
Security & Privacy Analyst
2 days ago
Company: Cortico – Healthcare solutions for providers and patients
Are you passionate about security and privacy? Do you have a talent for aligning compliance frameworks with business goals, ensuring processes empower employees rather than burden them? If so, we'd love to meet you
We are seeking an Information Security & Privacy Compliance Manager to lead our efforts in maintaining strong security and privacy practices across the organization. This role requires a mix of technical know-how, strong written communication skills, and experience with privacy and security frameworks such as ISO 27001, SOC 2 Type 2, and HIPAA.
Responsibilities
- Lead Compliance Initiatives:
- Ensure compliance with ISO 27001, SOC 2 Type 2, and HIPAA standards.
- Design security processes and policies that align with real business needs and empower employees.
- Privacy and Security Governance:
- Maintain and improve privacy policies and practices in accordance with evolving regulations.
- Collaborate with teams to develop workflows that protect sensitive data while remaining practical and efficient.
- Vendor & Contractor Management:
- Manage relationships with security contractors, including pentesters, ensuring timely and thorough vulnerability assessments.
- Assess vendor compliance with internal security requirements and industry standards.
- Incident Response & Risk Management
- Oversee the identification, tracking, and resolution of vulnerabilities from internal and external assessments.
- Develop incident response protocols and lead tabletop exercises with cross-functional teams.
- Training & Communication:
- Deliver engaging security and privacy awareness training to internal teams.
- Draft clear, concise security policies and documentation that are easy for employees to understand and apply.
Required Skills and experience
- Excellent written communication skills:
- Ability to translate complex security and compliance topics into clear, actionable guidance for various audiences.
- Experience with privacy and security frameworks:
- In-depth knowledge of ISO 27001, SOC 2 Type 2, HIPAA, and other relevant frameworks.
- Practical experience aligning compliance work with business needs and minimizing friction for employees.
- Understanding of web application security:
- Familiarity with common web vulnerabilities and basic penetration testing concepts (e.g., OWASP Top 10, vulnerability scanning).
- Ability to manage security contractors, assess their deliverables, and interpret the results of pentests and security audits.
- Risk Management Expertise:
- Proven ability to assess risks, identify mitigation strategies, and prioritize initiatives for optimal business impact.
- Bonus Skills: Hands-on experience with penetration testing, threat modeling, or vulnerability management tools.
Nice to Have:
- Tier 2 (troubleshooting)
- Dev Ops (linux / deployment automation)
- Technical writing
- Proposal writing
- Compliance management
- Information security (pentesting / red teaming / NIST / vuln scanning)
- Design QA
- User research
- Data engineering
- QA testing
- Grant management
Why Join Us?
- A collaborative environment where security is seen as a business enabler, not a blocker.
- Opportunities to shape policies that not only ensure compliance but also help employees work more effectively.
- The chance to work with passionate teams committed to building secure, privacy-conscious solutions.
Benefits: https://countable-
Note: Your application must include a resume, and a cover letter. To avoid automated submissions, and to see if you pay attention to detail and follow instructions, your cover letter must be exactly 100 words.
Important: This job post is for a full-time position only. Before applying, please ensure you are available and interested in committing to a full-time work schedule and you don't plan to have other full-time engagement in another company.
Job Types: Full-time, Permanent
Pay: Php40, Php45,000.00 per month
Benefits:
- Company events
- Work from home
Application Question(s):
- Did you see this job on Cortico website? (Yes or No)
- Enter your cover letter here or submit a file, a cover letter is a requirement.
Education:
- Bachelor's (Preferred)
Experience:
- Risk Management Expertise: 1 year (Required)
- Vulnerability Management Tools: 1 year (Preferred)
- ISO 27001, SOC 2 Type 2, and HIPAA: 1 year (Required)
- Privacy and Security Governance: 1 year (Required)
- Vendor & Contractor Management: 1 year (Required)
- Incident Response & Risk Management: 1 year (Required)
- OWASP Top 10, vulnerability scanning: 1 year (Required)
- Penetration testing, Threat Modeling: 1 year (Preferred)
Language:
- English at a Professional or Business level (Required)
- English (Required)
-
Analyst, Privacy
2 days ago
Manila, National Capital Region, Philippines Thomas Reuters Full time $60,000 - $100,000 per yearAnalyst, Privacy & Cybersecurity Law, Enabling Functions General CounselWe are looking for a Privacy Analyst to join our growing team of privacy experts, who will be a key component in ensuring our global privacy program is improved and implemented in the Asian region. In this role, you will play a critical part in ensuring that our data privacy practices...
