
Information Security Engineer
2 weeks ago
Experience Level: 5+ years
About the RoleWe are seeking a highly skilled Information Security Engineer to lead the development and implementation of robust security controls across our cloud, application, and enterprise environments. This individual will drive secure SDLC practices, lead threat modeling, manage detection and response capabilities, and strengthen security for cloud and Microsoft 365 platforms. The ideal candidate is a hands-on security expert with a broad technical background, deep problem-solving abilities, and a proactive mindset.
Key Responsibilities
1. Application & Cloud Security
Implement secure SDLC initiatives by integrating security into design, development, and deployment workflows.
Conduct threat modeling for both applications and infrastructure to identify and mitigate risks early in the lifecycle.
Secure cloud platforms, including identity controls, configuration hardening, and policy enforcement.
Assess and secure financial web applications hosted in AWS through code reviews, penetration testing coordination, and architecture reviews.
2. Security Platform Operations
Operate and monitor key security platforms such as:
EDR/XDR solutions
DLP solutions across endpoints, cloud, and email
Email Security Solutions
Ensure proper tuning, coverage, and integration of security tools with enterprise IT systems and logging pipelines.
3. Security Monitoring & Response
Participate in day-to-day security monitoring using SIEM, EDR/XDR, and other detection platforms to augment the SOC team when required.
Assist in configuring and tuning monitoring tools for optimal detection coverage.
Collaborate with different teams to investigate security alerts and incidents.
Support incident response activities, including triage, containment, and remediation efforts.
Contribute to post-incident reviews and continuous improvement of detection and response processes.
4. Threat & Vulnerability Management
Implement and coordinate the identification, triage, and remediation of vulnerabilities across cloud, endpoints, and infrastructure.
Support ongoing patch management strategy, vulnerability scanning, and threat intelligence correlation.
5. Endpoint & Infrastructure Hardening
Implement and enforce hardened configurations for endpoints (Windows/Linux), servers, and network appliances.
Align baseline configurations with CIS benchmarks and industry best practices.
6. Detection Engineering
Understand, implement, and tune detection rules and logic in SIEM/XDR platforms for proactive threat identification.
Collaborate with different colleagues to improve alert fidelity, reduce false positives, and create meaningful security detections.
7. Business Continuity & Risk
Contribute to BCP/DR planning and implementation with a security-first approach.
Collaborate with stakeholders to ensure critical business processes remain secure and resilient.
Qualifications
- 5+ years of progressive experience in information security roles, preferably with exposure across application, cloud, and infrastructure domains.
- Bachelor's Degree in Computer Science, Information Technology, Software Engineering, Computer Engineering, Electronics Engineering, or related field.
- Experience in managing and securing cloud platforms.
- Hands-on experience with security tools including EDR, DLP, email security, vulnerability scanners, and SIEM.
- Working knowledge of secure SDLC practices, application security testing, and DevSecOps integration.
- Experience with identity and access management (IAM), conditional access, and zero trust architecture.
- Intermediate background in detection engineering, incident response, and threat modeling methodologies (STRIDE, MITRE ATT&CK, etc.).
- Familiarity with regulatory and compliance standards (e.g., NIST, ISO 27001, GDPR, SOC 2, PCI-DSS).
- Excellent communication and collaboration skills; ability to work across technical and non-technical teams.
By applying to this job, you are permitting our organization to use your personal data solely for recruitment purposes. This data may be shared with third-party services to streamline the processing of your application and with our parent company, ETS London, for recruitment assessment and interview purposes.
We are committed to protecting and respecting your privacy. For more information on how we collect, use, store, and protect your personal data, please read our Privacy Notice or contact our
Data Protection Officer
-
Network and Security Engineer
2 weeks ago
Makati City, National Capital Region, Philippines Total Information Management Corp. Full time ₱900,000 - ₱1,200,000 per yearA Network and Security Engineer is responsible for the design, implementation, and continuous improvement of the entire infrastructure's security posture — encompassing network systems, servers, endpoints, cloud platforms, and perimeter defenses. This role goes beyond traditional network responsibilities, ensuring that all layers of infrastructure are...
