Senior IT Security Risk

2 days ago


Taguig, Philippines ISACA Full time

Overview Job Title Senior IT Security Risk & Compliance Analyst Job Description Summary The Senior IT Security Risk & Compliance Analyst is responsible for managing daily security operations, supporting cross-regional initiatives, and ensuring compliance with internal and external security standards. The role involves collaboration with various teams, including Legal and Service Lines, and participation in vendor and client security assessments. The senior analyst also contributes to security awareness, governance, and continuous improvement of the organization's security posture. Job Description Job title: Senior IT Security Risk & Compliance Analyst Organizational unit: Technology and Data Solutions Responsibilities Manage day-to-day Business as usual security initiatives, ensuring deadlines, timelines, and set processes are managed and met throughout the year. Work with Regional Security Leads to ensure that cross-region activities are followed through and completed Collaborate with Service Line organizations and Legal in reviewing specialized training needs and requirements that are documented. Work with and manage security service desk L4 concerns. Initiate and shepherd swift remediation action to resolve issues. Capture information risk metrics into a central repository, analyse the metrics and ensure they are meaningful and tell the true story of the GISO operations. Determine, measure, and agree on actions to ensure that the C&W GISO is looked up to as a world leader and innovative in its methods. Participate in the corporate IT risk management program, and preparing reports to management. Lead in various security awareness activities and other initiatives as needed such as managing the security trainings and report the results to the management, participating in phishing campaigns. Perform vendor security assessments to ensure vendors meet internal information security requirements and help monitor them. Completes client security assessments and represents the firm security posture in client audits ensuring that internal information security requirements satisfy client needs. Take part of the implementation of new tools as well as seeking for new opportunities to improve the maturity of the client and vendor security programs. Support the continuing embedding of the Information Security Risk Framework and processes. Ensure information security governance and processes align with the wider program of information security processes and that they operate effectively. Qualifications Education Degree or equivalent work experience in computer science, information systems, or related field Other professional qualifications 4+ years of experience in one or more domains of information security such as vendor risk management, security governance, security operations, etc. Experience and thorough understanding of IT risk and compliance standards and industry best practice frameworks such as ISO 27001 / 2, NIST CSF, NIST SP800-53, CCSK Ability to collaborate with business and IT partners in task management and project coordination. Large multi-national company experience preferred. Language English (Fluent written and oral competency) Required skills Excellent planning and organizational skills to coordinate risk assessments, reporting, control, and assurance activities. Attention to detail and a track record of delivering high-quality reports of accurately presented data in a meaningful and appropriate way. Exceptional interpersonal skills to successfully communicate with stakeholders by phone, in documentation, via email, and in meetings and workshops. Strong communication and stakeholder engagement skills with the ability to influence and adapt the approach as required at all levels. Solid understanding of how an information security organization function. Able to analyse large amounts of information to deliver succinct, clear messages. Able to manage own time effectively and show judgment on prioritizing tasks, working on activities concurrently when required, and demonstrate flexibility to changing requirements, often at short notice. Team player. Competent in Microsoft Excel, PowerPoint, and SharePoint. Clauses The tasks, responsibilities, and related administration obligations included in this job description are not described in full, they may be supplemented to reflect the general and job-specific professional habits. The holder of the job must perform lawful instructions of the line manager and occasionally also perform tasks that do not fall within the job. INCO: Cushman & Wakefield #J-18808-Ljbffr



  • Taguig, Philippines Cushman & Wakefield Full time

    Overview Senior IT Security Risk & Compliance Analyst at Cushman & Wakefield. The role involves managing daily security operations, supporting cross-regional initiatives, and ensuring compliance with internal and external security standards. The senior analyst collaborates with Legal and Service Lines, participates in vendor and client security assessments,...


  • Taguig, Philippines Tenet Healthcare Full time

    Join to apply for the Senior IS Security Auditor role at Tenet Healthcare Overview and Reporting Relationship As part of the IS Audit & Compliance team, the IS Security Auditor will work with IS leadership to protect the confidentiality, integrity and availability of patient, employee, and business information in compliance with organization policies and...


  • Taguig, Philippines Metrobank Full time

    Metrobank Taguig, National Capital Region, Philippines Overview Here at Metrobank, we don’t simply hire employees—we hone future leaders. We provide opportunities that enhance your skills and unlock your talents, helping you evolve into a well-rounded individual. We supply you with all the pieces you need to do your best work, unleashing your full...


  • Taguig, National Capital Region, Philippines ESOL IT SERVICES INC. Full time ₱900,000 - ₱1,200,000 per year

    We are looking for a Network Security Engineer to help design, implement, and maintain the bank's security infrastructure. In this role, you will support enterprise security projects, enforce best practices, and work across teams to ensure systems and networks are secure. You will also serve as a subject matter expert in specific security domains and...


  • Taguig, National Capital Region, Philippines ESOL IT SERVICES INC. Full time ₱900,000 - ₱1,200,000 per year

    We are seeking an experienced Endpoint Security Engineer to manage and enhance the bank's endpoint security infrastructure. In this role, you will configure, maintain, and monitor endpoint protection tools, define system security standards, and support enterprise security projects. You will act as a subject matter expert for endpoint security technologies...


  • Taguig, Philippines Cushman & Wakefield Full time

    Job Title IT Security Risk and Compliance Analyst Job Description The IT Security Risk & Compliance Analyst is responsible for managing daily security operations, supporting cross-regional initiatives, and ensuring compliance with internal and external security standards. The role involves collaboration with various teams, including Legal and Service Lines,...


  • Taguig, National Capital Region, Philippines Cushman & Wakefield Full time ₱1,200,000 - ₱2,400,000 per year

    Job TitleIT Security Risk and Compliance AnalystJob Description SummaryJob SummaryThe IT Security Risk & Compliance Analyst is responsible for managing daily security operations, supporting cross-regional initiatives, and ensuring compliance with internal and external security standards. The role involves collaboration with various teams, including Legal and...


  • Taguig, National Capital Region, Philippines UPTC Full time $70,000 - $120,000 per year

    Job Qualifications:Bachelor's degree in Computer Science, Information Security, or a related technical fieldAt least 3 years of experience as a Security Consultant or Risk Officer.Solid understanding of regulatory compliance and its application to security and privacy (non-negotiable).Strong knowledge of network and application security risks and mitigation...


  • Taguig, Philippines DXC Consulting & Engineering Services Full time

    Responsibilities Assist in security assessments, audits, and vulnerability scans, providing detailed reports and recommendations. Monitor security events and incidents, escalating and responding to threats as necessary. Support policy implementation, ensuring that security policies are understood and followed. Collaborate with the security team to maintain...


  • Taguig, Philippines DXC Technology Inc. Full time

    Information Security Senior Analyst page is loaded## Information Security Senior Analystlocations: PHL - TAGUIG CITYtime type: Full timeposted on: Posted Todayjob requisition id: **Job Description:****Essential Job Functions:*** Assist in security assessments, audits, and vulnerability scans, providing detailed reports and recommendations.* Monitor security...