Turn this role into an interview — a resume and cover letter built around what this employer wants.
Mizuho Bank, Ltd. - Manila Branch is seeking a cybersecurity governance professional to lead risk assessments, strategy planning, and regulatory alignment within IT infrastructure and security operations.
The role focuses on developing roadmaps, tracking KPIs, and supporting governance bodies. The ideal candidate has 5+ years in cybersecurity governance, familiarity with NIST/ISAC sources, and experience with SIEM, vulnerability, and patch management tools.
Develop and maintain cybersecurity plans, roadmaps, and strategic initiatives to support long-term security objectives.
Conduct comprehensive risk assessments, threat analyses, and vulnerability evaluations to inform decision-making and resource allocation.
Conduct Cyber Risk Assessment (CRA) as required by Head Office.
Analyze cybersecurity performance metrics, incident trends, and control effectiveness to identify gaps and recommend improvements.
Define, track, and analyze cybersecurity KPIs, KRIs, and operational metrics.
Support governance activities by preparing reports, dashboards, and presentations for management and oversight bodies.
Assist in ensuring alignment with regulatory requirements, industry frameworks, and international governance expectations.
Coordinate with cross-functional teams to ensure alignment of cybersecurity strategies with business operations and technology plans.
Monitor industry trends, regulatory changes, and emerging threats to guide proactive cybersecurity planning. Contribute to policy development, standards updates, and continuous improvement of cybersecurity processes.
Plan, schedule, test, and deploy security patches stemming from vulnerabilities while ensuring the change management process is followed. Monitor systems after patch deployment to identify potential issues.
Assist in security hardening activities and baseline configuration management.
Facilitate knowledge sharing and promote a risk-aware culture across the organization.
With at least 5 years work experience in cybersecurity governance, planning, risk management, operations, or related domains.
With knowledge in network security protocols and concepts.
Experience working in IT infrastructure teams or supporting network / server security.
Experience in supporting governance, risk, and compliance functions.
Familiar with National Institute of Standards and Technology (NIST), Information Sharing and Analysis Centers (ISAC) and other reputable sites/institutions as sources of information concerning cybersecurity;
With knowledge of server technologies, IT Networks, SIEM tools, vulnerability management, patch management and security monitoring technologies.