Sr. Information Security Technical Lead

3 days ago


Manila, National Capital Region, Philippines Trend Micro Full time $80,000 - $120,000 per year

As the number of cyberattacks and digital threats continue to grow, our world needs more passionate and innovative individuals who seek to be trailblazers in and shapers of the rapidly evolving cybersecurity landscape.

At Trend Micro, we offer tremendous opportunities that will challenge and equip you to become engineered to do good in whatever path you take. By choosing to be an agent of change, you will be part of an impactful mission that aims to make the world safe for exchanging digital information.

What you'll do:

Lead and Manage FedRAMP Operations

  • Act as the PH Technical Lead for processing FedRAMP security cases for Incident Management with FedRAMP Ops members of the Americas Region.
  • Leverage a team of L1 SOC Analysts responsible for FedRAMP security alert monitoring.
  • Overseeing security monitoring and compliance efforts

Compliance Program Development and Management

  • Develop, implement, and manage the FedRAMP compliance program, ensuring that all cloud services adhere to stringent FedRAMP standards.
  • Work directly with TrendMicro VisionOne/CloudOne products for Government SaaS offerings and FIPS-compliant software releases.

Lifecycle Management

  • Coordinate and manage all phases of the FedRAMP lifecycle, including initial assessments, authorizations, continuous monitoring, and reauthorizations.

Collaboration and Integration

  • Collaborate extensively with internal teams (IT, security, development) to integrate FedRAMP requirements into organizational processes and technology stacks.

Documentation and Automation

  • Develop and maintain System Security Plans (SSP), policies, procedures, and controls to support FedRAMP compliance.
  • Automate the Plan of Action & Milestones (POA&M) and other continuous monitoring requirements.

Regular Security Assessments

  • Conduct regular security assessments and audits to ensure persistent compliance with FedRAMP and other relevant standards.

Change Monitoring and Compliance Adaptation

  • Monitor changes in FedRAMP requirements and guidelines, adapting practices to stay compliant with the latest updates.

Guidance and Expertise

  • Serve as the primary point of contact for FedRAMP inquiries and coordination with external auditors and assessors.
  • Provide guidance on FedRAMP-related topics to internal teams and conduct security risk assessments.

Reporting

  • Prepare and present detailed compliance reports to senior management and stakeholders, highlighting the status of FedRAMP initiatives and addressing any areas needing attention.

What you need:

  • 3+ years in information security or network administration, particularly within an enterprise-level Security Operations Center (SOC).
  • Strong experience with firewalls, Windows Servers, and PCs; experience with routers and switches is preferred.
  • Minimum of 3 years in security compliance or Governance, Risk, and Compliance (GRC), preferably supporting U.S. public sector security authorizations.
  • In-depth knowledge of Azure GovCloud, Sentinel, Nessus, HCL App Scan, JIRA, SIEM, IDS/IPS, EDR, and network monitoring tools.
  • Solid understanding of FedRAMP, CMMC, NIST 800-53, NIST RMF, FISMA, and similar frameworks.
  • Proficient in Windows, macOS, and Linux operating systems.
  • Capable in risk management and assessment procedures.
  • Skilled in network security and architecture, both wired and wireless.
  • Knowledgeable in enterprise and security architecture.
  • Familiarity with cloud hyperscaler services (e.g., AWS, Azure) and best practices.
  • Excellent analytical, problem-solving, and project management capabilities.
  • Strong communication and interpersonal skills for effective collaboration with internal teams, auditors, customers, and regulatory bodies.
  • Willingness to participate in frequent international video conferences and handle security incidents during non-regular hours.

What will help

  • Industry certifications such as CISSP, GCIH, GCFA, CEH, or similar are highly desirable.
  • Self-motivated and fast learner, able to complete tasks with minimal supervision.
  • Experience conducting company-wide third-party security risk assessments.
  • Advanced expertise in FedRAMP requirements.
  • Practical experience in penetration testing, threat hunting, information security management, computer forensics, incident response, or risk management.
  • Experience conducting regular security audits to ensure compliance with established standards and frameworks.

Be Passionate.

Be Innovative.

Be a Trender.

Be #EngineeredToDoGood.



