Sr Info Security Risk Analyst
1 week ago
Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by diversity and inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health equity on a global scale. Join us to start Caring. Connecting. Growing together.
As an Information Security Risk Analyst, you would support information security policies, standards and procedures to secure and protect data residing on systems. Work directly with Third Party user departments to implement procedures and systems for the protection, conservation and accountability of proprietary, personal or privileged electronic data. Generally work is self-directed and not prescribed. Works with less structured, more complex issues. Serve as a resource to others.
Maintain awareness of the valuable and sensitive Third Party Relationships by demonstrating the highest degree of professionalism and collaboration in every interaction. All communications must be consultative and conversational, reacting appropriately to the varying levels of technical sophistication that will be encountered. Active listening and adaptability, without relying solely on a predefined formula, is critical to successful interactions.
Primary Responsibilities:- Lead Third Party assessments and follow-up activities with strategic Third Party relationships
- Communicate professionally with Third Party stakeholders/end users through multiple communication methods, building trusting relationships
- Understand and enforce General Computing Controls of Third Party organization structure
- Identify security administration deficiencies, recommend improvements, and assist to implement corrective action
- Develop and maintain procedure documentation
- Execution of reporting (Daily/Weekly/Monthly)
- Understand and scope properly Third Party organization structure to apply necessary controls to be assessed
- Perform and manage Control/Risk Assessment and remediation of identified findings as per process documents
- Ensure Third Party compliance to the business agreement, policies, procedures, & regulations along with ability to map controls and compliance requirements
- Review Third Party supplied policies & procedures, internal/external assessment reports, agreements and provide feedback
- Executive summaries with recommendations & direction regarding remediation efforts and disposition of the third party
- Communicate, escalate, and track Third Party remediation progress on assessment remediation activities
- Understand information security risks that are inherent to a business and articulate those risks in business terms
- Maintain current knowledge on information security topics and their applicability program requirements
- Engage on-shore leadership regarding any escalation/delays/deviations during assessment/remediation
- Work and Coach assigned analysts/mentee in terms of operational processes/ competencies
- Serves as POC (Point of Contact) in lead's absence
- Conducts quality checks and provide feedback as necessary
- Create reports and presentation needed for operational process
- 3+ years of experience in IT auditing/security assessments
- 3+ years of experience working with senior levels of management
- 3+ years of Security expertise including knowledge on different security risk assessment frameworks (NIST), standards (ISO27001/HITRUST/ITIL/COBIT), and acts such as (HIPAA/GLBA).
- 3+ years of experience in examining the SSAE 16 Audit, SOC 2, PCI DSS, NY Cyber Security and other security audit report
- Strong Listening, Communication, and Presentation Skills
- Good follow-up skills and detail oriented
- Knowledge and understanding of different security products (web/email filtering, disk encryption, vulnerability testing, antivirus, DLP, firewall etc.)
- Knowledge on technology/software development methodologies, application security, and OWASP Top 10 guidelines
- Ability to document assessment work papers and preparing assessment report
- Ability to manage third-party assessment independently with minimal supervision
CISA, CISSP, CPISI, ISO 27001
Careers with Optum. Here's the idea. We built an entire organization around one giant objective; make the health system work better for everyone. So, when it comes to how we use the world's large accumulation of health-related information, or guide health and lifestyle choices or manage pharmacy benefits for millions, our first goal is to leap beyond the status quo and uncover new ways to serve. Optum, part of the UnitedHealth Group family of businesses, brings together some of the greatest minds and most advanced ideas on where health care must go in order to reach its fullest potential. For you, that means working on high performance teams against sophisticated challenges that matter. Optum, incredible ideas in one incredible company and a singular opportunity to do your life's best work.
#LetsGrow
#J-18808-Ljbffr-
Info Security Risk Consultant
1 week ago
Manila, National Capital Region, Philippines Optum, a UnitedHealth Group Company Full timeOptum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by diversity and inclusion,...
