Information Security Architect

KMC Solutions

Metro Manila

On-site

PHP 1,200,000 - 1,800,000

Full time

48 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

KMC Solutions in Metro Manila seeks a Senior Security Analyst/Architect to strengthen and advance our cybersecurity capabilities as part of the organization’s security maturity journey.

You will lead the design, implementation, and operation of IT security controls, perform risk assessments, and drive remediation across infrastructure, cloud, and endpoints, aligning with ISMS and ISO 27001 requirements.

Qualifications

  • Minimum of 5 years of experience in Information Security or a related field.
  • Experience conducting independent security assessments and risk evaluations.
  • Hands-on design, implementation, and operation of IT security controls.
  • Experience with ISMS and ISO 27001 frameworks.
  • Experience supporting or leading security transformation initiatives.

Responsibilities

  • Conduct independent security assessments, investigations, and reviews of infrastructure, systems, applications, and business processes.
  • Identify security risks, control deficiencies, and vulnerabilities across the technology landscape.
  • Perform risk assessments and recommend practical remediation strategies.
  • Drive remediation initiatives and ensure mitigation measures are implemented and monitored.
  • Design, implement, and improve IT security controls aligned with ISMS and ISO 27001.
  • Monitor security events, incidents, and alerts across systems, networks, cloud platforms, and endpoints.
  • Investigate incidents, determine root causes, and implement corrective actions.
  • Support incident response, containment, recovery, and post-incident reviews.
  • Document findings, risks, incidents, and remediation activities.
  • Support security of Microsoft 365, Azure, Defender, Sentinel, firewalls, SD-WAN, and network security.
  • Identify and remediate infrastructure, endpoint, and network vulnerabilities.
  • Contribute to security maturity and continuous improvement across the organization.

Skills

Security risk management
Vulnerability management
ISMS/ISO 27001 knowledge
Incident response
Security governance

Tools

Microsoft Defender
Microsoft Sentinel
Microsoft 365 Security
Azure Security
Firewalls
Proxy Solutions

Job description

The Senior Security Analyst/Architect will play a critical role in strengthening and advancing our client's cybersecurity capabilities as part of the organization's security maturity journey.

This position is responsible for independently assessing security risks, identifying control gaps and vulnerabilities, recommending remediation strategies, and driving practical security improvements across the organization. The successful candidate will lead the design, implementation, and operation of IT security controls aligned with organizational policies, Information Security Management System (ISMS) requirements, and ISO 27001 frameworks.

We are seeking a hands-on cybersecurity professional who thrives in evolving environments, possesses strong problem-solving capabilities, takes initiative, and can effectively balance security requirements with business objectives.

Responsibilities
Security Risk & Vulnerability Management
  • Conduct independent security assessments, investigations, and reviews of infrastructure, systems, applications, and business processes.
  • Identify security risks, control deficiencies, and vulnerabilities across the organization's technology landscape.
  • Perform risk and vulnerability assessments and recommend practical remediation strategies to address root causes.
  • Drive remediation initiatives and ensure mitigation measures are effectively implemented and monitored.
  • Evaluate emerging threats and assess their impact on the organization's security posture.
Security Controls Design & Implementation
  • Design, implement, operate, and continuously improve IT security controls aligned with ISMS and ISO 27001 requirements.
  • Assess the effectiveness of existing security controls and recommend enhancements to strengthen organizational security.
  • Develop preventive, detective, and corrective security measures to reduce cyber risks.
  • Lead security improvement initiatives that support GCI's security maturity roadmap.
Security Operations & Incident Management
  • Monitor security events, alerts, and incidents across systems, networks, cloud platforms, and endpoints.
  • Investigate security incidents, determine root causes, and implement corrective actions.
  • Support incident response, containment, recovery, and post-incident reviews.
  • Document security findings, risks, incidents, and remediation activities.
  • Support the security of Microsoft 365, Microsoft Azure, Microsoft Defender, Microsoft Sentinel, Firewalls, SD-WAN, Network Security Infrastructure, and Proxy Solutions.
  • Identify and remediate infrastructure, endpoint, and network vulnerabilities.
Governance, Compliance & Continuous Improvement
  • Support the implementation, maintenance, and continuous improvement of the Information Security Management System (ISMS).
  • Ensure security practices are aligned with ISO 27001 controls and organizational security policies.
  • Develop and recommend security standards, procedures, and best practices.
  • Partner with stakeholders across the business to drive security awareness and continuous improvement initiatives.
  • Contribute to the organization's next phase of security maturity and capability development.
Qualifications
  • Minimum of 5 years of experience in Information Security, Cybersecurity, or related field.
  • Proven experience conducting independent security assessments, investigations, and risk evaluations.
  • Strong hands-on experience designing, implementing, and operating IT security controls.
  • Demonstrated expertise in risk management, vulnerability management, and remediation planning.
  • Experience supporting or implementing ISMS and ISO 27001 frameworks.
  • Strong track record of identifying security gaps and driving practical security improvements.
  • Experience working in organizations undergoing security transformation or improving security maturity is highly preferred.
Technical Skills
  • Hands-on experience with Microsoft Defender, Microsoft Sentinel, Microsoft 365 Security, Microsoft Azure Security, Firewalls, SD-WAN, Network and Infrastructure Security, and Proxy Technologies.
  • Experience performing vulnerability assessments, security reviews, and penetration testing activities.
  • Strong understanding of cybersecurity controls, threat management, and risk mitigation practices.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Asst Manager, Cybersecurity Architecture
Asst Manager, Cybersecurity Architecture

DFI Technology (Philippines) • Mandaluyong

On-site
PHP 1,200,000 - 1,800,000
Information Security Architect (Hybrid)
Information Security Architect (Hybrid)

blaseek • Manila

On-site
Security Analyst (Remote)
Security Analyst (Remote)

Prime System Solutions • Philippines

On-site
PHP 1,200,000 - 1,600,000
HMO coverage
Paid time off
Career development and certification
+2
IT Security Architect
IT Security Architect

UnionBank • Pasig

On-site
PHP 1,200,000 - 2,000,000
SecOps Analyst - Systems Implementation & Hardening
SecOps Analyst - Systems Implementation & Hardening

CallTek • Philippines

On-site
PHP 600,000 - 900,000
IT Security Specialist
IT Security Specialist

ibex • Mandaluyong

On-site
PHP 420,000 - 640,000
Information Technology Governance Analyst
Information Technology Governance Analyst

RBox International Solutions Inc. • Philippines

On-site
PHP 600,000 - 900,000
IT Security Specialist
IT Security Specialist

Ibex Limited • Manila

On-site
PHP 600,000 - 900,000
Governance and Information Security Analyst
Governance and Information Security Analyst

InnovaThink Corporation • Metro Manila

On-site
PHP 800,000 - 1,200,000
IT Security Specialist
IT Security Specialist

IBEX Global Solutions (Philippines) Inc. • Mandaluyong

On-site
PHP 450,000 - 750,000