Security Compliance Manager

1 week ago


Antipolo, Philippines TaskUs Full time

About TaskUs: TaskUs is a provider of outsourced digital services and next-generation customer experience to fast-growing technology companies, helping its clients represent, protect and grow their brands. Leveraging a cloud-based infrastructure, TaskUs serves clients in the fastest-growing sectors, including social media, e-commerce, gaming, streaming media, food delivery, ride-sharing, HiTech, FinTech, and HealthTech.

The People First culture at TaskUs has enabled the company to expand its workforce to approximately 45,000 employees globally. Presently, we have a presence in twenty-three locations across twelve countries, which include the Philippines, India, and the United States.

It started with one ridiculously good idea to create a different breed of Business Processing Outsourcing (BPO) We at TaskUs understand that achieving growth for our partners requires a culture of constant motion, exploring new technologies, being ready to handle any challenge at a moment’s notice, and mastering consistency in an ever-changing world.

What We Offer: At TaskUs, we prioritize our employees' well-being by offering competitive industry salaries and comprehensive benefits packages. Our commitment to a People First culture is reflected in the various departments we have established, including Total Rewards, Wellness, HR, and Diversity. We take pride in our inclusive environment and positive impact on the community. Moreover, we actively encourage internal mobility and professional growth at all stages of an employee's career within TaskUs. Join our team today and experience firsthand our dedication to supporting People First.

What can you expect in a Security Compliance Manager role with TaskUs:

Think of yourself as someone who will be responsible for all aspects of Information Security Management and Cyber risk management, ensuring the integrity, confidentiality, and availability of information, networks and systems. You will establish and execute a multi-year strategic implementation roadmap for information security aligned with corporate business strategies and global IT strategy.

Imagine yourself going to work with one thing on your mind: that you will develop, maintain, publish and enforce up to date information security and physical security policies, procedures, standards, and guidelines.

Key Responsibilities:

  • Manage all enterprise security compliance requirements and Certifications, including PCI DSS, SOC 2, HIPAA/HITRUST, and multiple ISO standards including the base 27001. This will include serving as primary audit liaison, compiling all evidence/documentation requests, and reporting on the progress of audits to InfoSec and IT leadership.

  • Lead the Client Audit from an Auditee perspective and coordinate with all internal teams to align on the client audit processes. Provide all inputs, justification and documents required to the client auditors and ensure all requirements are completed and fulfilled well on time.

  • Owns the development and implementation of a corporate security & compliance awareness program. Develops training and awareness efforts for employees, contractors, and visitors to establish a “culture of security” to prevent or mitigate security incidents. Creates and propagates security awareness and training programs among employees.

  • Conducts research on emerging practices, services, protocols, and standards in support of system security and compliance enhancement and development efforts.

  • Ensures security compliance with applicable regulations and other state and federal laws. Keeps current on US and PH laws and industry data privacy and security regulations.

  • Assist in developing and maintaining security operations procedures and processes, as well as working with business units outside of InfoSec to formally document policies and procedures.

  • Recommends and supports deployment of additional security products and tools, or enhancements to existing tools, to mitigate security risk and detect/remediate compromises.

  • Work with security engineers for the optimal configuration of network and host-based security platforms in line with compliance requirements.

  • Provide Incident Response support as needed in response to information security-related events. In the event of security incident response, participate in the analysis, troubleshooting, and investigation of security-related information systems anomalies based on security platform reporting, network traffic, log files, and host-based and automated security alerts.

  • Have good experience in Data Governance and Business Impact Analysis (BIA).

  • Evaluate systems using vulnerability scanners and manual techniques to verify system security settings and configurations.

  • Participate in DRP exercises and continuous improvement processes. Assists in designing and implementing disaster recovery and business continuity plans, procedures, audits, and enhancements.

  • Performs other duties as assigned.

Required Qualifications:

  • At least 8 years of experience in a combination of Information security, risk management, and IT jobs (preferably in a BPO environment)

  • Has 5 years of experience as a Manager of IT security with a job history demonstrating increasing levels of responsibility

  • Proven track record and experience in developing security policies, procedures, and standards while successfully executing security projects

  • Experience with information security frameworks such as COBIT, COSO, ITIL, is needed.

  • Has knowledge and understanding of relevant legal and regulatory requirements, including requirements of PCI DSS, ISO 2700x, SOC 2, HIPAA/HITRUST, Data Protection.