-
AVP, Technology/Cyber Risk Sr Analyst
1 week ago
Manila, National Capital Region, Philippines Citigroup Full timeCitigroup AVP, Technology/Cyber Risk Sr Analyst (Hybrid) in City of Taguig, PhilippinesWhether you're at the start of your career or looking to discover your next adventure, your story begins here. At Citi, you'll have the opportunity to expand your skills and make a difference at one of the world's most global banks. We're fully committed to supporting your...
-
Security Analyst
1 week ago
Manila, National Capital Region, Philippines Insight Full timePosition OverviewOur Information Security Analyst will help plan and carry out the organization's information security strategy. They develop a set of security standards and best practices for the organization and recommend security enhancements to management as needed. They develop strategies to respond to and recover from a security breach. Information...
-
Sr. Risk Specialist
2 days ago
Manila, National Capital Region, Philippines Capital One Philippines Support Services Corp. Full timeOverviewAlabang (96050), Philippines, Muntinlupa City, National Capital Region (Manila) Sr. Risk SpecialistSummary:To facilitate identification, assessment, monitoring, and mitigation of risks within Capital One Philippines (C1PH) consistent with Capital One's internal controls and policies across several risk domains, including but not limited to...
-
Security Risk Management Leader
1 day ago
Manila, National Capital Region, Philippines Globe Telecom, Inc. Full timeAbout Globe Telecom, Inc., we're committed to staying at the forefront of the FinTech industry by creating innovative financial solutions for the nation. We're seeking a highly experienced Third-Party Security Management Lead to elevate our program and ensure compliance, cybersecurity risk management, and operational excellence.This role combines strategic...
-
SR&T Analyst
8 hours ago
Manila, National Capital Region, Philippines Deloitte PLT Full timeSR&T Analyst (Fresh Graduates) (For Pooling)Date: 13 Mar 2025Service Line / Portfolios: Strategy & TransactionsLocation: Singapore, Singapore, SGTitle: SR&T – Analyst (Fresh Graduates)Are you ready to unleash your potential?At Deloitte, our purpose is to make an impact that matters for our clients, our people, and the communities we serve. We believe we...
-
Sr. Analyst, Finance Risk Management
2 days ago
Manila, National Capital Region, Philippines Capital One Philippines Support Services Corp. Full timeOverviewAlabang (96050), Philippines, Muntinlupa City, National Capital Region (Manila)Sr. Analyst, Finance Risk ManagementSummary:This role will play a key part in executing robust and proactive risk management programs, partner with and influence key stakeholders to achieve business value while ensuring Finance is operating within enterprise risk...
-
Junior Security Analyst
1 week ago
Manila, National Capital Region, Philippines Satellite Office Full timeJUNIOR SECURITY ANALYSTWork for our global clients and immerse in our rich and diverse company culture where you can thrive, grow and just be aweSOme Apply now and discover the Satellite Office Candidate Experience – recognized as one of BEST among BPO companies worldwide.WHAT IS A JUNIOR SECURITY ANALYST?Our awesome client, a consumer-directed benefits...
-
Manulife Information Security Analyst
1 day ago
Manila, National Capital Region, Philippines Manulife Full timeRole OverviewThe Vendor Information Security Analyst will play a critical role in ensuring the security and integrity of Manulife's information assets. This includes reviewing third-party contracts, assessing vendor risk, and providing recommendations for improvement.Key Responsibilities:Review and analyze third-party contracts to identify potential risks...
-
Sr IT Compliance Analyst
3 days ago
Manila, National Capital Region, Philippines Dexcom Inc. Full timeThe CompanyDexcom Corporation (NASDAQ DXCM) is a pioneer and global leader in continuous glucose monitoring (CGM). Dexcom began as a small company with a big dream: To forever change how diabetes is managed. To unlock information and insights that drive better health outcomes. Here we are 25 years later, having pioneered an industry. And we're just getting...
-
Senior Security Analyst
1 week ago
Manila, National Capital Region, Philippines QBE Insurance Group Full timePrimary DetailsTime Type: Full timeWorker Type: EmployeeWe are seeking a highly skilled and motivated Senior Security Analyst to join our Global Security Operations Centre based in the Philippines. Reporting to the Global Security Operations Centre Lead, the Senior Security Analyst will be a key member of our rapidly growing Global team.This role is looking...
