IT Security Risk Assessment Officer

3 days ago


Taguig, Philippines Metrobank Full time

Metrobank Taguig, National Capital Region, Philippines Overview Here at Metrobank, we don’t simply hire employees—we hone future leaders. We provide opportunities that enhance your skills and unlock your talents, helping you evolve into a well-rounded individual. We supply you with all the pieces you need to do your best work, unleashing your full potential to help you secure your future and lead a fulfilling career. With Metrobank's strong heart for the community, you have the chance to give back and make worthwhile contributions to our nation’s economic and social development. Position Position Title: Security Assurance and Assessment Officer Responsibilities Develop tactical plans and programs for the establishment and maintenance of the Bank’s third party information security risk management framework and ensure alignment with the enterprise risk framework Perform third party security, system security and information asset based risk assessment. Analyze and review of complex bank processes, application system and network security implementation and third party relationships to identify potential risk including the determination of risk mitigation strategies Analysis and review of complex application system and network security implementation on the current production environments to identify potential risk including the determination of risk mitigation strategies Recommend strategies to control risks from inadequate protection of confidentiality, integrity and availability of information assets, processing facilities and connected services Role Exposure Prepare tactical plans and/or programs in the conduct of information, third party and system security risk assessments Identify the Bank’s critical assets, threats to these assets, vulnerabilities, and reviews adequacy of existing security controls to safeguard the confidentiality, integrity and availability of information Coordinate and assess the security performance of third-party vendors that collect, process, transmit, and store client data Performs threat modelling-based system security risk assessment for all IT systems and other IT assets, as applicable Analyze and assess the impact of changes in process, technical changes and systems enhancements and third party relationships Review adequacy of existing security controls to safeguard the confidentiality, integrity and availability of information and information processing facilities to mitigate information security risk Formulates, recommends information security policies and procedures on physical, environmental and personnel security with respect to results of information security assessment activities Coordinate across all business units and stakeholders in gathering information in preparation to the conduct of information, third party and system security risk assessment Articulate security findings and risk remediation strategies through issuance of risk assessment report and track status of risk mitigation activities Maintain and update the security risk register including status of remediation activities Execute and monitor the accomplishment of risk assessment plans and programs Prepare clear risk assessment reports for non-technical audiences Track and follow up on the status of mitigation activities Maintain and track library of records and documentation Investigate applicable reported incidents related to information handling and data privacy Keep abreast of information, IT and third party security trends and regulatory changes and apply them in daily work Review the work of colleagues and provide guidance as needed Collaborate with the Department Head to implement programs for continuous improvement of the bank’s information security plans and strategies Perform other information security risk management and compliance duties as directed Qualifications Bachelor's Degree Experience in IT general controls and auditing, preferably with a strong background in system security risk assessments Ability to perform information security risk-based prioritization decisions, analyze business risk, and articulate complex risk trade-offs Experience in project security technical reviews and risk assessment Analytical and risk identification skills to analyze varied information security risks and develop recommendations Knowledge of security best practices and awareness of common and emerging threats Professional Certifications may include CISA, CISM, CRISK, PCI-DSS, ISO-27001 LA or equivalent Other Details Rank: Junior Officer Unit: Financial and Control Sector / Information Security Division / Security Quality Assurance and Risk Assessment Department Location: Metrobank Center, BGC, Taguig City #J-18808-Ljbffr



  • Taguig, National Capital Region, Philippines Metrobank Full time ₱120,000 - ₱180,000 per year

    Be #InGoodHands with MetrobankHere at Metrobank, we don't simply hire employees—we hone future leaders. We provide opportunities that enhance your skills and unlock your talents, helping you evolve into a well-rounded individual. We supply you with all the pieces you need to do your best work, unleashing your full potential to help you secure your future...


  • Taguig, Philippines Metrobank Full time

    Metrobank Taguig, National Capital Region, Philippines Here at Metrobank, we don't simply hire employees—we hone future leaders. We provide opportunities that enhance your skills and unlock your talents, helping you evolve into a well-rounded individual. We supply you with all the pieces you need to do your best work, unleashing your full potential to help...


  • Taguig, National Capital Region, Philippines Metrobank Full time ₱1,200,000 - ₱2,400,000 per year

    Be #InGoodHands with Metrobank Here at Metrobank, we don't simply hire employees-we hone future leaders. We provide opportunities that enhance your skills and unlock your talents, helping you evolve into a well-rounded individual. We supply you with all the pieces you need to do your best work, unleashing your full potential to help you secure your...


  • Taguig, Philippines DigiPlus Interactive Corp Full time

    Information Security Assurance and Assessment Officer The Information Security Risk Officer is responsible for identifying, analyzing, and managing information security risks in alignment with ISO 27001, and other relevant standards. This role supports the development and maintenance of the organization’s Information Security Management System (ISMS) by...


  • Taguig, Philippines DigiPlus Interactive Corp Full time

    DigiPlus Interactive Corp. pioneered digital entertainment in the Philippines. It introduced leading platforms BingoPlus and ArenaPlus, widely known for their engaging experiences in interactive gaming and sports entertainment. DigiPlus also operates GameZone, with more to come. For more information, visit: INFORMATION SECURITY RISK OFFICER The...


  • Taguig, National Capital Region, Philippines UPTC Full time $70,000 - $120,000 per year

    Job Qualifications:Bachelor's degree in Computer Science, Information Security, or a related technical fieldAt least 3 years of experience as a Security Consultant or Risk Officer.Solid understanding of regulatory compliance and its application to security and privacy (non-negotiable).Strong knowledge of network and application security risks and mitigation...


  • Taguig, National Capital Region, Philippines Cushman & Wakefield Full time ₱900,000 - ₱1,200,000 per year

    Job TitleSenior IT Security Risk & Compliance AnalystJob Description SummaryJob SummaryThe Senior IT Security Risk & Compliance Analyst is responsible for managing daily security operations, supporting cross-regional initiatives, and ensuring compliance with internal and external security standards. The role involves collaboration with various teams,...


  • Taguig, National Capital Region, Philippines Cushman & Wakefield Full time ₱1,200,000 - ₱2,400,000 per year

    Job TitleSenior IT Security Risk & Compliance AnalystJob Description SummaryJob SummaryThe Senior IT Security Risk & Compliance Analyst is responsible for managing daily security operations, supporting cross-regional initiatives, and ensuring compliance with internal and external security standards. The role involves collaboration with various teams,...


  • Taguig, National Capital Region, Philippines ESOL IT SERVICES INC. Full time ₱900,000 - ₱1,200,000 per year

    We are looking for a Network Security Engineer to help design, implement, and maintain the bank's security infrastructure. In this role, you will support enterprise security projects, enforce best practices, and work across teams to ensure systems and networks are secure. You will also serve as a subject matter expert in specific security domains and...


  • Taguig, National Capital Region, Philippines ESOL IT SERVICES INC. Full time ₱900,000 - ₱1,200,000 per year

    We are seeking an experienced Endpoint Security Engineer to manage and enhance the bank's endpoint security infrastructure. In this role, you will configure, maintain, and monitor endpoint protection tools, define system security standards, and support enterprise security projects. You will act as a subject matter expert for endpoint security technologies...