Talent.com
Xerox
Security Risk AnalystXerox • Cebu, Central Visayas (Region VII), Philippines
Security Risk Analyst

Security Risk Analyst

Xerox • Cebu, Central Visayas (Region VII), Philippines
30+ days ago
Job description

General Information

City Cebu State/Province Central Visayas (Region VII) Country Philippines Department IM SECURITY Date Thursday, March 5, 2026 Working time Full-time Ref# 20038492 Job Level Individual Contributor Job Type Experienced Job Field IM SECURITY Seniority Level Associate

Description & Requirements

About Xerox Holdings Corporation
For more than 100 years, Xerox has continually redefined the workplace experience. Harnessing our leadership position in office and production print technology, we’ve expanded into software and services to sustainably power the hybrid workplace of today and tomorrow. Today, Xerox is continuing its legacy of innovation to deliver client-centric and digitally-driven technology solutions and meet the needs of today’s global, distributed workforce. From the office to industrial environments, our differentiated business and technology offerings and financial services are essential workplace technology solutions that drive success for our clients. At Xerox, we make work, work. Learn more about us at .

A Security Risk Analyst is responsible for assessing information security risks in company environments, developing security controls to address the security risks, and working with IT and all business units on complying with the policies through awareness and engagement. This role is responsible for supporting the risk management process and security compliance requirements.

Job Responsibilities:

  • Support the third-party risk management program by performing vendor assessments, reassessments, critical supplier reviews, and ongoing monitoring.
  • Complete risk assessments based on CIS 18 and NIST CSF frameworks, assist risk owners to create risk treatment plans and follow up on deadlines, assist with analyzing data and creating risk charts for senior management.
  • Regularly evaluate potential risks and formulate strategies to mitigate and reduce identified risks.
  • Work closely with various departments to communicate risk status and integrate risk management strategies into their operations.
  • Prepare comprehensive reports on risk assessment findings and action plans and present them to management and stakeholders.
  • Work independently on assigned tasks and projects with minimal management oversight and guidance.
  • Communicate with personnel and management at various levels across the organization and in other geographies.
  • Communicate results and project status effectively to management.
  • Strengthen security awareness by educating users on risk, security requirements, and processes.
  • Work in a team setting to understand and cross-train on governance and compliance activities.
  • Execute special projects, as assigned.

Job Requirements:

Competencies, Skills, Knowledge & Abilities:

  • Knowledge of IT Security Risk Frameworks, such as NIST Cybersecurity Framework and CIS 18.
  • Familiarity with security controls frameworks such as ISO 27001 and SOC 2, including best practices and cybersecurity principles.
  • Understanding of privacy control frameworks such as GDPR, DORA, NIS2, and EU Data Act.
  • IT background and knowledge of IT business systems.
  • Ability to own initiatives with minimal direct supervision.
  • Strong analytical and data analysis skills.
  • Demonstrates executive presence, effective communication, presentation, and interpersonal skills.
  • Ability to perform root cause analysis and make sound, timely decisions to resolve problems.
  • Capable of working across departments and communicating with end users.
  • Appropriately uses and protects confidential information acquired in the course of the job.
  • Quick to learn new concepts and information on a frequent basis.
  • Excellent organizational, documentation, and project management skills with attention to detail.
  • Proven ability to manage multiple priorities.
  • Knowledge of OneTrust tool is a plus.

Education and Experience

Required

  • 3-5 years of experience in IT, Cybersecurity Governance, Risk, or Compliance/Audit role
  • Bachelor’s degree in business, Risk Management, IT, MIS, Computer Science, or similar technical field

Preferred

  • 6-10 years of relevant experience
  • CRMA, CISSP, CISA, CISM, CySA+ or similar professional certification

Create a job alert for this search

Security Risk Analyst • Cebu, Central Visayas (Region VII), Philippines

Similar jobs

GRC Analyst

VEVO LLCCebu City, Central Visayas, PH

MyPass Global is a multi-award-winning workforce compliance software company.Our cutting-edge technology helps companies in high-stakes industries reduce risk, save up to 70% on back-office costs, ... Show more

