Talent.com
ECLARO
VP of Infrastructure & Network SecurityECLARO • Taguig, National Capital Region, Philippines
VP of Infrastructure & Network Security

VP of Infrastructure & Network Security

ECLARO • Taguig, National Capital Region, Philippines
7 days ago
Job description

Key Responsibilities

AI Transformation & Automation (Core Mandate)

  • Champion the AI transformation of the infrastructure and network security function with a clear mandate: identify, build, and deploy AI agents that eliminate manual toil and scale team productivity by 10x
  • Inventory every manual and repetitive workflow across the platform portfolio—vulnerability triage, scan scheduling, PAM access reviews, asset reconciliation, segmentation policy recommendations, compliance evidence gathering, executive reporting—and build an AI automation roadmap to systematically replace them
  • Build and maintain AI agents that perform work traditionally done by analysts: triaging vulnerability findings with risk-based prioritization, generating microsegmentation policy recommendations based on traffic analysis, automating privileged access certifications, and producing cyber hygiene dashboards and reports
  • Design AI agent architectures that integrate with the team's platform portfolio (Qualys, Guardicore, Axonius, PAM, Cisco Secure Access) to ingest data, reason over findings, and take or recommend actions
  • Transform the team's operating model from manual operators to AI engineers—team members should spend the majority of their time building, tuning, and supervising AI agents rather than performing repetitive tasks
  • Establish quality gates, validation workflows, and human-in-the-loop checkpoints to ensure AI agent outputs meet accuracy and compliance standards before action is taken
  • Measure and report on AI transformation progress: percentage of workflows automated, time saved per workflow, agent accuracy rates, and overall team productivity multiplier


Hands-On Technical Execution & Engineering

  • Own and operate the team's security platform portfolio: micro segmentation (Guardicore), ZTNA/SASE (Cisco Secure Access), vulnerability management (Qualys VMDR), privileged access management (PAM), asset intelligence (Axonius), email security, and database security platforms
  • Architect and implement network security solutions including segmentation strategies, ZTNA policies, secure access configurations, and least-privilege network controls
  • Drive the cyber hygiene program including vulnerability scanning, patch validation, configuration compliance, and asset inventory accuracy—increasingly through AI agents rather than manual processes
  • Manage and optimize micro segmentation policies to enforce least-privilege network access across production and corporate environments
  • Design and maintain PAM architectures including vault configuration, session recording, credential rotation, and privileged account lifecycle management
  • Leverage Axonius to maintain comprehensive asset visibility, identify coverage gaps across security tooling, and drive cyber hygiene accountability
  • Troubleshoot complex technical issues across the platform portfolio and drive vendor escalations to resolution


Team Leadership & Development

  • Build and lead a high-performing infrastructure and network security team
  • Develop team capability through pairing on technical work, not just delegating—coach team members while solving problems together
  • Drive the team's evolution from platform operators to AI-augmented security engineers who build and maintain the agents that do the operational heavy lifting
  • Know when to roll up your sleeves and execute directly versus when to invest time developing someone else's skills
  • Establish clear platform ownership and accountability across team members while maintaining technical quality standards
  • Drive hiring, onboarding, and performance management—with a strong preference for candidates who can build AI agents and automation, not just operate platforms manually


Strategic Program Execution

  • Drive execution of the infrastructure and network security roadmap including platform upgrades, AI agent deployments, capability enhancements, and tool consolidations
  • Develop detailed project plans with milestones, dependencies, and resource allocation—proactively, not upon request
  • Lead multiple concurrent strategic initiatives (e.g., micro segmentation expansion, PAM maturity, Qualys coverage optimization, ZTNA migration, AI agent rollout) while maintaining velocity and quality
  • Remove blockers and drive decisions quickly to maintain momentum
  • Partner with IT, DevOps, and application teams to ensure security is embedded into infrastructure design and change management processes


Cyber Hygiene & Asset Management

  • Own the enterprise cyber hygiene program: vulnerability management lifecycle, patch compliance tracking, configuration drift detection, and security baseline enforcement—with AI agents handling the bulk of triage, prioritization, and reporting
  • Drive accountability for remediation SLAs across technology teams using data from Qualys and Axonius, with AI-generated escalation recommendations and trend analysis
  • Maintain authoritative asset inventory through Axonius, ensuring coverage and accuracy across endpoints, servers, cloud workloads, and network devices
  • Produce executive-level reporting on cyber hygiene posture, vulnerability aging, and remediation trends—increasingly auto-generated by AI agents with human review
  • Support audit and compliance activities related to infrastructure and network security controls (FFIEC, PCI DSS, GLBA)


