Power your future with AboitizPower.
As OT Security Engineer, you will provide support to the Information Security and Compliance Officer and shall be responsible for providing technical expertise in all aspects of enterprise information security and compliance for all applicable regulations. Further, you shall be responsible for the IT/OT security program, aligning with AboitizPower’s Cybersecurity Information Security Strategy for all Aboitiz Power Distribution Utilities. This includes policy implementation, procedure documentation, information protection and security awareness program and contribute directly to transforming energy for a better world. You will work closely with Network and Security Infrastructure team to deliver results, create positive community impact, and develop your skills in a supportive, purpose-driven environment.
In This Role, Your Responsibilities Will Be:
Security Administration
- Responsible for managing and enforcing security controls across both IT and OT environments to ensure the confidentiality, integrity, and availability of systems and data. This role involves administering and maintaining security technologies such as firewalls, endpoint protection, and access control systems, while ensuring alignment with internal security policies, standards, and regulatory requirements. Supports the implementation of security policies and procedures, promotes good security hygiene through routine tasks like patching, log monitoring, account reviews, and vulnerability management, and collaborates closely with IT and OT teams to maintain consistent security practices. Additionally, it also contributes to incident detection and response efforts by assisting in the investigation and resolution of security threats.
Security Operations and Monitoring
- Responsible for ensuring the security and integrity of both IT and OT environments by implementing, maintaining, and optimizing security controls and tools. It encompasses key functions such as threat monitoring, incident response, system hardening, and risk management, building on the foundational responsibilities of Information Security and Compliance
- Continuously monitors security systems for suspicious activity or potential breaches. The role involves analyzing and investigating alerts, coordinating with the CIS Team for timely response, and proactively hunting threats.
- Supports compliance and governance by contributing to cybersecurity risk assessments, due diligence of IT/OT assets, and helping ensure alignment with security policies and standards. The role also drives the implementation of technical controls, works to remediate vulnerabilities, and supports audit and regulatory requirements as needed.
Security Equipment Evaluation
- Supports by performing technical evaluations of security equipment to ensure they meet current and future organizational requirements. This includes assessing security technologies and other relevant solutions. The engineer provides technical inputs and recommendations to the network and infrastructure teams, helping align security solutions with business needs.
Security Automation and BCDRP Maintenance
- Implement and maintain automated security workflows to enhance threat detection, response, and system hardening. Support the development and testing of Business Continuity and Disaster Recovery Plans (BCDRP) for IT and OT environments. Participate in drills and simulations to ensure readiness and resilience against cyber incidents and infrastructure failures.
Vulnerability Assessments
- Performs regular vulnerability assessments across both IT and OT environments to identify and evaluate security weaknesses. Prioritizes risks based on severity and collaborates with system administrators, OT engineers, and other stakeholders to plan and implement timely remediation. Utilizes scanning tools, validates findings, recommends patches or configuration changes, and tracks remediation progress. Supports the improvement of system hardening practices and contributes to the organization's overall cyber resilience.
Information Security Compliance
- Supports in implementing and maintaining security controls aligned with internal policies, regulatory requirements, and industry standards. Assists in technical documentation, audit preparation, and compliance validation activities. Provides technical input to ensure system configurations, access controls, and monitoring tools support compliance goals. Coordinates with stakeholders to address gaps and strengthen compliance posture across IT and OT environments.
System Administration (IT and OT)
- Perform secure configuration, hardening, and maintenance of IT and OT systems, including servers, virtualization platforms, and network services
- Ensure systems are compliant with security baselines, support patch management, and assist in implementing backup and recovery solutions. Work closely with infra teams to enforce access control, logging, and secure system operations. Also supports and monitors preventive maintenance agreements with providers and contractors to ensure the continuous availability and support of critical systems.
Research & Development New Technologies
- Supports in evaluating the security aspects of emerging technologies and R&D initiatives within the IT and OT network infrastructure. Collaborates with R&D teams to define and implement robust security controls aligned with minimum security standards. Conducts risk assessments, oversees security testing, and ensures secure design principles are integrated into new solutions. Helps foster a culture of proactive risk management and ensures compliance in innovative technology deployments
Project Support and Implementation
- Supports in planning and implementing IT and OT security projects by providing technical expertise on integrating security controls throughout the project lifecycle. Collaborates with cross-functional teams to ensure security requirements are addressed in design, deployment, and operations. Assists in preparing documentation, coordinating resources, and ensuring compliance with internal standards and cybersecurity objectives.
What You Will Need:
Education & Experience:
- Bachelor’s Degree in Electronics Engineering (ECE), Electrical Engineering (EE), Computer Engineering (COE), Computer Science, Information System or related field
- Master’s degree in [ECE,EE,Information Technology], an advantage
- At least three (5) years of experience in network systems software, analysis, design, network implementation, and system.
- Professional [ECE,EE], an advantage
Our Culture & Commitment to You: Powering Your Future
At AboitizPower, we honor you not just as a professional, but as a person. Our promise is to provide a workplace where you can thrive through:
- Powered by People: We value your unique identity and ensure you feel supported, trusted, and empowered.
- Own Your Growth: Learn, grow, and advance through mentorship, leadership opportunities, and meaningful learning experiences.
- Why We Work: Purpose is part of every job here. Your efforts directly contribute to community upliftment, sustainability, and shaping the future of energy.
- Empowering Culture: Bring your full self to a workplace grounded in belonging and collaboration.
- Recognition that Matters: We celebrate both visible milestones and steady efforts, honoring the dedication you bring to our mission.
About Us
AboitizPower is the holding company for the Aboitiz Group’s investments in power generation, distribution, and retail electricity services. We are among the largest power producers in the Philippines, with a balanced portfolio of assets located across the country. We are also a major producer of renewable energy, with several hydroelectric, geothermal, and solar power generation facilities.