Назад
Company hidden
3 дня назад

Senior Manager – InfoSec Risk and Compliance (Cybersecurity)

Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Philippines
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Manager – InfoSec Risk and Compliance (Cybersecurity): Leading information security risk management, compliance frameworks, audits, and vendor risk programs with an accent on ISO 27001, SOC 2, GDPR, NIST, and regulatory compliance. Focus on assessing and remediating security risks, presenting findings to senior leadership and the board, and building a high-performing risk and compliance team.

Location: Onsite in Clark, Pampanga, Philippines

Company

hirify.global provides AI, automation, cloud engineering, advanced analytics, and business process services to organizations worldwide.

What you will do

  • Develop and execute information security risk management strategies aligned with organizational objectives and regulatory requirements.
  • Design, implement, and maintain compliance frameworks, policies, and governance processes based on ISO 27001, SOC 2, GDPR, and other applicable standards.
  • Conduct security risk assessments and vulnerability analyses, then lead remediation of identified risks and compliance gaps.
  • Manage internal and external audits, regulatory documentation, compliance calendars, and remediation activities.
  • Establish vendor risk management and third-party security assessment programs.
  • Deliver security awareness training, report risk and compliance status to senior leadership and the board, and mentor the risk and compliance team.

Requirements

  • 8+ years of progressive experience in information security, risk management, or compliance.
  • 5+ years in a senior management or leadership role overseeing security and compliance programs.
  • Expertise in risk assessment methodologies and frameworks including NIST, ISO 27001, and COBIT.
  • Knowledge of GDPR, SOC 2, HIPAA, PCI-DSS, or equivalent regulatory requirements and compliance standards.
  • Experience developing security policies, procedures, and governance frameworks, as well as conducting risk assessments and managing audits.
  • Willingness to work onsite in Clark, Pampanga, Philippines.

Nice to have

  • CISSP, CISM, or CCSK certification.
  • Experience with Governance, Risk, and Compliance tools and platforms.
  • Background in incident response, security incident investigation, vendor risk management, or third-party security assessments.
  • Experience managing security budgets and resources or working in regulated industries.

Culture & Benefits

  • Work within a technology and business process services organization focused on digital transformation.
  • Collaborate with IT, Legal, and business units to integrate security and compliance into organizational processes.
  • Lead cross-functional initiatives and build a high-performing risk and compliance function.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →