Security Assurance and Assessment Officer
3 weeks ago
Be #InGoodHands with Metrobank
Here at Metrobank, we don't simply hire employees—we hone future leaders. We provide opportunities that enhance your skills and unlock your talents, helping you evolve into a well-rounded individual. We supply you with all the pieces you need to do your best work, unleashing your full potential to help you secure your future and lead a fulfilling career. And with Metrobank's strong heart for the community, you have the chance to give back and make worthwhile contributions to our nation's economic and social development. With Metrobank, a meaningful life is within your reach
Position Title: Security Assurance and Assessment Officer
Job Summary:
- Develop tactical plans and programs for the establishment and maintenance of the Bank's third-party information security risk management framework and ensure alignment with the enterprise risk framework.
- Perform third party security, system security, and information asset-based risk assessments. Analyze and review complex bank processes, application systems, network security implementations, and third-party relationships to identify potential risks, including the determination of risk mitigation strategies.
- Recommend strategies to control risks from inadequate protection of confidentiality, integrity, and availability of information assets, processing facilities, and connected services.
Role Exposure:
- Prepare tactical plans and/or programs in the conduct of information, third party, and system security risk assessments.
- Identify the Bank's critical assets, threats to these assets, vulnerabilities, and review the adequacy of existing security controls to safeguard the confidentiality, integrity, and availability of information.
- Coordinate and assess the security performance of third-party vendors that collect, process, transmit, and store client data.
- Perform threat modeling-based system security risk assessments for all IT systems and other IT assets, as applicable.
- Analyze and assess the impact of changes in process, technical changes, systems enhancements, and third-party relationships.
- Review the adequacy of existing security controls to safeguard the confidentiality, integrity, and availability of information and information processing facilities to mitigate information security risk.
- Formulate and recommend information security policies and procedures on physical, environmental, and personnel security based on the results of information security assessment activities.
- Coordinate across all business units and stakeholders in gathering information in preparation for conducting information, third-party, and system security risk assessments.
- Articulate security findings and risk remediation strategies through the issuance of risk assessment reports. Track and follow up on the status of risk mitigation activities.
- Ensure the security risk register is maintained and kept updated, including the status of remediation activities.
- Execute and monitor the accomplishment of the risk assessment plans and programs.
- Write comprehensive, concise, and understandable risk assessment reports for non-technical stakeholders.
- Maintain and track a library of records and documentation.
- Investigate applicable reported incidents related to information handling and data privacy.
- Keep abreast of and apply information, IT, and third-party security trends, as well as regulatory and compliance changes affecting the security landscape, security best practices, and the threat landscape (emerging and existing).
- Review the work of other Security Quality and Assurance Risk Assessors; guide and mentor them.
- Proactively work with the Department Head in implementing programs for the continuous improvement of the bank's information security plans and strategies.
- Perform other information security risk management and compliance-related duties and responsibilities as directed by the Department Head.
Qualifications:
- Bachelor's Degree.
- Experience in IT general controls and auditing, preferably with a strong background in system security risk assessments.
- Ability to perform information security risk-based prioritization decisions, analyze business risk, and articulate complex business/risk trade-off recommendations and decisions.
- Experience in project security technical reviews and risk assessments.
- Analytical and risk identification skills to analyze a variety of information security-related risk situations and develop recommendations on the best course of action.
- Knowledge of security best practices and common and emerging security threats.
- Professional Certification may include CISA, CISM, CRISK, PCI-DSS, ISO-27001 LA or equivalent, which is an advantage.
-
Information Security Assurance Officer
3 days ago
Taguig, National Capital Region, Philippines Metrobank Full timeInformation Security Assurance OfficerMetrobank is committed to providing a secure environment for our customers and employees. As an Information Security Assurance Officer, you will play a critical role in ensuring the confidentiality, integrity, and availability of our information assets.You will be responsible for performing third-party security, system...
-
Information Assurance Officer
4 days ago
Taguig, National Capital Region, Philippines Lancesoft Philippines Full timeRole DescriptionWe are looking for an experienced Information Assurance Officer who can perform third-party security, system security, and information asset-based risk assessments. The ideal candidate will have a strong background in information security governance, controls assurance, and risk assessments.As an Information Assurance Officer, you will be...
-
Security and Assurance Officer
3 days ago
Taguig, National Capital Region, Philippines W Group Full timeJob SummaryWe are seeking a seasoned Security and Quality Assurance Officer to join our team at W Group. This role requires a candidate with excellent analytical and organizational skills, as well as the ability to work independently.The ideal candidate will have a strong background in industrial security, disaster risk, and knowledge of security...
-
Security Assurance Expert
4 days ago
Taguig, National Capital Region, Philippines LanceSoft, Inc. Full timeWe are seeking a highly skilled Security Assurance Expert to join our Information Security team at LanceSoft, Inc. You will be responsible for performing threat modeling-based system security risk assessments for all IT systems and assets.Responsibilities:Perform threat modeling-based system security risk assessments.Analyze and assess the impact of changes...
-
Information Assurance Officer
4 days ago
Taguig, National Capital Region, Philippines Metrobank Full timeA Career at Metrobank: Where Innovation Meets OpportunityMetrobank is a leading financial institution dedicated to providing cutting-edge solutions to its customers. As a member of our Information Security Division, you'll play a crucial role in protecting our customers' sensitive information and maintaining the integrity of our systems.Our team is comprised...
-
Security and Quality Assurance Officer
3 days ago
Taguig, National Capital Region, Philippines W Group Full timeW Group Taguig, National Capital Region, PhilippinesSecurity and Quality Assurance OfficerJob Summary:Provides operational support to the SQA Department in protecting lives and property by reviewing surveillance video, patrolling in-set intervals, and providing a safe and secure environment for employees, customers, and visitors.Duties and...
