Application Security
5 days ago
Be #InGoodHands with Metrobank Here at Metrobank, we don't simply hire employees—we hone future leaders. We provide opportunities that enhance your skills and unlock your talents, helping you evolve into a well-rounded individual. We supply you with all the pieces you need to do your best work, unleashing your full potential to help you secure your future and lead a fulfilling career. And with Metrobank's strong heart for the community, you have the chance to give back and make worthwhile contributions to our nation's economic and social development. With Metrobank, a meaningful life is within your reach Job Title: Application Security Job Summary Develop and enforce security plans and standards; ensures that application security best practices are executed and implemented. Prepare the plans to deliver/implement the application security strategy prepared by the Security Architect. Provide support to the Security Architect in enterprise security projects including defining configuration standards, testing and implementation. Leads the research, evaluation and implementation of ISD security tools and small projects. Provide risk assessment support to CPSD and SQRD related to architecture for security concerns and/or security controls to be architected. Maintain and mature the security tools to ensure effective prevention and detection of incidents. Prepare the necessary documentation for project approval and implementation. Act as the subject matter expert on security of assigned technology domain/area (i.e., mobile application, web application, etc.). Specific Duties & Responsibilities Based on the approved IT security systems and application security architecture, develops detailed designs for implementation. Formulate, review and maintain IT security policies, technical standards, internal ISD procedures and guidelines related to securing the information processing environment, IT facilities and connected third party services/providers of the Bank. Provide support to CPSD and SQRD, serve as the security subject matter expert related to application security. Identify security design gaps in existing application systems and proposed architectures and recommend changes or enhancements. Evaluate cost‑effective solutions and prepare the business case for IT security projects. Manage the testing of technical controls and monitors its implementation. Define and document security tool/device standard configuration parameters. Ensures that application security tools are securely configured and functions effectively and efficiently. Perform regular security configuration reviews, ensure efficacy of controls and use is optimized. Monitor and if necessary, assist ITG administrators in ensuring problems of security devices/systems are timely resolved. Review and/or evaluate vendor performance as part of VPRC process. Review installation and changes to CI/CD pipeline. Manages the implementation of baseline system security standards for application development. Collaborates and coordinates with other ISD Departments to ensure that holistic ISD service is provided to internal customers. Establish disaster recovery strategy of security tools implemented and ensures it is regularly tested for effectiveness. Stay up to date with latest security technology and trends, vulnerabilities and threats. Guide Infrastructure Security Specialists; review their work. Proactively works with the SAID Head in implementing programs for the continuous improvement of the bank’s information security plans and strategies. Perform other information security governance, risk and compliance related duties and responsibilities as directed by the SAID Head. Job Specifications Graduate of any college degree in Computer Science or Information Security, or related technical field of expertise. Extensive/in-depth knowledge and understanding of secure coding principles and OWASP Top 10. Working experiences with designing/architecting CI/CD pipeline. Certification may include SANS GIAC, CISSP, CISM, GWAPT, or equivalent. At least 3+ years’ experience in designing, implementing and maintaining application security solutions such as SAST, DAST, IAST, etc. Analytical and risk identification skills to analyze a variety of information security related risk situations and develop recommendations on the best course of action Scripting and programming – computer programming and scripting skills is an advantage. Strong written and oral communication skills to write technical reports on their assessments and communicate potential security weaknesses. Should also be abreast with security best practices and knowledge of common and emerging security threats. Self-starter, result-orientated in terms of disposition for corrective action to drive the remediation to reduce the risk exposure of the bank. Have good teamwork and collaboration skills: good team players with the ability to lead security initiatives. Good project management skills to lead and manage accomplishments of assigned tasks/projects within the predetermined time-frame Good communication skills: to effectively articulate and explain complex security topics in simple language and easy to understand concepts #J-18808-Ljbffr
-
Vp For Application Security
3 weeks ago
, Metro Manila, Philippines Buscojobs Full timeOverview Vp For Application Security jobs in TaguigPosted today Job Description Job brief Seeking for an experienced Application Security Head to drive our secure development initiatives and lead a team of security professionals. The ideal candidate will have a strong technical background in application security, hands-on expertise with security testing...