-
Security Analyst
7 days ago
Manila, National Capital Region, Philippines Verifone Full timeJob SummaryThe Security Analyst will be responsible for monitoring our security infrastructure, identifying and responding to security threats, managing vulnerabilities, and contributing to the continuous improvement of our overall security posture. This role is crucial in safeguarding our organization's systems, data, and reputation against an ever-evolving...
-
Security Analyst, Technology
3 weeks ago
Manila, National Capital Region, Philippines Kroll Full timeOur professionals balance analytical skills, deep market insight and independence to deliver solid, defensible analysis and practical advice to our clients. As an organization, we think globally. We create transparency in an opaque world, and we encourage our people to do the same. That means when you take your place on our team, you'll discover a supportive...
-
Senior Security Incident Response Analyst
2 days ago
Manila, National Capital Region, Philippines Five9 Full time $80,000 - $100,000 per yearJoin us in bringing joy to customer experience. Five9 is a leading provider of cloud contact center software, bringing the power of cloud innovation to customers worldwide.Living our values everyday results in our team-first culture and enables us to innovate, grow, and thrive while enjoying the journey together. We celebrate diversity and foster an...
-
Senior Data Privacy Manager
5 days ago
Manila, National Capital Region, Philippines beBeeDataProtection Full time ₱800,000 - ₱1,200,000Job OverviewThis is a key role within our organization focused on ensuring the privacy and security of data. The right candidate will be responsible for managing data breach and security incidents, reviewing contract inventories, and cultivating awareness on privacy and data protection.
-
Information Security Analyst
2 days ago
Manila, National Capital Region, Philippines Bill Gosling Outsourcing Full time $80,000 - $120,000 per yearJoin a Team That's Passionate About Making Lives BetterAt Bill Gosling Outsourcing, we believe that success starts with an amazing team. We are a global leader in outsourcing solutions, we focus on making lives better, one connection at a time. We provide tailored solutions to businesses around the globe, specializing in customer care, sales, and financial...
-
Information Security Analyst
2 days ago
Manila, National Capital Region, Philippines Bill Gosling Outsourcing Full timeJoin a Team That's Passionate About Making Lives BetterAt Bill Gosling Outsourcing, we believe that success starts with an amazing team. We are a global leader in outsourcing solutions, we focus on making lives better, one connection at a time. We provide tailored solutions to businesses around the globe, specializing in customer care, sales, and financial...
-
Security Analyst Architecture
2 days ago
Manila, National Capital Region, Philippines Sourcefit DR Full time $90,000 - $120,000 per yearPosition Summary:The Cyber & Information Security Analyst Architecture & Engineering is responsible for delivering the client's Cyber Security Architecture and Engineering capability, working with line management to set the architectural vision, roadmap, and standards in line with the Company's policies and frameworks, and to deliver effective change...
-
Senior Security Analyst
2 days ago
Manila, National Capital Region, Philippines QBE Insurance Full time $60,000 - $80,000 per yearPrimary DetailsTime Type: Full time Worker Type: EmployeeWe are seeking a highly skilled and motivated Senior Security Analyst to join our Global Security Operations Centre based in the Philippines. Reporting to the Global Security Operations Centre Lead, the Senior Security Analyst will be a key member of our rapidly growing Global team. This role is...
-
Senior Security Analyst
2 days ago
Manila, National Capital Region, Philippines QBE Insurance Full time $90,000 - $120,000 per yearPrimary DetailsTime Type: Full timeWorker Type: EmployeeWe are seeking a highly skilled and motivated Senior Security Analyst to join our Global Security Operations Centre based in the Philippines. Reporting to the Global Security Operations Centre Lead, the Senior Security Analyst will be a key member of our rapidly growing Global team.This role is looking...