Cybersecurity GRC Analyst

4 weeks ago


Pasay, National Capital Region, Philippines MicroSourcing Full time
Overview

The Cybersecurity GRC Analyst supports the development and execution of governance, risk, and compliance (GRC) activities to protect sensitive health, payment, and personal data. This role ensures adherence to industry security standards (PCI DSS, NIST CSF, ISO 27001) with a practical, risk-based approach suitable for the childcare sector's operational and regulatory landscape.

Responsibilities
  • Governance & Policy Management
    • Develop, review, and maintain cybersecurity policies, standards, and procedures.
    • Ensure alignment with industry frameworks (e.g., NIST CSF 2.0, ISO 27001, CIS Controls).
  • Risk Management
    • Conduct risk assessments and control evaluations across systems, applications, and processes.
    • Maintain and update the risk register, track mitigation plans, and report on risk posture.
    • Track and report security exceptions, findings, and remediation activities.
  • Compliance & Audit
    • Support internal and external audits, including evidence collection and remediation tracking.
    • Monitor compliance with regulatory requirements (e.g., PCI-DSS, Privacy Act).
    • Assist in third-party risk assessments and vendor due diligence.
  • Security Awareness & Training
    • Contribute to the development and delivery of cybersecurity awareness programs.
    • Promote a culture of security and compliance across the organisation.
  • Reporting & Metrics
    • Prepare regular reports and dashboards on GRC activities, risk trends, and compliance status.
    • Monitor and report on cybersecurity metrics, control effectiveness, and regulatory compliance.
  • Incident Response
    • Assist in incident response and post-incident reviews from a compliance and governance perspective.
Qualifications
  • Bachelor's degree in Cybersecurity, Information Technology, or a related field.
  • 2-5 years of experience in cybersecurity governance, risk management, or compliance.
  • Familiarity with GRC tools (e.g., OneTrust, Vanta, Drata).
  • Understanding of regulatory and industry standards (e.g., ISO 27001, NIST CSF, SOC 2).
  • Strong analytical, communication, and documentation skills.
  • Certifications such as CISA, CRISC, or ISO 27001 Lead Implementer/Lead Auditor are a plus.
Technical Skills
  • Strong working knowledge of cybersecurity frameworks (NIST CSF, ISO27001).
  • Understanding of risk assessment methodologies and cybersecurity principles.
  • Familiarity with SIEM, DLP, IAM, vulnerability management tools, and endpoint protection platforms.
  • Proficiency in Excel, Power BI, or similar tools to analyse data and generate dashboards.
  • Familiarity with ticketing systems such as JIRA.
  • Ability to support internal and external audits, perform control testing, and monitor compliance metrics.
  • Understanding of Privacy Frameworks such as the Australian Privacy Act 1988, Victorian Privacy and Data Protection Act 2014, GDPR.

#J-18808-Ljbffr

  • Pasay, National Capital Region, Philippines MicroSourcing Full time ₱900,000 - ₱1,200,000 per year

    Discover your 100% YOU with MicroSourcingPosition: Cybersecurity GRC AnalystLocation: MoA, Pasay, PhilippinesWork setup & shift: Hybrid | Dayshift**Why join MicroSourcing? You'll have:**Competitive Rewards: Enjoy above-market compensation, healthcare coverage on day one, plus one or more dependents, paid time-off with cash conversion, group life insurance,...


  • Pasay, National Capital Region, Philippines MicroSourcing Full time ₱1,200,000 - ₱3,600,000 per year

    TheCybersecurity Engineeris responsible for designing, implementing, and maintaining security solutions to protect Camp Australia's digital assets and infrastructure. This role involves proactive threat detection, vulnerability management, incident response, and continuous improvement of security controls. The engineer works closely with IT, Cybersecurity...


  • Pasay, National Capital Region, Philippines MicroSourcing Full time ₱900,000 - ₱1,200,000 per year

    Discover your 100% YOU with MicroSourcingPosition: Cybersecurity EngineerLocation: MoA, Pasay, PhilippinesWork setup & shift: Hybrid | Dayshift**Why join MicroSourcing? You'll have:**Competitive Rewards: Enjoy above-market compensation, healthcare coverage on day one, plus one or more dependents, paid time-off with cash conversion, group life insurance, and...


  • Pasay, National Capital Region, Philippines ACCPRO INTERNATIONAL Full time ₱1,200,000 - ₱2,400,000 per year

    Vulnerability Analyst (Hybrid Setup – Pasay, MOA)Location: MOA, Pasay (Hybrid – 1–2x a month onsite)Schedule: Mid Shift (Login between 4–5 PM)Work Setup: Hybrid (90% WFH, occasional onsite)About the RoleWe are seeking a Cybersecurity Threat & Vulnerability Analyst to join our growing team. In this role, you will monitor, analyze, and assess emerging...

  • VAPT Analyst

    2 weeks ago


    Pasay, National Capital Region, Philippines Ben edictio Full time ₱720,000 per year

    Hiring for Vulnerability Analyst- Pasay City- Hybrid set-up (1-2x RTO per month)- Late mid shift____________JOB SUMMARYIdentification, assessment, and communication of new and emergent threats in the cybersecurity landscape, specifically vulnerability intelligence and detections.As a Vulnerability Analyst, you will be expected to familiarize yourself with...


  • Pasay, National Capital Region, Philippines NYGC Services, Inc. Full time ₱900,000 - ₱1,200,000 per year

    Role : Vulnerability AnalystLocation : Moa PasayWork Type : Hybrid Setup (1x -2x a month RTO)Work Shift : Mid Shift (4PM or 5PM Login time)Job Description:● B.S. equivalent in computer science, information systems, or cyber intelligence● 1 - 2 years of minimum professional experience in cybersecurity, with a focus on threat detection, penetration...


  • Pasay, National Capital Region, Philippines Infinit-O Full time $90,000 - $120,000 per year

    Job Title: Threat Intelligence AnalystPosition SummaryAs a Threat Intelligence Analyst, you will research and analyze emerging cyber threats, produce concise analyst notes, and communicate findings to both technical and non-technical audiences. You will use open-source intelligence (OSINT) and internal tools such as the Recorded Future Intelligence Cloud to...

  • Vulnerability Analyst

    2 weeks ago


    Pasay, National Capital Region, Philippines HR TechX Corp. Full time ₱60,000 - ₱80,000 per year

    Vulnerability Analysts aid in the identification, assessment, and communication of new and emergent threats in the cybersecurity landscape, specifically vulnerability intelligence and detections. As a Vulnerability Analyst, you will be expected to familiarize yourself with high-impact and critical vulnerabilities, proofs-of-concept, and reports of...


  • Pasay, National Capital Region, Philippines ACCPRO INTERNATIONAL Full time ₱360,000 - ₱540,000 per year

    DUTIES and RESPONSIBILITIES:Research & AnalysisConduct in-depth research on cyber threat events, using OSINT sources and the Recorded Future Intelligence Cloud.Identify and assess trending cyberattacks, including ransomware, phishing, software vulnerability exploitation, and other emerging threats.Map identified threats to frameworks such as MITRE ATT&CK and...


  • Pasay, National Capital Region, Philippines ACCPRO INTERNATIONAL Full time ₱720,000 per year

    We're Hiring: Vulnerability AnalystMOA, Pasay | Hybrid (1 - 2x a month RTO) | MidshiftRequirements:B.S. equivalent in Computer Science, Information Systems, or Cyber Intelligence.1-2 years of minimum professional experience in cybersecurity, with a focus on threat detection, penetration testing, or vulnerability assessment.possess a solid grasp of...