
Assistant Information Security Manager – Governance, Risk
1 week ago
About Jardine Service Centre Philippines (JSC)
Jardine Service Centre Philippines is an organization fully owned by Jardine Matheson Group which is a diversified Asian-based group with unsurpassed experience in the region, having been founded in 1832. JSC is responsible for providing back-office support to the business units of Jardine Group by administrating transactional and rule-based activities. We aim to deliver world-class services to our internal customers in a cost-efficient manner via process harmonization, application of state-of-the-art technologies, automation and process simplification.
We are looking for an Assistant Information Security Manager professional to assist the company and its business units in driving initiatives to improve cybersecurity governance and risk practices. The ideal candidate will have experience in cybersecurity awareness, policy enhancements, and risk mitigation, with the ability to lead a small team and collaborate with business unit representatives to deliver initiatives effectively.
Key Responsibilities:
Governance & Risk management
- Inform management, IT and security teams about the latest cybersecurity incidents, threats, and trends to inform risk management activities and integrate security measures into operational processes.
- Lead development or regular updates of security policies, procedures, and other deliverables in collaboration with technical specialists and business security teams.
- Advise businesses on global data privacy and security laws, regulations, and best practices, such as GDPR, China Cybersecurity Law, ISO 27001, etc.
- Drive maturity improvements by incorporating best practices and thought leadership into risk management and governance procedures and drive education and adoption.
Cybersecurity awareness and communication
- Develop learning and awareness programs to cultivate a culture of cybersecurity across the Group's businesses, using modern learning tools and practices.
- Ensure that security awareness programs address current threat landscape and meet applicable industry regulations, standards, and compliance requirements.
- Develop, maintain, and manage training programs; verify effectiveness of training, such as via phishing tests.
Qualifications & Skills:
- Bachelor's Degree in an IT/Computer related course.
- At least 5 years of working experience in Information Security or IT Audit fields.
- At least 3 years in cybersecurity or information security.
- Excellent writing skills, well organized and attentive to detail.
- Highly conversant in English language.
- Background or experience in IT risk, audit, governance, security awareness training and project management.
- Critical thinking skills with strong attention to detail and follow-up
- Background in IT technologies, processes, and security operations.
- Collaborative, responsible and has personal accountability.
- Able to work with a team and individually with minimal guidance.
- Resourceful, curious to learn and can adapt on emerging security technologies and platforms.
Preferred Qualifications:
- Knowledge of various guides and security frameworks. (NIST, MITRE, CIS, ISO 27001, CVE, etc)
- Knowledge of IOCs, OWASP and types of attacks, malwares, threat actor and vulnerability.
- Knowledge in different security monitoring platforms and cloud technologies.
- Experienced working in a global or regional environment.
- At least One (1) Industry related Security certification (CISA, CISM, ISO27001 LA/LI, CISSP, etc).
We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.
At JSC, you can play a role in our business success. We understand that key to our success is our people, which is our foundation and priority. We invest in our people to ensure we have the right talent with the leadership and strategic skills the company needs for the future.
We are an equal opportunity employer and do not discriminate on the grounds of sex, race, disability, family status or any other factors.
Come and explore with us
-
Information Technology Security Manager
1 week ago
Mandaluyong City, National Capital Region, Philippines San Miguel Corporation Full time ₱1,500,000 - ₱2,500,000 per yearMinimum RequirementsAround 5 years or more experience in Information Security or equivalent (at least 3 years or more experience if working on Information Security with multiple companies);Background in Information Security Governance Roles such as experience with Information Security Policies, Compliance Audits, Risk Assessments, and Infosec...
-
Information Security Manager
2 days ago
Mandaluyong City, National Capital Region, Philippines Data Analytics Ventures, Inc. Full time ₱1,200,000 - ₱2,400,000 per yearThe Information Security Manager is responsible for safeguarding the organization's information assets by implementing, managing, and overseeing the company's security policies, protocols, and procedures. This role involves identifying and mitigating security risks, ensuring compliance with industry standards, and leading efforts to protect sensitive data...
-
Information Security
1 week ago
Makati City, National Capital Region, Philippines SMBC Group Full time ₱1,200,000 - ₱2,400,000 per yearAs theAVP for Internal Audit and Regulatory Response,you will help sustain the operational requirements of the Security and Architecture Group (SAG) - MNL Governance, Risk and Compliance, including the Audit and Controls Assurance function. Currently, these responsibilities are being handled full-time by one person and part-time by the SAG MNL Head. With the...
-
Quezon City, National Capital Region, Philippines UCPB Savings Full time ₱120,000 - ₱180,000 per yearJOB SUMMARYAssists the Risk Management Division head in its risk oversight function on technology risk through the use of applicable risk management tools to identify, measure, monitor, and control technology risks;Directs the Bank in protecting all information assets and assists the Senior Management Response Team (MANCOM) in its business continuity and...
-
Information Security Manager, IAM
3 days ago
Quezon City, National Capital Region, Philippines Manulife Full time ₱1,200,000 - ₱2,400,000 per yearWe're looking for an Information Security Manager, Identity Access Management (IAM) Consultant to join our Group Functions IT Information Security and Business Resilience Team at MBPS. In this role, you are expected to apply identity access security risk knowledge and expertise to assist with IT information security First Line of Defense activities to help...
-
Information Security Analyst
6 days ago
Makati City, National Capital Region, Philippines House of Investments Inc. Full time ₱300,000 - ₱360,000 per yearEnsure the confidentiality, integrity, and availability of the organization's information assetsDuties and ResponsibilitiesRisk Management – govern, manage, and mitigate information assets security risksPolicy Development – create and maintain policies, standards and procedures (InformationSecurity and Data Governance)Security Awareness Training – such...
-
Operational Risk Manager
1 week ago
Makati City, National Capital Region, Philippines Security Bank Corporation Full time ₱1,500,000 - ₱2,500,000 per yearAbout the RoleAs an Operational Risk Manager, you are responsible for carrying out operational risk governance, oversight, consulting, and risk management activities as part of the Bank's Second Line of Defense. Supports the identification, assessment, mitigation, monitoring, and reporting of operational risks by the various businesses and functions within...
-
IT Officer
1 week ago
Mandaluyong City, National Capital Region, Philippines Asian Development Bank Full time $80,000 - $100,000 per yearSHARE THIS PAGEReference Number250676Position LevelTL5DepartmentInformation Technology DepartmentDivisionCybersecurity and Compliance Unit, ITDLocationAsian Development Bank HeadquartersDate PostedTuesday, August 19, 2025Closing DateTuesday, September 2, :59 p.m Manila Time, 0800 GMT)Join Our Mission to Foster Prosperity in AsiaAre you ready to make a...
-
Security Operations Manager
18 hours ago
Mandaluyong City, National Capital Region, Philippines The Dairy Farm Company, Limited- ROHQ Full time ₱2,000,000 - ₱2,500,000 per yearDFI Team BriefThis role will assist the IT organization to implement on enhance network security system from Group requirements and collaborate with 1st line of response team to handle network and cyber security issues. The incumbent will also assist in building necessary capabilities in security governance and technology enablement, collaborate with country...
-
Security Operations Manager
2 weeks ago
Mandaluyong City, National Capital Region, Philippines DFI Retail Group Full time ₱1,200,000 - ₱3,600,000 per yearDFI Team BriefThis role will assist the IT organization to implement on enhance IT security system from Group requirements and collaborate with 1st line of response team to handle and Cyber Security issues and perform Cyber Defense from intruders' attacks. The incumbent will also assist in building necessary capabilities in security governance and technology...