Search Jobs

Search by job, company or skills

  • Posted a day ago
  • Be among the first 10 applicants

Job Description

STRATEGIC STAFFING SOLUTIONS (S3)

Position: Cybersecurity Risk Analyst

Work Set-Up: Hybrid (Twice a week RTO)

Office Location: Ayala, Makati

Schedule: TBD

The Risk Analyst is responsible for providing guidance on tools to measure and manage risk, identify/mitigate threats, and protect against unauthorized disclosure of confidential information. Risk Analysts duties include assessing the adequacy of security strategies, adherence to security guardrails and calculating the impact of adverse events or threats. Ideal candidates will assist in ensuring effective execution of cybersecurity strategies and our risk management framework by managing relationships with key stakeholders, verifying that IT risks are appropriately mitigated, as well as providing periodic updates on the state of compliance.

KEY JOB RESPONSIBILITIES

• Advises leadership on cybersecurity initiatives that support the latest trends in IT security, risk, and controls.

• Facilitates risk assessment exercises, perform compliance and risk monitoring/validation, and other compliance assurance exercises as required.

• Facilitates awareness and training for the information technology risk program elements to ensure responsibilities are understood and executed.

• Coordinates external and internal assurance or advisory audits, representing information technology throughout the lifecycle of the audit (from planning through remediation strategy).

• Monitors, tracks, and reports mitigation and resolution of IT risks.

• Works closely with other technical, incident management, and forensic personnel to develop a broader understanding of the intent, objectives, and activities of cyber threat actors and support the cyber defense program.

REQUIRED QUALIFICATIONS / CERTIFICATIONS

• Minimum 3-5 years related work experience in Information Technology field.

• Knowledge of and experience with Industry Policies, Standards and Controls (e.g., NIST 800-53, ISO 27001, COBIT, ITIL, SOX, PCI-DSS, SANS, etc.).

• Understanding of key technology/data concepts such as access control, confidential data, encryption, data privacy, information management, intellectual property, business continuity, disaster recovery, security scans, and 3rd party/vendor applications.

• Strong knowledge of IT organization business processes and systems including (IT Security, data management, architectural and planning, technology life cycle management, regulatory concerns).

• Certifications: Desired but not required - Certified Information Systems Security Professional (CISSP), Certified Information Security Manager, (CISM), Certified Information Systems Auditor (CISA), or Certified in Risk and Information Systems Control (CRISC).

More Info

Job Type:
Industry:
Function:
Employment Type:

Key Skills

PCI-DSS

3rd party vendor applications

confidential data encryption

NIST 800-53

security scans

Similar Jobs

1-3 yrs
Philippines
Skills:
ticketing systems , IT security, Data Privacy, Vendor Risk Management, Compliance, CRM Tools, risk management software, third-party risk
1-3 yrs
Philippines
Skills:
ticketing systems , IT security, Data Privacy, CRM Tools, Vendor Risk Management, Compliance, risk management software, third-party risk
2-4 yrs
Philippines, Quezon City
Skills:
Security Compliance, data privacy training, audits, Root Cause Analysis, Fraud Detection, performance integrity, Data Analysis, process improvement
3-5 yrs
Philippines, Western Visayas, Iloilo
Skills:
Microsoft Word, Information IT and Cyber security, Vendor management, Data Privacy and security
5-7 yrs
Philippines
Skills:
Iso 27001, Confluence, JIRA, Cism, Team Central, Protiviti, Cobit, Cissp, Cisa, CRISC, Prevalent platform