About this Position
As a Senior IT Security and Regulatory Consultant, you will be at the forefront of ensuring that Henkel’s IT landscape remains secure and compliant with the rapidly evolving cybersecurity laws and regulations. Your primary focus will be on analyzing these regulations and translating them into actionable requirements in close collaboration with our IT, business units, legal, and compliance teams. In this role, you will report functionally to the Head of the Governance, Risk & Compliance Team, where you will work within a collaborative and dynamic environment. You’ll lead projects aimed at integrating new regulatory requirements into existing control frameworks, providing expert consultation on technical and information security matters. Your contributions will not only help mitigate third-party cyber risks but also position Henkel as a leader in maintaining effective cybersecurity practices within its supply chain. Join us in shaping a secure future for our organization while making a significant impact on our strategic initiatives!
What you´ll do
- Analyze emerging IT Cybersecurity laws and regulations, translating them into actionable requirements in close collaboration with Henkel's IT, business units, legal, and compliance teams
- Conduct risk assessments and compliance reviews, ensuring Henkel’s IT landscape remains aligned with evolving regulatory obligations
- Provide expert consultation on technical and information security matters, supporting the development, implementation, and operation of Henkel’s Global Governance, Risk, and Compliance program
- Lead projects to implement new requirements into existing control frameworks or establish new controls as needed, collaborating with the Global Governance, Risk & Compliance team
- Support the third-party cyber risk management program to comply with legal supply chain risk management requirements
Functionally report to the Head of the Governance, Risk & Compliance Team, contributing to strategic Global Governance, Risk, and Compliance initiatives across the organization
What makes you a good fit
Bachelor's Degree in Information Technology, Computer Science, IT Business Applications or other relevant coursesMinimum of seven (7) years of relevant work experience in IT Security and Regulatory; Handling Information Security Management Systems and Control Implementation under ISO 27001, NIST Cybersecurity Framework, CIS Controls (Center for Internet Security), and Third Party Cyber Risk ManagementRelevant IT certifications such as CISA (Certified Information Systems Auditor) and Information Technology Infrastructure Library (ITIL) is a must; Experience in SAP Infrastructure is an advantageSolid understanding of standards and regulatory requirements (e.g., ISO 27001, OWASP, GDPR)With continuous improvement mindset, strong problem-solving, project management, communication and presentation skills; With the ability to proactively resolve issues, work effectively with cross-functional teams and high-level stakeholdersExcellent command of both spoken and written EnglishAmenable to work on a mid-shift schedule (1 : 00 PM to 10 : 00 PM) and report on a hybrid work set-up in Ayala Avenue, MakatiSome perks of joining Henkel
A thriving career with the Top 15 Best Workplaces in the Philippines by Great Place to Work and the Top GBS Employer in the Philippines by the Everest Group for 4 consecutive years!Flexible work scheme with flexible hours, hybrid work model, and work from anywhere policy for up to 30 days per yearDiverse national and international growth opportunitiesGlobally wellbeing standards with health and preventive care programsGender-neutral parental leave for a minimum of 8 weeksEmployee Share Plan with voluntary investment and Henkel matching sharesHMO healthcare coverage planProvident FundGroup Life and Personal Accident InsuranceAt Henkel, we come from a broad range of backgrounds, perspectives, and life experiences. We believe the uniqueness of all our employees is the power in us. Become part of the team and bring your uniqueness to us! We welcome all applications across different genders, origins, cultures, religions, sexual orientations, disabilities, and generations.