security consulting and risk officer

17 hours ago


Taguig, National Capital Region, Philippines Metrobank Full time

Press Tab to Move to Skip to Content Link

Here at Metrobank, we don't simply hire employees—we hone future leaders. We provide opportunities that enhance your skills and unlock your talents, helping you evolve into a well-rounded individual. We supply you with all the pieces you need to do your best work, unleashing your full potential to help you secure your future and lead a fulfilling career. And with Metrobank's strong heart for the community, you have the chance to give back and make worthwhile contributions to our nation's economic and social development. With Metrobank, a meaningful life is within your reach

Position Title: Security Consulting and Risk Officer

Job Summary: Responsible for securing data, network, and applications in system development or system implementations. Perform threat modeling, business and technical process analysis, application security and architecture reviews to evaluate, identify vulnerabilities and enforce security controls in IT and application systems. Ensures coordination of penetration testing support and vulnerability validation scans of systems project.

Role Exposure:

  • Work closely with cross-functional teams - ITG Infrastructure team, ITG DevOps team, Developers, Solutions and Enterprise Architects, Technical Project Managers, Delivery Managers and Project Proponents.
  • Helps to improve the security health of the application systems, information processing facilities and connected services of the bank by:
  • Providing security consulting services on information security related matters for on premise and cloud-based project implementations and deployments.
  • Serves as project security technical point of contact for system development as it relates to automation, continuous integration/continuous deployment activities and products/services being developed and deployed across the full application development life cycle.
  • Ensure enforcement of security requirements across all new application systems and API deployments.
  • Performs threat modeling and business/technical process analysis to identify vulnerabilities/weaknesses on processes and technology implementations thru a documented analysis and assessment report.
  • Standardize the technical, functional and administrative security requirements covering areas of application system, technical design and architecture.
  • Ensures that the security requirements align with the business objective of the application systems to be implemented.
  • Provides consulting on technical designs and solutions to address infrastructure security and application security related weaknesses.
  • Collaborate with relevant stakeholders to implement security improvements.
  • Collaborate with the appropriate subject matter expert in Security Architecture and Innovation Department in reviewing security architecture and addressing architecture concerns in a project.
  • Ensures that source code reviews are performed and validated across all platforms and frameworks.
  • Coordinates application vulnerability scanning and penetration testing remediation activities with ITG developers.
  • Assist with vulnerability prioritization and provide guidance on resolution.
  • Ensures that standard security requirements are kept updated.
  • Maintains an expert knowledge in the field of Information Security and the related issues, systems, processes, products, and services. Stay current with best security practices.
  • Collaborates with other ITG Servicing units and application teams to harden its operating systems and application systems to better protect user data when implemented.
  • Proactively works with the Department Head in implementing programs for the continuous improvement of the bank's information security posture.
  • Perform other information security governance, risk and compliance related duties and responsibilities as directed by the Department Head.

Qualifications:

  • Graduate of any college degree in Computer Science or Information Security, or related technical field of expertise.
  • General understanding of regulatory compliance and how it relates to application security and privacy.
  • Certification training may include is CISA, CISM, SANS GIAC, CISSP, PCI-DSS, etc.)
  • Understanding of network and application security risks and how to address them.
  • History of designing, developing, or customizing application systems a plus.
  • Extensive and deep technical knowledge/understanding of system development, typically ranging from front-end user interfaces all the way to the back-end systems of both on premise and cloud deployment.
  • Working knowledge of on premise and cloud architectures.
  • Strong familiarity with web protocols and web services, networking concepts and encryption.
  • Understanding of Microsoft, Linux/Unix security architecture.
  • Strong attention to detail, analytical, and problem-solving skills. Thinking logically and intuitively; strong learning agility with the ability to learn new processes/patterns
  • Result-orientated in terms of disposition for corrective action and security remediation.
  • Have good teamwork and collaboration skills, a good team player with the ability to lead.
  • Good written and verbal communication skills: to effectively articulate and explain complex security topics in simple language and easy to understand concepts.
  • Possess excellent time management skills, thrive in a fast paced demanding environment
  • Be a self-managed, self-starter with good organizational skills to include good follow-up skills
  • Knowledge in using MS office tools such as PowerPoint, word, excel and project
#J-18808-Ljbffr

