IT Security /DPO Officer

Compass Experience Labs

Metro Manila

Hybrid

PHP 3,000,000 - 6,000,000

Full time

8 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Compass Experience Labs in the Philippines seeks a hybrid IT leadership role to oversee global IT operations, cybersecurity, and data privacy, partnering with executives and external security experts to maintain a secure, scalable environment.

You will drive IT strategy, mentor teams, manage SOC 2 Type 2 program, and coordinate with auditors and vendors, ensuring compliance across cloud and on‑premises systems.

Qualifications

  • 5–7+ years of progressive experience in IT operations, cybersecurity, information security, or infrastructure management.
  • Minimum 3 years in a leadership or management role overseeing IT teams.
  • Demonstrated experience leading enterprise security and compliance programs.
  • Hands-on experience managing SOC 2 Type 2 audits and ongoing compliance.
  • Experience serving as or supporting a Data Protection Officer (DPO) or privacy compliance function is highly preferred.
  • Experience working with external auditors, vCISOs, MSSPs, or regulatory agencies.
  • Strong knowledge of security tools and IAM, DLP, EDR, and cloud security technologies.
  • Familiarity with SOC 2 Type 2, ISO 27001 (preferred), RA 10173, and privacy impact assessments.
  • Bachelor’s degree in IT/CS or related field; professional privacy certifications are a plus.

Responsibilities

  • Lead the organization's overall IT strategy aligned with long-term business objectives.
  • Provide leadership, coaching, and performance management to the IT Manager and Helpdesk team.
  • Oversee IT operations, infrastructure, cloud services, endpoint management, and enterprise applications.
  • Manage relationships with software vendors, hardware suppliers, MSPs, and other technology partners.
  • Act as the final escalation point for major system outages, infrastructure incidents, and critical technical issues.
  • Lead capacity planning, hardware lifecycle management, software licensing, and asset management.
  • Drive continuous improvement of ITSM processes through Jira Service Management, workflow automation, SLA monitoring, and reporting.
  • Manage IT projects including infrastructure upgrades, system implementations, and technology transformation initiatives.
  • Partner with the external Virtual Chief Information Security Officer (vCISO) to develop and execute the organization's cybersecurity roadmap.
  • Own the organization's SOC 2 Type 2 compliance program, including continuous control monitoring, evidence collection, audit preparation, external auditor coordination, and control remediation.

Skills

Strategic IT leadership
IT operations management
Cybersecurity governance
SOC 2 Type 2 audits
Data privacy compliance
Vendor management
Incident management
ISO 27001 familiarity
Auditors coordination
DPO/privacy support
GWorkspace admin
IAM
Cloud security
ITIL

Education

Bachelor's degree in Information Technology / Computer Science

Tools

Jira Service Management
CrowdStrike
Google Workspace Admin
Identity & Access Management
MDM
DLP
Cloud Security
Vulnerability Management
ITIL

Job description

About the role

This hybrid leadership role combines strategic oversight with hands‑on execution. The successful candidate will lead the organization's global IT operations, cybersecurity, compliance, and data privacy initiatives. The role partners closely with executive leadership, external security consultants (vCISO), auditors, and business stakeholders to ensure the organization maintains a secure, scalable, and compliant technology environment, including ownership of SOC 2 Type 2, data privacy compliance, and enterprise security initiatives.

Key responsibilities
  • Lead the organization's overall IT strategy aligned with long-term business objectives

  • Provide leadership, coaching, and performance management to the IT Manager and Helpdesk team

  • Oversee IT operations, infrastructure, cloud services, endpoint management, and enterprise applications

  • Manage relationships with software vendors, hardware suppliers, MSPs, and other technology partners

  • Act as the final escalation point for major system outages, infrastructure incidents, and critical technical issues

  • Lead capacity planning, hardware lifecycle management, software licensing, and asset management

  • Drive continuous improvement of IT Service Management (ITSM) processes through Jira Service Management, workflow automation, SLA monitoring, and reporting

