Information Security Manager

2 weeks ago


Manila, National Capital Region, Philippines Tech Mahindra Full time

Security (Information & Communication Technology)

Full time

Add expected salary to your profile for insights

To efficiently undertake, manage and execute Audit engagement activities providing independent audit opinions to the business:

Audit Assignments (Planning)

  • Assist HOD in identifying & planning audit & monitoring of the high risk activities
  • Initiating the audit with the stake holders in accordance with the annual audit plan with the approval of HOD
  • Conducting an understanding meeting for the assigned audit area to obtain a working knowledge of the nature of the activities
  • Developing the assigned audit plan including scope and objectives of the audit, and audit procedures and obtaining the Internal Audit HOD's approval in a timely manner
  • Ensuring the audit plan is developed to meet the Business expectations and is based on high risk, and compliance with statutory audit requirements
  • Planning audit testing strategy and estimating the time for completion of the audit in coordination with the Audit HOD
  • Leading and enhancing the capability of the Internal Audit and Credit & Complaints team supporting Operations.

Implementing Audit Activities

  • Create and manage the entire compliance framework - all applicable regulations including requirements like DPA, PCI DSS, etc. and local & Australian regulatory, BPO industry requirements.
  • Performing regulatory, operational and process audits of the company's business units to ensure adherence and compliance to the organization's corporate policies, SLAs agreed with client and statutory requirements.
  • Executing an efficient and effective audit approach as defined by internal audit management to ensure all assigned work is completed according to schedule.
  • Attending and ensuring there is a regular cadence on calibration sessions with Operations
  • Documenting and actively participating in the development of audit procedures performed as well as the preparing noted concerns for audit report inclusion

Evaluating Audit Activities

  • Performing analytical review procedures on audit
  • Performing analytical review procedures on call compliance audit for operations.
  • Drafting audit findings, recommendations and writing audit memos, soliciting inputs from the process owners and obtaining the Internal Audit HOD's approval in a timely manner (applicable for Contact Center Internal Audit and Credit and Compliance).

Communications & Reporting

  • Discussing all audit findings with the senior management, respective business verticals and ensuring factual accuracy of the audit issues
  • Escalating identified audit issues with risk mitigating measures in a timely manner, as appropriate
  • Ensuring and supervising effective implementation of the corrective actions
  • Assist in conducting investigations into allegations of bribery, misconduct, corrupt behavior, policy breaches or reputational issues, including conducting witness and suspect interviews in collaboration with relevant internal teams by preparing interview memos, investigation reports with accurate conclusions and providing timely updates to the Compliance lead in Philippines and Australia.
  • Conduct compliance-based reviews and monitoring of adherence to policies, reviewing patterns from investigations and putting in place enhanced processes.
  • Liaising and coordinating with legal team of TMBS VHA/TPG fraud investigation.
  • Support data and evidences gathering as required by the Legal Teams for legal/police procedures

Information Security Governance

  • Support the management to establish and maintain the Information Security Management System and ensuring compliance with organizational security policies and customer data security requirements.
  • Assists and supports the core functions within the Information Security Governance and Risk Team. Core functions include Access Reviews, Risk Management, Vendor Risk, Security Audit, and Security Education.
  • Support IT operations in implementing the defined security policies. Monitoring compliance with the organization's information security policies and procedures among employees, contractors, alliances, and other third parties
  • Work alongside the InfoSec service partner to drive performance and adherence to company objectives of enhancing compliance & awareness.
  • Support the development and deployment of relevant technologies, tools and technical frameworks and processes to enhance efficiency in Compliance function

Core Competency

  • Knowledge & understanding of compliance & regulatory guidelines to drive contact center compliances & statutory compliances
  • knowledge of generally accepted auditing standards and practices
  • Preferred knowledge of standards like ISO 27001, PCI DSS
  • Must have good knowledge & understanding of compliance & regulatory guidelines to drive contact centre compliance with all quality measures & statutory obligations including organisation's policies & guidelines
  • Must have a clear idea and an understanding about the BPO process and non- negotiables in the contact centre
  • Must maintain a current knowledgebase of Audit industry practices and ensure best practices are considered within the company.

Tech Mahindra represents the connected world, offering innovative and customer-centric information technology services and solutions, enabling Enterprises, Associates and the Society to Rise.

Mahindra is a USD 4.9 billion company with 121,840+ professionals across 90 countries, helping over 935 global customers including Fortune 500 companies. Our innovation platforms and reusable assets connect across a number of technologies to deliver tangible business value to our stakeholders.

Tech Mahindra Business Process Services (BPS) is the BPO arm of Tech Mahindra which focuses on Business Process as a Service (BPaaS) and BPO services across various industries including Telecom, Financial Services, Retail, Energy, Hospitality, Hi-Tech, Agriculture, and Food & Beverage. Our approach goes beyond cost reduction to process optimization and ownership through automation and productivity improvements.

