Information Security Risk Consultant (ISO27001 and Auditing Experience)

Optum

Metro Manila

On-site

PHP 1,200,000 - 2,400,000

Full time

44 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Medical Plan (HMO) from Day 1
Dental, Medical, and Optical Reimburse
Life and Disability Insurance
Tuition Fee Reimbursement
Annual Merit Increases
Employee Recognition
Training and Staff Development
All Mandatory Statutory Benefits

Job summary

Optum is seeking a senior information security professional in the Philippines to perform audits, identify control gaps, and implement corrective action plans while aligning security policies with ISO27001, NIST, and ITIL frameworks. You will monitor corrective actions, manage risk assessments, and lead security incident investigations, ensuring compliance and effective communication with stakeholders.

A Bachelor's degree and 6+ years of experience are required; CISSP/CISA/ISO27001 Lead Auditor

Qualifications

  • 6+ years of information security experience including ISMS (ISO27001), risk management (ISO31000), HITRUST CSF, NIST CSF, and SOC Type 1/2.
  • Auditing skills and ability to manage risk assessments/projects independently.
  • Preferred certifications: CISSP, CISA, or ISO27001 Lead Implementer/Auditor.

Responsibilities

  • Perform audits to identify control gaps and implement corrective action plans.
  • Align security policies/standards with IT infrastructure frameworks (ISO27001, NIST, ITIL).
  • Monitor compliance with corrective action plans and address non-compliance issues.
  • Lead security incident investigations.
  • Analyze business requirements to ensure solutions meet security policies and controls.
  • Maintain security metrics and reporting.
  • Stay current on information security topics and program requirements.
  • Communicate with stakeholders and end users effectively.

Skills

Auditing
Risk assessment
Security governance

Education

Bachelor's degree or higher

Job description

Perform audits to identify control gaps and implement corrective action plans

Ensure alignment of security policies/standards with IT infrastructure frameworks (e.g., ISO 2700x, NIST, ITIL)

Monitor compliance with corrective action plans, and address non-compliance issues appropriately

Demonstrate understanding of discovery technologies to identify system vulnerabilities (e.g. scanning tools)

Establish appropriate security controls based on defined data classifications to align with applicable laws/regulations/standards

Facilitate/lead security incident investigation

Analyse business requirements and ensure that solutions meet established security policies and controls

Maintain metrics and ensure reporting as appropriate

Maintain current knowledge on information security topics and their applicability program requirements

Communicate professionally with stakeholders/end users through multiple communication

Job Requirements

Bachelor's degree or higher level of education

6+ years of Information security experience and experience with ISO27001 (ISMS), ISO31000 (Risk management), HITRUST CSF, NIST Cybersecurity Framework, SOC Type1/2

Must have auditing skills and the ability to manage risk assessments / projects independently.

Preferable CISSP, CISA or ISO27001 Lead Implementer or Lead Auditor certification.

Excellent communication skills both verbal and written.

Good presentation skills particularly ability to present technology elements in manner personnel can follow and act.

What we offer
  • Market Total Rewards Package
  • Retirement Plan
  • Medical Plan (HMO) from Day 1 of employment
  • Dental, Medical, and Optical Reimbursements
  • Life and Disability Insurance
  • Sick Leave Conversion
  • Tuition Fee Reimbursement
  • Employee Assistance Program (EAP)
  • Annual Performance Based Merit Increases
  • Employee Recognition
  • Training and Staff Development
  • Employee Referral Program
  • Employee Volunteerism Opportunity
  • All Mandatory Statutory Benefits
Who we are

Optum is the health care technology and innovation company of the UnitedHealth Group enterprise along with UnitedHealthcare. As part of a Fortune 5 enterprise, we are improving the health care experience of over 125 million people around the world.

We’re a diverse team with operations across North America, South America, Europe, Asia Pacific and the Middle East. This includes our over 25,000 employees in the Philippines.

Elevate your career with a leading health care company while improving lives.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security Risk Consultant (IT Audit)
Information Security Risk Consultant (IT Audit)

UnitedHealth Group • Philippines

On-site
Confidential
Information Security Risk Consultant (IT Audit)
Information Security Risk Consultant (IT Audit)

Optum Philippines • Makati

On-site
PHP 1,200,000 - 1,800,000
Information Security Risk Consultant - IT Audit
Information Security Risk Consultant - IT Audit

Optum, a UnitedHealth Group Company • Makati

On-site
PHP 800,000 - 1,500,000
Senior Information Security Risk & Compliance Lead
Senior Information Security Risk & Compliance Lead

Optum • Metro Manila

On-site
PHP 1,200,000 - 2,400,000
Medical Plan (HMO) from Day 1
Dental, Medical, and Optical Reimburse
Life and Disability Insurance
+5
InfoSec Risk Consultant - Drive Security & Compliance
InfoSec Risk Consultant - Drive Security & Compliance

UnitedHealth Group • Philippines

On-site
Confidential
InfoSec Risk Consultant — IT Audit Excellence
InfoSec Risk Consultant — IT Audit Excellence

Optum, a UnitedHealth Group Company • Makati

On-site
PHP 800,000 - 1,500,000
Security Risk Consultant – Lead IT Controls & Remediation
Security Risk Consultant – Lead IT Controls & Remediation

Optum Philippines • Makati

On-site
PHP 1,200,000 - 1,800,000
Senior Consultant I - Security & Privacy I
Senior Consultant I - Security & Privacy I

Cloudstaff • Cebu City

Hybrid
PHP 1,200,000 - 1,500,000
Comprehensive health and life insurance
Flexible leave credits
Career advancement opportunities
+1
Cloud Security Compliance Engineer
Cloud Security Compliance Engineer

Optum, a UnitedHealth Group Company • Manila

On-site
PHP 800,000 - 1,100,000
Information Security Compliance Officer (ISO 27001)
Information Security Compliance Officer (ISO 27001)

Eastvantage Business Solutions Inc. • Taguig

Hybrid
PHP 800,000 - 1,100,000