Cybersecurity & Compliance Consultant

Sourcefit

Philippines

On-site

PHP 350,000 - 650,000

Full time

8 days ago
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Sourcefit is seeking a Cybersecurity & Compliance Consultant to support client engagements across SOC 2, ISMS, Data Privacy, and PCI DSS. The role will assist with assessments, gap analysis, control documentation, evidence gathering and review, remediation tracking, and audit readiness.

The ideal candidate has foundational knowledge or practical exposure to cybersecurity, IT audit, GRC, or compliance frameworks and is comfortable working with clients and internal teams to support compliance

Qualifications

  • 6 months to 2 years of experience in cybersecurity, information security, GRC, IT audit, technology risk, compliance, or a related field, with exposure to governance, risk, controls, audit support, compliance documentation, or evidence gathering.
  • Exposure to at least one of the following: SOC 2 Trust Services Criteria, PCI DSS, data privacy requirements, ISO 27001, or NIST.
  • Hands On Experience on cybersecurity, risk management, internal controls, and compliance concepts.
  • Relevant certifications such as CISA, ISO 27001, Security+, or other cybersecurity/compliance certifications are preferred but not required.
  • Strong analytical, documentation, communication, and organizational skills.
  • Ability to work effectively with clients and cross-functional teams.
  • Willingness to learn and develop expertise in cybersecurity and compliance frameworks.

Responsibilities

  • Support SOC 2 Type 1 and Type 2 assessments, including scoping, control documentation, evidence gathering and review, and audit readiness activities.
  • Assist with ISMS assessments and audits, including documentation, control reviews, evidence collection, and tracking of action items.
  • Support privacy assessments, including PIAs, DPIAs, gap assessments, documentation reviews, and remediation tracking.
  • Assist in assessing compliance with privacy regulations and frameworks such as GDPR, CCPA, and local regulatory privacy requirements.
  • Support PCI DSS assessments and gap analyses, including evidence gathering, documentation review, and identification of potential compliance gaps.
  • Coordinate with clients, auditors, QSAs, legal, technology, and business teams to collect required information and evidence and track outstanding requirements.
  • Prepare assessment documentation, reports, trackers, and other compliance deliverables.
  • Support remediation activities and follow up on open findings and action items.
  • Participate in client meetings and provide support in explaining compliance requirements and assessment findings.
  • Stay updated on relevant cybersecurity, compliance, privacy, and industry best practices.

Skills

Cybersecurity basics
GRC exposure
Client engagement

Education

Bachelor's degree in Computer Science, Information Technology, Information Systems, or related field

Job description

Position Summary

We're seeking a Cybersecurity & Compliance Consultant to support client engagements across SOC 2, ISMS, Data Privacy, and PCI DSS. The role will assist with assessments, gap analysis, control documentation, evidence gathering and review, remediation tracking, and audit readiness.

The ideal candidate has foundational knowledge or practical exposure to cybersecurity, IT audit, GRC, or compliance frameworks and is comfortable working with clients and internal teams to support compliance engagements.

Job Details

Work set up: On-site (Bridgetowne, QC)

Schedule: Monday to Friday | 9 AM to 6 PM | Flexible to an extent

Holiday: Will follow PH Holidays

Key Responsibilities
  • Support SOC 2 Type 1 and Type 2 assessments, including scoping, control documentation, evidence gathering and review, and audit readiness activities.
  • Assist with ISMS assessments and audits, including documentation, control reviews, evidence collection, and tracking of action items.
  • Support privacy assessments, including PIAs, DPIAs, gap assessments, documentation reviews, and remediation tracking.
  • Assist in assessing compliance with privacy regulations and frameworks such as GDPR, CCPA, and local regulatory privacy requirements.
  • Support PCI DSS assessments and gap analyses, including evidence gathering, documentation review, and identification of potential compliance gaps.
  • Coordinate with clients, auditors, QSAs, legal, technology, and business teams to collect required information and evidence and track outstanding requirements.
  • Prepare assessment documentation, reports, trackers, and other compliance deliverables.
  • Support remediation activities and follow up on open findings and action items.
  • Participate in client meetings and provide support in explaining compliance requirements and assessment findings.
  • Stay updated on relevant cybersecurity, compliance, privacy, and industry best practices.
Qualifications & Skills
  • Bachelor's degree in Computer Science, Information Technology, Information Systems, or a related technical field preferred.
  • 6 months to 2 years of experience in cybersecurity, information security, GRC, IT audit, technology risk, compliance, or a related field, with exposure to governance, risk, controls, audit support, compliance documentation, or evidence gathering.
  • Exposure to at least one of the following: SOC 2 Trust Services Criteria, PCI DSS, data privacy requirements, ISO 27001, or NIST.
  • Hands On Experience on cybersecurity, risk management, internal controls, and compliance concepts.
  • Relevant certifications such as CISA, ISO 27001, Security+, or other cybersecurity/compliance certifications are preferred but not required.
  • Strong analytical, documentation, communication, and organizational skills.
  • Ability to work effectively with clients and cross-functional teams.
  • Willingness to learn and develop expertise in cybersecurity and compliance frameworks.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

CYBERSECURITY And COMPLIANCE CONSULTANT
CYBERSECURITY And COMPLIANCE CONSULTANT

Sourcefit • Philippines

On-site
PHP 400,000 - 700,000
Cybersecurity & Compliance Consultant
Cybersecurity & Compliance Consultant

Sourcefit Philippines, Inc. • Philippines

On-site
PHP 360,000 - 600,000
Cybersecurity & Compliance Specialist
Cybersecurity & Compliance Specialist

Sourcefit Philippines, Inc. • Philippines

On-site
PHP 360,000 - 600,000
Cybersecurity Consultant (Risk & Security Assessment)
Cybersecurity Consultant (Risk & Security Assessment)

HRTX • Philippines

On-site
PHP 800,000 - 1,200,000
Cybersecurity Associate Consultant - Onsite (A-ACY)
Cybersecurity Associate Consultant - Onsite (A-ACY)

Sourcefit Philippines Inc. • Quezon City

On-site
Compliance Manager
Compliance Manager

Quantrics Enterprises Inc. • Taytay

On-site
Risk and Security Assessment Consultant
Risk and Security Assessment Consultant

HRTX • Philippines

On-site
PHP 600,000 - 900,000
Specialist - Governance Risk and Compliance
Specialist - Governance Risk and Compliance

Concentrix • Morong

On-site
PHP 600,000 - 1,000,000
Cybersecurity & Compliance Specialist
Cybersecurity & Compliance Specialist

Sourcefit • Philippines

On-site
PHP 350,000 - 650,000
IT Risk & Security Assessment Consultant
IT Risk & Security Assessment Consultant

HRTX • Philippines

On-site
PHP 1,200,000 - 2,100,000