Information Security Governance Officer

Metropolitan Bank & Trust Company

Metro Manila

On-site

PHP 1,500,000 - 2,100,000

Full time

6 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Restaurant staff

Job summary

Metrobank is seeking a seasoned Information Security professional to shape and enforce its security governance framework in the Philippines. You will formulate policies, oversee compliance with BSP, DPA, PCI-DSS, and drive security awareness across the organization.

As a key liaison with regulatory bodies and business units, you will monitor progress of strategic initiatives, close audit gaps, and champion secure software development and data protection practices.

Qualifications

  • Experience in Information Security Governance, Risk Management, Compliance, Audit, and Policy Management.
  • Knowledge of BSP, DPA, PCI-DSS regulations.
  • Familiarity with banking operations, IT processes, access controls, data security.
  • Experience designing security awareness, training, and advocacy programs.
  • Strong analytical, problem-solving, and project management skills.
  • Excellent written and verbal communication.
  • Certifications such as CISM or CRISC preferred.
  • Proficiency with MS Office (Word, Excel, PowerPoint, Project).
  • Self-motivated, detail-oriented, able to manage multiple priorities in fast-paced environment.

Responsibilities

  • Develop, review, and recommend information security policies, standards, and procedures.
  • Identify policy gaps related to physical/environmental/personnel security and SDLC.
  • Design and enhance the Information Security Awareness Program.
  • Create and manage security awareness materials for organization-wide communication.
  • Evaluate effectiveness of awareness initiatives and propose improvements.
  • Collaborate with business units to align with governance, risk, and compliance.
  • Liaise with regulatory and compliance requirements (BSP).
  • Monitor progress of departmental plans and initiatives.
  • Support remediation of audit findings and security gaps.
  • Assist Department Head in overseeing key initiatives and milestones.

Job description

About the role

Serve as a key contributor to the Bank's information security governance framework by formulating and implementing security policies, ensuring alignment with regulatory and business requirements, monitoring the delivery of security initiatives, and championing security awareness programs that foster a culture of cybersecurity across the organization.

Key responsibilities
  • Develop, review, and recommend information security policies, standards, and procedures to support the Bank's information security objectives and regulatory requirements.
  • Identify and address policy gaps related to physical security, environmental security, personnel security, business continuity, and secure software development lifecycle (SDLC) practices.
  • Design, implement, and continuously enhance the Bank's Information Security Awareness, Training, and Advocacy Program, ensuring employees are informed of emerging threats, industry best practices, security standards, and regulatory advisories.
  • Create and manage security awareness materials and content for publication and organization-wide communication.
  • Evaluate the effectiveness of security awareness initiatives, analyze program results, and recommend improvements to strengthen employee security knowledge and engagement.
  • Collaborate with business units and support functions to ensure alignment with information security governance, risk management, and compliance requirements.
  • Serve as the primary liaison for information security-related regulatory and compliance requirements, including those mandated by regulatory bodies such as the BSP.
  • Monitor and track the progress of departmental plans, programs, and strategic initiatives to ensure timely and successful execution.
  • Partner with Information Security teams and stakeholders to facilitate the timely remediation and closure of audit findings, compliance gaps, and security-related issues.
  • Support the Department Head in overseeing the delivery of key initiatives, monitoring milestones, and ensuring the completion of assigned tasks and deliverables.
About you
  • Experience in Information Security Governance, Risk Management, Compliance, Audit, and Policy Management.
  • Strong knowledge of security frameworks, risk assessment, and regulatory requirements (BSP, DPA, PCI-DSS, etc.).
  • Familiarity with banking operations, IT processes, access controls, data security, and risk management practices.
  • Proven experience in designing and implementing security awareness, training, and advocacy programs.
  • Excellent analytical, problem-solving, project management, and stakeholder management skills.
  • Strong written and verbal communication skills, with the ability to explain complex security concepts to both technical and non-technical audiences.
  • Relevant certifications such as CISM, CRISC, or equivalent are preferred.
  • Proficient in Microsoft Office tools, including Word, Excel, PowerPoint, and Project.
  • Self-motivated, detail-oriented, and able to manage multiple priorities in a fast-paced environment.
About us

At Metrobank, we don't simply hire employees—we hone future leaders. We provide opportunities that enhance your skills and unlock your talents, helping you evolve into a well-rounded individual. We supply you with all the pieces you need to do your best work, unleashing your full potential to help you secure your future and lead a fulfilling career. And with Metrobank's strong heart for the community, you have the chance to give back and make worthwhile contributions to our nation's economic and social development.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security Governance Officer
Information Security Governance Officer

Metrobank • Metro Manila

On-site
PHP 900,000 - 1,500,000
SECURITY GOVERNANCE MANAGEMENT
SECURITY GOVERNANCE MANAGEMENT

Metrobank • Philippines

On-site
PHP 900,000 - 1,800,000
SECURITY GOVERNANCE MANAGEMENT
SECURITY GOVERNANCE MANAGEMENT

Metrobank • Taguig

On-site
PHP 1,000,000 - 1,800,000
Information Security Governance Lead
Information Security Governance Lead

Metrobank • Metro Manila

On-site
PHP 900,000 - 1,500,000
Information Security Governance & Policy Lead
Information Security Governance & Policy Lead

Metropolitan Bank & Trust Company • Metro Manila

On-site
PHP 1,500,000 - 2,100,000
Restaurant staff
Security Governance Lead: Policy, Risk & Awareness
Security Governance Lead: Policy, Risk & Awareness

Metrobank • Philippines

Hybrid
PHP 900,000 - 1,800,000
SECURITY ASSURANCE AND ASSESSMENT OFFICER
SECURITY ASSURANCE AND ASSESSMENT OFFICER

Metrobank • Taguig

On-site
PHP 600,000 - 800,000
Opportunities for professional development
Community contribution initiatives
HEAD, SECURITY ARCHITECTURE AND INNOVATIONS DEPARTMENT
HEAD, SECURITY ARCHITECTURE AND INNOVATIONS DEPARTMENT

Metrobank • Taguig

On-site
PHP 1,339,200 - 1,674,000
IT Security Risk Assessment Officer
IT Security Risk Assessment Officer

Metrobank • Philippines

On-site
PHP 650,000 - 900,000
InfoSec Governance & Policy Leader
InfoSec Governance & Policy Leader

Metrobank • Taguig

On-site
PHP 1,000,000 - 1,800,000