Find Job

operational risk & Compliance managerGratitude Inc.

Workplace: Cebu
Salary: PHP 80,000
Work form: Full time
Posting Date: 29/01/2026
Deadline: 01/11/2021

This job has expired, you can refer to some similar jobs here:


Job description

Salary Details
PHP 80,000
Job Address
Cebu, Philippines
Job Description
JOB DESCRIPTION:
· Creating, updating, and disseminating data protection policies;
· Resolving ad hoc queries and issues relating to data protection;
· Identifying data protection and information security issues that need addressing;
· Managing a data protection and information security training program;
· Managing data protection subject access requests;
· Implementing controls for adherence with data protection legislation and relevant codes of practice; Ensuring the company follows all codes of practice in the relevant sector;
· Developing audit standards for personal data handling and information security activity to ensure adherence to internal and external policies;
· Liaising with relevant teams to test the company’s capability to respond to a breakdown or other serious contingencies in its operations that affect information security, personal data handling, and data protection (both for automated and manual information);
· Maintaining an information asset register; Establishing and monitoring information exchange agreements;
Regularly reviewing the risk with service owners and data owners
Maintain and execute the incident re00sponse procedure ensuring prompt redress of information security incidents;
· Ensure that the Data Protection aspects are properly covered in the governance documents of all systems processing personal data.
Working with business and support units within the organization to implement the IRM (Information Risk Management) and business continuity strategies and frameworks set by the organization / Management information Security Forum ( MISF) for Gratitude Philippines 
Interface with potential and existing customers as a senior management information security and business continuity representative, providing assurance and information as required by the business, marketing, or other teams;
Any other duties are within the scope, spirit, and purpose of the job, the title of the post, and its grading as requested by the line manager or Head of Department/Division.
Serves as an internal information security consultant to the organization. Advises the organization with current information about information security technologies and related regulatory issues
Documents security policies and procedures created by the Information Security Committee
Implements information security policies and procedures for the organization
Reviews all system-related security plans throughout the organization’s network, acting as a liaison to Information Systems
Monitors compliance with information security policies and procedures, referring problems to the appropriate department manager
Coordinates the activities of the Information Security Committee
Monitors the internal control systems to ensure that appropriate access levels are maintained
Protects system by defining access privileges, control structures, and resources.
Recognizes problems by identifying abnormalities; reporting violations.
Implements security improvements by assessing current situation; evaluating trends; anticipating requirements.
Determines security violations and inefficiencies by conducting periodic audits.
Upgrades system by implementing and maintaining security controls.
Keeps users informed by preparing performance reports; communicating system status.
Any other duties are within the scope, spirit, and purpose of the job, the title of the post, and its grading as requested by the line manager or Head of Department/Division.
· Significant broad IT experience, at least some of which has been in a security role
· A good working knowledge of Information Security and SOC1 & SOC2, ISO 27001, PCI DSS, HITRUST, My CSF, GLBA HIPAA principles and practices
· Broad awareness of hardware/software security products
KNOWLEDGE AND SKILLS:
· Excellent written and verbal communication and presentation skills
· Strong analytical and evaluation ability, and problem-solving skills
· Strong interpersonal skills, able to establish credibility at all levels
· Strong persuasion and influencing skills
· Self-motivated team player able to work effectively with diverse client groups and also on own initiative
· Strong planning and organizational skills;
· Flexible and adaptable style;
PREFERRED FIELD-OF-EXPERTISE:
ISO 27001, PCIDSS, HITRUST , SOC2 / SOC 3
REQUIRED SKILLS:
Good written and verbal communication skills, problem-solving skills.
Pays attention to detail
Works in collaboration & are result-oriented
Strong numeracy, analytical, and strategy skills
Capacity to work independently and cope with pressure and responsibility
Professional approach to work, integrity, and respect for ethics
Confidence to relate to a range of people and to challenge people when necessary
Work in Midshifts
Should be Cebu based
Job Requirements
Organizational skills, Information security, ISO 27001, PCIDSS, SOC2, SOC3, HITRUST, Numerical and Analytical skills
Job Type
Customer Service/BPO
Working Hours
12:00 AM to 12:00 AM
You need to login to apply for this job

Other Info

Region VII, Cebu, Cebu, Philippines
4 Years
Full-time
PHP 80,000
Bachelor's / College Degree
2 Vacancies

Submit profile

Gratitude Inc.

About the company

Gratitude Inc. jobs

Mandaluyong City, Metro Manila


Position operational risk & Compliance manager recruited by the company Gratitude Inc. at Cebu, Cebu, Joboko automatically collects the salary of PHP 80,000, finds more jobs on Operational Risk & Compliance Manager or Gratitude Inc. company in the links above

About the company

Gratitude Inc. jobs

Mandaluyong City, Metro Manila

  • Employer support:
  • +84 962.107.888