Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.
ESCA Incorporated in Mandaluyong, Metro Manila, Philippines, is seeking a Cyber Security Specialist to safeguard our infrastructure, cloud environments, and engineering workflows, with a strong focus on data protection, identity management, and secure file sharing.
You will enforce policies, manage Entra ID/Azure AD, DLP and encryption tools, and ensure compliance with ISO 27001, SOC 2, DPA 2012, and NIST SP 800-171/53 across enterprise systems, while guiding teams on risk mitigation.
The Cyber Security Specialist is responsible for safeguarding company infrastructure, cloud environments, and engineering application workflows. This role enforces robust data protection policies, manages identity and access controls, and ensures strict compliance with international security frameworks (ISO 27001, NIST) and local privacy regulations (DPA of 2012) across enterprise systems.
Manage and configure Microsoft 365 security, Entra ID (Azure AD), Data Loss Prevention (DLP) policies, encryption, and secure file-sharing protocols across the organization.
Secure application workflows, enforce strict user access controls, and protect technical/engineering data outputs from unauthorized access or breaches.
Align internal security controls with ISO 27001, SOC 2, NIST SP 800-171/53 standards, and the Data Privacy Act (DPA) of 2012.
Conduct security monitoring, perform system audits, identify vulnerabilities, and respond proactively to potential cyber threats or compliance gaps.
Develop, maintain, and promote information security policies, providing guidance to internal teams on best practices for data security and risk mitigation.
Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, or a related field.
3 to 5 years of professional experience in IT security, system administration, or compliance—ideally within an enterprise or government-regulated environment.
Hands‑on administration of Microsoft 365 Security, Entra ID, DLP, and encryption tools.
Deep understanding of securing application access controls and data outputs.
Demonstrated knowledge of ISO 27001, SOC 2, DPA of 2012, NIST SP 800-171, and NIST SP 800-53.
CompTIA Security+, CISSP, CISA, or Microsoft 365 Certified: Security Administrator / Enterprise Administrator.
We value our team's well-being, security, and growth. Here is a snapshot of what you can expect when you join us:
Comprehensive Health Coverage: HMO / Health Card with dependent coverage
Life Insurance: Group Life Insurance coverage for your peace of mind.
Government Benefits: Complete statutory benefits (SSS, PhilHealth, Pag-IBIG) plus 13th-month pay.
Paid Time Off: Earn and use leave credits immediately upon hiring.
Inclusive Wellness: Dedicated Menstrual Leave to support our team's health and comfort.
Engaging Workspace: Fun monthly activities and major company events to keep our team connected and celebrated.