Risk and Compliance Specialist- Applications
5 days ago
Responsibilities: 1. Develop Ethics Strategies a. Lead the design, development, implementation, update and enforcement of organization policy and ethics compliance strategies pertaining to applications. b. Help in the alignment of company’s operation with industry data protection regulation and ethics standard. c. Collaborate with development teams to integrate security best practices from requirements gathering to design, development, and testing. d. Work closely with DevOps, QA, and Product teams to ensure security is embedded throughout the SDLC. 2. Regulatory Compliance a. Ensure ISO 27001 compliance for application-related security controls, supporting audits and certification efforts. b. Evaluate application security risks and align security practices with compliance frameworks such as NIST, CIS, and SOC 2. c. Monitor and analyze changes in data privacy regulations and assist in adapting the organization’s practices to remain compliant. d. Help in conducting regular audits and assessments to identify potential compliance gaps and implement corrective actions. e. Monitor third-party applications, APIs, and dependencies for compliance and security vulnerabilities. f. Maintain policies and documentation related to application security governance. 3. Risk Management and Mitigation a. Take part in identification and assessment of IT risks across all business units, including internal and third-party data processing practices with relation to applications. b. Conduct secure coding reviews, threat modeling, and risk assessments aligned with OWASP Top 10, SANS 25, and other frameworks. 4. Internal Training and Awareness a. Develop and deliver training programs to raise awareness of cybersecurity, policies, ethics standards, and compliance requirements across the organization. b. Participate in security awareness training for development and product teams. c. Foster awareness of the organization’s ethical standards, ensuring employees understand the importance of cybersecurity awareness in day-to-day operations. 5. Incident Management and Breach Reporting a. Take part in responding to cybersecurity incidents, breaches, or violations and also take part in investigations, reporting findings, and implementing corrective actions with relations to applications. b. Ensure compliance with breach notification requirements, including timely reporting to regulators and affected individuals when necessary. c. Work with legal and security teams to develop and implement incident response plans specific to data privacy breaches. 6. Contribute to preparation and presentation of regular reports on compliance status, data privacy incidents, and strategic initiatives to senior leadership. 7. Stay informed and up to date. QUALIFICATIONS: A. Minimum Education Bachelor's degree in Information Security, Computer Science, or a related field. B. Minimum Experience/Training 3+ years of experience in risk management, compliance, or application security. Knowledge of risk management and developing mitigation strategies. Strong knowledge of ISO 27001, NIST 800-53, OWASP, and secure coding standards. Experience conducting security assessments, penetration testing, or vulnerability analysis. Familiarity with DevSecOps, CI/CD security tools, and cloud security best practices. Ability to translate security and compliance requirements into technical and business-friendly language. Relevant certifications (preferred): CISSP, CISM, CRISC, ISO 27001 Lead Auditor, or OSCP. C. Competency Result-oriented, team player, fast learner and dynamic. Working knowledge in information security and data protection. Excellent analytical and problem-solving skills to evaluate risks and create practical solutions. Strong communication and interpersonal skills both written and verbal, with the ability to convey complex concepts to non-technical stakeholders. Can work with minimum supervision. Self-starter and highly motivated. Strong organizational and project management skills with ability to manage multiple compliance initiatives and tasks simultaneously. Takes responsibility for timely completion of work. Passion to acquire and update skills and the ability to learn new tools and techniques quickly. #J-18808-Ljbffr
-
Risk and Compliance Specialist- Applications
1 week ago
Makati City, National Capital Region, Philippines Trends Group, Inc. Full time ₱600,000 - ₱1,200,000 per yearResponsibilities: Develop Ethics Strategiesa Lead the design, development, implementation, update and enforcement of organization policy and ethics compliance strategies pertaining to applications.b Help in the alignment of company's operation with industry data protection regulation and ethics standardc Collaborate with development teams to integrate...
