Cybersecurity Compliance Head

Smart Communications, Inc.

Makati

On-site

PHP 3,000,000 - 5,000,000

Full time

29 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Smart Communications, Inc. seeks a senior cybersecurity leader to drive enterprise ISMS governance, audit, and assurance. You will oversee IAM, asset governance, and regulatory conformity, partnering with risk, audit, and business units to strengthen controls and audit readiness.

You will lead ISMS auditors and governance teams, ensuring continuous improvement, accountability, and strategic delivery in regulatory and contractual obligations. Strong stakeholder engagement is essential.

Qualifications

  • 5+ years of progressive leadership experience in IT and cybersecurity.
  • Strong specialization in ISMS, audit & assurance, Governance, Risk, and Compliance (GRC).
  • Proven expertise in leading enterprise-wide internal, external, and regulatory audits.

Responsibilities

  • Directs enterprise ISMS governance, ensuring effective design and continuous improvement.
  • Manages internal, external, and regulatory audit programs with timely remediation of findings.
  • Governs enterprise IAM and asset governance for secure access and registry integrity.
  • Aligns ISMS, asset, and access controls with enterprise risk management and regulatory obligations.
  • Leads ISMS auditors, IAM, and asset governance teams; mentors and develops staff.
  • Provides leadership for cybersecurity strategy and delivery oversight.

Skills

ISMS governance
Audit & assurance
Identity & Access Management
Asset governance
Governance, Risk & Compliance (GRC)
Stakeholder engagement

Education

Bachelor’s degree in IT, CS, Engineering, Accountancy or related
Post-graduate studies or professional cybersecurity/risk training

Tools

ISO/IEC 27001
NIST CSF

Job description

Leads the enterprise Cyber Security Compliance Center by setting strategic direction for Information Security Management System (ISMS) governance, audit and assurance, identity and access management, and asset governance. Ensures sustained regulatory compliance, audit readiness, and continuous improvement of security controls across the organization through strong governance, disciplined remediation, and effective stakeholder engagement.

Cyber Security Compliance & Assurance

  • Directs enterprise ISMS governance, ensuring effective design, implementation, and continuous improvement in alignment with ISO/IEC 27001 and applicable regulatory and contractual requirements.
  • Manages internal, external, and regulatory audit programs, ensuring audit readiness, quality execution, timely closure of findings, and sustainable remediation of compliance gaps.
  • Establishes audit governance frameworks, metrics, and reporting to provide transparency on compliance posture and control effectiveness.

Identity, Access & Asset Governance

  • Governs enterprise-wide Identity and Access Management (IAM), ensuring secure, compliant, and efficient access to systems and data across the organization.
  • Drives adoption of IAM technologies, automation, and control enhancements to support auditability, least‑privilege access, and segregation of duties.
  • Oversees asset management and classification governance, ensuring accurate asset identification, valuation, ownership, and registry integrity across the asset lifecycle.

Risk, Control Alignment & Regulatory Conformance

  • Ensures alignment of ISMS, asset, and access controls with enterprise risk management, regulatory obligations, and industry standards.
  • Interprets evolving regulatory and standards requirements and translates them into practical, auditable control and process enhancements.

Program & Delivery Oversight

  • Ensures timely, high‑quality delivery of compliance assessments and security initiatives in collaboration with Capability and Delivery teams.
  • Leads, mentors, and develops ISMS auditors, IAM, and asset governance teams, fostering a culture of accountability, continuous improvement, and audit excellence.
  • Provides regular performance feedback, supports professional development, and ensures effective succession planning for critical roles.

Operational & Strategic Support

  • Provides leadership and subject‑matter expertise for additional initiatives as assigned, ensuring alignment with organizational priorities and cybersecurity strategy.

Qualifications

EDUCATION

  • Bachelor’s degree in Information Technology, Computer Science, Engineering, Accountancy, or any related course/discipline.
  • Post‑graduate studies or professional training in Cybersecurity, Risk Management, Audit, or Governance is an advantage.

WORK EXPERIENCE

  • Over 5 years of progressive leadership experience in IT and cybersecurity, with strong specialization in ISMS, audit and assurance, Governance, Risk, and Compliance (GRC)
  • Proven expertise in leading enterprise‑wide internal, external, and regulatory audits aligned with ISO/IEC 27001 and NIST CSF, including audit readiness, remediation, and issue closure.
  • Demonstrated ability to work across business, technology, and risk teams to strengthen security control maturity and maintain alignment with evolving regulatory and industry standards.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security & Compliance Lead
Information Security & Compliance Lead

Asticom Technology Inc • Taguig

Hybrid
PHP 2,500,000 - 4,000,000
Cyber Security Specialist
Cyber Security Specialist

Sterling Global Call Center, Inc. • Pasig

On-site
PHP 900,000 - 1,300,000
Information Security Compliance Officer
Information Security Compliance Officer

DigiPlus Interactive Corp • Philippines

On-site
PHP 600,000 - 1,200,000
Information Security & Compliance Senior Specialist
Information Security & Compliance Senior Specialist

CITADEL PACIFIC, LTD. - ROHQ • Taguig

On-site
PHP 600,000 - 900,000
Specialist - Governance Risk and Compliance
Specialist - Governance Risk and Compliance

Concentrix • Morong

On-site
PHP 600,000 - 1,000,000
Cybersecurity Compliance Director — ISMS, IAM & Audit
Cybersecurity Compliance Director — ISMS, IAM & Audit

Smart Communications, Inc. • Makati

On-site
PHP 3,000,000 - 5,000,000
Information & Cyber Security Lead
Information & Cyber Security Lead

Hrtx • Metro Manila

On-site
PHP 1,200,000 - 1,600,000
IT Governance, Risk and Compliance Manager
IT Governance, Risk and Compliance Manager

OwnBank • Taguig

On-site
PHP 1,800,000 - 2,600,000
Chief Information Security Officer (CISO)
Chief Information Security Officer (CISO)

PM Consulting • Metro Manila

On-site
PHP 6,000,000 - 10,000,000
Specialist (Cybersecurity)
Specialist (Cybersecurity)

NTUC FIRST CAMPUS LIMITED • Santo Niño 1st

On-site
PHP 1,200,000 - 1,800,000