Tech Mahindra BPS delivers value for customers through flawless execution of a seamless suite of services that operate across the entire lifecycle of end users and covers both revenue and cost sides of the customers' business operations. The BPS includes Operations, BPM, and Consulting.

Tech Mahindra offers innovative and customer-centric information technology services and solutions, enabling Enterprises, Associates and the Society to Rise. Our technology and process expertise combined with investments in platforms and IP, have delivered significant transformation programs for Global Customers across customer services, IT and Network.

Tech Mahindra represents the connected world, offering innovative and customer-centric information technology services and solutions, enabling Enterprises, Associates and the Society to Rise.

Mahindra is a USD 4.9 billion company with 121,840+ professionals across 90 countries, helping over 935 global customers including Fortune 500 companies. Our innovation platforms and reusable assets connect across a number of technologies to deliver tangible business value to our stakeholders.

Tech Mahindra Business Process Services (BPS) is the BPO arm of Tech Mahindra which focuses on Business Process as a Service (BPaaS) and BPO services across various industries including Telecom, Financial Services, Retail, Energy, Hospitality, Hi-Tech, Agriculture, and Food & Beverage. Our approach goes beyond cost reduction to process optimization and ownership through automation and productivity improvements.

Tech Mahindra BPS delivers value for customers through flawless execution of a seamless suite of services that operate across the entire lifecycle of end users and covers both revenue and cost sides of the customers' business operations. The BPS includes Operations, BPM, and Consulting.

Tech Mahindra offers innovative and customer-centric information technology services and solutions, enabling Enterprises, Associates and the Society to Rise. Our technology and process expertise combined with investments in platforms and IP, have delivered significant transformation programs for Global Customers across customer services, IT and Network.

Don't provide your bank or credit card details when applying for jobs.

Researching careers? Find all the information and tips you need on career advice.

#J-18808-Ljbffr

  • Manila, National Capital Region, Philippines Via Appia Philippines Inc. Full time

    Qualifications:Bachelor's degree in a related field, such as Computer Science, Information Technology, or Cybersecurity5+ years of experience in information security managementIn-depth knowledge of information security standards, frameworks (e.g., ISO 27001 Lead Auditor / Lead Implementer, NIST Cybersecurity Framework), and regulatory requirements,...


  • Manila, National Capital Region, Philippines Teleperformance Full time

    The Opportunity | Head of Information SecurityTeleperformance began operations in the Philippines in 1996 and has grown to become a preferred offshore contact center outsourcing option serving hundreds of clients in the Philippines, as well as the North American, Australia, Asia and European markets. With over 55,000 employees across 22 sites, we pride...


  • Manila, National Capital Region, Philippines Asian Development Bank Full time

    Job DescriptionDescription –>The IT Specialist (Information Security) will be responsible for ensuring ADB remains cyber vigilant and prepared with particular focus on IT Risk, Outsourcing and Cloud security, third party risk management, operate the information classification and data leakage protection efforts, and manage cyber resiliency efforts within...


  • Manila, National Capital Region, Philippines Asian Development Bank Full time

    Job DescriptionDescription –>The IT Specialist (Information Security) will be responsible for ensuring ADB remains cyber vigilant and prepared with particular focus on IT Risk, Outsourcing and Cloud security, third party risk management, operate the information classification and data leakage protection efforts, and manage cyber resiliency efforts within...


  • Manila, National Capital Region, Philippines Eight Under Par (Pawnshop Operator), Inc. Full time

    Palawan Pay is a pioneering financial technology company committed to providing secure and innovative digital payment solutions. Our mission is to make financial services accessible and convenient for everyone. As we continue to expand, we are looking for a dedicated and experienced Information Security Officer to join our team and help protect our digital...


  • Manila, National Capital Region, Philippines InfiniVAN Inc. Full time

    WHAT WE OFFER: Premium HMO with 330,000 MBL and 3 dependents with 230,000 MBL each 50% discount on Shinagawa's Lasik and Aesthetics 20% discount with Shinagawa Pharmacy FREE Meal FREE Shuttle Service Friday Bonding Rewards and incentives Training and Engagement activities Career advancement opportunities Paid referral programABOUT US:InfiniVAN, Inc. is a...


  • Manila, National Capital Region, Philippines Asian Development Bank Full time

    Job DescriptionThe IT Specialist focused on Information Security plays a key role in maintaining ADB's cybersecurity posture. This position emphasizes IT Risk, Outsourcing and Cloud security, third party risk management, information classification, data leakage protection efforts, and cyber resiliency within ITD. Additionally, the role involves supporting...


