Stand out for this role — generate a tailored resume and cover letter in about a minute.
Smart Communications, Inc. is seeking a senior legal and cybersecurity professional based in Metro Manila to lead incident response, privacy compliance, and regulatory strategy. The role focuses on investigations, contract governance, and cross-functional coordination with regulators and internal teams.
You will drive policy development, risk reporting, and training across the organization to ensure data protection and strong governance in a dynamic telecommunications environment.
Supports investigations of cybersecurity-related incidents and alleged cybercrimes. Ensures evidentiary integrity, legal sufficiency, and proper documentation throughout the process. Coordinates internal and external stakeholders to achieve timely and effective resolution.
Maintains and regularly updates the inventory of all regulatory, commercial, and organizational technology compliance requirements. Assists in identifying compliance obligations, such as security, user access, privacy, and data integrity associated with applicable laws and regulations. Ensures alignment with evolving regulatory standards and supports audit readiness.
Collaborates with the Regulatory and Case Management Division Head to enforce cybersecurity laws and privacy regulations across the company. Maintains procedures, repositories, and workflows for the intake, tracking, and closure of cases and matters. Ensures timely documentation and resolution in accordance with company policies and applicable regulations.
Identifies, assesses, and escalates legal and regulatory risks associated with cybersecurity initiatives. Prepares risk briefings, dashboards, and periodic reports (monthly and quarterly) with clear recommendations and decision-ready insights.
Collaborates with the Division Head and cross-functional leaders to resolve complex legal issues and align legal strategies with business objectives. Maintains strong working linkages with regulators, government agencies, and industry bodies to ensure compliance and support organizational goals.
Provides expert advice on compliance with privacy frameworks and applicable statutes. Interprets emerging regulatory requirements and designs practical controls for data collection, processing, retention, sharing, international transfers, and data residency.
Provides business-facing legal guidance on security controls, technology adoption, vendor engagements, contracts, and enterprise customer requirements, Translates legal risk into actionable requirements for information security and operations.
Reviews, negotiates, and enforces privacy and security clauses in supplier and enterprise customer contracts. Ensures that non-standard security requirements are properly documented, risk-assessed, and monitored for compliance throughout the contract lifecycle.
Conducts initial reviews of contracts, statements of work (SOWs), and procurement documents (RFIs, RFQs, RFPs) to identify security-related commercial requirements and applicable industry standards. Maintains the contract management database, ensuring accurate records of executed contracts and those under development.
Contributes to drafting and harmonizing policies, standards, and procedures for privacy and cybersecurity governance. Supports the design, implementation, and adoption of controls across business units to ensure compliance and operational effectiveness.
Provides targeted legal guidance, playbooks, and awareness materials for business and technical teams. Promotes consistent understanding of obligations and consequences of non-compliance.
Prepare and consolidate reports from Regulatory and Case Management Supervisory/Staff for submission to the Regulatory and Case Management Division Head.
Maintains a strong understanding of telecommunications and IT business processes, architectures, and operational practices. Tailors legal advice to technology-driven workflows, service delivery models, and customer or partner ecosystems.
Prepares and consolidates reports from Regulatory and Case Management supervisory staff for submission to the Regulatory and Case Management Division or Cyber Security Governance Head.
Provides timely, constructive feedback on staff and supervisor performance. Acts as a mentor and role model, fostering growth and development. Ensures the creation and execution of effective succession plans to build future leadership.
Provide leadership and support for additional duties and responsibilities as assigned, ensuring alignment with organizational priorities and operational excellence.