Cyber Security Analyst
9 hours ago
Position Summary
The Cybersecurity GRC Analyst supports the development and execution of governance, risk, and compliance (GRC) initiatives to protect sensitive health, payment, and personal data. This role ensures adherence to industry security standards such as PCI DSS, NIST Cybersecurity Framework (CSF), and ISO 27001, while maintaining a practical, risk-based approach suitable for a complex operational and regulatory environment.
Governance & Policy Management
- Develop, review, and maintain cybersecurity policies, standards, and procedures.
- Ensure alignment with industry frameworks (e.g., NIST CSF 2.0, ISO 27001, CIS Controls).
Risk Management
- Conduct risk assessments and control evaluations across systems, applications, and processes.
- Maintain and update the risk register, track mitigation plans, and report on overall risk posture.
- Track and report security exceptions, findings, and remediation activities.
Compliance & Audit
- Support internal and external audits, including evidence collection and remediation tracking.
- Monitor compliance with regulatory requirements (e.g., PCI-DSS, Privacy Act).
- Assist in third-party risk assessments and vendor due diligence activities.
Security Awareness & Training
- Contribute to the development and delivery of cybersecurity awareness and training programs.
- Promote a culture of security and compliance across the organisation.
Reporting & Metrics
- Prepare regular reports and dashboards on GRC activities, risk trends, and compliance status.
- Monitor and report on cybersecurity metrics, control effectiveness, and regulatory compliance.
Incident Response
- Assist in incident response and post-incident reviews from a governance and compliance perspective.
Qualifications & Experience
- Bachelor's degree in Cybersecurity, Information Technology, or a related field.
- 2–5 years of experience in cybersecurity governance, risk management, or compliance.
- Familiarity with GRC tools (e.g., OneTrust, Vanta, Drata).
- Understanding of regulatory and industry standards (e.g., ISO 27001, NIST CSF, SOC 2).
- Strong analytical, communication, and documentation skills.
- Certifications such as CISA, CRISC, or ISO 27001 Lead Implementer/Lead Auditor are advantageous.
Key Competencies
- Excellent attention to detail and critical thinking skills.
- Ability to manage multiple priorities and meet deadlines.
- Strong interpersonal and stakeholder engagement skills.
- Proactive approach to identifying and mitigating risks.
- Ability to assess issue severity and escalate appropriately.
- Ethical, trustworthy, and compliance-focused mindset.
- Strong documentation and reporting abilities.
Technical Skills
- Strong working knowledge of cybersecurity and information security frameworks (e.g., NIST CSF, ISO
- Understanding of risk assessment methodologies and cybersecurity principles.
- Familiarity with SIEM, DLP, IAM, vulnerability management tools, and endpoint protection platforms.
- Competence in using Excel, Power BI, or similar tools to analyse data and generate reports and dashboards.
- Familiarity with ticketing systems such as JIRA.
- Experience supporting internal/external audits, performing control testing, and monitoring compliance metrics.
- Understanding of privacy frameworks such as the Australian Privacy Act 1988, Victorian Privacy and Data Protection Act 2014, and GDPR is desirable.
Market Awareness
- Stay informed about current technology, GRC, and cybersecurity developments to remain aware of emerging threats and best practices.
-
Cyber Security Head
2 weeks ago
Pasig, National Capital Region, Philippines Bershaw Consultancy Full time ₱800,000 - ₱1,200,000 per yearCYBER SECURITY HEADGENERAL RESPONSIBILITIES:· Manage the overall activities in information security governance team ensuring the deliverables are completed within timelines and within expected quality· Make proactive action in identifying the risks and propose areas for improvement to the Group CISO and to the Senior Management Team· Lead the...
-
Cyber Security Specialist
2 weeks ago
Pasig, National Capital Region, Philippines Lennor Group Full time ₱40,000 - ₱80,000 per yearOur brand, Lennor Metier Consulting , a DOLE-licensed headhunting and recruitment agency in the Philippines, is proud to partner with one of our global clients in their search for a Cyber Security Specialist based in Ortigas .Salary Range : up to ₱68,000Work Setup : OnsiteShift Schedule : Day ShiftLocation : Ortigas CityYour Responsibilities:Conduct...
