Current jobs related to Vulnerability Management and Risk Reduction Specialist - Taguig, National Capital Region - Willis Towers Watson


  • Taguig, National Capital Region, Philippines GCash Full time

    As a Risk Management Specialist for Financial Security at GCash, you will play a critical role in identifying and mitigating potential security risks and vulnerabilities in our technology and information systems. You will be responsible for designing and implementing effective cybersecurity and fraud prevention strategies to protect our customers' sensitive...


  • Taguig, National Capital Region, Philippines Cobden & Carter International Full time

    Cobden & Carter International is seeking an experienced Cybersecurity Risk Specialist to join our team.Job Description:We are looking for a skilled professional to lead third-party supplier security risk assessments and remediation activities. The ideal candidate will have a strong understanding of information security risks and compliance frameworks.Key...

  • IT Risk Manager

    17 hours ago


    Taguig, National Capital Region, Philippines Michael Page Full time

    About Our ClientThe client is a leading bank with a strong presence in Southeast Asia.Job DescriptionDeveloping and implementing comprehensive IT risk management frameworks, policies, and procedures.Conducting regular risk assessments and vulnerability analyses of IT systems and processes.Ensuring compliance with BSP regulations and other relevant standards...

  • ESG Risk Specialist

    6 days ago


    Taguig, National Capital Region, Philippines Deutsche Bank Full time

    Third Party Risk Management – Environmental, Social, & Governance (ESG) Risk SpecialistThis role is responsible for establishing and owning ESG standards, controls, and processes in line with associated regulatory requirements for DWS vendors and third parties. You will define the scope and levels of assessment required for ESG assessments depending on...


  • Taguig, National Capital Region, Philippines Nityo Infotech Full time

    The Requirements-- Experience in working with Vulnerability Management/Threat Intelligence tools such as Qualysguard, Tenable, Nessus, Wiz, Symantec etc.-- Fundamental understanding of Operating Systems – Windows, Linux, and Cloud-- Ability to apply a risk-based approach while working on assigned responsibilities-- Demonstrates proven extensive abilities...


  • Taguig, National Capital Region, Philippines Nityo Infotech Full time

    The Requirements-- Experience in working with Vulnerability Management/Threat Intelligence tools such as Qualysguard, Tenable, Nessus, Wiz, Symantec, etc.,-- Fundamental understanding of Operating Systems – Windows, Linux, and Cloud,-- Ability to apply a risk-based approach while working on assigned responsibilities,-- Demonstrates proven extensive...


  • Taguig, National Capital Region, Philippines Manpower (Philippines) Full time

    We are looking for a highly skilled Risk Management Head to join our team at Manpower (Philippines). In this role, you will be responsible for conducting regular research, reviews, and updates of security standards to keep pace with emerging threats and technological advancements.The ideal candidate will have a strong understanding of risk management...


  • Taguig, National Capital Region, Philippines Nityo Infotech Full time

    The Requirements-- Experience in working with Vulnerability Management/Threat Intelligence tools such as Qualysguard, Tenable, Nessus, Wiz, Symantec etc.-- Fundamental understanding of Operating Systems – Windows, Linux, and Cloud-- Ability to apply a risk-based approach while working on assigned responsibilities-- Demonstrates proven extensive abilities...


  • Taguig, National Capital Region, Philippines Nityo Infotech Full time

    The Requirements-- Experience in working with Vulnerability Management/Threat Intelligence tools such as Qualysguard, Tenable, Nessus, Wiz, Symantec, etc.,-- Fundamental understanding of Operating Systems – Windows, Linux, and Cloud,-- Ability to apply a risk-based approach while working on assigned responsibilities,-- Demonstrates proven extensive...


  • Taguig, National Capital Region, Philippines Nityo Infotech Full time

    The Requirements-- Experience in working with Vulnerability Management/Threat Intelligence tools such as Qualysguard, Tenable, Nessus, Wiz, Symantec etc.-- Fundamental understanding of Operating Systems – Windows, Linux, and Cloud-- Ability to apply a risk-based approach while working on assigned responsibilities-- Demonstrates proven extensive abilities...


  • Taguig, National Capital Region, Philippines GCash Full time

    At GCash, we're pushing the boundaries of FinTech by developing innovative financial solutions. As a Risk Management Specialist, you'll play a crucial role in ensuring the stability and security of our financial systems.About the RoleYou'll work closely with cross-functional teams to identify and assess market risks.Develop and implement strategies to...


  • Taguig, National Capital Region, Philippines Metrobank Full time

    Metrobank is hiring a Risk Management Specialist to join our Credit Acquisition Division. The ideal candidate will have a strong background in risk management and a proven track record of developing and implementing process improvement initiatives.Main Responsibilities:Develops and implements various risk management strategies to mitigate potential risks...


  • Taguig, National Capital Region, Philippines GCash Full time

    GCash is a leading financial technology company that aims to revolutionize the way people make transactions in the Philippines. As a key player in the fintech industry, we are committed to creating innovative solutions that promote financial inclusion and digital transformation.Job DescriptionWe are seeking a highly skilled and experienced Cybersecurity and...


  • Taguig, National Capital Region, Philippines GCash Full time

    **GCash Overview**We are a pioneering FinTech company that strives to empower Filipinos through innovative financial solutions. Our team is dedicated to delivering secure and reliable services that meet the needs of our customers.**Job Description**The ideal candidate will have a strong background in IT, computer science, or software engineering, and...


