Risk and Security Assessment Consultant
4 days ago
- Conducts security and/or risk assessments in a fast-paced environment and provides timely, practical recommendations to mitigate identified risks
- Performs security and/or risk assessments in alignment with industry standards (ISO 27001/2, NIST, CIS, PCI DSS, SWIFT CSP, CSA CCM), regulatory requirements (BSP circulars and others), and best practices
- Carries out maturity assessments in cybersecurity and information technology
- Engages in discovery workshops with consultants and key stakeholders across IT and other business units
- Participates in project presentations for client project teams and other key stakeholders
- Facilitates security training and awareness programs
Qualification
Possesses over 3 years of experience in Information TechnologyHolds 23 years of specific experience in security assessments, including Cloud Security Assessment, Third Party Security Risk Assessments, ISMS/NIST Assessment, SOC 2 Type 2 Assessment, RCSA, Configuration Review, Architecture Review, and Controls Review (must have)Has facilitated at least one (1) IT Risk Assessment projectExperienced in Data Privacy frameworks such as PDPA, GDPR, and the Data Privacy Act of 2012Experienced in conducting Security Awareness and Training initiativesHas at least 1 year of consulting or advisory engagement experience (preferred)Strong knowledge in IT Audit/Assessments and Maturity AssessmentsStrong knowledge of information security standards and guidelines, including ISO 27001/2, NIST, CIS, PCI DSS, and SWIFT CSPUnderstands local regulations such as BSP circularsKnowledgeable in cloud computing, storage, security, and virtualization best practicesEffective communicator with the ability to interact across all organizational levelsSkilled in technical writing and infographic reportingStrong time management skills, capable of multi-tasking and handling shifting prioritiesDemonstrated ability to deliver exemplary customer service to both internal and external stakeholdersPreferably holds at least one of the following certifications: ISC2 CISSP, ISMS LA/LI, ISACA CISA or CRISC, or certifications relevant to PCI DSS, SWIFT, HITRUST, and other industry security standards/guidelinesA
-
Makati City, National Capital Region, Philippines Smart Communications, Inc. Full time ₱1,200,000 - ₱1,800,000 per yearResponsibilitiesDetermine the risk posture of the PLDT Group resulting from changes in technology architecture, products, and services.Conduct the cybersecurity risk assessments in accordance with company prescribed cybersecurity policies and standards, covering assets, systems, solutions, infrastructure, and externally integrated systems. Assess the impact...
-
Security Consulting and Risk Officer
4 days ago
Makati City, National Capital Region, Philippines AvantePH Staffing and Consultancy Inc. Full time ₱6,000,000 - ₱9,000,000 per yearResponsible for securing data, network, and applications in system development or system implementations. Perform threat modeling, business and technical process analysis, application security and architecture reviews to evaluate, identify vulnerabilities and enforce security controls in IT and application systems. Ensures coordination of penetration testing...
-
Operational Risk Manager
4 days ago
Makati City, National Capital Region, Philippines Security Bank Corporation Full time ₱1,200,000 - ₱2,400,000 per yearAbout the RoleAs an Operational Risk Manager, you are responsible for carrying out operational risk governance, oversight, consulting, and risk management activities as part of the Bank's Second Line of Defense. Supports the identification, assessment, mitigation, monitoring, and reporting of operational risks by the various businesses and functions within...
-
IT Risk
4 days ago
Makati City, National Capital Region, Philippines HRTX Full time ₱1,200,000 - ₱2,400,000 per yearJob Description:Conduct security and risk assessments, providing practical recommendations for risk mitigationEnsure assessments align with industry standards (ISO, NIST, CIS, PCIDSS, SWIFT CSP, CSA CCM) and regulatory requirements (e.g., BSP circulars)Perform cybersecurity and IT maturity assessmentsLead and participate in discovery workshops with...
-
Consultant
4 hours ago
Makati City, National Capital Region, Philippines Nexus Recruitment Group Full timeJob Summary:We are seeking a detail-oriented and analytical Risk & Security Consultant to support and lead information security assessments across enterprise environments. This role will focus on identifying, evaluating, and mitigating security risks through structured assessments and consulting engagements. Depending on experience, this position can be...
-
Cyber Security Specialist(Risk)
4 days ago
Makati City, National Capital Region, Philippines Rockwell Land Corporation Full time ₱1,200,000 - ₱2,400,000 per yearJob Summary:The Cyber Security Risk Officer is responsible for identifying, assessing, mitigating, and monitoring cyber risks across the organization. This role ensures the company's digital assets, infrastructure, and data are protected from internal and external cyber threats. The officer collaborates with IT, legal, compliance, and business units to...
-
Security Risk Management Specialist
6 days ago
Makati City, National Capital Region, Philippines Canonical - Jobs Full time ₱900,000 - ₱1,200,000 per yearIn security risk management we're looking to harness the power of industry best practice combined with driving new innovation on how we do security risk assessments and modelling. Our security risk management team is the primary owner of the strategy and practices of how we identify, track and reduce our security risk across everything we do. To support...
-
AWS Platform Security Architect
6 days ago
Makati City, National Capital Region, Philippines Cambridge University Press & Assessment | Manila Full time ₱122,000 - ₱166,000 per yearNOTE: When you click the apply button, you will be re-directed to Cambridge University Press & Assessment's website where you will be required to create a profile and upload a copy of your CV to complete your application.Employment type: PermanentLocation: Makati City, Metro ManilaWork setup: Hybrid (open to 2x a week in the office)Work schedule: 2pm to 10pm...
-
Senior Lead Consultant
3 hours ago
Makati City, National Capital Region, Philippines Nexus Recruitment Group Full timeJob Summary:We are looking for a seasoned Senior Lead Consultant - Security Architecture & Risk Assessment to guide the development and assessment of secure enterprise architectures, with a strong focus on identifying and mitigating technology and cyber risks. This role is responsible for designing and reviewing security architectures, conducting risk...
-
Cybersecurity Consultant
4 days ago
Makati City, National Capital Region, Philippines HRTX Full time ₱4,000,000 - ₱8,000,000 per yearJob Responsibilities:Performs security and/or risk assessments and provide timely and practical recommendations to mitigate the identified risksPerforms security and/or risk assessments aligned with industry standards (ISO 27001/2, NIST, CIS, PCIDSS, SWIFT CSP, CSA CCM), regulatory requirements (BSP circulars and others), and best practicesPerforms maturity...