Manila (One Ayala Tower 2), Philippines
Onsite
Job Overview
You will help on risk subjects like:
You will work in an agile environment, following Scrum methodology together with DevOps squads, helping to maintain a safe and secure application.
Key Responsibilities
Your primary mission is to help the squads to implement IT Controls and to prove the controls are implemented effectively:
Key Capabilities and Experience
Capabilities:
Mandatory:
Ability to understand the risk processes in an IT environment Experience with IT risk standards Ability to make clear and convincing statements related to risk procedures Proven planning and organizing experience
Nice to have:
Project management experience. Ability to track, plan and coordinate projects related to third party risk management, technical compliance, and/or IT risk automation. Experience in working with Dev(Sec)Ops teams across vulnerability management, threat hunting, security detection and response and developing, or contributing to information security policies and procedures.3. Knowledge of Agile methodology
Education: nice to have Bachelor’s Degree (or higher) in an IT related field.
Experience:
Degree and/or experience in IT risk management, cybersecurity, or related field.
Understanding of fundamental IT risk and security concepts and ability to think critically across technical control domains.
Knowledge of IT control frameworks (eg. SOX, GDPR, CSA CCM) and industry standards (eg. ISO2700x, NIST).
Proven track record of conducting IT control evidencing, qualitative risk assessments and developing mitigation strategies.
Risk reporting and communication:
• ability to communicate risk-related concepts to technical stakeholders.
• experience in liaising with second line risk functions.
• strong written and verbal communications skills in English.
Certifications such as CISSP, CISM, CRISC or equivalent are a plus.
Want to know if this job is worth applying to?