  • Manage IT projects including infrastructure upgrades, system implementations, and technology transformation initiatives

  • Partner with the external Virtual Chief Information Security Officer (vCISO) to develop and execute the organization's cybersecurity roadmap

  • Own the organization's SOC 2 Type 2 compliance program, including continuous control monitoring, evidence collection, audit preparation, external auditor coordination, and control remediation

About you
  • 5-7+ years of progressive experience in IT operations, cybersecurity, information security, or infrastructure management

  • Minimum 3 years in a leadership or management role overseeing IT teams

  • Demonstrated experience leading enterprise security and compliance programs

  • Hands‑on experience managing SOC 2 Type 2 audits and ongoing compliance

  • Experience serving as or supporting a Data Protection Officer (DPO) or privacy compliance function is highly preferred

  • Experience working with external auditors, vCISOs, Managed Security Service Providers (MSSPs), or regulatory agencies

  • Strong knowledge of Google Workspace Administration, Jira & Jira Service Management, CrowdStrike (or equivalent EDR platforms), Identity & Access Management (IAM), Mobile Device Management (MDM), Data Loss Prevention (DLP), Endpoint Security, Cloud Security, Vulnerability Management, Disaster Recovery & Business Continuity, Security Incident Response, and IT Service Management (ITIL)

  • Working knowledge of SOC 2 Type 2, ISO 27001 (preferred), Philippine Data Privacy Act (RA 10173), NPC Circulars and Advisories, Privacy Impact Assessments (PIA), Data Processing Agreements, Data Sharing Agreements, and Data Breach Management

  • Bachelor's degree in Information Technology, Computer Science, Information Security, Cybersecurity, Computer Engineering, or a related discipline; equivalent professional experience may be considered

  • Preferred certifications: CISSP, CISM, CISA, CRISC, ISO 27001 Lead Implementer or Lead Auditor, CompTIA Security+, Certified Data Privacy Professional (CDPP), Certified Information Privacy Professional (CIPP), or Data Protection Officer (DPO) Certification or equivalent privacy certification

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT & Information Security / Data Protection Officer (DPO) - PH
IT & Information Security / Data Protection Officer (DPO) - PH

compassexperiencelabs • Manila

Hybrid
PHP 1,200,000 - 1,600,000
IT & Information Security / Data Protection Officer (DPO) - PH
IT & Information Security / Data Protection Officer (DPO) - PH

Compass Experience Labs • Manila

Hybrid
PHP 1,800,000 - 3,200,000
IT & Information Security / Data Protection Officer (DPO) - PH
IT & Information Security / Data Protection Officer (DPO) - PH

Compass Experience Labs LLC • Manila

Hybrid
PHP 1,800,000 - 3,200,000
IT Security & DPO Leader | SOC 2 & Privacy
IT Security & DPO Leader | SOC 2 & Privacy

Compass Experience Labs • Metro Manila

Hybrid
PHP 3,000,000 - 6,000,000
IT & Security Leader | Data Protection Officer (DPO)
IT & Security Leader | Data Protection Officer (DPO)

Compass Experience Labs • Manila

Hybrid
PHP 1,800,000 - 3,200,000
Global IT & Security Leader (DPO & Privacy)
Global IT & Security Leader (DPO & Privacy)

Compass Experience Labs LLC • Manila

Hybrid
PHP 1,800,000 - 3,200,000
Chief Information Security Officer (CISO)
Chief Information Security Officer (CISO)

Career Connect • Philippines

On-site
PHP 405,000 - 495,000
Data Privacy Officer (DPO)
Data Privacy Officer (DPO)

Private Advertiser • Philippines

On-site
PHP 1,200,000 - 1,800,000
Chief Information Security Officer (CISO)
Chief Information Security Officer (CISO)

Career Connect • Taguig

Hybrid
PHP 1,500,000 - 2,800,000
Data Privacy Officer
Data Privacy Officer

Risewave Consulting Inc. • Pasig

On-site
PHP 600,000 - 1,000,000