
IT Risk Consultant
7 days ago
The IT Risk Consultant will be responsible for developing, implementing, and maintaining risk management, IT audit, and information security frameworks. This role focuses on creating policies and procedures, conducting IT risk assessments, and building IT audit programs aligned with industry best practices and regulatory requirements.
Key Responsibilities:
Policy & Compliance:
- Ensure compliance with relevant regulations (e.g., ISO 27001, NIST, GDPR, local data privacy laws).
- Assist in the development and maintenance of IT security policies, standards, and procedures.
IT Audit Program Development and Support
- Design and implement IT audit programs covering IT General Controls (ITGC) domains such as Access Management, Change Management, Operations, and System Development Lifecycle (SDLC).
- Coordinate and execute internal audits, reviews, and control testing activities.
- Assist in external audits and regulatory inspections as needed.
- Conduct enterprise-level and system-level IT risk assessments and audits to identify vulnerabilities in systems, networks, and processes.
- Evaluate the effectiveness of existing controls and recommend improvements.
- Develop and implement risk mitigation strategies and action plans.
- Monitor remediation efforts and track progress on risk reduction initiatives.
- Support management in defining risk appetite, metrics, and reporting for IT risk.
- Stay updated on emerging IT risks, threats, and best practices.
- Participate in training and awareness programs for staff.
Qualifications:
- Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or related field.
- 1-3+ years of experience in IT risk management, IT audit, or information security.
- Exposure to writing IT/security policies or procedures.
- Familiarity with ITGC domains and control testing.
- Basic understanding of ISO 27001, COBIT, or NIST frameworks.
- Strong analytical, problem-solving, and communication skills.
- Relevant certifications (e.g., CRISC, CISA, CISSP, ISO 27001 auditor/implementer) are a plus.
Preferred Skills:
- Experience with risk management tools and GRC platforms.
- Understanding of cloud security, network security, and application security.
- Ability to work independently and collaboratively in a fast-paced environment.
-
Risk And Security Assessment Consultant
1 week ago
, Metro Manila, Philippines Buscojobs Full timeJob descriptions and qualifications provided below have been reformatted for clarity and corrected structure while preserving the original information. Security Risk Assessment Consultant Location: Mandaluyong, National Capital RegionSalary: ₱ - ₱ Employer: Bank of Commerce (Philippines) Job Summary: Oversee employees, consultants, subsidiaries and...
-
Au Risk Advisory Consultant
5 days ago
, Metro Manila, Philippines Buscojobs Full timeDeliver Internal Assurance for a Global Leader in Audit and Tax Our client is the gold standard in audit, tax, and ESG consulting. They've earned seven consecutive Client Choice Awards and dominate the space where governance, performance, and innovation intersect. Job Description AU Risk Advisory Consultant is a key position with responsibility for...
-
Senior Consultant – Climate Risk
1 week ago
, Metro Manila, Philippines Buscojobs Full timeOverview Summary of Role: We are seeking a Senior Consultant for our Climate Risk and Resilience team in APAC focused on guiding clients to comply with regional APAC climate related reporting regimes like ISSB. A critical skill sought is the ability to evaluate and analyze climate-related risks and opportunities for clients across multiple sectors including...
-
Information Security Risk Consultant
3 weeks ago
, Metro Manila, Philippines Optum Full time• Perform audits to identify control gaps and implement corrective action plans • Ensure alignment of security policies/standards with IT infrastructure frameworks (e.g., ISO 2700x, NIST, ITIL) • Monitor compliance with corrective action plans, and address non-compliance issues appropriately • Demonstrate understanding of discovery technologies to...
-
Gds Consulting Non Fs Technology Risk
1 week ago
, Metro Manila, Philippines Buscojobs Full timeGds Consulting Non Fs Technology Risk Consultant 8 Taguig, National Capital Region EY Posted today Job Viewed Tap Again To Close Job Description At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice...
-
Operational Risk Consultant
1 day ago
, Metro Manila, Philippines Buscojobs Full timeMediCard Phils., Inc. is one of the country's leading HMOand the only HMOfounded and run by Doctors. Since its inception, the concept of service-oriented total health care has been the molding ideal of MediCard. The competition is vast, and the benefits being offered by the competitors are tempting. However, MEDICard has taken the lead in providing...
-
Gds Consulting Fs Technology Risk Staff
1 week ago
, Metro Manila, Philippines Buscojobs Full timeGDS Consulting – EY | Non-financial Services – Third-Party Risk Management (NFS TPRM) – Senior Taguig/Posted today Job Description As part of EY GDS NFS TPRM team, you will help clients enhance their business performance by translating their strategies into realities. Working with EY high-performing teams, you will help clients to grow, innovate,...
-
Sr&T Senior Consultant, Regulatory
1 week ago
, Metro Manila, Philippines Buscojobs Full timeSr T Senior Consultant Regulatory Financial Risk (ORIX METRO Leasing and Finance Corporation) Makati City, National Capital Region Salary: ₱ - ₱ Posted today Job Description Role Overview: The primary purpose of this role is to provide additional support in terms of analytical work such as model validation and implementation. Specific duties and...
-
, Metro Manila, Philippines Buscojobs Full timeOverview The opportunity We’re looking for Staff with expertise in Third-Party Risk Management to join the leadership group of our EY- NFS TPRM team. This is a fantastic opportunity to be part of a leading firm while being instrumental in the growth of a new service offering. Responsibilities Participate in the delivery of Third-Party Risk Management...
-
Info Security Risk Consultant
1 week ago
, Metro Manila, Philippines Buscojobs Full timeInformation Security Risk Consultant / IT Compliance and Audit Posted today Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel...