Compliance & Information Security Assistant Manager
1 day ago
Designation: Compliance & Information Security Assistant Manager
Experience: 6 to 9 years of experience in Compliance, Information Security and BCM Domains
Department: Compliance and Information Security
Work Timing: 9 hours/day; 5 days a week, should work as per US and Manila Ops shift timings
Qualifications: Graduate (any stream)
Professional Certifications: ISO27001 Lead Auditor/PCI DSS/CEH-EC council/CISA.
Key Skills: ISO 27001:2022 (ISMS), HIPAA, SOC 2 Type II, HITRUST, PCI DSS, VAPT and Cyber Security Assessments, Vulnerability Management, and Third-party Risk management
Skills Qualifications:
Required:
- Knowledge of latest ISO 27001 standard, PCI DSS, and HIPAA.
- Internal and External audit experience of ISO standards ISO 27001.
- Knowledge and audit experience of HIPAA compliance and HITRUST requirements.
- Should have knowledge/hand on experience on working on SOC 2/ HITRUST/PCI DSS, requirements.
- Should have hands-on experience in VAPT, Vulnerability management, and cyber security management.
- Should have knowledge of the basic ITGC controls/Information Security.
- Certified Lead Auditor for ISMS and Certified PCI DSS implementor.
- Experience in coordinating with vendors and internal stakeholders for different compliance and information security tasks.
- Should have knowledge of BCP/DR and conduct BCP tests.
- Experience in handling Risk Management Audits, Risk Registers, BIA processes.
- Knowledge and experience of Risk Management standards i.e. ISO 31000.
- Knowledge and experience of all BCM implementation based on ISO 22301.
- Good written and verbal communication skills.
Preferred:
- Knowledge of Information Security.
- Knowledge of PCI DSS and VAPT assessments.
- Knowledge of SOC 2, HIPAA and HITRUST Audits.
- Hands on experience of managing BCP incidents.
Job Summary:
Compliance and Information Security team's Assistant Manager/Senior Executive will be a part of the core Compliance team and will help drive, manage, implement & evaluate the certifications and compliance standards. He / She should support the organization to get certified and maintain ISO 9001, ISO 27001, HIPAA, SOC2, VAPT, PCI DSS, HITRUST, other Cyber security frameworks and assessments.
Duties and Responsibilities:
- Manage all tasks of the Compliance and Information Security team for all locations in the Philippines (Manila and Ilo Ilo).
- Communicate with internal and external stakeholders regarding all compliance-related activities.
- Participate in compliance audit programs both internally and externally for ISO, HIPAA, SOC2, VAPT, PCI DSS, and HITRUST, as and when needed.
- Develop and review company policies and procedures, handle compliance training programs, and monitor compliance related matters.
- Educate stakeholders to implement corrective actions.
- Ensure that corrective actions are adequate and have been implemented for all identified compliance deficiencies.
- Promote awareness related to information privacy and security and enforce compliance across the enterprise.
- Help implement and manage the compliance program effectively.
- Report to the MR/CISO/management about the status of compliance in the organization through detailed reports.
- Create, manage, and track effective action plans in response to audit observations and compliance violations.
- Manage and perform internal audits to identify possible weaknesses or risks in the company's information security management system.
- Perform additional audits as and when necessary.
- Assess the organization's processes to determine compliance risks and formulate necessary risk mitigation plans.
- Ensure that all employees are aware of their compliance responsibilities.
- Support teams in conducting BIA, documenting and managing risks, managing BCP incidents, and planning and conducting BCP tests.
- Working with vendors and external auditors on all audit and assessment tasks and ensuring to close the loop with them.
- Work with the vendors to perform third-party audits based on the frequency.
- Work with internal stakeholders to fill out the client questionnaires and RFP documents to submit them on time.
Job Type: Full-time
Pay: Php120, Php130,000.00 per month
Benefits:
- Additional leave
- Company events
- Health insurance
- Opportunities for promotion
- Promotion to permanent employee
Experience:
- Compliance: 5 years (Required)
- Information Security and BCM Domains: 5 years (Required)
License/Certification:
- ISO27001 Lead Auditor/PCI DSS/CEH-EC council/CISA (Required)
Work Location: In person
-
Security Compliance Manager
1 week ago
Pasig, National Capital Region, Philippines TaskUs Full time ₱2,000,000 - ₱2,500,000 per yearJob Description*About TaskUs:*TaskUs is a provider of outsourced digital services and next-generation customer experience to fast-growing technology companies, helping its clients represent, protect and grow their brands. Leveraging a cloud-based infrastructure, TaskUs serves clients in the fastest-growing sectors, including social media, e-commerce, gaming,...
