
IT Security Risk Assessment Officer
4 days ago
Job Summary:
Develop tactical plans and programs for the establishment and maintenance of the Bank’s third-party information security risk management framework and ensure alignment with the enterprise risk framework. Performs third party security, system security and information asset-based risk assessment. Analyze and review of complex bank processes, application system and network security implementation and third-party relationships to identify potential risk including the determination of risk mitigation strategies. Analysis and review of complex application system and network security implementation on the current production environments to identify potential risk including the determination of risk mitigation strategies. Recommend strategies to control risks from inadequate protection of confidentiality, integrity and availability of the information assets, processing facilities and connected services.
Specific Duties & Responsibilities:
Prepares tactical plans and/or programs in the conduct of information, third party and system security risk assessments.
Identify the Bank’s critical assets, threats to these assets, vulnerabilities, and reviews adequacy of existing security controls to safeguard the confidentiality, integrity and availability of information.
Coordinate and assess the security performance of third-party vendors that collect, process, transmit, and store client data
Performs threat modelling-based system security risk assessment for all IT systems and other IT assets, as applicable
Analyze and assess the impact of changes in process, technical changes and systems enhancements and third-party relationships.
Reviews adequacy of existing security controls to safeguard the confidentiality, integrity and availability of information and information processing facilities to mitigate information security risk.
Formulates, recommends information security policies and procedures on physical, environmental and personnel security with respect to results of information security assessment activities.
Responsible for coordinating across all business units and stakeholders in gathering information in preparation to the conduct of information, third party and system security risk assessment.
Articulate security findings and risk remediation strategies through issuance of risk assessment report. Track and follow-up status of risk mitigation activities.
Ensures security risk register is maintained and kept updated including status of remediation activities.
Executes and monitors accomplishment of the risk assessment plans and programs.
Articulate security findings and risk remediation strategies through issuance of risk assessment report; writing comprehensive, concise and understandable to non-technical. Tracking and follow up on status of mitigation activities.
Maintain and track library of records and documentation.
Investigation of applicable reported incidents related to information handling and data privacy.
Keep abreast of and apply information, IT and third-party security trends and regulatory and compliance changes affecting the security of landscape, security best practices, threat landscape (emerging and existing) and apply them in daily work.
Review the work of other Security Quality and Assurance Risk Assessors; guides and mentors them.
Proactively works with the Department Head in implementing programs for the continuous improvement of the bank’s information security plans and strategies.
Perform other information security risk management and compliance related duties and responsibilities as directed by the Department Head.
-
IT Security Risk Assessment Officer
4 days ago
Taguig, Philippines Hunter's Hub, Inc. Full timeMust have: Bachelor’s degree in Computer Science, Information Technology, or a related field. Must have minimum 3 years of experience in Information Security or related fields. Must be knowledgeable on various compliance and regulatory requirements (i.e., BSP, DPA, PCI-DSS, etc.) Must have experience in various information and IT security domains and...
-
IT Security Risk Assessment Officer
4 days ago
Taguig, Philippines Hunter's Hub, Inc. Full timeMust have: Bachelor’s degree in Computer Science, Information Technology, or a related field. Must have minimum 3 years of experience in Information Security or related fields. Must be knowledgeable on various compliance and regulatory requirements (i.e., BSP, DPA, PCI-DSS, etc.) Must have experience in various information and IT security domains and...
-
IT Security Risk Assessment Officer
4 days ago
Taguig, Philippines Hunter's Hub Incorporated Full timeJob Description Job Summary: Develop tactical plans and programs for the establishment and maintenance of the Bank’s third-party information security risk management framework and ensure alignment with the enterprise risk framework. Performs third party security, system security and information asset-based risk assessment. Analyze and review of complex...
-
IT Security Risk Assessment Officer
4 days ago
Taguig, National Capital Region, Philippines Hunter's Hub Incorporated Full timeJob DescriptionJob Summary:Develop tactical plans and programs for the establishment and maintenance of the Bank's third-party information security risk management framework and ensure alignment with the enterprise risk framework. Performs third party security, system security and information asset-based risk assessment. Analyze and review of complex bank...
-
Taguig, National Capital Region, Philippines Metrobank Full timeMetrobank is seeking a highly experienced Cybersecurity Analyst to join our team. As a key member of our security team, you will be responsible for identifying and mitigating potential cyber threats to the bank's information assets.The successful candidate will have a strong background in system security risk assessments and be able to analyze complex bank...
-
Risk Assessment Professional
1 day ago
Taguig, National Capital Region, Philippines Cobden & Carter International Full timeRisk Assessment RoleCobden & Carter International is a leading company that values risk management. We are seeking a highly skilled Risk Assessment Professional to lead our third-party supplier security risk assessment program.Key Responsibilities:Researching and analyzing information security risks applicable to suppliers.Leading third-party supplier...
-
Security Risk Management Specialist
1 day ago
Taguig, National Capital Region, Philippines Cobden & Carter International Full timeJob DescriptionWe are seeking a highly skilled Security Risk Management Specialist to join our team at Cobden & Carter International. In this role, you will be responsible for ensuring third-party suppliers' compliance with business requirements and regulations.Key Responsibilities:Lead third-party supplier security risk assessment and remediation...
