Vendor Security Risk and Compliance Analyst

4 weeks ago


Taguig Philippines John Clements Consultants, Inc. Full time

Qualifications:

  • Minimum five years of experience with a BS in Computer Science or equivalent field
  • Preferred education and/or experience: Experience working in cross-departmental teams and leading efforts through collaboration and influence.
  • Information Technology (IT) security professional with a broad range of knowledge in the assessment of risk, compliance, and audit of systems/processes.
  • Experience evaluating compliance of large entities, specific to the healthcare industry.
  • Technically astute, with experience in security and compliance requirements.

Responsibilities:

  • Monitor the assessment queue within the company's ServiceNow vendor module for submissions of digitized information security questionnaires.
  • Perform tier I initial assessment of vendor responses provided in digitized information security questionnaires.
  • Create Visio diagrams that represent the flow of company data between systems, data centers, and environments, Data Flow Diagrams, based on responses received and reviewed as part of tier I assessments.
  • Utilize the information security questionnaire cheat sheet to submit electronic follow up questions for missing or incomplete information and track status of additional vendor responses.
  • Identify areas of weakness in vendor security controls, which could introduce risk to company data and/or systems and document findings in the company's ServiceNow vendor module.
  • Transfer to tier II Vendor Security team for final analysis.
  • Update and finalize Data Flow Diagram, as needed, based on changes to vendor responses.

More Info: Located in BGC Taguig, Night shift, Hybrid



  • Taguig, Philippines John Clements Consultants, Inc. Full time

    Qualifications:Minimum five years of experience with a BS in Computer Science or equivalent fieldPreferred education and/or experience: Experience working in cross-departmental teams and leading efforts through collaboration and influence.Information Technology (IT) security professional with a broad range of knowledge in the assessment of risk, compliance,...

  • Compliance Analyst

    6 days ago


    Philippines BlueAlly Full time

    Benefits of joining BlueAlly:This is a 100% remote positionYou will work as an independent contractorWe will provide your work equipment (Mac or Windows)We offer HMO (Php 500,000 plan)You will report to work during US hours (PST)Salary: Starting pay is $1500/month and the maximum pay is $1800/monthAnnual performance reviewWe are looking for a Compliance...


  • Philippines EMAPTA Full time

    Job DescriptionSecure Your Future: Join a Global Career Without Leaving Home!Embark on a journey of unparalleled perks with Emapta Sri Lanka, a leader in premium outsourcing services. Experience above-market compensation, global career exposure, and a nurturing work environment-all without leaving home. Join us as an Information Security Risk Officer, where...


  • Philippines CloudPay Full time

    Role Pitch Join a global Business function to provide assurance through vendor risk oversight for a rapidly growing business looking to 'make pay strategic'. Working with our Senior Manager - Payroll & Corporate Compliance & Assurance, this is an opportunity to develop professional skills and gain a wide variety of experience.Delivering high quality...

  • ICT Governance Risk

    4 weeks ago


    Philippines MicroSourcing Full time

    Job Responsibilities:Initial Duties (first 6 months) . Coordination of the Detection & Response system including closing out incident investigations with third-party analysts. . Vulnerability management and remediation. . Updating the Cyber Incident Response plan, process guides and incident reporting. . Conduct investigations on suspicious emails to assess...

  • SAP Security Analyst

    3 weeks ago


    Philippines Jollibee Group of Companies Full time

    The SAP Security Analyst is responsible for the following:Handling the implementation and support of access provisioning and governance in SAP.Designing and developing roles within SAP applications.Providing essential documentation to support changes (Functional Specifications, Configuration documents, Test Scripts, among others).Reviewing developed roles to...


  • Philippines Curran Daly & Associates Full time

    Job DescriptionJob Summary: We are seeking a dedicated Information Security and Risk Officer to join the Enterprise Technology & Services team. This is a 1st line of defense IT Governance role in which the incumbent will enable businesses and IT partners to recognize and handle their cyber and information security risks in a vibrant business environment. You...

  • Compliance Analyst

    2 weeks ago


    Philippines, Manila SiteMinder Full time

    At SiteMinder we believe the individual contributions of our employees are what drive our success. That's why we hire and encourage diverse teams that include and respect a variety of voices, identities, backgrounds, experiences and perspectives. Our diverse and inclusive culture enables our employees to bring their unique selves to work and be proud of...