-
Information Security Officer
3 weeks ago
Taguig, National Capital Region, Philippines Metrobank Full timeBe #InGoodHands with MetrobankHere at Metrobank, we don't simply hire employees—we hone future leaders. We provide opportunities that enhance your skills and unlock your talents, helping you evolve into a well-rounded individual. We supply you with all the pieces you need to do your best work, unleashing your full potential to help you secure your future...
-
Security Analyst
4 days ago
Taguig, National Capital Region, Philippines Lancesoft Philippines Full timeRole: Security Assurance and Assessment OfficerPermanent RoleOnsite Setup (Mon-Fri)Job Summary:Develop tactical plans and programs for the establishment and maintenance of the Bank's third-party information security risk management framework and ensure alignment with the enterprise risk framework. Performs third party security, system security and...
-
Security and Risk Assessment Specialist
3 days ago
Taguig, National Capital Region, Philippines DXC Technology Inc. Full timeAbout DXC Technology Inc.DXC Technology Inc. is a leading provider of IT services and solutions, dedicated to empowering our clients to thrive in the digital age. As an Information Security Analyst, you'll join a talented team that works together to identify, assess, and mitigate potential security risks.Responsibilities:Support the development and...
-
Information Technology Security Specialist
4 days ago
Taguig, National Capital Region, Philippines LanceSoft, Inc. Full timeInformation Technology Security SpecialistJob Title: Security Assurance and Assessment Officer (Junior Officer)Job Location: BGC TaguigJob Type: PermanentWork Setup: OnsiteJob Summary:Develop tactical plans and programs for the establishment and maintenance of the Bank's third-party information security risk management framework and ensure alignment with the...
-
IT Security Governance Officer
1 week ago
Taguig, National Capital Region, Philippines Hunter's Hub, Inc. Full timeAbout the RoleHunter's Hub, Inc. is a dynamic and growing company looking for an IT Security Governance Officer to join our team. In this role, you will be responsible for developing and implementing information security policies and procedures to ensure the confidentiality, integrity, and availability of information assets.You will also be tasked with...
-
Security Officer Position
1 week ago
Taguig, National Capital Region, Philippines weSource Management Consultancy Firm Full timeWe are looking for a skilled Senior IT Security Officer to join our team. This role involves providing technical security advice and guidance to the organization and investigating, assessing, and reporting on potential information security threats and vulnerabilities.The successful candidate will have extensive experience in security management and incident...
-
Information Security Risk Manager
4 days ago
Taguig, National Capital Region, Philippines LanceSoft, Inc. Full timeLanceSoft, Inc. is looking for an experienced Information Security Risk Manager to lead our security assurance efforts. You will be responsible for formulating and recommending information security policies and procedures based on assessment results.Key Responsibilities:Formulate and implement information security policies and procedures.Conduct risk...
-
Security Governance Expert
4 days ago
Taguig, National Capital Region, Philippines Lancesoft Philippines Full timeAbout the RoleThis role involves leading and managing the accomplishments of assigned tasks, working well with internal and external clients. The ideal candidate will have a strong background in information security governance, controls assurance, and risk assessments.As a Risk Management Consultant, you will be responsible for analyzing complex...
-
IT Security Compliance Officer
3 days ago
Taguig, National Capital Region, Philippines DXC Technology Inc. Full timeAbout UsWe're DXC Technology Inc., a global leader in delivering IT services and solutions. Our mission is to empower our clients to navigate the complexities of the digital age. As an Information Security Analyst, you'll play a vital role in ensuring the security and integrity of our systems and data.Job Description:Support the development and...
-
Information Security Manager
1 day ago
Taguig, National Capital Region, Philippines Visage Executive Search Full timeShall represent the bank in all cybersecurity matters and will be responsible for establishing and maintaining an Information Security Management Program to ensure that the information assets are adequately protected. The ISM should be able to identify, evaluate and report the information security risks in relation to the bank's compliance and regulatory...
-
Information Security Compliance Officer
5 days ago
Taguig, National Capital Region, Philippines Randstad (Schweiz) AG Full timeWe are seeking a highly motivated Information Security Compliance Officer to join our team. The successful candidate will be responsible for ensuring compliance with security policies and implementing DLP solutions to protect sensitive data.Main Responsibilities:Develop, implement, and maintain DLP solutions to protect sensitive information.Conduct regular...
-
Information Assurance Professional
2 weeks ago
Taguig, National Capital Region, Philippines Manpower Core Group Inc. Full time**Job Summary**We are seeking an Information Assurance Professional to join our team at Manpower Core Group Inc. in Singapore.This is a hybrid role, working on Monday to Friday, and requires a strong understanding of security systems, including firewalls, intrusion detection/prevention systems, anti-virus software, and data encryption tools.The ideal...
-
Fraud & Security Risk Assessment Manager
3 weeks ago
Taguig, National Capital Region, Philippines GCash Full timeFraud & Security Risk Assessment ManagerGCashNegotiableOn-site - Taguig 3-5 Yrs Exp Diploma Full-timeJob DescriptionDescriptionDo you want to take the first step in making Filipinos' lives better every day? Here in GCash we want to stay at the forefront of the FinTech industry by creating innovative, meaningful, and convenient financial solutions for the...
-
Information Security Manager Bank
2 weeks ago
Taguig, National Capital Region, Philippines MKIT (HONG KONG) HOLDINGS LIMITED Full timeShall represent the bank in all cybersecurity matters and will be responsible for establishing and maintaining Information Security Management Program to ensure that the information assets are adequately protected. The ISM should be able to identify, evaluate and report the information security risks in relation to the bank's compliance and regulatory...