• Security /GRC/ Consultant Quezon City
  • Booth & Partners in Quezon City, Metro Manila, Philippines
  • jobs
  • 1 week ago

jobs description

Job Description

Purpose of the Role

The Security Consultant will work with the wider Consulting team, responsible for the development and delivery of Governance, Risk and Compliance services. This involves end-to-end delivery for our customers and to a certain extent, business development.

A key part of the role will involve directly engaging customers to provide security consulting, aligned to deliverables. These include information security assessments, information security awareness, risk assessments and more.

The role will also involve working with the Sales teams and Pre-Sales teams across InfoTrust.

Major Accountabilities

Delivery of Consulting Services
• Information Security Assessments
• Information Security Awareness consulting
• Pre-sales - working with the sales function to present and respond to technical requirements
• Technical expertise on specific services/products for pre-sales for key/large enterprise as/when needed
• Delivery of consulting services to clients... as per scopes of work that are signed before commencement
• Delivery of ad-hoc advisory to clients within the realms of information security, governance, risk and compliance
• Evangelise security best practice, research and knowledge sharing amongst customers and prospective customers

Services Delivery Management
• Adhere and contribute to SLA's, metrics, reporting, project scoping and management, customer escalation, engagement management, etc
• Management of internal security governance, risk and compliance - using the 'eating our own cooking' approach.

Outcomes and Measures
• Develop Information security governance & risk management strategies, frameworks (ISO27001 & PCI-DSS), policies, standards and metrics to measure maturity of overall security operations in alignment with business priorities and its tactical/strategic objectives
• Perform reviews, assessments and system implementations based on industry/regulatory requirements such as ISO27001, NIST Cybersecurity Framework, SOC2/SSAE-18, Australian ISM, etc.
• Scope required activities and perform project estimates as required, ensuring that consulting activities defined in these scopes are delivered to the highest standards
• Engage in skills transfer - both internally and with customers
• Deliver assignments securely on time within budget and share results and recommendations to both technical and non-technical customers, in the form of either in-person presentations, written or verbal reports
• Develop and maintain strong relationships with customers through timely delivery of projects
• Conduct project management, where required
• Maintain InfoTrust's internal security standards and confidentiality of customer material as defined in out ISO 27001:2013 aligned ISMS

Professional skills, qualifications and experience
• Minimum of 2-3 years' experience in IT, preferably in information and cybersecurity
• Minimum 1-2 years' experience in GRC focused role
• Experience in conducting IT security and cyber/information security assessments
• Experience assisting with audits (internal & external) and auditors
• Proven track record building strong relationships with key business leaders and stakeholders
• Practical understanding of Information Security Standards & Frameworks, for e.g. NIST CSF, ISO 27001, GDPR, ASD, ISM
• Good to have - 1 or more professional Information Security certifications (ISO 27001, CISSP Associate, CompTIA Security+ or equivalent)

Personal Attributes & Interpersonal Skills
• Strong Stakeholder management capabilities
• Outstanding verbal and written communication
• Adaptability to change
• Ability to align Cyber/Information Security objectives with key business goals
• Prepared to act as a 'hands-on' leader, as required

Leadership Competencies
• Decision-making competency
• Strong business acumen
• Performance management
• An understanding of business engagement drivers

Personality Core Values
• Customer Driven
• Accountable
• Humble
• Trustworthy

Health and Safety Responsibilities

All employees are responsible for ensuring the health, safety and welfare of all employees and others in the workplace:
• Comply with WHS legislation
• Work in accordance with safe working practices
• Ensure that any hazard or injuries are reported to your manager
• Environmental awareness is followed in daily performance of duties


Great Place to Work-Certified Company

Premium HMO

Holistic employee experience

Work-from-home setup

Rewards and incentives

Monthly engagement activities

Career advancement opportunities

Paid referral program

Original job Security /GRC/ Consultant posted on GrabJobs ©. To flag any issues with this job please use the Report Job button on GrabJobs
Quezon City Metro Manila Philippines


Apply - Security /GRC/ Consultant Quezon City