Required Qualifications

Technical Knowledge

  • Deep expertise in network security architecture including micro segmentation, ZTNA/SASE, firewalls, email security, and network access control
  • Strong hands-on experience with vulnerability management platforms (Qualys or equivalent) including scan configuration, asset grouping, reporting, and remediation workflows
  • Experience with privileged access management solutions (CyberArk, BeyondTrust, Delinea, or equivalent) including vault architecture, session management, and credential rotation
  • Familiarity with asset intelligence and cyber asset management platforms (Axonius or equivalent) for coverage gap analysis and security hygiene enforcement
  • Working knowledge of database security platforms and controls including activity monitoring, access controls, and encryption
  • Strong working knowledge of enterprise networking (routing, switching, VLANs, SD-WAN) and how security integrates at each layer
  • Understanding of AI/LLM agent architectures, prompt engineering, and automation orchestration platforms—enough to design, build, or direct the build of AI agents that integrate with security platforms via APIs
  • Understanding of banking compliance frameworks (FFIEC, GLBA, PCI DSS) as they relate to network and infrastructure security controls


Required Focus Areas

  • AI-Driven Security Operations: Building and deploying AI agents that automate security workflows at scale—vulnerability triage, policy recommendations, access reviews, compliance evidence gathering, and executive reporting. Experience designing agent architectures that integrate with security platforms, establishing validation and human-in-the-loop frameworks, and measuring automation ROI. This is the defining capability of this role.
  • Zero Trust & Network Segmentation: Designing and implementing zero trust frameworks including micro segmentation, least-privilege network access, continuous verification, and SASE/ZTNA architectures. Experience translating zero trust principles into practical network policies and enforcement points.
  • Vulnerability Management & Cyber Hygiene: Hands-on experience owning enterprise vulnerability management programs end-to-end—scan operations, risk-based prioritization, remediation tracking, SLA enforcement, and executive reporting. Experience driving accountability for cyber hygiene outcomes across technology teams.
  • Privileged Access & Database Security: Experience designing and operating PAM solutions including vault architecture, credential management, session recording, and just-in-time access. Familiarity with database security controls including activity monitoring and access governance.


Leadership Competencies

  • Ability to switch rapidly between deep technical work, AI agent development, and strategic leadership conversations
  • Judgment about when to do the work yourself (speed, complexity, teaching opportunity) versus when to delegate—and increasingly, when to build an AI agent to do it permanently
  • Track record of staying technically sharp while managing people and projects
  • Bias for action with ability to make decisions quickly and implement them directly when needed
  • Comfortable with ambiguity and able to create structure through hands-on execution
  • Ability to inspire a team to embrace AI transformation—not as a threat to their roles, but as the path to operating at a level that would otherwise be impossible


Work Environment & Expectations

  • This is a demanding hybrid technical leadership role that requires commitment and engagement beyond standard business hours when operational needs arise.
  • You will be in the technical weeds—configuring segmentation policies, troubleshooting PAM integrations, building AI agents to automate vulnerability triage, driving remediation—while also building and leading a team. This is not a pure management role.
  • AI transformation is not a side initiative—it is a core expectation. You will be measured on your ability to systematically replace manual workflows with AI agents and demonstrate measurable productivity gains across the team.
  • The pace of work is fast and the volume is high. You need to move quickly between technical execution, AI agent development, team coaching, vendor escalations, and leadership updates—often on the same day.
  • Success requires knowing when to roll up your sleeves and build something yourself, when to invest time developing team capability, and when to build an AI agent so nobody has to do that task again. All three are necessary.
Create a job alert for this search

VP of Infrastructure & Network Security • Taguig, National Capital Region, Philippines

Similar jobs

VP of Infrastructure & Network Security

ECLAROnational capital region, ph

AI Transformation & Automation (Core Mandate).Champion the AI transformation of the infrastructure and network security function with a clear mandate: identify, build, and deploy AI agents that eli... Show more

 • Promoted

Senior Network Security Engineer

ECLAROnational capital region, ph

Reporting to the Vice President of Information Technology, the Senior Network Engineer is responsible for the design, implementation, maintenance, and security of ECLARO's global core network infra... Show more

 • Promoted

Cyber Security Manager

KPMGnational capital region, ph

The Security Operations Manager is responsible for leading the day-to-day operations of the SOC Analyst staff.The role coordinates and works with the SOC Analysts to make sure that the analysts, pr... Show more

 • Promoted • New!