-
Senior SOC Analyst
1 week ago
Pasig, National Capital Region, Philippines A.P. Moller - Maersk Full time ₱1,200,000 - ₱3,600,000 per yearOur Senior SOC Analyst provides Maersk with round the clock cyber security monitoring, using cutting edge security technologies, processes, and teams of experts.Other pertinent functions include:Acts as the first point of call for all cyber security related issues for Maersk and its subsidiaries.Executes the cyber operational activities of the Security...
-
Security Governance Analyst
1 week ago
Pasig, National Capital Region, Philippines CIS Bayad Center, Inc. Full time ₱900,000 - ₱1,200,000 per yearJob Summary:The Security Governance and Assurance Analyst supports the roll out and implementation of the Information Security/Cyber Security Policies. He/she will work with the various Infosec representatives from the business groups and provide guidance on the procedures and forms that will be implemented.He/she will provide assistance in gathering the...
-
Mid Security Operations Center Analyst
2 weeks ago
Pasig, National Capital Region, Philippines UBX Full time ₱1,200,000 - ₱2,400,000 per yearCompany OverviewUBX is a wholly owned subsidiary of Unionbank of the Philippines. UnionBank is a top 10 universal bank in the Philippines by assets, with annual revenues of over PHP 25 Billion. UnionBank is a leader in digital financial services and has been recognized as the top digital bank in the Philippines by Asiamoney and IDC. UnionBank has established...
-
Information Security Analyst
2 weeks ago
Pasig, National Capital Region, Philippines ESOL IT SERVICES INC. Full time ₱120,000 - ₱150,000 per yearJOB TITLE: Information Security AnalystLocation: Pasig and TaguigPosition Type: Full TimeWork Set up: On siteSchedule:Shifting ScheduleStart Date:ASAPSalary Package: 20,000- 25,000Job Summary: We are seeking a detail-oriented and proactive Information Security Analyst to join our BPO team. The role is responsible for maintaining and improving the company's...
-
Cyber Security Consultant
9 hours ago
Pasig, National Capital Region, Philippines Indra Full time ₱900,000 - ₱1,200,000 per yearMid-VAPT SpecialistQualifications:Graduate with Bachelor's degree in IT or other 4 years course.At least 3 years working experience on web and mobile application VAPT following the OWASP Top 10 testing frameworkShould be amendable to work onsite in Ortigas .With working experience on open source and commercial security testing tools like Kali Linux,...
-
Senior Information Security Business Analyst
2 days ago
Pasig, National Capital Region, Philippines Aurecon Full time ₱1,500,000 - ₱2,500,000 per yearJust imagine your future with us…At Aurecon we see the future through a very different lens. Do you?Innovation, eminence and digital are at the heart of everything we do. Are you excited about the future?Are you driven by the opportunity to work on some of the most challenging and complex projects around the world and to learn from the best? We...
-
SOC Analyst
2 weeks ago
Pasig, National Capital Region, Philippines HR TechX Corp. Full time ₱900,000 - ₱1,200,000 per yearResponsibilities:24/7 Incident ResponsePerform triage, assess severity of incidentsInvestigate and contain security incidentsExecute predefined response procedures24/7 Alerts MonitoringContinuously monitor security alerts, logs, and network trafficIdentify potential threats or anomaliesSuspicious Email Analysis and other Security ValidationsRespond to...
-
Information Security Analyst
2 days ago
Pasig, National Capital Region, Philippines PCCW GLOBAL Limited Full time ₱300,000 - ₱720,000 per yearPCCW Global is a leading international communications service provider, offering the latest mobility, voice and data solutions to multinational enterprises, telecommunications partners, cloud and application service providers. With a network footprint reaching over 3,000 cities in 160+ countries across 5 continents, our truly global coverage combined with...