  • Knowledgeable on security issues, techniques and implications across the whole IT Infrastructure

  • Proficient in performing enterprise risk, business impact, and vulnerability assessments and defining risk mitigation strategies

  • With a strong understanding of the business impact of security tools, technologies and policies

  • Ability to develop and articulate a compelling business case for recommended actions

  • Direct experience in the Vulnerability Scanning and Penetration Testing process and other relevant software tools is a plus

  • Strong project management and leadership skills

  • Strong problem-solving skills with well-organized and structured work habits

  • Demonstrated the ability to manage several projects simultaneously while meeting strict deadlines and objectives

  • Excellent verbal and written communication skills with the ability to communicate security concepts to both technical and non-technical audiences at all levels

  • Excellent interpersonal and collaboration skills with the ability to function well in a team or independently

  • Ability to lead and motivate cross-functional teams to achieve strategic goals

  • Has poise and has the ability to maintain composure in high-stress situations

Education / Certifications:

  • BS degree in Computer Science, Engineering or equivalent work experience; an M.B.A. or M.S. in information security is a plus with CISA and/or CISSP Certifications.

Work Location / Work Schedule / Travel:

  • TBD

How We Partner To Protect You: TaskUs will neither solicit money from you during your application process nor require any form of



  • Antipolo, Philippines TaskUs Full time

    About TaskUs: TaskUs is a provider of outsourced digital services and next-generation customer experience to fast-growing technology companies, helping its clients represent, protect and grow their brands. Leveraging a cloud-based infrastructure, TaskUs serves clients in the fastest-growing sectors, including social media, e-commerce, gaming, streaming...


  • Antipolo City, Calabarzon, Philippines beBeeAuditor Full time ₱864,300 - ₱1,072,300

    Job DescriptionAn Information Technology Auditor performs various tasks, including conducting SOC 1 and SOC 2 audits, analyzing and strengthening tech controls to ensure robust security, and sharing impactful findings with management. They also analyze client operations and discover ways to enhance them, communicate clearly with clients and teammates, lead...


  • Antipolo City, Calabarzon, Philippines beBeeSecurity Full time $100,000 - $120,000

    We are seeking a seasoned Security Analyst to join our team and take an active role in advancing security offering and capabilities to better serve clients. The successful candidate will be responsible for monitoring and managing client security systems including endpoint protection, email security, log aggregation and SIEM solutions, network security...


  • Antipolo City, Calabarzon, Philippines beBeeCybersecurity Full time $100,000 - $150,000

    Cybersecurity Compliance ManagerOur organization is dedicated to scaling secure business operations by developing and implementing cutting-edge security and compliance programs.Main Responsibilities:Create, write, and maintain policies and procedures to ensure compliance with SOC 2, ISO 27001, and other relevant standards.Oversee SOC 2 Type 1 and Type 2...


  • Antipolo City, Calabarzon, Philippines beBeeCompliance Full time $80,000 - $100,000

    Join our team to scale your business securely with cutting-edge security and compliance programs. At a fast-growing startup, we specialize in compliance frameworks like SOC 2, ISO 27001, and GDPR, empowering companies to meet regulatory standards and strengthen their cybersecurity posture from day one.We are seeking an experienced Senior Cybersecurity...


  • Antipolo City, Calabarzon, Philippines beBeeSecurity Full time ₱1,800,000 - ₱2,500,000

    Job Title: Information Security Assurance LeaderJob OverviewThis role involves leading and managing security assurance programs, ensuring compliance with regulatory and internal standards. It also includes overseeing external audits and collaborating with auditors to provide necessary documentation.Key ResponsibilitiesLead and manage security assurance...


  • Antipolo City, Calabarzon, Philippines beBeeCompliance Full time $60,000 - $80,000

    Job DescriptionWe are seeking a Compliance Analyst to join our team. In this role, you will be responsible for tailoring security protocols to support client security journeys. You will assist vCISOs with security assessments and technical implementation projects, provide security education, and conduct regular phishing tests for clients.Key...


  • Antipolo City, Calabarzon, Philippines beBeeCyberSecurity Full time $100,000 - $120,000

    Job Title: Cyber Security SpecialistJob Description:Operate and manage the Security Operations Centre (SOC) across multiple environments.Serve as a point of escalation for threat detection and response incidents.Monitor and analyse security alerts, events, and logs using Security Information and Event Management (SIEM) tools.Conduct penetration testing...


  • Antipolo City, Calabarzon, Philippines beBeeCloud Full time $90,000 - $120,000

    Are you a strategic security leader looking to make a meaningful impact in the field of cloud security?This role is perfect for those who want to be at the forefront of ensuring the security and compliance of our cloud infrastructure.Key Responsibilities:Develop and maintain secure cloud architecture, aligned with NIST 800-53 controlsDesign and implement...

  • Cloud Security Leader

    2 weeks ago


    Antipolo City, Calabarzon, Philippines beBeeCloud Full time $124,000 - $151,000

    Job TitleSenior Technology Auditor"> Job Description The Senior Technology Auditor will lead and execute audits focused on cloud environments, cybersecurity, and technical controls. Perform risk assessments to identify threats and vulnerabilities across cloud environments, infrastructure, and systems, and recommend mitigation strategies. ...