Security (GRC) Consultant

  • Manila City, Metro Manila
  • Permanent
  • Full-time
  • 8 days ago
Job Description Purpose of the Role The Security Consultant will work with the wider Consulting team, responsible for the development and delivery of Governance, Risk and Compliance services. This involves end-to-end delivery for our customers and to a certain extent, business development. A key part of the role will involve directly engaging customers to provide security consulting, aligned to deliverables. These include information security assessments, information security awareness, risk assessments and more. The role will also involve working with the Sales teams and Pre-Sales teams across InfoTrust. Major Accountabilities Delivery of Consulting Services Information Security Assessments Information Security Awareness consulting Pre-sales - working with the sales function to present and respond to technical requirements Technical expertise on specific services/products for pre-sales for key/large enterprise as/when needed Delivery of consulting services to clients, as per scopes of work that are signed before commencement Delivery of ad-hoc advisory to clients within the realms of information security, governance, risk and compliance Evangelise security best practice, research and knowledge sharing amongst customers and prospective customers Services Delivery Management Adhere and contribute to SLA's, metrics, reporting, project scoping and management, customer escalation, engagement management, etc Management of internal security governance, risk and compliance - using the 'eating our own cooking' approach. Outcomes and Measures Develop Information security governance & risk management strategies, frameworks (ISO27001 & PCI-DSS), policies, standards and metrics to measure maturity of overall security operations in alignment with business priorities and its tactical/strategic objectives Perform reviews, assessments and system implementations based on industry/regulatory requirements such as ISO27001, NIST Cybersecurity Framework, SOC2/SSAE-18, Australian ISM, etc. Scope required activities and perform project estimates as required, ensuring that consulting activities defined in these scopes are delivered to the highest standards Engage in skills transfer - both internally and with customers Deliver assignments securely on time within budget and share results and recommendations to both technical and non-technical customers, in the form of either in-person presentations, written or verbal reports Develop and maintain strong relationships with customers through timely delivery of projects Conduct project management, where required Maintain InfoTrust's internal security standards and confidentiality of customer material as defined in out ISO 27001:2013 aligned ISMS Requirements Professional skills, qualifications and experience Minimum of 2-3 years' experience in IT, preferably in information and cybersecurity Minimum 1-2 years' experience in GRC focused role Experience in conducting IT security and cyber/information security assessments Experience assisting with audits (internal & external) and auditors Proven track record building strong relationships with key business leaders and stakeholders Practical understanding of Information Security Standards & Frameworks, for e.g. NIST CSF, ISO 27001, GDPR, ASD, ISM Good to have - 1 or more professional Information Security certifications (ISO 27001, CISSP Associate, CompTIA Security+ or equivalent) Personal Attributes & Interpersonal Skills Strong Stakeholder management capabilities Outstanding verbal and written communication Adaptability to change Ability to align Cyber/Information Security objectives with key business goals Prepared to act as a 'hands-on' leader, as required Leadership Competencies Decision-making competency Strong business acumen Performance management An understanding of business engagement drivers Personality Core Values Customer Driven Accountable Humble Trustworthy Health and Safety Responsibilities All employees are responsible for ensuring the health, safety and welfare of all employees and others in the workplace: Comply with WHS legislation Work in accordance with safe working practices Ensure that any hazard or injuries are reported to your manager Environmental awareness is followed in daily performance of duties Benefits WHAT WE OFFER: Great Place to Work-Certified Company Premium HMO Holistic employee experience Work-from-home setup Rewards and incentives Monthly engagement activities Career advancement opportunities Paid referral program

foundit

Similar Jobs

  • GDS Consulting_Enterprise GRC Archer Senior Consultant

    EY

    • Taguig City, Metro Manila
    At EY, you'll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we're …
    • 1 month ago
  • Senior IT Consultant (Security)

    SimCorp

    • Manila City, Metro Manila
    Who we are For over 50 years, we have worked closely with investment and asset managers to become the world’s leading provider of integrated investment management solutions. We a…
    • 7 days ago
  • Senior IT Consultant (Security)

    • Manila City, Metro Manila
    Who We Are For over 50 years, we have worked closely with investment and asset managers to become the world's leading provider of integrated investment management solutions. We are…
    • 4 days ago