Overview
The Information and Security Head role at Multisys Technologies Corporation focuses on establishing, implementing, and maintaining a company-wide information security strategy aligned with business goals and regulatory requirements. The role covers Governance, Risk, and Compliance (GRC), security auditing, IT risk assessment, policy enforcement, and leading the Security Operations Center (SOC). It requires both technical proficiency and strategic oversight and involves collaboration with internal teams, external auditors, and government / regulatory bodies to ensure data security, IT risk mitigation, and compliance with local and international standards.
Responsibilities
- Establish, implement, and maintain a company-wide information security strategy aligned with business goals and regulatory requirements.
- Oversee Governance, Risk, and Compliance (GRC), security auditing, IT risk assessment, policy enforcement, and the Security Operations Center (SOC).
- Collaborate with internal teams, external auditors, and government / regulatory bodies to ensure data security, IT risk mitigation, and compliance with local and international standards.
Qualifications
Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or related field.At least 5–7 years of progressive experience in IT security, with at least 2 years in a leadership or supervisory role.Proven hands-on experience in implementing and managing GRC programs, internal audits, and security operations.Strong knowledge of ISO 27001, NIST frameworks, and Data Privacy Act of the Philippines.Experience in vulnerability scanning, SIEM tools, endpoint protection, firewall management, and access controls.Familiarity with DevSecOps, secure SDLC, and application security best practices.Working knowledge of security tools and platforms such as Splunk, Nessus, CrowdStrike, or similar.Strong analytical, problem-solving, and critical thinking skills.Excellent communication and report-writing skills, capable of translating technical issues into business language.Ability to work independently, manage multiple priorities, and maintain confidentiality.CISSP, CISM, CISA, CRISC, ISO 27001 Lead Implementer / Auditor, or similar credentials is a plus.Senioriority level
Mid-Senior level
Employment type
Full-time
Job function
Information Technology
Location
Makati, National Capital Region, Philippines
#J-18808-Ljbffr