  • Philippines HCM Nexus Consulting Inc Full time

    About the job Security Operations AnalystProvide Tier 2 technical and support services to the global organization on behalf of the Information Security TeamReceive, process, and resolve tickets per defined SLAsAssist in the architecture, deployment, and ongoing support of key security systems necessary for the protection of Firm assetsReport compliance...


  • Taguig, Philippines Baker McKenzie Full time

    The Security Operations Analyst will provide technical, administrative, and procedural support for the Firm's information security program to protect the confidentiality, integrity, and availability of information systems in accordance with the Firm's business objectives, regulatory requirements, and strategic goals. Responsibilities:Provide Tier 2 technical...

  • IT Specialist

    4 weeks ago


    Philippines Okada Manila Full time

    I. MAJOR RESPONSIBILITIES AND DUTIES:Ability to execute any information security related matters as being assigned by the management of Information Technology as per business operation required.Daily network and data security operation routine checks, file permission audit, user account creation, AD security groups creation and modification with strict...

  • IT Risk Specialist

    4 weeks ago


    Philippines First Gen Corporation Full time

    Key Responsibilities:Participates and coordinates the implementation of Information Security framework, program and plan across the FPH-FGEN Group.Participates and oversees in the conduct of Information Security Assessment by FPH-FGEN Group.Collects, validates and analyzes data that measure key risk indicators (KRIs) and/or key performance indicators (KPI)...


  • Other - Philippines Wipro Limited Full time

    Start Date – Approx 15th March Duration – 1 year, subject to extension for 3 years • Detail JD – Expertise in cyber security frameworks such as ISO27001, NIST 800-53, NIST CSF, PCI-DSS, ISO22301, data privacy etc. • Skilled in risk management, risk assessment and analysis • Technical knowledge in the security domains such as information security...

  • Cyber security

    4 weeks ago


    Other - Philippines Wipro Limited Full time

    Demonstrates thorough knowledge and/or a proven record of success in: • Performing vendor security assessments, including site assessments. • Performing security control reviews across security domains, both physical and logical. • Performing control reviews against industry standards or regulations like ISO 27001, NIST, GDPR, etc. and against master...


  • Taguig, Philippines Baker McKenzie Full time

    The Security Operations Analyst will provide technical, administrative, and procedural support for the Firm's information security program to protect the confidentiality, integrity, and availability of information systems in accordance with the Firm's business objectives, regulatory requirements, and strategic goals. Responsibilities:Provide Tier 2 technical...


  • Philippines HCM Nexus Consulting Inc Full time

    About the job Security Operations AnalystRole purposeTo provide technical, administrative, and procedural support for the Firm's information security program to protect the confidentiality, integrity, and availability of information systems in accordance with the Firm's business objectives, regulatory requirements, and strategic goals. Main responsibilities...


  • Philippines, Manila Adventus Full time

    Adventus is an Information and Communications Technology (ICT) Solutions and Services Provider with a wide footprint across the globe.We help organizations bring about positive transformation to their businesses by leveraging intelligent applications of innovative solutions and pertinent services to remain winners in today's ultra competitive...


  • Manila, Philippines Crawford & Company (GBSC) Full time

    Role Summary:The Manager, Information Technology Risk and Compliance (ITRC) position will lead a team overseeing the entire lifecycle of IT Audit support, including audit facilitation, documentation gathering, issue remediation, quarterly User Access Reviews (UARs), and vendor and client assessments. Possessing strong leadership and communication skills,...

  • Governance, Risk

    2 weeks ago


    Philippines East West Banking Corporation Full time

    About The JobLocations: MakatiCorporate Title: Assistant Vice PresidentWork Arrangement: HybridOur Information Security and Data Protection Team is looking for experienced professionals to join us in Makati for the role of Governance, Risk & Compliance Head.In this role, you will oversee the alignment and execution of security duties across the Bank,...

  • Security Analyst

    1 week ago


    Manila, Philippines Cambridge University Press & Assessment | Manila Full time

    Discover a world of endless possibilities with Cambridge University Press & Assessment, a distinguished global academic publisher and assessment organisation proudly affiliated with the prestigious University of Cambridge.We are looking for a Security Analyst to join our Security Operations Team. As a key member of our team, your goal is to protect our...