Compliance Head (Cybersecurity)

Smart Communications, Inc.

Makati

On-site

PHP 1,200,000 - 1,800,000

Full time

8 hours ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Smart Communications, Inc. seeks a senior leader to head the enterprise Cyber Security Compliance Center, setting strategic ISMS governance, audit and assurance, IAM, and asset governance.

You will drive regulatory compliance, audit readiness, and continuous improvement of security controls through governance, remediation, and stakeholder engagement. The role manages ISMS governance, audit programs, IAM and asset governance, aligning with ISO/IEC 27001 and NIST CSF, while mentoring auditors and

Qualifications

  • Senior leadership experience in IT and cybersecurity with ISMS, audit and assurance, GRC.
  • Proven expertise in ISO/IEC 27001 alignment and audit readiness.
  • Strong collaboration with business and risk teams to improve security maturity.

Responsibilities

  • Direct enterprise ISMS governance, audits, and remediation activities.
  • Lead internal, external, and regulatory audits with timely closure of findings.
  • Oversee IAM and asset governance to ensure secure access and asset lifecycle control.
  • Align ISMS with risk management and regulatory requirements; translate into actionable controls.
  • Mentor ISMS auditors and governance teams; drive accountability and ongoing improvement.

Skills

ISMS governance
Security auditing
Governance & compliance
IAM & access control
Risk management

Education

Bachelor's degree in Information Technology / Computer Science

Tools

ISO 27001
NIST CSF

Job description

Leads the enterprise Cyber Security Compliance Center by setting strategic direction for Information Security Management System (ISMS) governance, audit and assurance, identity and access management, and asset governance. Ensures sustained regulatory compliance, audit readiness, and continuous improvement of security controls across the organization through strong governance, disciplined remediation, and effective stakeholder engagement.

Cyber Security Compliance & Assurance

  • Directs enterprise ISMS governance, ensuring effective design, implementation, and continuous improvement in alignment with ISO/IEC 27001 and applicable regulatory and contractual requirements.
  • Manages internal, external, and regulatory audit programs, ensuring audit readiness, quality execution, timely closure of findings, and sustainable remediation of compliance gaps.
  • Establishes audit governance frameworks, metrics, and reporting to provide transparency on compliance posture and control effectiveness.

Identity, Access & Asset Governance

  • Governs enterprise-wide Identity and Access Management (IAM), ensuring secure, compliant, and efficient access to systems and data across the organization.
  • Drives adoption of IAM technologies, automation, and control enhancements to support auditability, least‑privilege access, and segregation of duties.
  • Oversees asset management and classification governance, ensuring accurate asset identification, valuation, ownership, and registry integrity across the asset lifecycle.

Risk, Control Alignment & Regulatory Conformance

  • Ensures alignment of ISMS, asset, and access controls with enterprise risk management, regulatory obligations, and industry standards.
  • Interprets evolving regulatory and standards requirements and translates them into practical, auditable control and process enhancements.

Program & Delivery Oversight

  • Ensures timely, high‑quality delivery of compliance assessments and security initiatives in collaboration with Capability and Delivery teams.
  • Leads, mentors, and develops ISMS auditors, IAM, and asset governance teams, fostering a culture of accountability, continuous improvement, and audit excellence.
  • Provides regular performance feedback, supports professional development, and ensures effective succession planning for critical roles.

Operational & Strategic Support

  • Provides leadership and subject‑matter expertise for additional initiatives as assigned, ensuring alignment with organizational priorities and cybersecurity strategy.

Qualifications

EDUCATION

  • Bachelor’s degree in Information Technology, Computer Science, Engineering, Accountancy, or any related course/discipline.
  • Post‑graduate studies or professional training in Cybersecurity, Risk Management, Audit, or Governance is an advantage.

WORK EXPERIENCE

  • Over 5 years of progressive leadership experience in IT and cybersecurity, with strong specialization in ISMS, audit and assurance, Governance, Risk, and Compliance (GRC)
  • Proven expertise in leading enterprise‑wide internal, external, and regulatory audits aligned with ISO/IEC 27001 and NIST CSF, including audit readiness, remediation, and issue closure.
  • Demonstrated ability to work across business, technology, and risk teams to strengthen security control maturity and maintain alignment with evolving regulatory and industry standards.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security & Compliance Lead
Information Security & Compliance Lead

Asticom Technology Inc • Taguig

Hybrid
PHP 2,500,000 - 4,000,000
Cyber Security Specialist
Cyber Security Specialist

Sterling Global Call Center, Inc. • Pasig

On-site
PHP 900,000 - 1,300,000
Information Security Compliance Officer
Information Security Compliance Officer

DigiPlus Interactive Corp • Taguig

On-site
PHP 600,000 - 1,200,000
Information Security & Compliance Senior Specialist
Information Security & Compliance Senior Specialist

CITADEL PACIFIC, LTD. - ROHQ • Taguig

On-site
PHP 600,000 - 900,000
Chief Cyber Security Compliance & ISMS Leader
Chief Cyber Security Compliance & ISMS Leader

Smart Communications, Inc. • Makati

On-site
PHP 1,200,000 - 1,800,000
Compliance Implementation Associate, Senior Team Lead-Cebu
Compliance Implementation Associate, Senior Team Lead-Cebu

Hammerjack Pty Ltd • Philippines

On-site
PHP 1,200,000 - 1,800,000
Technology Risk & Compliance Officer - BGC - Manila
Technology Risk & Compliance Officer - BGC - Manila

Dotco Pte. Ltd. • Taguig

On-site
PHP 1,200,000 - 1,900,000
IT Security and Compliance Manager
IT Security and Compliance Manager

Hammerjack Pty Ltd • Quezon City

On-site
PHP 1,200,000 - 2,100,000
Specialist (Cybersecurity)
Specialist (Cybersecurity)

NTUC FIRST CAMPUS LIMITED • Santo Niño 1st

On-site
PHP 1,200,000 - 1,800,000
Compliance Consulting Analyst
Compliance Consulting Analyst

Trends Group, Inc. • Philippines

On-site
PHP 670,000 - 1,004,000