Security Program Guidance Manager

4 weeks ago


Manila, National Capital Region, Philippines DTCC Full time

Are you ready to make an impact at DTCC?

Do you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We are committed to helping our employees grow and succeed. We believe that you have the skills and drive to make a real impact. We foster a thriving internal community and are committed to creating a workplace that looks like the world that we serve.

Pay and Benefits:

  • Competitive compensation, including base pay and annual incentive
  • Comprehensive health and life insurance and well-being benefits, based on location
  • Pension / Retirement benefits
  • Paid Time Off and Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
  • DTCC offers a flexible/hybrid model of 3 days onsite and 2 days remote (onsite Tuesdays, Wednesdays and a third day unique to each team or employee).

The Impact you will have in this role:

Being a member of Technology Risk Management (TRM) team, this role is responsible for setting strategic direction in the areas of IT Risk and Information Security. Maintains corporate security policies and control standards, acts as a second line of defense via a robust collection of risk and control assessments, reports to leadership and the Board on the status of the IT Risk and Information Security Programs, acts as an operational arm for monitoring threat intelligence, understanding when threats are being targeted against the firm, and responding to potential incidents, and serves as the main interface for Regulatory and Client reviews that focus on IT Risk and Information Security. Security Program Guidance manages alignment of the technology risk program to cyber regulations, cyber risk frameworks, and cyber best practices. The team performs self governance and risk identification by asessing core process areas within the technology risk management organization. The team assists with identifying internal issues, validating issue closures, and ensuring past issue remediations are sustained. Enterprise-wide management control testing is supported through this function and there is a subset of the team that performs year long technology risk management control testing. This team supports DTCC governance, risk, and compliance (GRC) and directly manages the controls in the process, risk, and control (PRC) libraries on behalf of the entire technology risk management department. Assessments of the security program's alignment to the Cyber Risk Institute Profile, the cybersecurity framework endorsed by the financial services industry, is also managed by this function which enables regulatory harmonization and has been accepted by various regulatory bodies.

Your Primary Responsibilities:

  • Assist Security Program Guidance Director with scoping for the year across all workstreams including, management control testing, past issue monitoring, core process reviews, and security regulatory program management.
  • Supervise team to ensure adherance to deadlines.
  • Serve as a trusted coach/mentor to team members. Share knowledge and expertise to help team members grow and develop.
  • Accountable for the reports and metrics produced by the team.
  • Familiar with CRI Profile, ISO/IEC 27001/27002:2013, NIST Cybersecurity Framework, NIST Special Publication (SP) 800-53 or other cyber, technology, financial services guidelines, frameworks, and regulations.
  • Expert writing skills to support thorough documentation of tested controls and communication of information security principles at all levels from executives to non-technical employees.
  • Work efficiently and independently with minimal supervision (i.e., self-motivated, proactive, and willing to stretch to meet important deadlines).
  • Experience establishing and maintaining effective relationships with internal customers.
  • Knowledge of technology controls (IT and Cyber) and how they are executed in today's IT threat landscape.
  • Mitigates risk by following established procedures and monitoring controls, spotting key errors and demonstrating strong ethical behavior.

Qualifications:

  • Minimum of 8 years of related experience
  • Bachelor's degree preferred or equivalent experience

Talents Needed for Success:

  • Highlights the expected benefits of new actions and strategies to help others overcome fears of change.
  • Fosters a culture where honesty and transparency are expected.
  • Proactively seeks feedback from others on his/her own performance.
  • Ensures that regular feedback is given in a constructive and behaviorally oriented manner.
  • Supports an environment where individuals are respected for their contributions.

The salary range is indicative for roles at the same level within DTCC across all US locations. Actual salary is determined based on the role, location, individual experience, skills, and other considerations. We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, veteran status, or disability status. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.

#J-18808-Ljbffr
  • Guidance Counselor

    2 hours ago


    Manila, National Capital Region, Philippines Centro Escolar University Full time

    1 week ago Be among the first 25 applicantsGet AI-powered advice on this job and more exclusive features.QualificationsEarned Master's degree in Guidance and CounselingMust be a licensed guidance counselorPrior experience in the field of guidance and counseling is preferredJob Description / SummaryGuidance counselors' duties are focused on the overall...

  • Program Manager

    4 weeks ago


    Manila, National Capital Region, Philippines Northern Trust Full time

    About Northern Trust:Northern Trust, a Fortune 500 company, is a globally recognized, award-winning financial institution that has been in continuous operation since 1889.Northern Trust is proud to provide innovative financial services and guidance to the world's most successful individuals, families, and institutions by remaining true to our enduring...


  • Manila, National Capital Region, Philippines beBeeCompliance Full time ₱800,000 - ₱1,200,000

    Security Compliance Manager RoleWe seek a seasoned professional to lead our security compliance initiatives. The successful candidate will design and implement comprehensive training programs, awareness campaigns, and phishing simulation exercises to enhance the organization's cybersecurity posture.ResponsibilitiesDevelop and deliver engaging training...


  • Manila, National Capital Region, Philippines beBeeConsultant Full time ₱600,000 - ₱1,200,000

    Job Title: IT Security ConsultantJob DescriptionWe are seeking a skilled IT security consultant to join our team. As an IT security consultant, you will be responsible for implementing and managing the company's cybersecurity infrastructure.Key ResponsibilitiesDesigning and implementing cybersecurity strategies to protect the company's assetsConducting risk...


  • Manila, National Capital Region, Philippines Visage Executive Search Full time

    The candidate needs to fulfill the following key functions:Manage bank micro/digital loan portfolio,Be familiar with banking credit regulation and PIC for designing and demonstrating the flow walkthrough,Coordinate with product/IT team on flow changes as part of a digital bank.Additionally, the candidate will represent the bank in all cybersecurity matters...


  • Manila, National Capital Region, Philippines Visage Executive Search Full time

    The candidate needs to fulfill the following key functions: Manage bank micro/digital loan portfolio, Be familiar with banking credit regulation and PIC for designing and demonstrating the flow walkthrough, Coordinate with product/IT team on flow changes as part of a digital bank. Additionally, the candidate will represent the bank in all cybersecurity...


  • Manila, National Capital Region, Philippines Globe Telecom Full time

    At Globe, our goal is to create a wonderful world for our people, business, and nation. By uniting passionate individuals who believe they can make a difference, we are confident that we can achieve this goal.Job DescriptionThe role is responsible for the delivery, execution, quality control, and completion of strategic programs and projects in alignment...


  • Manila, National Capital Region, Philippines beBeeSecurity Full time ₱900,000 - ₱1,200,000

    Senior Security ManagerLead the implementation of robust security controls to protect organizational assets.ResponsibilitiesDevelop and execute periodic access certification campaigns for systems, applications, and infrastructure.Validate user access appropriateness based on job roles and business requirements.Collaborate with application and business owners...

  • Cloud Security Auditor

    13 hours ago


    Manila, National Capital Region, Philippines beBeeAudit Full time ₱900,000 - ₱1,200,000

    We are seeking an experienced Senior Technology Auditor to lead and execute audits focused on cloud environments, cybersecurity, and technical controls.The ideal candidate will have a deep understanding of cloud computing models, such as SaaS, and the related control requirements. They will also have experience auditing or implementing controls aligned with...


  • Manila, National Capital Region, Philippines beBeeSecurityProgram Full time

    Job Description:The successful candidate will play a pivotal role in setting the strategic direction for IT Risk and Information Security. This includes maintaining corporate security policies and control standards, acting as a second line of defense through robust risk and control assessments, reporting to leadership and the Board on the status of the IT...