Live opening · Posted 11 days ago
At a glance
The key details from the original listing.
Your early-applicant advantage
Live timing from JobBeeper.
About the role
Description supplied by the original job listing.
We're looking for an experienced Senior Manager – InfoSec Risk and Compliance to join our organization in Angeles, Philippines. In this strategic leadership role, you will oversee the development, implementation, and management of comprehensive information security risk and compliance programs. You will drive organizational alignment with regulatory requirements, manage security risk assessments, and ensure adherence to industry standards and best practices. This position requires a decisive leader with strong analytical capabilities and meticulous attention to detail.
Develop and execute information security risk management strategies aligned with organizational objectives and regulatory requirements
Design, implement, and maintain compliance frameworks and policies in accordance with applicable standards (ISO 27001, SOC 2, GDPR, and other relevant regulations)
Conduct comprehensive risk assessments and vulnerability analyses to identify, evaluate, and prioritize security risks across the organization
Lead cross-functional teams to remediate identified risks and compliance gaps within established timelines
Manage audit activities, including internal and external audits, and coordinate remediation efforts to address findings
Establish and oversee vendor risk management programs to ensure third-party security compliance
Develop and deliver security awareness and compliance training programs to all organizational levels
Prepare and present risk and compliance reports to senior leadership and the board of directors
Stay current with evolving regulatory landscapes and emerging security threats to ensure organizational preparedness
Collaborate with IT, Legal, and Business units to integrate security and compliance into organizational processes
Manage compliance calendars and ensure timely submission of regulatory documentation and certifications
Build and mentor a high-performing compliance and risk management team
Required Qualifications:
8+ years of progressive experience in information security, risk management, or compliance functions
5+ years in a senior management or leadership role overseeing security and compliance programs
Demonstrated expertise in risk assessment methodologies and frameworks (NIST, ISO 27001, COBIT)
Strong knowledge of regulatory requirements and compliance standards (GDPR, SOC 2, HIPAA, PCI-DSS, or equivalent)
Proven ability to develop and implement security policies, procedures, and governance frameworks
Excellent analytical and problem-solving skills with the ability to translate complex security concepts for diverse audiences
Strong organizational and project management capabilities with demonstrated ability to manage multiple initiatives simultaneously
Exceptional communication and stakeholder management skills across all organizational levels
Experience conducting security risk assessments and audit management
Preferred Qualifications:
Professional certifications such as CISSP, CISM, or CCSK is added advantage
Experience with Governance, Risk, and Compliance (GRC) tools and platforms
Background in incident response management and security incident investigation
Familiarity with vendor risk management and third-party security assessments
Experience managing security budgets and resource allocation
Knowledge of emerging security threats and industry trends
Experience in regulated industries (financial services, healthcare, telecommunications)
Employment type
Full-time
Work arrangement
No
More openings worth a look
Recently tracked roles with full details and direct application links.