Talent.com
Consultant - Risk & Security Assessments (Lead Level)
Consultant - Risk & Security Assessments (Lead Level)HCM Nexus Consulting • Makati, Metro Manila, Philippines
Consultant - Risk & Security Assessments (Lead Level)

Consultant - Risk & Security Assessments (Lead Level)

HCM Nexus Consulting • Makati, Metro Manila, Philippines
30+ days ago
Job description

Job Summary:

We are seeking a detail-oriented and analytical Risk & Security Consultant to support and lead information security assessments across enterprise environments. This role will focus on identifying, evaluating, and mitigating security risks through structured assessments and consulting engagements. Depending on experience, this position can be scoped as Junior Lead Consultant or Lead Consultant, with increasing responsibility over project delivery, client engagement, and team mentoring.

The ideal candidate will bring a solid foundation in IT risk, cybersecurity frameworks, and control evaluation, along with strong interpersonal and documentation skills.

Key Responsibilities:

  • Conduct risk and security assessments across applications, infrastructure, third-party vendors, and internal controls.
  • Evaluate and document risk exposure, security posture, and compliance against established frameworks (e.g., ISO 27001, NIST, CIS, COBIT).
  • Prepare detailed assessment reports, including identified risks, control gaps, and actionable recommendations.
  • Support the development and implementation of risk mitigation strategies and remediation plans.
  • Collaborate with cross-functional teams including IT, legal, compliance, and business stakeholders to understand and align security requirements.
  • Lead or contribute to the planning and execution of security assessments, audits, and readiness reviews.
  • Stay up to date with current threat landscapes, emerging risks, and relevant regulatory changes.
  • Support the preparation of risk dashboards and management reports.

Qualifications:

  • Bachelors degree in Information Security, Computer Science, Information Systems, or a related field.
  • 4-7 years of experience in information security, IT audit, or risk management roles.
  • Strong knowledge of risk and control frameworks such as ISO 27001, NIST, SOC 2, PCI-DSS, or similar.
  • Experience in performing or leading security assessments, audits, or third-party risk reviews.
  • Familiarity with governance, risk, and compliance (GRC) tools is an advantage.
  • Excellent written and verbal communication skills with the ability to present technical findings to non-technical audiences.
  • Detail-oriented and highly organized, with the ability to manage multiple assessments simultaneously.

Preferred Certifications:

  • Certified Information Systems Auditor (CISA)
  • Certified Information Security Manager (CISM)
  • Certified in Risk and Information Systems Control (CRISC)
  • ISO 27001 Lead Implementer / Lead Auditor
  • CompTIA Security+ or equivalent foundational cert
Create a job alert for this search

Consultant - Risk & Security Assessments (Lead Level) • Makati, Metro Manila, Philippines

Similar jobs
Senior Security Consultant

Senior Security Consultant

Hunter's Hub Inc. • Taguig, Metro Manila, Philippines
The ideal candidate is a hands-on security expert with strong technical depth, customer- facing experience, and a proven track record in operational security management.Administrate customer securi...Show more
Last updated: 30+ days ago • Promoted
Cybersecurity Risk Assessment Analyst

Cybersecurity Risk Assessment Analyst

Smart Communications, Inc. • national capital region, ph
Determine the risk posture of the PLDT Group resulting from changes in technology architecture, products, and services.Conduct the cybersecurity risk assessments in accordance with company prescrib...Show more
Last updated: 27 days ago • Promoted
Cyber Security Incident Response Lead

Cyber Security Incident Response Lead

TrendAI • national capital region, ph
As the number of cyberattacks and digital threats continue to grow, our world needs more passionate and innovative individuals who seek to be trailblazers in and shapers of the rapidly evolving cyb...Show more
Last updated: 19 days ago • Promoted
Non-Traded Risk Analyst

Non-Traded Risk Analyst

Security Bank Corporation • national capital region, ph
IRRBB exposures of the SBC Group.He/she is expected to analyze on a regular basis, risks in the banking book portfolio and report on a timely manner breaches and non-adherences to controls, if any ...Show more
Last updated: 18 days ago • Promoted
Risk Modeling Lead

Risk Modeling Lead

UnionDigital Bank • national capital region, ph
This is a key role in the risk organization responsible for modeling initiatives within Union Digital Risk Management.He will be responsible for developing and enhancing score models across multipl...Show more
Last updated: 29 days ago • Promoted
Risk Modeling Analyst