  • Manila, National Capital Region, Philippines DexCom Full time

    The Company Dexcom Corporation (NASDAQ DXCM) is a pioneer and global leader in continuous glucose monitoring (CGM). Dexcom began as a small company with a big dream: To forever change how diabetes is managed. To unlock information and insights that drive better health outcomes. Here we are 25 years later, having pioneered an industry. And we're just getting...


  • Manila, National Capital Region, Philippines blaseek Full time $60,000 - $120,000 per year

    Position OverviewWe're looking for aSecurity Architectwho can strengthen our organization's security posture through strong technical expertise and effective stakeholder communication. This role involves assessing current controls, designing and improving security measures, and providing strategic guidance across teams. You'll also help enhance ourSIEM/MDR...


  • Manila, National Capital Region, Philippines Global Group Innovative Services, Inc. Full time ₱1,560,000 - ₱1,800,000 per year

    Now Hiring: Sr. Software Engineer I & Sr. Software Engineer II (Ivanti UWM Engineer)Work Setup: Hybrid | Shift: Night Shift (Graveyard)Locations: Manila and all sitePosition: Sr. Software Engineer I (Ivanti UWM Engineer)Salary: PHP 130,000 – PHP 150,000 Basic + OGA AllowanceResponsibilities:Provide technical support for Ivanti UWM solutions to ensure...


  • Manila, National Capital Region, Philippines White Cloak Technologies, Inc. Full time ₱200,000 - ₱250,000 per year

    Job Description:Whitecloak is seeking a dynamic and motivated Information Security Intern to join our team. The ideal candidate will assist in the implementation of security standards, policies, and procedures, contributing to the overall information security posture of our organization. This internship offers a valuable opportunity to gain hands-on...


  • Manila, National Capital Region, Philippines Nezda Global Full time $60,000 - $1,200,000 per year

    Position:Information Security OfficerJob Type:PermanentWork Setup:Hybrid (1x a week)Shift Time:NightLocation:ManilaJob Summary:The Information Security Officer will be responsible for ensuring the confidentiality, integrity, and availability of information assets. This includes developing and implementing information security policies, procedures, and...


  • Manila, National Capital Region, Philippines Global Group Innovative Services, Inc. Full time ₱137,000 - ₱149,000 per year

    STRICT HIRING: Sr. Cybersecurity Engineer (macOS Engineering)Work Setup: Hybrid | Shift: Night Shift (Graveyard)Location: All siteWe are actively hiring a Sr. Cybersecurity Engineer specializing in macOS Engineering. Please note: Experience in macOS architecture, pf firewall configuration, and JAMF Pro administration is strictly non-negotiable. Candidates...


  • Manila, National Capital Region, Philippines Astro Information Security Full time ₱400,000 - ₱600,000 per year

    Company DescriptionAstro Information Security, founded by ex-NASA and NSA cyber security experts, provides mature security programs to protect businesses. Ensuring nation‑state‑grade security, Astro offers 24x7x365 Managed Extended Detection & Response (MXDR), penetration testing, and advisory services. Our services also include SOC maturity assessments...


  • Manila, National Capital Region, Philippines SoftNice Full time

    We are looking for an IT Security Assessor for our client in the pharma industryKey responsibilities:Evaluate the information security program, policies, and governance of acquired company against the client's security requirements.Ensure alignment with frameworks (NIST, ISO 27001, CIS) and regulatory requirements (GDPR, HIPAA, etc.).Sample...


  • Manila, National Capital Region, Philippines Dexcom Full time

    The Company Dexcom Corporation (NASDAQ DXCM) is a pioneer and global leader in continuous glucose monitoring (CGM). Dexcom began as a small company with a big dream: To forever change how diabetes is managed. To unlock information and insights that drive better health outcomes. Here we are 25 years later, having pioneered an industry. And we're just getting...


  • Manila, National Capital Region, Philippines DexCom Full time ₱1,200,000 - ₱2,400,000 per year

    The Company Dexcom Corporation (NASDAQ DXCM) is a pioneer and global leader in continuous glucose monitoring (CGM). Dexcom began as a small company with a big dream: To forever change how diabetes is managed. To unlock information and insights that drive better health outcomes. Here we are 25 years later, having pioneered an industry. And we're just getting...