Cybersecurity & Compliance Consultant

Sourcefit Philippines, Inc.

Philippines

On-site

PHP 360,000 - 600,000

Full time

34 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Sourcefit Philippines, Inc. is seeking a Cybersecurity & Compliance Consultant to support client engagements across SOC 2, ISMS, Data Privacy, and PCI DSS. The role includes assessments, gap analysis, control documentation, evidence gathering and audit readiness.

The ideal candidate has foundational knowledge in cybersecurity, IT audit, GRC, or compliance frameworks and is comfortable working with clients and cross-functional teams to support engagements. On-site in Bridgetowne, QC.

Qualifications

  • Foundational knowledge in cybersecurity, IT audit, GRC, or compliance frameworks.
  • Experience with governance, risk, controls, audit support, compliance documentation, or evidence gathering.
  • Exposure to at least one of SOC 2, PCI DSS, data privacy requirements, ISO 27001, or NIST.

Responsibilities

  • Support SOC 2 Type 1 and Type 2 assessments including scoping, documentation, evidence gathering, and audit readiness.
  • Assist ISMS assessments and audits with documentation, control reviews, evidence collection, and action-item tracking.
  • Support privacy assessments (PIAs, DPIAs), gap assessments, and remediation tracking.
  • Assist in evaluating privacy regulations and frameworks (GDPR, CCPA, local privacy laws).
  • Support PCI DSS assessments and gap analyses, including evidence gathering and documentation review.
  • Coordinate with clients, auditors, legal, IT, and business teams to collect information and evidence.

Skills

Cybersecurity fundamentals
GRC knowledge
Client communication
Documentation

Education

Bachelor's degree in Computer Science/Information Technology/Information Systems

Tools

SOC 2
PCI DSS
ISMS
ISO 27001

Job description

Position Summary

We are seeking a Cybersecurity & Compliance Consultant to support client engagements across SOC 2, ISMS, Data Privacy, and PCI DSS. The role will assist with assessments, gap analysis, control documentation, evidence gathering and review, remediation tracking, and audit readiness.


The ideal candidate has foundational knowledge or practical exposure to cybersecurity, IT audit, GRC, or compliance frameworks and is comfortable working with clients and internal teams to support compliance engagements.



Job Details

Work set up: On-site (Bridgetowne, QC)


Schedule: Monday to Friday | 9 AM to 6 PM | Flexible to an extent


Holiday: Will follow PH Holidays



Key Responsibilities

  • Support SOC 2 Type 1 and Type 2 assessments, including scoping, control documentation, evidence gathering and review, and audit readiness activities.


  • Assist with ISMS assessments and audits, including documentation, control reviews, evidence collection, and tracking of action items.


  • Support privacy assessments, including PIAs, DPIAs, gap assessments, documentation reviews, and remediation tracking.


  • Assist in assessing compliance with privacy regulations and frameworks such as GDPR, CCPA, and local regulatory privacy requirements.


  • Support PCI DSS assessments and gap analyses, including evidence gathering, documentation review, and identification of potential compliance gaps.


  • Coordinate with clients, auditors, QSAs, legal, technology, and business teams to collect required information and evidence and track outstanding requirements.


  • Prepare assessment documentation, reports, trackers, and other compliance deliverables.


  • Support remediation activities and follow up on open findings and action items.


  • Participate in client meetings and provide support in explaining compliance requirements and assessment findings.


  • Stay updated on relevant cybersecurity, compliance, privacy, and industry best practices.



Qualifications & Skills

  • Bachelor's degree in Computer Science, Information Technology, Information Systems, or a related technical field preferred.


  • 6 months to 2 years of experience in cybersecurity, information security, GRC, IT audit, technology risk, compliance, or a related field, with exposure to governance, risk, controls, audit support, compliance documentation, or evidence gathering.


  • Exposure to at least one of the following: SOC 2 Trust Services Criteria, PCI DSS, data privacy requirements, ISO 27001, or NIST.


  • Hands On Experience on cybersecurity, risk management, internal controls, and compliance concepts.


  • Relevant certifications such as CISA, ISO 27001, Security+, or other cybersecurity/compliance certifications are preferred but not required.


  • Strong analytical, documentation, communication, and organizational skills.


  • Ability to work effectively with clients and cross-functional teams.


  • Willingness to learn and develop expertise in cybersecurity and compliance frameworks.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Compliance Manager
Compliance Manager

Quantrics Enterprises Inc. • Taytay

On-site
Compliance Manager
Compliance Manager

Quantrics • Hinoba-an

On-site
PHP 900,000 - 1,300,000
Cybersecurity & Compliance Specialist
Cybersecurity & Compliance Specialist

Sourcefit Philippines, Inc. • Philippines

On-site
PHP 360,000 - 600,000
Cybersecurity Consultant (Risk & Security Assessment)
Cybersecurity Consultant (Risk & Security Assessment)

HRTX • Philippines

On-site
PHP 800,000 - 1,200,000
Risk and Security Assessment Consultant
Risk and Security Assessment Consultant

HRTX • Philippines

On-site
PHP 600,000 - 900,000
Compliance Manager
Compliance Manager

NQX Philippines • Taytay

On-site
PHP 1,200,000 - 2,100,000
IT Risk & Security Assessment Consultant
IT Risk & Security Assessment Consultant

HRTX • Philippines

On-site
PHP 1,200,000 - 2,100,000
Information Security Compliance Officer
Information Security Compliance Officer

DigiPlus Interactive Corp • Philippines

On-site
PHP 600,000 - 1,200,000
Cybersecurity Associate
Cybersecurity Associate

Our Clients • Philippines

Hybrid
PHP 420,000 - 640,000
Cybersecurity Associate Consultant - Onsite (A-ACY)
Cybersecurity Associate Consultant - Onsite (A-ACY)

Sourcefit Philippines Inc. • Quezon City

On-site