-
Cybersecurity Risk Analyst
8 hours ago
Manila, National Capital Region, Philippines CITCO INTERNATIONAL SUPPORT SERVICES LIMITED-PHILIPPINE ROHQ Full timeWe are seeking a highly skilled Cybersecurity Risk Analyst to join our team at CITCO INTERNATIONAL SUPPORT SERVICES LIMITED-PHILIPPINE ROHQ.Job Description:This role involves conducting application/network penetration testing, vulnerability assessment, and other security Red Team activities as part of a team.You will work closely with development and...
-
Information Security Analyst
7 days ago
Manila, National Capital Region, Philippines Applaudo Studios Full timeAbout Applaudo StudiosAt Applaudo Studios, we believe in a culture of excellence, respect, and teamwork. Our values of trust, communication, and innovation drive us to deliver exceptional results.Job DescriptionThe SOC Analyst is a critical role in our Security Operations Center, responsible for monitoring and analyzing raw security data to identify...
-
Security Information Analyst
6 days ago
Manila, National Capital Region, Philippines Trustwave Full timeJob OverviewWe're seeking a highly skilled Security Analyst to join our team. As a key member of our SOC platform support team, you'll be responsible for ensuring the security of our customers' networks.Key Responsibilities:Perform routine network checks to identify potential security vulnerabilities.Develop and implement strategies to mitigate security...
-
Security Analyst
2 weeks ago
Manila, National Capital Region, Philippines Copeland Philippines, Inc. Full timeJob PurposeAs a Security Analyst, you will be a key member of our Global Cybersecurity Team, helping to strengthen Copeland's cybersecurity posture. This role involves monitoring tools and dashboards, identifying and mitigating security vulnerabilities, and collaborating with teams to address risks effectively. You will also contribute to continuously...
-
Security Analyst
8 hours ago
Manila, National Capital Region, Philippines CITCO INTERNATIONAL SUPPORT SERVICES LIMITED-PHILIPPINE ROHQ Full timeRisk Analyst is responsible for working individually and as part of a team on application/network penetration testing, vulnerability assessment and other security Red Team activities as assigned.This position will involve working closely with development and projects teams to ensure that internal, secure development processes are adhered to and applications...
-
Manila, National Capital Region, Philippines Optum, a UnitedHealth Group Company Full timeAbout This RoleWe are seeking a highly skilled Information Security Risk Analyst to join our team. As an Information Security Risk Analyst, you will play a critical role in supporting information security policies, standards, and procedures to secure and protect data residing on systems.You will work directly with third-party user departments to implement...
-
Security Compliance Analyst
8 hours ago
Manila, National Capital Region, Philippines QBE GROUP SHARED SERVICES LIMITED - PHILIPPINE BRANCH Full timeJob OverviewThe role of a Data Loss Prevention (DLP) Analyst at QBE GROUP SHARED SERVICES LIMITED - PHILIPPINE BRANCH is to identify and mitigate sensitive data risks. This involves cross-functional collaboration with cybersecurity, privacy, compliance, and data protection teams.This position requires strong analytical and problem-solving skills to...
-
Security Risk Consultant
3 days ago
Manila, National Capital Region, Philippines Nexus Recruitment Group Full timeAbout the RoleThis is an excellent opportunity for a skilled IT professional to take on a challenging role as a Security Risk Consultant. The successful candidate will have a strong background in information security, with experience in conducting security assessments, developing security policies, and implementing security controls.The consultant will be...
-
Lead Information Security Analyst
1 week ago
Manila, National Capital Region, Philippines OpenText (Philippines), Inc. Full timeThe Opportunity:The Lead SOC Analyst will understand a wide array of security processes and concepts and have a strong SOC background. They have excellent analysis, prioritization, and incident handling skills. The Lead SOC Analyst will perform various duties including: SIEM and security tool monitoring, alarm triage, incident handling, log analysis. This is...