-
Information Security Analyst
2 weeks ago
Pasig, National Capital Region, Philippines ESOL IT SERVICES INC. Full time ₱120,000 - ₱150,000 per yearJOB TITLE: Information Security AnalystLocation: Pasig and TaguigPosition Type: Full TimeWork Set up: On siteSchedule:Shifting ScheduleStart Date:ASAPSalary Package: 20,000- 25,000Job Summary: We are seeking a detail-oriented and proactive Information Security Analyst to join our BPO team. The role is responsible for maintaining and improving the company's...
-
Information Security Officer
3 days ago
Pasig, National Capital Region, Philippines PCCW GLOBAL Limited Full time ₱300,000 - ₱720,000 per yearPCCW Global is a leading international communications service provider, offering the latest mobility, voice and data solutions to multinational enterprises, telecommunications partners, cloud and application service providers. With a network footprint reaching over 3,000 cities in 160+ countries across 5 continents, our truly global coverage combined with...
-
Information Security Analyst
7 days ago
Pasig, National Capital Region, Philippines Satellite Office Full time $80,000 - $120,000 per yearThe Information Security Analyst will be a key player in protecting our organization's data and systems. This role involves monitoring security access, conducting vulnerability assessments, and responding to incidents in coordination with IT leadership. Experience with global security frameworks is highly valued.Key Responsibilities:Monitor security systems...
-
Cyber Security Analyst
1 day ago
Pasig, National Capital Region, Philippines SPAC Information Technology Inc Full time ₱1,200,000 - ₱2,400,000 per yearPosition SummaryThe Cybersecurity GRC Analyst supports the development and execution of governance, risk, and compliance (GRC) initiatives to protect sensitive health, payment, and personal data. This role ensures adherence to industry security standards such as PCI DSS, NIST Cybersecurity Framework (CSF), and ISO 27001, while maintaining a practical,...
-
Information Security Analyst
3 days ago
Pasig, National Capital Region, Philippines PCCW GLOBAL Limited Full time ₱300,000 - ₱720,000 per yearPCCW Global is a leading international communications service provider, offering the latest mobility, voice and data solutions to multinational enterprises, telecommunications partners, cloud and application service providers. With a network footprint reaching over 3,000 cities in 160+ countries across 5 continents, our truly global coverage combined with...
-
ISO 27001 Lead Auditor
1 week ago
Pasig, National Capital Region, Philippines TÜV SÜD Full time ₱1,200,000 - ₱2,400,000 per yearJob descriptionThe ISMS Lead Auditor will take a leadership role in conducting audits and assessments of client organizations' information security management systems. You will be responsible for evaluating and ensuring compliance with ISO 27001 standards, providing expert guidance, and helping clients enhance their information security practices. Your...
-
Information Security Lead Auditor
2 weeks ago
Pasig, National Capital Region, Philippines TÜV SÜD PSB Pte Ltd Full time $70,000 - $120,000 per yearISO isms) LEAD AUDITORBusiness Assurance – Management ServiceThe ISMS Lead Auditor will take a leadership role in conducting audits and assessments of client organizations' information security management systems. You will be responsible for evaluating and ensuring compliance with ISO 27001 standards, providing expert guidance, and helping clients enhance...
-
Security and Compliance Specialist
1 week ago
Pasig, National Capital Region, Philippines idpeducati Full time ₱900,000 - ₱1,200,000 per yearAbout IDP IDP is the global leader in international education services, delivering global success to students, test takers and our partners, through trusted human relationships, digital technology and customer research. An Australian-listed company, we operate in more than 50 countries around the world.Our team is comprised of over 7,000 people of various...
-
Senior Information Security Business Analyst
3 days ago
Pasig, National Capital Region, Philippines Aurecon Full time ₱1,500,000 - ₱2,500,000 per yearJust imagine your future with us…At Aurecon we see the future through a very different lens. Do you?Innovation, eminence and digital are at the heart of everything we do. Are you excited about the future?Are you driven by the opportunity to work on some of the most challenging and complex projects around the world and to learn from the best? We...