-
Risk and Compliance Specialist
1 week ago
Makati, Philippines AIA Hong Kong Full timeAt AIA we’ve started an exciting movement to create a healthier, more sustainable future for everyone. It’s about finding new ways to not only better people's lives, but to better the communities and environments we live in. Encompassing our ambition of helping a billion people live Healthier, Longer, Better Lives by 2030. And to get there, we need...
-
Risk and Business Continuity Specialist
3 days ago
Makati City, National Capital Region, Philippines Advanced Outsourcing and Business Services Inc. Full time ₱600,000 - ₱1,200,000 per yearRisk and Business Continuity Specialist Ayala, Makati| Full-Time | HybridJob Highlights: Join a well-established industry leader Key role in enterprise risk and continuity management Professional development opportunities in a dynamic environmentAbout the Role:We are seeking a Risk and Business Continuity Specialist to support the implementation of...
-
Risk and Business Continuity Specialist
24 hours ago
Makati City, National Capital Region, Philippines Advanced Outsourcing and Business Services Inc. Full time ₱1,200,000 - ₱2,400,000 per yearRisk and Business Continuity Specialist Ayala, Makati| Full-Time | Hybrid Job Highlights: Join a well-established industry leader Key role in enterprise risk and continuity management Professional development opportunities in a dynamic environmentJob Description:We are seeking a Risk and Business Continuity Specialist to support the implementation of...
-
Compliance and Risk Officer
3 weeks ago
Makati, Philippines China Bank PH Full timeHR Assistant @ China Bank PH | Strategic Talent Sourcing The Compliance and Risk Officer (CRO) supports the Compliance and Risk Department (CRD) Head in coordinating with the Bank's Compliance Group. The role assists in monitoring regulatory developments, helping assess their impact on the Group's operations, and providing support in delivering advisory...
-
Audit Compliance Specialist
23 hours ago
Makati City, National Capital Region, Philippines Advanced Outsourcing and Business Services Inc. Full time ₱900,000 - ₱1,200,000 per yearAudit Compliance SpecialistAudit Location: Ayala, Makati Full-time | At least 2 years of relevant experience Bachelor's Degree in Accounting, Engineering , IT, or Internal AuditingAbout the RoleThe Audit Specialist is responsible for leading and executing internal audit engagements that assess the effectiveness of risk management, internal controls, and...
-
Compliance Specialist
3 weeks ago
Makati, Philippines Keb Hana Bank-Manila Branch Full timeAre you ready to take your career to the next level? KEB Hana Bank - Manila is looking for a Compliance Specialist who will be responsible in coordinating the bank activities as it relates to local regulatory matters and assist the Chief Compliance Officer in the development, implementation and in maintaining compliance program for the bank. Duties and...
-
Risk and Compliance Manager
3 weeks ago
Makati, Philippines Hoya Full timeRisk and Compliance Manager Hoya Makati, National Capital Region, Philippines Founded in 1941 in Tokyo, Japan, Hoya is a global med-tech company, and a leading supplier of innovative high-tech and medical products. Hoya is active in the fields of healthcare and information technology providing eyeglasses, medical endoscopes, intraocular lenses, optical...
-
Global Finance Risk
5 days ago
Makati, Philippines Arcadis Consulting Middle East Limited Full timeThe main duties include but are not limited to: Identifies and evaluates potential risks and controls that could impact the organization’s financial business processes and financial statements. Supports the Global Finance Risk & Compliance team in the preparation and implementation of the annual test plan. Conducts regular reviews and testing of financial...
-
Compliance Specialist
4 weeks ago
Makati, Philippines PJ Lhuillier Group of Companies Full timeTalent Acquisition Specialist | HR Management, Recruitment Responsibilities: Conduct institutional risk assessments and assign company scores. Perform compliance testing and execute annual testing plans. Draft compliance testing reports and conduct gap analysis based on BSP (Bangko Sentral ng Pilipinas) requirements. Monitor and follow up on action plans to...