virtual Chief Information Security Officer
1 week ago
The Virtual Chief Information Security Officer (vCISO) plays a critical role in providing strategic cybersecurity leadership and guidance to several of our small and medium-sized business (SMB) clients. This role involves delivering on-demand CISO services tailored to the unique needs of each client, ensuring the effective management of information security risks and compliance requirements. The vCISO collaborates closely with client executives, offering expert insights to protect information assets, enhance security posture, and maintain regulatory compliance. The vCISO will oversee a comprehensive information security program, including: Information Security Leadership Risk Management Security Governance Compliance Alignment Security Monitoring and Reporting Security Architecture and Technology Incident Response and Management Vendor Risk Management Security Awareness and Training The ideal candidate must have a robust technical background, extensive experience in security and compliance, exceptional customer-facing skills, and an executive presence that inspires confidence. This role requires strategic vision, leadership, and excellent communication skills to effectively guide SMB clients in establishing and maintaining a secure digital environment. Key Responsibilities: 1. Strategic Information Security Leadership: Develop a deep understanding of each client's business environment, compliance requirements, and cybersecurity challenges. Collaborate with client executives to design and implement comprehensive cybersecurity programs aligned with business objectives. Establish trusted advisor relationships with client leadership to enhance governance, risk management, and compliance initiatives. Proactively anticipate emerging security and compliance challenges, providing strategic guidance to mitigate potential risks. 2. Risk Management and Compliance: Effectively manage IT risks to align with business goals and reduce risk exposure. Assist clients in achieving and maintaining compliance with relevant frameworks, including ISO27001, SOC2 Type2, CMMC, HIPAA, PCI, GDPR, and other industry standards. Conduct security assessments and deliver detailed presentations of findings and recommendations. Facilitate annual security ceremonies, including risk assessments, tabletop exercises, and third-party audits. 3. Security Architecture and Technology Oversight: Provide strategic security guidance and leadership to internal GXA IT teams and client IT teams. Ensure the implementation of effective security controls aligned with the client’s security program. Conduct research to identify security enhancements and provide informed recommendations to clients. Stay up-to-date with emerging information technology trends and evolving security standards. 4. Incident Response and Cybersecurity Management: Develop and implement effective incident response plans to minimize the impact of security breaches. Prepare and lead Information Security Review meetings to communicate risks, incidents, and mitigation strategies. Provide guidance during security incidents, ensuring a coordinated response to minimize impact and recovery time. 5. Vendor Risk Management and Data Protection: Collaborate with clients to manage and assess the security risks associated with third-party vendors and suppliers. Assist clients in identifying and safeguarding sensitive data, ensuring data privacy through encryption, access controls, and data loss prevention measures. 6. Security Awareness and Training: Promote a culture of security awareness among client employees to minimize human error and social engineering risks. Design and implement security training programs tailored to each client's needs. 7. Client Relationship Management: Build and maintain strong client relationships through regular meetings, strategic engagements, and transparent communication. Inspire clients by showcasing the value of effective information security in reducing cyber risks and enhancing business resilience. Foster a positive client experience by being engaged, energetic, and solution-oriented. Results and Key Accountabilities: Effective Risk Management: Ensure that clients’ information security risks are identified, assessed, and mitigated effectively. Enhanced Security Posture: Improve clients' overall security posture through the implementation of robust security controls, policies, and procedures. Compliance Adherence: Guide clients in complying with relevant regulations and industry standards, including GDPR, HIPAA, ISO 27001, and NIST. Cybersecurity Incident Response: Develop and implement incident response plans to minimize the impact of security incidents and breaches. Security Awareness: Promote a culture of security awareness to reduce risks associated with human error and social engineering. Vendor Risk Management: Assess and manage security risks related to third-party vendors and suppliers. Data Protection: Help clients safeguard sensitive data with appropriate security measures, including encryption and access controls. Client Relationship Building: Engage with clients regularly to build and maintain strong business relationships. Operational Excellence: Maintain high standards of discipline, excellence, and diligence to deliver consistent results. Client Engagement and Inspiration: Inspire clients to see the potential of InfoSec in reducing cyber risks and achieving business objectives. Relevant certifications such as CISSP, CISM, CISA, or CCISO are highly desirable. Prior MSP or MSSP in similar role or experience overseeing multiple clients is required. Strong IT background and skills. Exceptional communication abilities and executive presence are essential. Possessing a bachelor's degree in computer science is a desirable qualification. Exhibiting high levels of energy and a determined drive is imperative. Capable of handling multiple tasks and adept at adapting swiftly to changing circumstances. Self-motivated and able to excel in a fast-paced working environment. 7+ years of experience in information security leadership, with a focus on governance, risk management, and compliance. Proven experience as a CISO, vCISO, or in a senior cybersecurity leadership role. Strong knowledge of security frameworks and compliance standards, including ISO27001, SOC2, NIST, GDPR, and HIPAA. Expertise in risk management, incident response, security architecture, and vendor risk management. Advanced proficiency in cybersecurity tools, technologies, and best practices. Exceptional communication, leadership, and client relationship management skills. #J-18808-Ljbffr
-
Chief Security Officer
3 days ago
Quezon City, Philippines Tap Growth ai Full timeJoin to apply for the Chief Security Officer role at Tap Growth ai We’re Hiring: Chief Security Officer! We are looking for a highly skilled and experienced CSO to lead security initiatives in Quezon City, Philippines. The ideal candidate will develop and implement security strategies that protect our assets, information, and personnel while ensuring...
