Make your next big career move by applying as KMC Solutions' next CYBER SECURITY MANAGER!
This is an individual contributor role that will be responsible in planning, developing and implementing information security programs, which includes standard procedures and policies designed to protect enterprise communications, IT systems, company and customer assets from both internal and external threats.
On top of your salary, here are the exciting benefits you can look forward to :
Health Insurance / HMO
Enjoy unlimited MadMax Coffee
Diverse learning & growth opportunities
Accessible Cloud HR platform (Sprout)
Above standard leaves
The main responsibilities of a CYBER SECURITY MANAGER include :
Leads the information security function across the company to ensure consistent and high-quality information security management in support of the business goals.
Develop, implement, and monitor a comprehensive enterprise information security programs that aligns with strategic plan and best-in-class compliance and industry requirements.
Maintain our ISO 27001, SOC2 Type, GDPR and UK Cyber Essential certification and related activities.
Manage our annual internal and external penetration test and remediation.
Monitor emerging threats and advise relevant stakeholders on the appropriate courses of action.
Define and facilitate the information security risk assessment and incident management processes.
Manage security incidents and events to protect corporate IT assets, including intellectual property, regulated data, and the company's reputation.
Develops, implements and enhances an up-to-date information security management framework.
Create, implement and manage confidentiality, data safeguarding and data retention policies and procedures.
Develop, maintain, and roll out training and activities for information security awareness within the organization.
Evaluates security trends, evolving threats, risks and vulnerabilities and applies tools to mitigate risk as necessary.
Provide regular reporting on the current status of the security program to relevant stakeholders as part of a strategic enterprise risk management program.
Facilitate a metrics and reporting framework to measure the efficiency and effectiveness of the program, facilitate appropriate resource allocation, and increase the maturity of the security.
To apply, you must be an expert on the following requirements :
Bachelor's Degree in Information Technology, Computer Science, Information System or any other related field.
At least 10 years of experience in a functional information security or senior-level cybersecurity role.
Experience working with international clients or organizations is a strong advantage.
Experience in setting up and managing information security in Financial Services industry is a plus.
Has the ability to build and implement successful cybersecurity programs.
Has strong background with ISO27001, SOC2 Type 2, GDPR and other compliance requirements.
Preferably have at least one (1) of the following certifications : CISSP, CISA, CISM, or CRISC.
Excellent knowledge in Azure ecosystem / infrastructure; preferably with certification as well.
Knowledgeable in risk-management and incident management processes
Has in-depth understanding of networks, security methodologies, databases and business applications as they relate to information security
Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential action and its impact to the company.
Excellent conceptual problem-solving skills with demonstrated ability to bring structure to vaguely defined problems, pragmatically scope problems and manage execution.
Solution driven with demonstrated ability to meet deadlines and deliver results.
Position : IT Cybersecurity Manager
Location : BGC, Taguig, Metro Manila
Work Set-Up : Hybrid (3 days WFH; 2 days Onsite)
Work Schedule : Mostly Flexible but the client requires at least 4hrs of overlap with US (EST) Time (this can be either Mid Shift or Night Shift Manila Time).
#J-18808-Ljbffr
Information Security Manager (ISO 27001 / SOC2 / GDPR) - Hybrid • Metro Manila, Philippines