Technology Lead – Data Center & Security

Universal Access and Systems Solutions Inc.national capital region, ph

The Technology Lead for Data Center & Security.This role combines hands-on technical expertise with leadership responsibilities, ensuring successful delivery of projects, high-quality service, and ... Show more

 • Promoted

Senior Manager Information Security

PhilWeb Groupnational capital region, ph

The Information Security Senior Manager has the responsibility for managing the day-to-day operations and personnel in-charge of the development and implementation of the organization’s various inf... Show more

 • Promoted

Cyber Security Compliance Management Head

Smart Communications, Inc.national capital region, ph

Leads the enterprise Cyber Security Compliance Center by setting strategic direction for Information Security Management System (ISMS) governance, audit and assurance, identity and access managemen... Show more

 • Promoted

Network Engineer Tier 2

Movatenational capital region, ph

As a NOC Engineer, you will be responsible for ensuring the stability and performance of our network operations.Qualifications and preferred skills:.With 3-5 years' experience in Network Operations... Show more

 • Promoted

Senior Network Security Engineer (Firewall Management | Netscaler)

KMC Solutionsnational capital region, ph

We are seeking a highly skilled.Amkor Technology’s This role is critical in ensuring the security, reliability, and efficiency of global Security and Network infrastructure across multiple sites an... Show more

 • Promoted

Network Security Engineer

SMITS, Inc. - IT Company of San Miguel Corporationnational capital region, ph

Should have knowledge and experience in handling SIEM and SOAR devices.Firewall, IPS, Web Proxy, Remote Access VPN, Antivirus, Endpoint Detection Response, Vulnerability Scanner, Bandwidth Manager,... Show more

 • Promoted

Cyber Security Tech GRC Lead

KPMG Philippinesnational capital region, ph

Own delivery assurance for the Technology GRC portfolio delivered from Manila, including review discipline, risk management, and escalation of quality issues.Lead and develop Technology GRC deliver... Show more

 • Promoted

Network Security Engineer

ABBE Technology Solutions Inc.national capital region, ph

Senior / Lead Post-Sales Engineer.Network and Security background.This role is ideal for a hands-on technical expert who can also provide leadership, mentoring, and high-level customer engagement.L... Show more

 • Promoted

Director Information Security

Optum Philippinesnational capital region, ph

As BISO, you will be a key member of the Enterprise Security Office; leading a team responsible for overall security governance in global offices.This role will be the focal point for effective eng... Show more

 • Promoted

Network BISO

PLDTnational capital region, ph

FUNCTIONAL DUTIES & RESPONSIBILITIES.Collaborate with Network leadership and CSOG to embed cybersecurity requirements into all phases of network planning, engineering, deployment, maintenance, and ... Show more

 • Promoted

Platform Engineer (AVP/VP)

TALVISnational capital region, ph

Not Much though! We don't beleive in writing the boring stuff in a JD!.If you are keen to work in a fun-filled highly engineering focused startup company with Avaloq only core banking product and y... Show more

 • Promoted

Senior Network Security Engineer

BNP Paribasnational capital region, ph

The Senior Network Security Engineer (iNet Technology team) provides technical support for all “above‑the‑network‑layer” solutions, including firewalls (Check‑Point, Fortinet), global traffic manag... Show more

 • Promoted

Head of Infrastructure

Sumisho Motor Finance Corporationnational capital region, ph

Supervise, implement & monitor Sumisho’s access controls and strategic information security programs that conform to both local, regulatory, and international standards and/or security best practic... Show more

 • Promoted

Network Engineer ( Security )

Universal Access and Systems Solutions Inc.national capital region, ph

Job Description and Key Responsibilities.The Solutions Engineer – Security is responsible for the deployment, configuration, and technical support of network and endpoint security solutions provide... Show more

 • Promoted

Network Security Engineer

Tata Consultancy Servicesnational capital region, ph

Responsible at a practical level for the enhancement of the Banks Secure Web Access Services in alignment with programme scope and objectives and shall be able to work within strict time constraint... Show more

 • Promoted

Cybersecurity Compliance Head

Smart Communications, Inc.national capital region, ph

Leads the enterprise Cyber Security Compliance Center by setting strategic direction for Information Security Management System (ISMS) governance, audit and assurance, identity and access managemen... Show more

 • Promoted

Network Business Information Security Officer

PLDTnational capital region, ph

FUNCTIONAL DUTIES & RESPONSIBILITIES.Collaborate with Network leadership and CSOG to embed cybersecurity requirements into all phases of network planning, engineering, deployment, maintenance, and ... Show more