-
Applications Security Analyst
3 weeks ago
, Metro Manila, Philippines Buscojobs Full timeVulnerability Assessment and Penetration Testing Specialist / Offensive Security Posted today Job Description QUALIFICATIONS: At least 3-5 years as a VAPT Specialist/Offensive Security or other related roles. Hands-on experience in web and mobile application VAPT, following the OWASP Top 10 testing framework Proficient in using open-source and commercial...
-
Application Security Development Manager
3 weeks ago
, Metro Manila, Philippines Buscojobs Full timeApplication Security Development Manager Posted today Job Description Company: Avaloq (example from description) — Avaloq is an industry-leading provider of wealth management technology and services for financial institutions worldwide. We develop and maintain central application security frameworks and tools across companywide technology stacks, advise...
-
Application Security Team Lead
3 weeks ago
, Metro Manila, Philippines Buscojobs Full timeApplication Security Team Lead Location: Mandaluyong/Pasig area (as per original), Salary: ₱ - ₱ , Employer: Meralco Industrial Engineering Services Corporation Job Description Job Title: Application Security Lead Responsibilities Develops and implements cybersecurity strategies, policies, procedures, and incident response plans, ensuring alignment with...
-
Application Security
7 days ago
Manila, National Capital Region, Philippines Metropolitan Bank & Trust Company Full time ₱900,000 - ₱1,200,000 per yearBe #InGoodHands with MetrobankHere at Metrobank, we don't simply hire employees—we hone future leaders. We provide opportunities that enhance your skills and unlock your talents, helping you evolve into a well-rounded individual. We supply you with all the pieces you need to do your best work, unleashing your full potential to help you secure your future...
-
Application Security Engineer
2 weeks ago
Bonifacio Global, Metro Manila, Philippines AXOS BUSINESS CENTER CORP. Full time ₱1,200,000 - ₱2,400,000 per yearImagine a world where banking is not just a transaction but a transformative experience. Welcome to Axos Business Center We're on a mission to redefine the financial landscape with innovation, creativity, and customer-centric solutions at the core of everything we do. #Banking Evolved.Ready to dive into a new chapter in your career journey and make your mark...
-
Application Security Engineer
2 days ago
Manila, National Capital Region, Philippines GCash Full time ₱900,000 - ₱1,200,000 per yearDo you want to take the first step in making Filipinos' lives better everyday? Here in GCash we want to stay at the forefront of the FinTech industry by creating innovative, meaningful, and convenient financial solutions for the nation G ka ba? Join the G Nation todayKey ResponsibilitiesSecure Development Practices:Conduct static (SAST) and dynamic (DAST)...
-
Application Security Development Analyst
3 weeks ago
, Metro Manila, Philippines Buscojobs Full timeApplication Security Development Analyst Posted today Job Viewed Tap Again To Close Job Description Design, develop, maintain, and support high-quality in-house software build systems for Enterprise class software Design and maintain automated pipelines to continuously deliver value to clients Provide design, implementation guidance and tutoring as necessary...
-
Security, Data Privacy
4 weeks ago
, Metro Manila, Philippines Buscojobs Full timeJob Description Permanent Responsibilities Identify risks associated with protecting information assets Collaborate with and support departments from an information security perspective Monitor compliance with policies Ensure data privacy is being adhered to Implement security controls and solutions according to security governance requirements Set a risk...
-
Application Security Engineer
2 weeks ago
Manila, National Capital Region, Philippines Axos Bank Full time ₱1,200,000 - ₱2,400,000 per yearAxos Business Center, CorpAbout This JobWe are seeking a Security Engineer with deep expertise in application security platforms to own, operate, and optimize our WAF, bot defense, API security, and application testing tools. This role will focus on ensuring these platforms are well-configured, continuously tuned, and delivering maximum security value with...