-
Information Security Engineer III
2 weeks ago
Makati City, National Capital Region, Philippines Etrading Software Ltd Full time ₱1,200,000 - ₱2,400,000 per yearJob Title: Information Security Engineer IIIAbout the RoleWe are seeking a highly skilled Information Security Engineer to lead the development and implementation of robust security controls across our cloud, application, and enterprise environments. This individual will drive secure SDLC practices, lead threat modeling, manage detection and response...
-
Network Security Engineer
4 days ago
Makati City, National Capital Region, Philippines Bequik Information Solutions, Inc. Full time ₱360,000 - ₱480,000 per yearWe are looking for a skilled Network Security Engineer to join our team. The successful candidate will be responsible for designing, implementing, and maintaining secure network infrastructures, monitoring for potential threats, and ensuring compliance with security standards and best practices. This role requires strong technical expertise, problem-solving...
-
Information Security Engineer
2 weeks ago
Makati City, National Capital Region, Philippines inspiro Full time ₱900,000 - ₱1,200,000 per yearAbout the RoleWe are seeking a highly skilled and detail-orientedPenetration Testerto join ourInformation Security Team. The role involvessimulating cyberattacks,identifying vulnerabilities, andassessing risksto ensure the security of our systems, applications, and infrastructure.This position requires someone who can think like an attacker while working...
-
Information Security
2 weeks ago
Makati City, National Capital Region, Philippines SMBC Group Full time ₱1,200,000 - ₱2,400,000 per yearAs theAVP for Internal Audit and Regulatory Response,you will help sustain the operational requirements of the Security and Architecture Group (SAG) - MNL Governance, Risk and Compliance, including the Audit and Controls Assurance function. Currently, these responsibilities are being handled full-time by one person and part-time by the SAG MNL Head. With the...
-
Information Security Analyst
2 weeks ago
Makati City, National Capital Region, Philippines Smart Communications, Inc. Full time $104,000 - $130,878 per yearWe're Hiring: Information Security Analyst – Incident Investigation Location:Cyber Security Operations CenterReports To:Cyber Security Incident Investigation and Threat Intel ManagerDivision:Cyber Security Investigation and Threat IntelAre you passionate about uncovering the root cause of security incidents and leading investigations that make a real...
-
Information Security Analyst
2 days ago
Makati City, National Capital Region, Philippines Smart Communications, Inc. Full time ₱1,200,000 - ₱2,400,000 per yearResponsibilities:Actively monitor, detect, and respond to security alerts and incidents per defined SLA.Incidents are acknowledged and responded to within the agreed response SLOPerform alert triage and analysis including asset and custodian identification, reputational checking, and alert validationPerform containment and eradication within the agreed...
-
Security Engineer
2 weeks ago
Makati City, National Capital Region, Philippines Royal Caribbean Group Full time ₱900,000 - ₱1,200,000 per yearPosition Summary:The Cyber Defense Operations (CDO) Team is responsible for identifying and managing cyber risks and leading operational remediation projects for both ship and shore. For ships the focus is to reduce risk to passenger, crew, and RCCL shipboard assets. The goal of the CDO Program is to provide cybersecurity architectural and engineering...
-
Information Security Analyst
1 week ago
Makati City, National Capital Region, Philippines House of Investments Inc. Full time ₱300,000 - ₱360,000 per yearEnsure the confidentiality, integrity, and availability of the organization's information assetsDuties and ResponsibilitiesRisk Management – govern, manage, and mitigate information assets security risksPolicy Development – create and maintain policies, standards and procedures (InformationSecurity and Data Governance)Security Awareness Training – such...
-
Manager, Information Security
2 weeks ago
Makati City, National Capital Region, Philippines OpenText Full time $90,000 - $120,000 per yearOPENTEXT - THE INFORMATION COMPANYOpenText is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a member of our team, you will have the opportunity to partner with the most highly regarded companies in the world, tackle complex issues, and contribute to projects that...