
Security Testing and Assurance Section Head
4 weeks ago
Overview
JOB SUMMARY
The Section Head of Security Testing and Assurance (STA) is responsible for overseeing all technical security testing activities. This includes the planning, coordination, execution, and oversight of outsourced services related to vulnerability assessments, penetration testing, compromise assessments, threat hunting, red/purple teaming, physical security testing, and application security reviews. The role ensures that all testing initiatives are risk-based, properly documented, and aligned with the Bank’s regulatory obligations, internal security policies, and industry standards. The Section Head manages relationships with third-party providers, validates findings, tracks remediation efforts, and ensures the integration of security testing results into the Bank’s broader risk management and incident response programs. This role also oversees the administration of the Bank’s Network Detection and Response (NDR) tool, Darktrace, and is responsible for monitoring and filing threat intelligence reports from the BAP-CID Threat Intelligence and Collaboration Platform.
JOB DESCRIPTION
- Manage the execution of all technical security testing activities across the Bank, under the strategic oversight of the CISO, ensuring alignment with the Bank’s approved risk appetite and the objectives of the Information Security Strategic Plan (ISSP).
- Plan, coordinate, and manage the delivery of outsourced technical security testing services to identify potential vulnerabilities and assess the effectiveness of the Bank’s defenses. These services include, but are not limited to: Vulnerability Assessments (VA), Penetration Testing (PT), Application Security Testing, Red and Purple Team Exercises, Compromise Assessments, Threat Hunting
- Ensure that all new system applications undergo a thorough vulnerability assessment (VA) before go-live. Similarly, require vulnerability assessments for existing systems that have undergone major enhancements or significant changes, to confirm that new risks have not been introduced prior to deployment.
- Define the appropriate testing methods, success criteria, and priority systems for testing, based on emerging threats and the critical role each system plays in the Bank’s operations.
- Oversee third-party service providers by clearly defining the scope of work, expected deliverables, and service levels through well-structured RFIs, RFPs, contracts, and project plans.
- Assess and confirm the vendor’s capabilities, tools, and testing methodologies before engagement to ensure they meet the Bank’s security standards and requirements.
- Monitor vendor performance using defined metrics such as timeliness of delivery, accuracy of test results, and the effectiveness of remediation recommendations.
- Ensure that vendors submit clear, complete, and timely assessment reports. Provide support to stakeholders in interpreting technical findings and clarifying results when needed.
- Oversee the configuration, tuning, and alert monitoring of the Bank’s Darktrace Network Detection and Response (NDR) platform to ensure accurate detection of unusual or suspicious activity.
- Review, document, and distribute intelligence reports received from the BAP-CID Threat Intelligence and Collaboration Platform for Banks. Escalate relevant advisories or threat indicators to appropriate teams for action and tracking
- Facilitate information security training sessions for new employees as part of the onboarding process, and deliver on-demand security briefings or awareness sessions as requested by business or support units. Ensure that training content reflects relevant findings from security testing activities and emerging threat trends.
- Monitor emerging cyber threats, attack techniques, and advancements in security testing technologies to continually improve the Bank’s testing approach and inform enhancements to third-party service provider capabilities.
- Perform other related tasks and responsibilities as may be assigned by the CISO or ITRMD Head.
JOB QUALIFICATION
- Bachelor’s degree in information security, Computer Science, or related field
- Certifications in information security or IT-related domains (e.g., OSCP, GPEN, GWAPT, CEH, CISSP) are considered an advantage and may strengthen the candidate’s suitability for the role.
- At least 3 years of experience in cybersecurity, including a minimum of 1 year in a leadership or coordination role focused on security testing or offensive security. Should have hands-on experience managing third-party security vendors and overseeing complex technical assessments across systems, applications, or infrastructure.