-
Human Resources Assistant
4 weeks ago
Zamboanga City, Philippines Chief Marketplace Officer Full timeChief Marketplace Officer is a full-service Amazon marketing agency helping brands grow and thrive in the eCommerce space. We’re a fast-paced, results-driven team that values accountability, communication, and growth. We’re looking for an HR Assistant to support our expanding team and ensure smooth day-to-day HR operations. Location: Remote...
-
Chief Information Officer
3 weeks ago
Cebu City, Philippines Digital Smarthands Inc. Full timeThe Chief Information Officer (CIO) is responsible for providing strategic direction and leadership in all aspects of the organization's information technology software/systems, data security, and digital innovation. The CIO builds a capable tech team to enhance productivity, system reliability, and overall organizational performance. Key Responsibilities...
-
Quezon City, Philippines Tap Growth ai Full timeA technology firm in Quezon City is seeking a highly skilled Chief Security Officer to lead security initiatives. The ideal candidate will develop and implement security strategies to protect assets and ensure compliance. Responsibilities include conducting risk assessments, overseeing security operations, and promoting security awareness across departments....
-
Chief Security Officer
2 weeks ago
Quezon City, National Capital Region, Philippines ACI, Inc. Full time ₱1,500,000 - ₱3,000,000 per yearAraneta City is looking for Chief Security Officer who will be responsible for the overall security and safety of the Araneta City (shopping malls, entertainment venues, office buildings, hotels and residential condominiums), develops and implements security strategies and traffic management plan, manages security and traffic personnel, coordinates and...
-
Chief Information Officer
2 weeks ago
Makati City, National Capital Region, Philippines PRO INTEGRATE WORLD IT CONSULTING INC. Full time ₱600,000 - ₱1,800,000 per yearChief Information Officer (CIO)Location: Makati CityWork Setup: HybridEmployment Type: Full-TimeWe are urgently hiring a Chief Information Officer (CIO) for one of our top enterprise clients in the Philippines. The CIO will be responsible for leading the organization's overall technology strategy and digital transformation initiatives.This role requires a...
-
Information Security Officer
2 weeks ago
Makati City, National Capital Region, Philippines PSBank Official Full time ₱1,200,000 - ₱2,400,000 per yearJob PurposeResponsible for coordinating walkthroughs and obtaining supporting documents from relevant departments, necessary to assist both internal and external auditors/reviewers. The Information Security Compliance Officer shall, keep track of ISG related outstanding issues to support the Manager in ensuring timely resolution. Information Security...
-
Chief Technology
2 weeks ago
Quezon City, Philippines Human Capital Consultancy Services Full timePosted: 5 days ago Openings: 1 Applicants: 100+ 12–18+ years in cybersecurity, with leadership in SOC operations, MSSP architecture, or cybersecurity systems integration. Technical Expertise: SIEM/SOAR, AI/ML in cybersecurity, OT/ICS security, threat intelligence, and automation frameworks. Required Candidate profile Experience working for a Cybersecurity...
-
Chief Financial Officer
3 weeks ago
Quezon City, Philippines AMA Education System Full timeChief Financial Officer (Fund Generation) A Chief Financial Officer (CFO) for Funds Generation is responsible for leading strategic financial initiatives to secure capital for growth and operations, overseeing financial planning, building investor confidence, managing financial risk, and ensuring accurate reporting. This role requires expertise in financial...
-
Cloud Information Security Engineer
3 weeks ago
Quezon City, Philippines Manulife Full timeManulife Quezon City, National Capital Region, Philippines We’re looking for a Cloud Information Security Engineer to join our Enterprise Technology & Services team at MBPS. In this role you will partner with multiple service areas within ETS to protect information assets, conduct risk assessments, consult on projects, and implement security controls with...