Location: Makati City
Work Setup: Hybrid
Employment Type: Full-time
Work Schedule: Monday to Friday
Job Summary
We are seeking an
IT Consultant (Technology and Cybersecurity Governance) to support consulting engagements involving information security, cybersecurity governance, technology risk, and IT governance. This role will assist in assessing client environments, evaluating IT controls, identifying risks, and recommending governance improvements while working closely with senior consultants and project managers.
The ideal candidate has a strong foundation in IT governance, cybersecurity, or IT assurance and is eager to develop expertise in technology consulting.
Key Responsibilities
- Participate in technology risk and cybersecurity governance consulting engagements.
- Assist in conducting IT governance, information security, and cybersecurity assessments.
- Evaluate IT controls, policies, procedures, and governance processes.
- Perform walkthroughs, interviews, documentation reviews, and control testing.
- Identify technology and cybersecurity risks and recommend appropriate control improvements.
- Assist in preparing reports, presentations, and client deliverables.
- Document findings and maintain project documentation throughout the engagement.
- Support senior consultants during client meetings, workshops, and project activities.
- Stay updated on emerging cybersecurity threats, regulatory requirements, and industry best practices.
- Collaborate with engagement teams to ensure timely completion of project deliverables.
Qualifications- Bachelor's Degree in Information Technology, Computer Science, Information Systems, Computer Engineering, Accountancy, or any related field.
- At least 1–3 years of experience in IT consulting, IT assurance, IT audit, cybersecurity, information security, or technology risk.
- Knowledge of:
- Information Security
- Cybersecurity Governance
- Technology Risk
- IT Governance
- IT General Controls (ITGC)
- Risk Assessment
- Strong analytical and problem-solving skills.
- Good verbal and written communication skills.
- Excellent organizational and time management abilities.
Preferred Qualifications
- ISO 27001 Lead Implementer or Internal Auditor Certification
- ISO 22301 Certification
- Certified in Cybersecurity (CC)
- CompTIA Security+
- CISA (or currently pursuing)
- CRISC (or currently pursuing)
- Knowledge of NIST, COBIT, and ISO 27001 frameworks is an advantage