Governance, Risk and Compliance Specialist

Concentrix

Mandaluyong

On-site

PHP 600,000 - 900,000

Full time

17 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Concentrix is seeking a Risk Management professional to lead Information Security risk activities across business engagements and third parties. You will implement and refine risk frameworks, drive assessments, and deliver training to teams.

The role requires 3+ years in risk management, BPO exposure preferred, and certifications in security/privacy are a plus. You will work with cross-functional teams to meet contractual and regulatory obligations.

Qualifications

  • Bachelor's Degree preferred; 3 years of experience (Junior level).
  • BPO experience is preferred.
  • Certifications in security/privacy are advantageous (CISSP, CISA, CRISC, CISM, HCISPP, CIPP/IT).

Responsibilities

  • Drive Information Security Risk Management activity globally for all business engagements and third parties.
  • Maintain and Improve the risk management frameworks at Concentrix.
  • Work with business and support teams to drive risk assessments for respective spans including third parties.
  • Deliver training to teams on Risk Management.
  • Interpret business contractual requirements (Technology & Information Security) to align Risk Management program.
  • Develop documents as required or guide the team in documentation.
  • Support and manage internal and external risks.
  • Handle and respond to client audits, reviews and assessments timely.
  • Communicate risks, vulnerabilities, threats and findings to senior management and stakeholders and coordinate closure.
  • Complete all mandatory training within the timeframe.
  • Conduct and/or participate in regular 1:1 meetings with manager/direct reports.

Skills

Information Security
Risk Management

Education

Bachelor's Degree

Tools

CISSP
CISA
CRISC

Job description

Experience in actively contributing in establishment and Management of a Risk Management program for Internal Business and Third Parties to detect and mitigate risks which would include establishing capability to monitor, manage and audit risks and associated actions, establish training & awareness, driving reviews and supporting internal and external audits. Ability to think out-of-the-box and maintain balance of security risk vs solution within the best technical and cost opportunity limits, to meet the company standard, regulatory and the contractual obligations. Ability to work in a team and develop strong relationship bond with the Business and Cross-Platform teams while always wearing a "ready on the toes" attitude to support the organization at his best efforts. Ability to achieve positive & successful results for Information Security Risk Management activity, apprising the leadership about the specific risks from their vertical, through direct interaction and tactical influence over stakeholders.

Responsibilities:
  • Drive Information Security Risk Management activity globally for all the business engagements and third parties
  • Maintain and Improve the risk management frameworks at Concentrix
  • Work with business teams and support teams to drive Risk Assessments for their respective spans including third parties
  • Deliver training to teams on Risk Management
  • Interpret the business contractual requirements (Technology & Information Security) to align Risk Management program
  • Develop the documents as required or guiding the team responsible in development of the required documentation
  • Support and manage Internal and External risks
  • Handle and respond to client audits, reviews and assessments through time-bound and committed methodology
  • Communicate effectively the risks, vulnerabilities, threats and findings of the assessments and reviews to senior management and relevant stakeholders and co-ordinate and govern the closure, as required.
  • Complete all assigned, mandatory training within the timeframe provided
  • Conduct and/or participate in regularly scheduled 1:1 meetings with direct manager and/or direct reports
Accountability:
  • Drive Information Security Risk Management activity globally for all the business engagements and third parties
  • Maintain and Improve the risk management frameworks at Concentrix
  • Work with business teams and support teams to drive Risk Assessments for their respective spans including third parties
  • Deliver training to teams on Risk Management
  • Interpret the business contractual requirements (Technology & Information Security) to align Risk Management program
  • Develop the documents as required or guiding the team responsible in development of the required documentation
  • Support and manage Internal and External risks
  • Handle and respond to client audits, reviews and assessments through time-bound and committed methodology
  • Communicate effectively the risks, vulnerabilities, threats and findings of the assessments and reviews to senior management and relevant stakeholders and co-ordinate and govern the closure, as required
Qualifications:
  • Educational Requirements
  • Bachelor's Degree (preferred)
  • At least 3 years of experience required (Junior level)
  • BPO experience is preferred
Required Certifications:
  • Bonus points for Professional Security and / or Privacy credentials / certifications like CISSP, CISA, CRISC, CISM, HCISPP, CIPP/IT, etc.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Governance, Risk and Compliance Specialist
Governance, Risk and Compliance Specialist

Concentrix • Quezon City

On-site
PHP 800,000 - 1,000,000
Associate Specialist, Governance, Risk and Compliance
Associate Specialist, Governance, Risk and Compliance

cnx • Angeles, Mabalacat

On-site
PHP 350,000 - 700,000
Associate Specialist Governance Risk And Compliance TCF
Associate Specialist Governance Risk And Compliance TCF

Concentrix • Quezon City

On-site
PHP 600,000 - 1,000,000
Associate Specialist, Governance, Risk and Compliance
Associate Specialist, Governance, Risk and Compliance

Concentrix • Angeles

On-site
PHP 850,000 - 1,100,000
Associate Specialist, Governance, Risk and Compliance (TCF)
Associate Specialist, Governance, Risk and Compliance (TCF)

cnx • Cagayan de Oro

On-site
PHP 600,000 - 800,000
Associate Specialist Governance Risk And Compliance TCF
Associate Specialist Governance Risk And Compliance TCF

Concentrix • Cagayan de Oro

On-site
PHP 900,000 - 1,300,000
Governance, Risk and Compliance Specialist (Mandaluyong)
Governance, Risk and Compliance Specialist (Mandaluyong)

Concentrix Philippines • Mandaluyong

On-site
PHP 670,000 - 1,339,000
Global InfoSec Risk & Compliance Lead
Global InfoSec Risk & Compliance Lead

Concentrix • Mandaluyong

On-site
PHP 600,000 - 900,000
Specialist II, Insider Risk & Compliance
Specialist II, Insider Risk & Compliance

Concentrix • Metro Manila

On-site
PHP 600,000 - 1,000,000
Specialist II, Insider Risk & Compliance
Specialist II, Insider Risk & Compliance

cnx • Makati

Hybrid
PHP 600,000 - 900,000