  • Taguig, National Capital Region, Philippines Metropolitan Bank and Trust Company Full time $60,000 - $100,000 per year

    Metrobank Taguig, National Capital Region, PhilippinesJoin or sign in to find your next job Join to apply for the IT Security Risk Assessment Officer role at MetrobankMetrobank Taguig, National Capital Region, PhilippinesJoin to apply for the IT Security Risk Assessment Officer role at MetrobankGet AI-powered advice on this job and more exclusive...


  • Taguig, National Capital Region, Philippines Private Advertiser Full time $90,000 - $120,000 per year

    Work closely with cross-functional teams - ITG Infrastructure team, ITG DevOps team, Developers, Solutions and Enterprise Architects, Technical Project Managers, Delivery Managers and Project Proponents.Helps to improve the security health of the application systems, information processing facilities and connected services of the bank by:Providing security...


  • Taguig, National Capital Region, Philippines beBeeSecurity Full time

    Job Description:We are seeking an experienced Security Risk Consultant to join our team. As a key member of our security team, you will be responsible for ensuring that our third-party suppliers comply with business requirements and identify potential security risks.Key Responsibilities:Conduct risk-based assessments to identify and mitigate potential...


  • Taguig, National Capital Region, Philippines beBeeRiskConsultant Full time

    Job TitleInfo Sec Risk Consultant (IT/IS Compliance, Audit, HITRUST, ISO 27001, SOC 2 Type II)We are seeking a seasoned Info Sec Risk Consultant to join our team. This is an exciting opportunity for an experienced professional to leverage their expertise in IT and IS compliance to drive business growth.The ideal candidate will have a proven track record of...


  • Taguig, National Capital Region, Philippines Satellite Office Full time $90,000 - $120,000 per year

    Role Description and ResponsibilitiesThe Security Consultant will work with the wider Consulting team, responsible for the development and delivery of Governance, Risk and Compliance services. This involves the end-to-end delivery for our customers and to a certain extent, business development. A key part of the role will involve directly engaging customers...


  • Taguig, National Capital Region, Philippines UnitedHealth Group Full time $90,000 - $120,000 per year

    Job Description Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by inclusion,...


  • Taguig, National Capital Region, Philippines WHR Global Consulting Full time ₱240,000 - ₱300,000 per year

    WHR Global Consulting is hiring a Full time Risk Management Consultant role in Taguig, NCR. Apply now to be part of our team.Job summary:Looking for candidates available to work:Monday: Afternoon, Morning Tuesday: Afternoon, Morning Wednesday: Afternoon, Morning Thursday: Afternoon, Morning Friday: Afternoon, Morning 2-3 years of relevant...


  • Taguig, National Capital Region, Philippines UnitedHealth Group Full time $90,000 - $120,000 per year

    Primary Responsibilities:Perform audits to identify control gaps and implement corrective action plans Ensure alignment of security policies/standards with IT infrastructure frameworks (e.g., ISO 2700x, NIST, ITIL) Monitor compliance with corrective action plans, and address non-compliance issues appropriately Demonstrate understanding of discovery...


  • Taguig, National Capital Region, Philippines Cushman & Wakefield Full time $90,000 - $120,000 per year

    Job TitleSenior IT Security Risk & Compliance AnalystJob Description SummaryPrimary Purpose: Manage and coordinate day-to-day security operations and initiatives, ensuring alignment with global standards and timelines. Collaborate with regional leads, legal, and service lines to support training, risk management, and governance. Lead security awareness...


  • Taguig, National Capital Region, Philippines GCash (MYNT - Globe Fintech Innovations, Inc.) Full time ₱900,000 - ₱1,200,000 per year

    Do you want to take the first step in making Filipinos' lives better everyday? Here in GCash we want to stay at the forefront of the FinTech industry by creating innovative, meaningful, and convenient financial solutions for the nation G ka ba? Join the G Nation todayWho you'll be working with: If you have a strong background in IT, computer science, or...