Get more replies from employers
Send a job-specific resume in minutes.
CTBC Bank (Philippines) Corp. is seeking an experienced IT Security professional to support the bank's information security program. You will validate systems against security baselines, perform SAT, manage patch validation, and coordinate with IT teams to close compliance gaps.
The role requires strong knowledge of security concepts across networks, systems, databases, and user access, plus familiarity with ISO 27001/27002, ITIL and COBIT frameworks. Certifications like CISSP/CISM are a plus.
Provides technical, administrative and procedural support for the bank's information security program to protect the confidentiality, integrity and availability of information systems in accordance with the bank's objectives, regulatory requirements and strategic goals. Monitors security controls for the core infrastructure and all other IT security systems to ensure protection of bank information from unauthorized internal and external access. Ensure the execution of change management and disaster recovery plans for all bank systems.
Validates systems and applications against established Minimum Baseline Security Standards prior to deployment.
Conduct Security Acceptance Testing (SAT) for applications and infrastructure changes to ensure compliance with security requirements.
Executes IT Security Operations processes and related activities in accordance with organizational policies and procedures.
Initiate the review of the access level authorities of all core banking systems, network, database users etc. to ensure current and appropriate systems access.
Support patch management validation and endpoint hardening verification.
Maintain and update security baseline documentation as directed by the Information Security Office.
Prepare security compliance reports for management, auditors and regulators.
Coordinate with Infrastructure and Application Development teams to remediate compliance gaps.
Work with cross-functional teams to analyze and evaluate security postures to identify risks or opportunities for improvement.
Participate in the investigation, analysis, and post-incident review of security breaches and information security incidents.
Graduate of B.S. in Computer Engineering, Computer Science or any IT related discipline.
Must have at least 5 years in the field of IT, 1 year of which are spent doing IT Security.
Security concepts related to network, systems, servers, database and user access.
Knowledge of ISO 27001 / 27002, ITIL and COBIT framework.
CISSP, CISM or security technology certifications is a plus.