Risk Modeling Analyst

ORIX METRO Leasing and Finance • national capital region, ph
The primary purpose of this role is to provide additional support in terms of analytical work such model validation, and implementation.Specific duties and responsibilities:.Provide assistant in th...Show more
Last updated: 4 days ago • Promoted
Risk Assessment Analyst

Risk Assessment Analyst

Bank of Commerce (Philippines) • national capital region, ph
Support the Risk Assessment and Analysis Section Head by assisting in the conduct of systematic risk assessments to identify, evaluate, and prioritize risks related to the Bank’s information assets...Show more
Last updated: 29 days ago • Promoted
Customer Success Relations/Specialist| Cyber Security Solutions

Customer Success Relations/Specialist| Cyber Security Solutions

Sutherland • national capital region, ph
Encourage customers to utilize new features that will help them drive their business forward.Provide insight and relay customer feedback with internal teams, including Sales, Marketing, Product, Te...Show more
Last updated: 29 days ago • Promoted
AI Security Lead

AI Security Lead

Maya • national capital region, ph
AI technologies—both in-house developed and externally sourced.This role is critical in ensuring that every AI solution we build or use is secure, compliant, and resilient against evolving threats....Show more
Last updated: 29 days ago • Promoted
Senior Security Consultant

Senior Security Consultant

Our Clients • Taguig, Metro Manila, Philippines, Philippines
Quick Apply
Our organization is looking for a Security Consultant to join our offensive security team.This role is dedicated to identifying and demonstrating vulnerabilities within client .Based in our Manila ...Show more
Last updated: 22 days ago
Solution Assessment Consultant

Solution Assessment Consultant

Apeiron Sumus • Manila, PH
Quick Apply
Apeiron Sumus is looking for a Solution Assessment Consultant to join our team.This person will lead the successful execution of a variety of Microsoft Azure and Security Solution Assessment projec...Show more
Last updated: 30+ days ago
Senior IT Risk & Controls Consultant

Senior IT Risk & Controls Consultant

Risewave Consulting, Inc. • national capital region, ph
We are seeking an experienced IT Audit Managers and Senior Managers to lead IT controls assurance engagements, manage teams, and deliver high-quality audit services for clients.This is a client-fac...Show more
Last updated: 2 days ago • Promoted
Security Analyst

Security Analyst

KPMG • national capital region, ph
The primary role of a Security Analyst (L1) is the detailed and repeatable execution of all operational tasks as documented in processes and subordinate procedures.Specifically, these analysts will...Show more
Last updated: 6 days ago • Promoted
Escalation Lead

Escalation Lead

Gabtech Global, LLC • antipolo city, calabarzon, ph
PLEASE CAREFULLY READ ALL THE DETAILS BEFORE APPLYING***.M-F (40-45 hours) , plus on-call weekends.The client’s Escalation Lead is responsible for owning policy, risk, and scope decisions during hi...Show more
Last updated: 17 days ago • Promoted
Presales Consultant (Cloud/Security) MJ000038

Presales Consultant (Cloud/Security) MJ000038

Sangfor Technologies • national capital region, ph
Sangfor Technologies is a leading global vendor of IT infrastructure solutions, specializing in Cloud Computing & Network Security with a wide range of products & services including Hyper-Converged...Show more
Last updated: 11 days ago • Promoted
Risk and Compliance Analyst

Risk and Compliance Analyst

ProSource • national capital region, ph
At ProSource, we build and manage highly technical distributed teams for some of the most innovative companies in the world.We believe in humanizing the outsourcing industry by finding, attracting,...Show more
Last updated: 17 days ago • Promoted
Security Testing and Assurance Analyst

Security Testing and Assurance Analyst

Bank of Commerce (Philippines) • national capital region, ph
The Security Testing and Assurance (STA) Analyst supports and executes the Bank’s technical security testing activities under the direction of the Section Head.The role provides hands-on assistance...Show more
Last updated: 29 days ago • Promoted
Risk Compliance- Assistant Manager

Risk Compliance- Assistant Manager

IGT Solutions • national capital region, ph
Position: AM – Risk & Compliance.Deploying Processes & Policies for Privacy Security Management System to comply to Data Protection requirements.Deploying ISO 27001/PCI DSS/COPC certification for t...Show more
Last updated: 6 days ago • Promoted