Description
IT Security - Risk Analyst
Makati City - Philippines
About Citco
Citco is a global leader in fund services, corporate governance and related asset services with staff across 80 offices worldwide. With more than $1 trillion in assets under administration, we deliver end-to-end solutions and exceptional service to meet our clients' needs.
For more information about Citco, please visit
About the Team & Business Line:
Proprietary software solutions and innovation are at the core of what differentiates Citco in the alternative investment space. Through our network of global development centres, Citco invests heavily in technology development, security, and infrastructure to ensure our clients continue to receive award-winning products that underpin our commitment to service excellence.
As a core member of our Security team you will work with dedicated professionals to ensure our clients maintain access to their critical information assets while keeping Citco ahead of industry trends.
Your Role:
You will perform business and systems analysis, assessments and audits to support the development, implementation and support of compliance initiatives to meet industry standard security frameworks
You will provide support for strategic business process/reengineering consulting as appropriate and work on multiple, technically-complex, high profile projects
You will participate in audit response management and provide ongoing guidance to achieve and maintain security compliance
You will create and maintain documentation related to security policies, standards, procedures, guidelines and baselines within the boundaries of ISO and COBIT control guidelines
You will provide expertise to mitigate information security risks and to correct compliance exposures and gaps
You will work with business units to ensure data is properly classified
You will maintain and develop GRC technologies in support of compliance efforts
You will provide expertise for proactive compliance with industry regulations related to information security and applicable legislation
You will provide expertise in the development of the information security awareness program
You will maintain expertise on security trends through training, research and development in order to mitigate potential security exposures
You will contribute to the incident response program management including development and testing
You will provide support for external and internal vulnerability management programs
You will provide support and expertise in 3rd party vendor management and risk assessments
About You:
You have a Bachelor's Degree or equivalent experience in Computer Science
You have a clear understanding of ISO 27001:2013, COBIT 4 & 5, SSAE 16 Type I & II requirements and best practices
You have five or more years working in governance, risk and compliance; performing risk analysis, security auditing and compliance remediation
You have three or more years' experience developing security solutions using ISO 27001/2 and COBIT guidelines
You have working knowledge of GRC toolsets (Oracle, Archer, Protiviti, etc) a plus
You have broad, cross-platform and application auditing experience
You have CISA certification
You have other security certifications such as CISSP, CISM, CIA a plus
You demonstrate an in-depth understanding of key IT operational policies, processes and methodologies applicable to governance, risk management and compliance
You have the ability to work independently with or without direction and or supervision
You can Communicate and prepare written material in a professional manner
Our Benefits
Your well being is of paramount importance to us, and central to our success. We provide a range of benefits, training and education support, and flexible working arrangements to help you achieve success in your career while balancing personal needs. Ask us about specific benefits in your location.
We recognize diversity as a source of organizational pride and strength. We have made it a priority to reflect our nation's evolving diversity in the people we hire, and the culture we create in our organization.
Citco welcomes and encourages applications from people with disabilities. Accommodations are available upon request for candidates taking part in all aspects of the selection.
Citco
IT Security - Risk Analyst
Makati City - Philippines
About Citco
Citco is a global leader in fund services, corporate governance and related asset services with staff across 80 offices worldwide. With more than $1 trillion in assets under administration, we deliver end-to-end solutions and exceptional service to meet our clients' needs.
For more information about Citco, please visit
About the Team & Business Line:
Proprietary software solutions and innovation are at the core of what differentiates Citco in the alternative investment space. Through our network of global development centres, Citco invests heavily in technology development, security, and infrastructure to ensure our clients continue to receive award-winning products that underpin our commitment to service excellence.
As a core member of our Security team you will work with dedicated professionals to ensure our clients maintain access to their critical information assets while keeping Citco ahead of industry trends.
Your Role:
You will perform business and systems analysis, assessments and audits to support the development, implementation and support of compliance initiatives to meet industry standard security frameworks
You will provide support for strategic business process/reengineering consulting as appropriate and work on multiple, technically-complex, high profile projects
You will participate in audit response management and provide ongoing guidance to achieve and maintain security compliance
You will create and maintain documentation related to security policies, standards, procedures, guidelines and baselines within the boundaries of ISO and COBIT control guidelines
You will provide expertise to mitigate information security risks and to correct compliance exposures and gaps
You will work with business units to ensure data is properly classified
You will maintain and develop GRC technologies in support of compliance efforts
You will provide expertise for proactive compliance with industry regulations related to information security and applicable legislation
You will provide expertise in the development of the information security awareness program
You will maintain expertise on security trends through training, research and development in order to mitigate potential security exposures
You will contribute to the incident response program management including development and testing
You will provide support for external and internal vulnerability management programs
You will provide support and expertise in 3rd party vendor management and risk assessments
About You:
You have a Bachelor's Degree or equivalent experience in Computer Science
You have a clear understanding of ISO 27001:2013, COBIT 4 & 5, SSAE 16 Type I & II requirements and best practices
You have five or more years working in governance, risk and compliance; performing risk analysis, security auditing and compliance remediation
You have three or more years' experience developing security solutions using ISO 27001/2 and COBIT guidelines
You have working knowledge of GRC toolsets (Oracle, Archer, Protiviti, etc) a plus
You have broad, cross-platform and application auditing experience
You have CISA certification
You have other security certifications such as CISSP, CISM, CIA a plus
You demonstrate an in-depth understanding of key IT operational policies, processes and methodologies applicable to governance, risk management and compliance
You have the ability to work independently with or without direction and or supervision
You can Communicate and prepare written material in a professional manner
Our Benefits
Your well being is of paramount importance to us, and central to our success. We provide a range of benefits, training and education support, and flexible working arrangements to help you achieve success in your career while balancing personal needs. Ask us about specific benefits in your location.
We recognize diversity as a source of organizational pride and strength. We have made it a priority to reflect our nation's evolving diversity in the people we hire, and the culture we create in our organization.
Citco welcomes and encourages applications from people with disabilities. Accommodations are available upon request for candidates taking part in all aspects of the selection.
Citco
Other Info
Makati City, Metro Manila
Permanent
Full-time
Permanent
Full-time
Submit profile
Citco
About the company
Citco jobs
Makati City, Metro Manila
Position IT Security - risk analyst recruited by the company Citco at MetroManila, Manila, Makati, Joboko automatically collects the salary of , finds more jobs on IT Security - Risk Analyst or Citco company in the links above
About the company
Citco jobs
Makati City, Metro Manila
