Key Responsibilities:
-Develop and execute tactical plans for information, system, and third-party security risk assessments.
-Identify critical information assets, related threats, and vulnerabilities, and evaluate the effectiveness of existing controls.
-Conduct threat modeling and system-level risk assessments for IT systems, applications, and vendor relationships.
-Analyze technical and process changes, system enhancements, and third-party engagements to identify risks and propose mitigations.
-Recommend policies and procedures related to physical, environmental, and personnel security based on assessment outcomes.
-Coordinate with stakeholders across business units to gather information for assessments.
-Produce clear, actionable risk assessment reports and track remediation efforts.
-Maintain a comprehensive security risk register and documentation library.
-Investigate information handling and data privacy-related incidents-Stay updated on relevant compliance regulations (BSP, DPA, PCI-DSS, etc.), threats, and best practices.
-Provide guidance to fellow assessors and contribute to continuous improvements in the bank’s security strategy.
-Perform additional information security risk management duties as assigned.
Qualifications:
-Bachelor’s degree in Information Technology, Computer Science, or a related field
-Knowledge of regulatory and compliance frameworks (BSP, DPA, PCI-DSS)
-Solid understanding of information security domains, especially those related to third-party risk and data protection
-Experience in information security governance, controls assurance, and risk assessments
-Background in IT general controls, network, and application system security assessments
-Strong analytical, risk identification, and problem-solving skills
-Proficient in planning, executing, and documenting security assessments-
Capable of handling multiple projects and deadlines in a fast-paced environment
-Strong written and verbal communication skills, able to explain technical risks in simple terms
-Team-oriented, with good collaboration and leadership abilities
-Highly organized, self-motivated, and adaptable to changing priorities
Please submit your resume at michael.solis@lancesoft.com
Job Type: Full-time
Pay: Php50,000.00 - Php80,000.00 per month
Schedule:
- 8 hour shift
Supplemental Pay:
- 13th month salary
Work Location: In person