Information Security Governance Consultant

2 weeks ago


Taguig, National Capital Region, Philippines UnitedHealth Group Full time

As an Info Security Risk Consultant at Optum, you will have the opportunity to work with a diverse group of talented individuals who share a common goal: making healthcare more accessible and affordable for all.

Your primary responsibilities will include:

  • Ensuring third-party suppliers comply with business requirements:
  • Business agreements, policies, procedures, and regulations.

In addition to these key responsibilities, you will also be responsible for:

  • Leading third-party supplier security risk assessment and remediation activities:
  • Analyze information security risks applicable to a supplier.
  • Conduct discovery calls and perform risk-based assessments.
  • Review evidence and supporting documentation from the suppliers.
  • Communicate identified security gaps, provide recommendations, and monitor/track progress until completion.
  • Collaborate with internal stakeholders and management for any process deviations, delays, or escalations.

To succeed in this role, you will need:

  • Strong technical skills:
  • Certifications: Sec+, CISA, CRISC, CISM, ISO 27001 Lead Auditor, ISC2 CC
  • 5+ years of experience in IT or IS compliance/audit
  • Solid communication (listening, verbal, written) and presentation skills
  • Advanced level experience in MS Office 365
  • Excellent collaboration and problem-solving skills:
  • Ability to develop effective relationships with team members, suppliers, and internal stakeholders
  • Knowledge and understanding of different security products (MFA, encryption, threat & vulnerability, antivirus, network protection, etc.)
  • Knowledge or working experience with various compliance frameworks and regulations like HITRUST, ISO 27001, SOC 2 Type II, PCI DSS, NIST, etc.


  • Taguig, National Capital Region, Philippines John Clements Consultants, Inc. Full time

    About the Job:We are seeking a highly skilled and experienced Information Security Governance professional to join our team at John Clements Consultants, Inc.The ideal candidate will have a strong background in information security governance, with experience in developing and implementing effective information security policies, procedures, and standards.In...


  • Taguig, National Capital Region, Philippines beBee Careers Full time

    We require a skilled Security and Governance Consultant to join our team. As a key member of our organization, you will be responsible for designing, developing, implementing, and overseeing our information security and cyber resilience strategy.This involves developing data security procedures and a cyber-security framework that includes forensic tools and...


  • Taguig, National Capital Region, Philippines Planit Philippines Corporation Full time

    At Planit Philippines Corporation, we are world leaders in application testing and quality engineering. Our solutions support organisations to deliver high-quality systems, applications, and IT architecture.We offer expert consultancy, bespoke services, tailored training, and unique solutions to complex projects. Specialising in digital quality, our team has...


  • Taguig, National Capital Region, Philippines UnitedHealth Group Full time

    As a key member of our team, the Information Security Consultant Lead will be responsible for ensuring the security of our third-party suppliers. This includes conducting risk assessments, identifying security gaps, and implementing remediation activities.Responsibilities:Security Risk Management: Conduct security risk assessments and implement remediation...


  • Taguig, National Capital Region, Philippines Ingressum Full time

    Job DescriptionThe GRC Consultant plays a crucial role in supporting the governance, risk, and compliance functions within our organization. This position involves aiding in the implementation and upkeep of security frameworks like ISO 27001, PCI DSS, ISO 42001, and Cyber Essentials.Implement and Maintain Security Frameworks: Assist in the implementation and...


  • Taguig, National Capital Region, Philippines beBee Careers Full time

    Key AccountabilitiesThe Information Security Consultant will provide support to the IT Audit Manager in performing various IT audit activities, processes, and services.Main TasksDevelops and executes corporate IT audit projects to assess operational performance and internal control processes.Participates in the development of a detailed audit plan,...


  • Taguig, National Capital Region, Philippines beBee Careers Full time

    Job SummaryWe are seeking a highly skilled Senior Information Security Risk Consultant to join our team. In this role, you will lead projects with minimal supervision and demonstrate technical proficiency for assigned assessments.About the RoleParticipate in risk assessment walk-throughs, identifying and documenting risks and controls and obtaining evidence...


  • Taguig, National Capital Region, Philippines RCBC Full time

    RCBC is a leading financial institution in the Philippines, dedicated to providing innovative banking solutions. We are seeking a highly skilled and experienced individual to lead our IT security governance efforts.Job DescriptionThe Head of Application Security Unit will be responsible for establishing and maintaining robust application security controls to...


  • Taguig, National Capital Region, Philippines Refinitiv Full time

    Refinitiv is seeking a highly skilled Information Governance Analyst to join our team. In this role, you will be responsible for managing the data governance needs of Refinitiv's Global HR Content Hub.This includes developing and maintaining data dictionaries and glossaries, as well as providing guidance to data consumers and SMEs on data definitions, usage,...


  • Taguig, National Capital Region, Philippines beBee Careers Full time

    Role OverviewThe Information Security Manager plays a crucial role in ensuring the organization's IT infrastructure remains secure and compliant.Main AccountabilitiesDevelops and implements technical controls to mitigate risks.Serves as an interface between cybersecurity strategy and technology-focused teams.Contributes to the development of annual business...