  • Manila, National Capital Region, Philippines Asian Development Bank Full time

    Job DescriptionThe IT Specialist focused on Information Security plays a key role in maintaining ADB's cybersecurity posture. This position emphasizes IT Risk, Outsourcing and Cloud security, third party risk management, information classification, data leakage protection efforts, and cyber resiliency within ITD. Additionally, the role involves supporting...


  • Manila, National Capital Region, Philippines PM Consulting Full time

    Key Responsibilities:Assist in the development and implementation of information security policies, standards, guidelines and proceduresConduct periodic evaluations of internal control systems, document the results, make recommendations to remediate the identified risks, and monitor strategies to remedy information security control deficienciesConducts...


  • Manila, National Capital Region, Philippines PM Consulting Full time

    Key Responsibilities:Assist in the development and implementation of information security policies, standards, guidelines and procedures Conduct periodic evaluations of internal control systems, document the results, make recommendations to remediate the identified risks, and monitor strategies to remedy information security control deficiencies Conducts...


  • Manila, National Capital Region, Philippines Amdocs Full time

    Job ID: 188207Required Travel :MinimalManagerial - NoLocation: :Philippines- Manila (Customer Site)Who are we? Amdocs helps those who build the future to make it amazing. With our market-leading portfolio of software products and services, we unlock our customers' innovative potential, empowering them to provide next-generation communication and media...


  • Manila, National Capital Region, Philippines PM Consulting Full time

    Key Responsibilities:Support the development and execution of information security policies, standards, guidelines, and procedures.Conduct regular evaluations of internal control systems, document findings, provide recommendations for addressing risks, and oversee actions to fix security control issues.Deliver information security training and awareness...


  • Manila, National Capital Region, Philippines NICE Full time

    So, what's the role all about?The Information Security Engineer role involves helping with the implementation and management of security measures outlined by the Information Security (InfoSec) team. They make sure that the company meets regulatory and compliance standards by carrying out security initiatives. Their responsibilities include maintaining and...


  • Manila, National Capital Region, Philippines SupportNinja Full time

    We're obsessed with growth. From enabling companies to flourish, to helping careers bloom.SupportNinja was founded in 2015 to help companies solve for scale and connect them with a wider world of talent. Our vision is to show the world a better way to grow by developing the best people, implementing the latest technology, and challenging the status quo....


  • Manila, National Capital Region, Philippines Meralco Industrial Engineering Services Corporation Full time

    JOB SUMMARYThe Risk Management and Information Security Associate ensures Miescor United's ICT Systems and Infrastructure are consistently in compliance with key applicable standards, policies and procedures in terms of Business Continuity/Disaster Recovery and Information Security The Ruska and Information Security Associate shall assist in the development,...

  • Manager Security

    2 weeks ago


    Manila, National Capital Region, Philippines G I Group Network Security Technology Full time

    Posted: 7 days ago Openings: 1 Applicants: 333 We are looking for a Manager Security ( Physical Security ) for Delhi/NCR, Jaipur & Raipur (Chhattisgarh) locations.Kindly share your profiles on Job Role :Responsible for complete security administration of prestigious client sites.Make routine and surprise visits to site.Arrange guards recruitment, training,...


  • Manila, National Capital Region, Philippines The Philippine Stock Exchange, Inc. (PSE) Full time

    The Risk and Information Security Associate will be reporting to the Head of the Risk Management Office and will be primarily assigned to the subsidiaries and/or affiliates of The Philippine Stock Exchange, Inc. ("PSE").Job Responsibilities:Assists in the implementation of the Enterprise Risk Management Framework, Business Continuity Plans, and Information...

  • Security Manager

    2 weeks ago


    Manila, National Capital Region, Philippines Private Advertiser Full time

    Position Overview: The Security Manager for a construction setting is responsible for ensuring the safety and security of personnel, assets, and information on-site. They oversee all security operations, develop and implement security policies and procedures, and coordinate with internal teams and external stakeholders to mitigate risks and maintain a secure...

  • Security Manager

    3 weeks ago


    Manila, National Capital Region, Philippines Private Advertiser Full time

    Position Overview: The Security Manager for a construction setting is responsible for ensuring the safety and security of personnel, assets, and information on-site. They oversee all security operations, develop and implement security policies and procedures, and coordinate with internal teams and external stakeholders to mitigate risks and maintain a secure...

  • IT Security Manager

    2 weeks ago


    Manila, National Capital Region, Philippines Anchored Global Office Full time

    Security (Information & Communication Technology) Full time Add expected salary to your profile for insights This position is responsible for the following:Securing the Organization's IT Assets and Corporate & Client Data to ensure its Confidentiality, Availability, Integrity, and Privacy. Support the business scaling ambitions by embedding security,...