 • Promoted

Compliance Senior Analyst

Manulife FinancialTalima, Lapu-Lapu City, Central Visayas, Lapu-Lapu City; Central Visayas, PH

Central Compliance team at MBPS.In this role, you are responsible for performing more complex and judgment‑based compliance reviews to ensure sales, marketing, and distribution of communications co... Show more

 • Promoted

Cybersecurity Manager

Xerox CorporationCebu City, Central Visayas, PH

The Cebu Cybersecurity Manager is responsible for leading and advancing Xerox's cybersecurity capabilities within the Cebu Global Capability Centre, in alignment with the global Xerox Cybersecurity... Show more

 • Promoted

Identity & Security Specialist

Virtual Business Partners Pty. Ltd.Cebu City, Central Visayas, PH

Identity & Security Specialist.This role ensures that identity services, endpoint protection, backup operations, and security controls are maintained in accordance with organizational standards and... Show more

 • Promoted

Cyber Security Technical Lead

Globe Telecom, Inc.Cebu City, Central Visayas, PH

This role is responsible for leading the technical aspects of cyber security project deployments, ensuring on time, on scope, and on budget completion.He/she will be a champion of security best pra... Show more

 • Promoted

Security Engineer (Cybersec) On-site

Gamigo Philippines IncorporatedCebu City, Central Visayas, PH

As Cyber Security Engineer you will design, build, and harden the security controls that protect our games, platforms, and player data.You will work across cloud, network, application, and endpoint... Show more

 • Promoted

Site Security Lead

DexcomCebu City, Central Visayas, PH

The CompanyDexcom Corporation (NASDAQ DXCM) is a pioneer and global leader in continuous glucose monitoring (CGM).Dexcom began as a small company with a big dream: To forever change how diabetes is... Show more

 • Promoted

Security Engineer

Azeus Systems LimitedCebu City, Central Visayas, PH

Perform penetration testing of Web and Mobile (iOS, Android, Windows and Mac) applications.Own the vulnerability management lifecycle from identification, remediation to reporting.Active monitoring... Show more

 • Promoted

Project Intelligence Analyst

Dover CorporationCebu City, Central Visayas, PH

REPORTING TO: Senior Team Lead, Business Intelligence and Reporting.WORKING HOURS: Full time; working hours aligned with U.The Project Intelligence Analyst is a critical contributor within the Mark... Show more

 • Promoted

Analytics and Integration Lead

Globe Telecom, Inc.Cebu City, Central Visayas, PH

At Globe, our goal is to create a wonderful world for our people, business, and nation.By uniting people of passion who believe they can make a difference, we are confident that we can achieve this... Show more

 • Promoted

Identity & Security Engineer

Virtual Business Partners Pty. Ltd.Cebu City, Central Visayas, PH

This role ensures the confidentiality, integrity, and availability of customer systems by administering identity and access management, endpoint protection platforms, backup and recovery solutions,... Show more

 • Promoted

Site Security Lead Cebu, Philippines Posted 19 hours ago

Dexcom Inc.Cebu City, Central Visayas, PH

Site Security LeadCebu, PhilippinesFind out how well you match with this jobJob IDJR119561**The Company**Dexcom Corporation (NASDAQ DXCM) is a pioneer and global leader in continuous glucose monito... Show more

 • Promoted

Hybrid Compliance Senior Analyst - Asset & Investment

Manulife FinancialTalima, Lapu-Lapu City, Central Visayas, Lapu-Lapu City; Central Visayas, PH

Manulife Financial is seeking a Compliance Senior Analyst to join their Central Compliance team in Talima, Philippines.The role involves performing compliance reviews to ensure adherence to interna... Show more

 • Promoted

Quality Analyst (Healthcare) | w/30K SOB

RecruitNest ConsultingCebu City, Cebu, Philippines
Quick Apply

Position Type: Experienced - Individual Contributor.Employment Type: Full-Time, Permanent (Direct Hire).Work Setup & Location: Fully Onsite - IT Park, Cebu City.Work Schedule: Weekdays; Night/R... Show more