IT Risk Manager

1 day ago


Pasig, Philippines JG Summit Holdings Inc. Full time

Join to apply for the IT Risk Manager role at JG Summit Holdings Inc. Department Governance, Risk & Compliance Employee Type Probationary Responsibilities Develop and implement the IT Risk Management Framework, aligned with enterprise risk and international standards (ISO 27005, NIST RMF, COSO). Identify, assess, and prioritize technology and cyber risks across infrastructure, applications, and services. Maintain the IT risk register and facilitate regular risk reviews, treatment plans, and reporting to senior leadership. Coordinate risk assessments for new projects, technologies, and change initiatives. Lead the development and execution of the third-party IT risk management program, from vendor selection and onboarding to ongoing monitoring and offboarding. Conduct due diligence and risk assessments on third-party vendors with access to sensitive data or critical systems. Ensure third-party contracts include appropriate security and resilience clauses. Monitor third-party security posture and performance, ensuring compliance with established policies and standards. Manage third-party security incidents and breaches, coordinating response and remediation efforts. Develop and maintain an enterprise-wide Major Incident Management Plan to ensure swift and effective response to IT and operational incidents. Lead incident response activities, including identifying, assessing, and managing incidents to minimize business impact. Establish an Incident Response Team (IRT) and facilitate regular incident response simulations and drills. Facilitate coordination with the Chief Information Security Officer to ensure effective collaboration among IT, cybersecurity, and business stakeholders in resolving incidents and providing timely updates to leadership. Perform root cause analyses (RCA) post-incident, document findings, and recommend process improvements to prevent recurrence. Define and monitor incident management key performance indicators (KPIs) such as response times and resolution rates. Design and implement the organization’s Disaster Recovery Plans (DRP) to ensure resilience of critical systems and processes. Conduct Business Impact Analysis (BIA) to identify critical business functions, dependencies, and recovery time objectives (RTOs). Develop and maintain contingency plans for various disruption scenarios, including IT outages, cybersecurity events, and natural disasters. Lead BCP and DRP testing activities, including tabletop exercises and full-scale simulations. Collaborate with business units to identify continuity requirements, ensure stakeholder buy-in, and align plans with organizational priorities. Oversee vendor dependencies and third-party risk management as it relates to continuity and recovery planning. Communicate IT risk posture, incident status, and business continuity readiness to various stakeholders, including executive leadership, business unit heads, and technical teams. Serve as the key point of contact for incident escalation, recovery efforts, and crisis communication. Provide leadership during crisis situations, ensuring clear communication and decision-making to minimize operational disruption. Qualifications Bachelor’s degree in Information Technology, Risk Management, or a related field. 8+ years of progressive experience in Incident Management, Business Continuity, Disaster Recovery, or IT Operations, with at least 3-5 years in a leadership or managerial capacity. Demonstrated experience covering the full spectrum of IT risk, including operational risk, cybersecurity risk, and third-party risk. Excellent analytical, critical thinking, and problem-solving skills, with the ability to translate complex technical issues into business risks. Exceptional communication, presentation, and interpersonal skills, with the ability to influence and collaborate effectively with diverse stakeholders at all levels. Relevant Certifications (Highly desirable): CRISC, CISM, CISA, CBCP/MBCP, CBCI/FBCI, CTPRP, CISSP, ITIL 4 Practitioner: Incident Management, ITIL certifications. Experience Range: 6‑8 years. Job Posted #J-18808-Ljbffr


  • Tech Risk Analyst

    1 week ago


    Pasig Central Post Office P, Philippines IT Solutions Full time ₱1,200,000 - ₱2,400,000 per year

    What you'll doSecurity Questionnaire Management:Take ownership of client security questionnaires from end to end, including scoping, response drafting, information gathering, and coordination of internal reviews.Act as the primary liaison with internal stakeholders to manage timelines, track progress, and provide regular status updates.Technology Risk and...

  • Risk Manager

    1 week ago


    Pasig, Philippines TRBank, Inc. (A Rural Bank) Full time

    Responsibilities Develop short-term and long-term strategies for RMD, establishes goals, and assesses performance against these goals. Oversee the development, review, update, and dissemination of risk management policies & procedures concerning credit, interest rate, liquidity & operations risk, guided by BASELs risk management framework which includes risk...

  • IT Risk Manager

    4 days ago


    Pasig, National Capital Region, Philippines JG Summit Holdings Inc. Full time ₱1,200,000 - ₱2,400,000 per year

    DepartmentGovernance, Risk & ComplianceEmployee TypeProbationaryThe IT Risk Manager plays a critical role in managing the organization's technology risk exposure, ensuring a resilient and secure IT environment. This position leads the development and execution of risk management strategies, including third-party risk oversight, major incident management, and...

  • IT Risk Manager

    4 weeks ago


    Pasig, Philippines JG Summit Holdings Inc. Full time

    Overview The IT Risk Manager plays a critical role in managing the organization's technology risk exposure, ensuring a resilient and secure IT environment. This position leads the development and execution of risk management strategies, including third-party risk oversight, major incident management, and enterprise business continuity planning. The role...


  • Pasig, National Capital Region, Philippines TRBank, Inc. (A Rural Bank) Full time ₱1,200,000 - ₱3,600,000 per year

    About the RoleWe are seeking an experiencedRisk Management Department Headto lead the Bank's enterprise risk management function. The ideal candidate will ensure that effective risk frameworks, policies, and controls are in place while maintaining compliance with regulatory standards and aligning risk strategies with the Bank's overall objectives. This role...


  • Pasig, Philippines TRBank, Inc. (A Rural Bank) Full time

    Direct message the job poster from TRBank, Inc. (A Rural Bank) The Head of Risk Management will lead the development, implementation, and oversight of the bank’s enterprise-wide risk management framework. This role is responsible for identifying, evaluating, and mitigating financial, operational, credit, market, compliance, and reputational risks. The...


  • Pasig, Philippines Aurecon Full time

    Overview The core purpose of the IT Risk and Assurance Manager role is to proactively identify and manage a known and acceptable level of risk across all Aurecon Technology functions and to support information security assurance across critical technology services. This role will use their expertise to lead, develop, implement, enhance and continually...


  • Pasig, National Capital Region, Philippines Aurecon Full time ₱1,500,000 - ₱3,000,000 per year

    Just imagine your future with us…At Aurecon we see the future through a very different lens. Do you?Innovation, eminence and digital are at the heart of everything we do. Are you excited about the future?Are you driven by the opportunity to work on some of the most challenging and complex projects around the world and to learn from the best? We...

  • Risk Management Head

    4 weeks ago


    Pasig, Philippines HRTX Full time

    We are looking for a highly experienced Risk Management professional to join our growing organization as Head of Enterprise Risk. This is a newly created role that offers the opportunity to shape and lead the Banks Enterprise Risk Management (ERM) framework while working directly with the Chief Risk Officer. The role is an individual contributor capacity...


  • Pasig, Philippines City Savings Bank Full time

    Talent Acquisition Manager @ City Savings Bank | Psychology Degree Job Description Conducts IT risk assessments to identify, mitigate, and monitor potential risks affecting business continuity and regulatory compliance. Develops and enhances IT risk policies and frameworks, ensuring alignment with BSP regulations and global risk management standards such as...