- Good understanding of cybersecurity concepts, including vulnerability management, secure development practices, and red team methodologies
- Familiar with relevant industry standards (e.g., NIST, OWASP, MITRE, CIS) and regulatory frameworks (e.g., BSP Cir. 982, 1140)
- Able to interpret technical security reports and communicate key risks and insights to both technical and non-technical stakeholders
- Capable of managing projects, coordinating with teams, and preparing structured documentation and executive-ready reports
-
Security Assurance Analyst
2 weeks ago
, , Philippines Buscojobs Full timeJob postings for Quality Assurance Analyst roles (multiple listings) are summarized below. Each entry includes location, basic responsibilities, and qualifications where provided. If you need a single consolidated posting, please specify which location or role to highlight. Quality Assurance Analyst – Navotas / NCR Location: Navotas, National Capital...
-
Head Of Cyber Security
2 weeks ago
, , Philippines Buscojobs Full timeHead Of Cyber Security jobs in the Philippines Job Description The Cyber Security Head ensures that the Information Security Policies, Standards, and Procedures are aligned with industry best practices for enterprise security and security standards governing Industrial Control Systems. Responsibilities include managing the overall activities in information...
-
, Calabarzon, Philippines SupportFinity™ Full timeAssistant to the Director | HROD Quality Review and Design Section Head Ateneo de Manila University | Posted Sep 12, 2025 Full-time Negotiable Master (>10 yrs) Responsibilities HR/OD Data Management and Quality Assurance Management: Design, implements, monitors, and evaluates Office’s quality, data and metrics plans and frameworks, in collaboration with...
-
Testing & Assurance Engineer
2 weeks ago
, Metro Manila, Philippines TekSynap Full timeTekSynap is seeking a Testing & Assurance Engineer to support National Geospatial-Intelligence Agency (NGA) Artificial Intelligence (AI) efforts. This engineer will play an important role helping to create technical solutions for multiple AI challenges. Responsibilities & Qualifications The Testing & Assurance Engineer will design and execute comprehensive...
-
Cost Standards Section Head
3 weeks ago
, Metro Manila, Philippines Buscojobs Full timeJob Description Permanent Position: Warehouse & Delivery Section Head — Makati City, National Capital Region Responsibilities Ensure KPI are met and achieved. Ensure GWP (Good Warehousing Practices) are implemented. Process orders. Maintain receiving, warehousing, and distribution operations by initiating, coordinating, and enforcing programs. Safeguard...
-
Production Head
2 weeks ago
, Ilocos Sur, Philippines Buscojobs Full timeOverview The Production Head is responsible for assisting the Operations Manager in planning, organizing, controlling and directing the daily activities of the line to produce the desired volume of product according to the prescribed efficiency rate and quality/yield levels, in conformance to customer's schedule at minimum manpower and material loss....
-
Section Head, Supply Chain Planning
4 days ago
, Metro Manila, Philippines Allegro MicroSystems Full timeOverview Join to apply for the Section Head, Supply Chain Planning role at Allegro MicroSystems . Allegro MicroSystems is seeking an experienced and dynamic Section Head, Supply Chain Planning to lead a vital segment of our global supply chain operations. In this leadership role, you will be responsible for overseeing and optimizing key planning processes,...
-
Section Manager, Test Production
4 days ago
, Metro Manila, Philippines Allegro MicroSystems Full timeOverview The Allegro team is united by a clear purpose—advancing technologies that make the world safer, more efficient, and more sustainable. With over 30 years of experience in semiconductor innovation, we bring that purpose to life across every part of the business—from breakthrough product development and customer success to how we show up for each...
-
Security Operations Engineer
2 days ago
, , Philippines myGwork - LGBTQ+ Business Community Full timeOverview Security Operations Engineer - Security Testing 2 days ago Be among the first 25 applicants Get AI-powered advice on this job and more exclusive features. This job is with WTW, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly. Role As a...
-
Accounting And Finance Section Head
2 weeks ago
, , Philippines Buscojobs Full timeAccounting And Finance Section Head Posted today Job Description Qualifications: Bachelor’s degree in Accounting or related field. License as CPA will be an advantage but not required Strong analytical, communication, and computer skills. Understanding of mathematics and accounting and financial processes. Ethical behavior. Attention to detail. ...