Information Technology Risk Manager
nezda global- Posted 8 hours ago
- Be among the first 10 applicants
Job Description
Position: PCI Compliance & IT Risk Manager
Job Type: Permanent
Location: Vertis North, Quezon City
Work setup: Hybrid (x3 onsite/week)
Shift time: Night Shift (8pm - 5am)
Job Summary:
Manages the development, implementation, and enforcement of the compliance program as well as planning, directing, and administering risk management and loss prevention programs related to operating risk, insurance, and any class of financial risk. This may include establishing risk tolerance guidelines and policies and ensuring the risk exposure of the organization is within these guidelines. Ensures maximum protection of the organization's assets. Develops and implements business continuity plans enterprise-wide, where applicable. Conducts periodic audits to assess compliance levels. Develops processes for effective and efficient reporting and data analysis to minimize risk exposure. Consults on an ongoing basis on related issues with managers and executives. Ensures conformance with applicable laws and regulations and ensures regular training is conducted on compliance Issues.
What part you will play:
● Leads and oversees the daily activities and performance of PCI Compliance and IT Risk management team members, providing guidance, prioritization, and training support.
● Acts as a PCI Compliance and IT Risk SME by monitoring regulatory requirements, industry trends, and emerging threats, assessing risks, and escalating key issues to management.
● Supports and conducts technology and cybersecurity risk assessments, including control reviews, risk analysis, stakeholder engagement, reporting, and recommendations for improvement.
● Ensures compliance with payment network and regulatory requirements (e.g., Visa, Mastercard, AMEX, Discover) while advising on compliant business and technology solutions.
● Partners with technical and business stakeholders to manage compliance initiatives, document requirements, and help ensure technical solutions align with compliance, risk, and business objectives.
Required skills:
● Bachelor's degree in information security, Cybersecurity, IT, Risk Management, or related field (or equivalent experience)
● 4–6 years of experience in PCI Compliance and IT Risk Management, with a background in information security, risk assessment, regulatory compliance, audit, and governance practices.
● Strong attention to detail and organizational skills; strong multi-tasking skills.
● Strong written and verbal communication skills; strong presentation, networking and collaboration skills
● 2 years of previous experience managing and developing resources Ability to follow established processes and procedures.
● Demonstrates strong execution discipline and follows structured processes in controlled environments.
● Applies risk awareness and compliance knowledge to protect sensitive payment data and support business objectives.
● Collaborates effectively with cross-functional and global teams to achieve shared goals.
● Takes ownership of tasks, exercises sound judgment, and resolves issues using established policies and procedures.
● Provides leadership by managing priorities, coordinating team activities, delegating responsibilities, and supporting employee development.
