Information Security Manager - Tech & Data Analytics Company

Michael Page

Philippines

On-site

PHP 2,000,000 - 4,000,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Competitive salary & bonuses
Comprehensive health benefits
Professional development

Job summary

Michael Page in the Philippines is seeking a senior information security leader to drive governance, design and maintain a company-wide security program, and collaborate with IT and compliance to embed controls across operations.

The role includes leading incident response, audits, BIAs/PIAs, and security awareness, with qualifications in CISSP/CISM preferred; a strong compensation package is offered.

Qualifications

  • Bachelor's degree in Information Technology, CS, Engineering, or related field.
  • Minimum of 5 years in information security or IT risk roles.
  • Experience with NIST, ISO 27001, and COBIT frameworks.
  • Experience with GRC tools and vulnerability management.
  • Strong regulatory knowledge and communication skills.
  • Certifications such as CISSP, CISM, CRISC preferred.

Responsibilities

  • Lead information and cyber security governance processes and represent local interests in the group steering committee.
  • Design and maintain a company-wide information security program aligned with business priorities.
  • Collaborate with IT and compliance to embed security controls and maintain RCMs.
  • Establish and enforce data protection policies to meet regulatory and contractual obligations.
  • Maintain security framework documentation, including risk assessments and remediation plans.
  • Act as escalation point during incidents; lead SIRT and investigations.
  • Oversee audits, vulnerability assessments, and testing.
  • Conduct BIAs and PIAs to identify risks and guide mitigation.
  • Develop and deliver security awareness programs.

Skills

Information Security
Cybersecurity governance
Stakeholder management
Security incident response

Education

Bachelor's degree in Information Technology or related field

Tools

GRC tools
Vulnerability management
Security operations

Job description

  • Step into a high-impact leadership role.
  • Drive enterprise-wide security initiative and influence key stakeholders.
  • Step into a high-impact leadership role.
  • Drive enterprise-wide security initiative and influence key stakeholders.
About Our Client

This organization serves as the data science and AI arm of a diversified business group, focused on enabling data-driven transformation across key industries such as energy, finance, and infrastructure. Its mandate is to operationalize data as a strategic asset-leveraging advanced analytics, artificial intelligence, and machine learning to support improved decision-making, enhance operational efficiency, and unlock new sources of value across the enterprise.

Job Description

Key Responsibilities:

  • Lead the organization's information and cyber security governance processes and represent local interests in the group-level Cybersecurity Steering Committee.
  • Design, develop, and maintain a company-wide information security program that integrates business priorities and operational needs.
  • Collaborate with IT and compliance teams to ensure appropriate security controls are embedded in systems and operations, and that Risk Control Matrices (RCMs) and other compliance mechanisms are maintained.
  • Establish and enforce policies and procedures to protect sensitive data, ensuring compliance with legal, regulatory, and contractual obligations.
  • Maintain and enhance the organization's information security framework and documentation, including risk assessments, test results, process flows, and remediation plans.
  • Act as the primary escalation point during critical security incidents; lead incident investigations and convene the Security Incident Response Team (SIRT) when necessary.
  • Oversee periodic audits, vulnerability assessments, and security testing to ensure controls are working as intended.
  • Conduct Business Impact Assessments (BIAs) and Privacy Impact Assessments (PIAs) to identify potential risks and guide mitigation strategies.
  • Develop and deliver security awareness programs to promote a strong culture of security and accountability across the organization.
The Successful Applicant
Qualifications & Experience
  • Bachelor's degree in Information Technology, Computer Science, Engineering, or a related discipline (or equivalent industry experience).
  • Minimum of 5 years of experience in Information Security, Cybersecurity, or IT Risk Management roles.
  • Proven experience in developing, implementing, and managing security programs aligned with frameworks such as NIST, ISO 27001, and COBIT.
  • Hands-on experience with Governance, Risk, and Compliance (GRC) tools, vulnerability management solutions, and security operations.
  • Strong knowledge of regulatory requirements related to data protection, privacy, and information security.
  • Excellent communication, analytical thinking, and stakeholder management skills.
  • Professional certifications highly preferred, such as:
    • CISSP (Certified Information Systems Security Professional)
    • CISM (Certified Information Security Manager)
    • ISO/IEC 27001 Lead Implementer or Lead Auditor
    • CRISC (Certified in Risk and Information Systems Control)
    • CEH (Certified Ethical Hacker) or CompTIA Security+ (for technical security exposure)
What's On Offer
  • Competitive salary & bonuses
  • Comprehensive health benefits
  • Opportunity to work with a leading organization in data analytics and artificial intelligence
  • Professional development and career advancement opportunities

Quote job ref: JN-072025-6798051

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Manager
Information Security Manager

FullSuite • Benguet

On-site
PHP 1,800,000 - 3,200,000
IT Information Security Manager
IT Information Security Manager

Manila Water Philippine Ventures • Quezon City

On-site
PHP 2,000,000 - 3,800,000
Information Security Architect
Information Security Architect

KMC Solutions • Metro Manila

On-site
PHP 1,200,000 - 1,800,000
Head of Information Security & Enterprise Risk Management
Head of Information Security & Enterprise Risk Management

Corporate Technologies Inc • Manila

On-site
PHP 3,500,000 - 7,500,000
Cyber Security Specialist
Cyber Security Specialist

Sterling Global Call Center, Inc. • Pasig

On-site
PHP 900,000 - 1,300,000
Information & Cyber Security Lead
Information & Cyber Security Lead

Hrtx • Metro Manila

On-site
PHP 1,200,000 - 1,600,000
IT and Cybersecurity Manager
IT and Cybersecurity Manager

Our Clients • Makati

On-site
PHP 1,200,000 - 1,800,000
Cybersecurity/IT Risk Officer - Bank | Up to 80K Salary
Cybersecurity/IT Risk Officer - Bank | Up to 80K Salary

weSource Management Consultancy Firm • Makati

On-site
Chief Information Security Officer (CISO)
Chief Information Security Officer (CISO)

Michael Page • Taguig

On-site
PHP 7,000,000 - 12,000,000
Governance and Information Security Analyst
Governance and Information Security Analyst

InnovaThink Corporation • Metro Manila

On-site
PHP 800,000 - 1,200,000