H. Loung
I was working with Marcus in the same team at Deloitte three years ago. He knows a lot and is always willing to share his experience to the team (not just technical). His insights helped the team to move forward. And a very nice guy personally! Wonderful to work together with him! As a team member, Marcus earns my highest recommendation.
Dicky K. H. Loung
I was working with Marcus in the same team at Deloitte three years ago. He knows a lot and is always willing to share his experience to the team (not just technical). His insights helped the team to move forward. And a very nice guy personally! Wonderful to work together with him! As a team member, Marcus earns my highest recommendation.
Dicky K. H. Loung
I was working with Marcus in the same team at Deloitte three years ago. He knows a lot and is always willing to share his experience to the team (not just technical). His insights helped the team to move forward. And a very nice guy personally! Wonderful to work together with him! As a team member, Marcus earns my highest recommendation.
Credentials
-
CREST Practitioner Security Analyst
CREST - www.crest-approved.org -
CREST Registered Penetration Tester
CREST - www.crest-approved.org -
Certified Blockchain Security Professional
Blockchain Training Alliance -
Certified Cloud Security Professional (CCSP)
(ISC)² -
Certified Data Privacy Solutions Engineer (CDPSE)
ISACA -
Certified Information Privacy Manager (CIPM)
IAPP - International Association of Privacy Professionals -
Certified Information Privacy Professional/Europe (CIPP/E)
IAPP - International Association of Privacy Professionals -
Certified Information Security Manager (CISM)
ISACA -
Certified Information Systems Auditor (CISA)
ISACA -
Certified Information Systems Security Professional (CISSP)
(ISC)² -
Certified Risk and Information Systems Control (CRISC)
ISACA -
Cisco Certified Network Associate Routing and Switching (CCNA Routing and Switching)
Cisco -
IBM Blockchain Essentials
IBM -
ISO 27001 Lead Auditor (CQI & IRCA)
SGS -
ITIL v3 Foundation
Academy of Professional Certification (APC), charitable NGO, Certification Body -
LPIC-1 certification
Linux Professional Institute -
Offensive Security Certified Expert (OSCE)
Offensive Security -
Offensive Security Certified Professional (OSCP)
Offensive Security -
Onetrust Certified Privacy Professional
OneTrust -
eLearnSecurity Certified Penetration Tester eXtreme (eCPTX)
eLearnSecurity
Experience
-
Crypto.com
-
Singapore
-
Financial Services
-
700 & Above Employee
-
Manager, Technology Risk Management and Compliance
-
Apr 2020 - Present
- Governing the cyber, technolog, business continuity and third-party risk management framework- Managing risks related to cybersecurity, privacy, technology, thrid-party service provider and operational issues- Leading external audit projects, including ISO27001, ISO27701, NIST Cybersecurity Framework, Privacy Framework, and SOC2 Assurance Report- Leading red teaming exercise and attack simulation - Governing the cyber, technolog, business continuity and third-party risk management framework- Managing risks related to cybersecurity, privacy, technology, thrid-party service provider and operational issues- Leading external audit projects, including ISO27001, ISO27701, NIST Cybersecurity Framework, Privacy Framework, and SOC2 Assurance Report- Leading red teaming exercise and attack simulation
-
-
-
PwC Mainland China and Hong Kong
-
China
-
Accounting
-
700 & Above Employee
-
Senior Cybersecurity Consultant, Risk Assurance
-
Feb 2019 - Feb 2020
-
-
-
Deloitte
-
Business Consulting and Services
-
700 & Above Employee
-
Analyst, Risk Advisory
-
Jun 2017 - Feb 2019
-
-
-
HKBN JOS
-
Hong Kong
-
IT Services and IT Consulting
-
700 & Above Employee
-
IT Associate - Managed Services
-
Jul 2016 - Jun 2017
-
-
Education
-
The University of Hong Kong
Master of Laws -
Yonsei University
Bachelor of Engineering, Electrical and Electronic Engineering -
City University of Hong Kong
Bachelor of Engineering (Honours), Information Engineering