-
IT Risk Assessment Lead
5 days ago
Taguig, National Capital Region, Philippines Cobden and Carter International Full timeAbout This RoleWe are seeking a highly skilled Tech Audit Coordinator to join our team at Cobden and Carter International.The successful candidate will be responsible for monitoring and providing reasonable assurance that our IT systems are secure and our internal controls are working as intended.This role requires a strong background in IT auditing,...
-
Security Consulting and Risk Officer
2 weeks ago
Taguig, Philippines Nityo Infotech Full timeSecurity Consulting and Risk Officer Location: Taguig Setup: Onsite Salary: Open Rate Graduate of any Bachelors degree course Graduate of any college degree in Computer Science or Information Security, or related technical field of expertise. General understanding of regulatory compliance and how it relates to application security and...
-
Security Consulting and Risk Officer
2 weeks ago
Taguig, Philippines Nityo Infotech Full timeSecurity Consulting and Risk Officer Location: Taguig Setup: Onsite Salary: Open Rate Graduate of any Bachelors degree course Graduate of any college degree in Computer Science or Information Security, or related technical field of expertise. General understanding of regulatory compliance and how it relates to application security and...
-
Information Security Risk Specialist
7 days ago
Taguig, National Capital Region, Philippines Willis Towers Watson Full timeJob OverviewAs an Information Security Risk Specialist at Willis Towers Watson, you will be responsible for identifying and mitigating information security risks to protect clients' interests.ResponsibilitiesConduct risk assessments and identify potential security threats and vulnerabilities.Develop and implement risk mitigation strategies to reduce the...
-
Chief Technology Risk Officer
3 days ago
Taguig, National Capital Region, Philippines Cobden & Carter International Full timeCobden & Carter International is seeking a seasoned professional to lead its technology risk management efforts. As Chief Technology Risk Officer, you will be responsible for identifying, assessing, and mitigating risks associated with the organization's digital systems.Key Responsibilities:Develop and implement policies and procedures to ensure data...
-
Cyber Security Risk Manager
3 hours ago
Taguig, National Capital Region, Philippines Cyber Crime Full timeJob DescriptionCyber Security Risk ManagerThe role of the Cyber Security Risk Manager is to oversee the establishment and maintenance of a corporate-wide information security framework. This includes ensuring that all assets are protected and compliant with legal, regulatory, and privacy requirements.Key Responsibilities:Lead risk assessments, audits, and...
-
Chief Technology Risk Officer
20 hours ago
Taguig, National Capital Region, Philippines Cobden and Carter International Full timeJob OverviewCobden and Carter International is seeking a seasoned IT Risk Management professional to lead our technology risk function.Responsibilities:Oversee the identification of control weaknesses and ensure they are addressed in a timely manner.Assess and monitor IT control operations while meeting Service Level Agreements (SLAs).Conduct pre- and...
-
Risk Management Officer
3 days ago
Taguig, National Capital Region, Philippines Metrobank Full timeMetrobank is seeking an experienced Information Security Specialist to join our team. As a key member of our security team, you will be responsible for developing and implementing information security risk management plans to protect the bank's information assets.The successful candidate will have a strong background in IT general controls and auditing,...
-
Security Consulting and Risk Officer
4 weeks ago
Taguig, Philippines Nityo Infotech Full timeLocation: BGC Taguig Schedule: Dayshift Work Setup: Onsite Qualifications: *Graduate of any college degree in Computer Science or Information Security, or related technical field of expertise *General understanding of regulatory compliance and how it relates to application security and privacy *Certification training may include is CISA, CISM, SANS GIAC,...
-
Security Consulting and Risk Officer
4 weeks ago
Taguig, Philippines Nityo Infotech Full timeLocation: BGC TaguigSchedule: DayshiftWork Setup: OnsiteQualifications:*Graduate of any college degree in Computer Science or Information Security, or related technical field of expertise*General understanding of regulatory compliance and how it relates to application security and privacy*Certification training may include is CISA, CISM, SANS GIAC, CISSP,...
-
Security Compliance Officer
3 days ago
Taguig, National Capital Region, Philippines MKIT (HONG KONG) HOLDINGS LIMITED Full timeKey Responsibilities: Cybersecurity Strategy Development: Develop and implement a comprehensive cybersecurity strategy that aligns with the company's risk appetite and business objectives.Risk Management: Regularly assess vulnerabilities to cyber-attacks and other forms of security breaches, and establish a risk-based process for vendor risk...
-
Info Security Risk Auditor
5 days ago
Taguig, National Capital Region, Philippines Optum Full timeOptum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by diversity and inclusion,...
-
Security Consulting and Risk Officer
3 weeks ago
Taguig, Philippines Nityo Infotech Full timeLocation: BGC Taguig Schedule: Dayshift Work Setup: Onsite Qualifications: *Graduate of any college degree in Computer Science or Information Security, or related technical field of expertise *General understanding of regulatory compliance and how it relates to application security and privacy *Certification training may include is CISA, CISM, SANS GIAC,...