  • Taguig, National Capital Region, Philippines N-able Technologies Ltd. Full time

    Why N-ableIT doesn't get better than this N-able isn't just another software company – we're going places, and we'd love for you to be a part of that journey. With N-ablites in more than 15 countries around the world, you're adding your unique voice to a diverse team of people who are supporting our customers, and one another. The Way We Work, our hybrid...


  • Taguig, National Capital Region, Philippines RCBC Full time

    At RCBC, we are looking for a skilled Operational Risk Management Specialist to join our team. This role is responsible for ensuring the effective implementation of our Operational Risk Management (ORM) Framework across the Bank.Key Responsibilities:Develop and implement the Operational Risks Management Framework (ORMF), policies, and tools to ensure they...


  • Taguig, National Capital Region, Philippines Michael Page Full time

    Key ResponsibilitiesConduct security risk assessments and define information security requirements on projects, existing business and technology processes, cloud-based applications/infrastructure, and other types of information systems.Identify security operation gaps, processes, associated risks, and mitigation strategies with outsourced vendors and...


  • Taguig, National Capital Region, Philippines Asurion Full time

    About the RoleThis Senior Risk Management Specialist position is responsible for leading business continuity initiatives with a focus on crisis management. The successful candidate will have expertise in risk management and business resilience, ensuring effective response to crises and minimizing disruptions to business operations.Develops and implements...


  • Taguig, National Capital Region, Philippines DXC Technology Inc. Full time

    About the RoleWe are seeking a highly motivated Cybersecurity Specialist to join our team at DXC Technology Inc. as an Information Security Analyst.This role will support security assessments, audits, and vulnerability scans by assisting in generating reports and recommendations.The ideal candidate will have a strong desire to learn and grow in the security...


  • Taguig, National Capital Region, Philippines Comrise Full time

    Job DescriptionWe are looking for a highly skilled Global End User Computing Specialist to provide operational engineering and support against global End User Computing platforms with a focus on security solutions. The successful candidate will work closely with EUC Operations and Info Sec Operations to maintain and administer endpoint security controls and...

Vulnerability Management and Risk Reduction Specialist

1 week ago


Taguig, National Capital Region, Philippines Willis Towers Watson Full time

Job Overview

We are seeking a highly skilled Cybersecurity Vulnerability Analyst to join our team at Willis Towers Watson. The successful candidate will play a crucial role in supporting our vulnerability management lifecycle, ensuring that vulnerability-related risks are effectively managed and addressed.

About the Role

As a Cybersecurity Vulnerability Analyst, you will be responsible for:

  • Expertise in Scanning Tools: Developing and enhancing your expertise in WTW scanning tools and supporting tools, ensuring high-quality and accurate data for stakeholders.
  • Tracking Vulnerability Remediation: Attending or leading remediation calls with business areas to track and drive vulnerability remediation efforts, escalating where necessary.
  • Supporting Internal Projects: Collaborating with teams to enhance WTW's ability to identify, prioritize, and respond to vulnerabilities of varying risk across different business areas.
  • Collaboration with Business/Teams/Stakeholders: Working closely with senior members of offensive and defensive teams to ensure clear communication of findings and tracking of identified gaps.
  • Emerging Technologies: Staying informed on the latest vulnerabilities and attack techniques to bolster WTW's vulnerability remediation efforts.
  • BAU Processes: Supporting the WTW vulnerability management lifecycle as part of the company's corporate controls.
  • Reporting and Metrics: Assisting in ensuring accurate and timely vulnerability remediation reports and monthly metrics provided to stakeholders.
  • Continuous Learning: Taking advantage of training opportunities and self-learning to stay up-to-date on emerging vulnerability threats and technical details.
  • Audits: Assisting with both internal and external audits as required.

Requirements and Qualifications

The ideal candidate will possess:

  • Familiarity with Vulnerability Scanning Tools: Overall familiarity with popular vulnerability scanning tools and how they work to identify vulnerabilities.
  • Understanding of Web, Network, and Cloud Technologies: A good basic understanding of web and network architecture, as well as traffic at different OSI layers and cloud architecture.
  • Vulnerability Patching/Remediation: A good understanding of how vulnerability patches and other vulnerability remediation methods work, including reasons why patches may not be available.
  • Attention to Detail: Ability to analyze large volumes of complex vulnerability data using PowerBi and Excel spreadsheets while ensuring data completeness and accuracy.
  • Exposure to Offensive and Defensive Security: Some basic hands-on experience or academic exposure to both offensive and defensive security practices, focusing on building knowledge in cyber operations.
  • Collaboration Skills: Ability to work alongside more senior Cyber Security Operations team members to support process improvements and technology controls.
  • Awareness of Regulatory Requirements: Basic understanding of regulatory requirements such as DORA, related to cybersecurity, with an interest in learning their impact on technical controls and processes.
  • Basic Scripting Knowledge: Some basic knowledge of scripting languages like Powershell, KQL, Python, etc.

Desirable but Not Essential

The following qualifications are desirable but not essential:

  • Educational Background: Degree or coursework in Information Technology, Cybersecurity, or a related field.
  • Certifications: Relevant cybersecurity certifications (such as CompTIA Security+, CEH, MS Azure, CISSP, etc.) are desirable.
  • Interest in Leadership: Willingness to develop leadership and team collaboration skills over time.

Non-Technical Skills

  • Stakeholder Engagement: Ability to communicate effectively with technical and non-technical team members, focusing on building strong working relationships.
  • Communication Skills: Strong verbal and written communication skills to articulate technical issues clearly to diverse audiences.
  • Team Collaboration: Proven ability to work collaboratively in a team setting, contributing to a supportive and inclusive work environment.
  • Problem-Solving Abilities: Interest in developing problem-solving skills to help resolve issues and continuously improve the security framework.