SECURITY GOVERNANCE MANAGEMENT

Metrobank

Taguig

On-site

PHP 1,000,000 - 1,800,000

Full time

2 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Metrobank is seeking an experienced professional to oversee Security Governance Management. You will formulate security policies, monitor program progress and drive an annual awareness program to align with the bank's objectives.

The role requires strong governance, risk, and compliance expertise and collaboration across ISD teams. Ideal candidates have hands-on experience in policy development, risk assessments, regulatory requirements, and people leadership.

Qualifications

  • Experienced and well versed in information security risk assessment and management.
  • Experience in governance, risk management, compliance audits and policy framework.
  • Extensive knowledge of information security governance frameworks and programs.
  • Knowledge of bank processes, IT processes, access controls, data security and risk assessments.
  • Strong attention to detail, analytical and problem-solving skills with learning agility.
  • Preferably with IS security certifications such as CISM or CRISC.
  • Knowledgeable on BSP, DPA, PCI-DSS and other regulatory requirements.
  • People management, teamwork, and ability to lead security initiatives.

Responsibilities

  • Formulates, recommends and reviews information security policies and procedures.
  • Addresses policy gaps on physical, environmental, personnel security and business continuity.
  • Establishes and implements an Information Security Advocacy, Awareness and Training Program.
  • Analyzes awareness program results and identifies improvement areas.
  • Liaises with Bank units on information security governance, risk and compliance.
  • Acts as point of contact for ISD BSP related requirements.
  • Monitors tactical plans and program accomplishments.
  • Collaborates with ISD departments to close audit and compliance exceptions.
  • Supports department head in delivering tasks and deliverables.
  • Performs other IS-related duties as directed.

Skills

Risk assessment
Governance
Policy framework
Project management
Time management
Communication skills
Team leadership
Analytical thinking
Learning agility
Regulatory knowledge

Education

CISM or CRISC certification

Tools

MS Office
PowerPoint
Excel

Job description

Here at Metrobank, we don't simply hire employees—we hone future leaders. We provide opportunities that enhance your skills and unlock your talents, helping you evolve into a well-rounded individual. We supply you with all the pieces you need to do your best work, unleashing your full potential to help you secure your future and lead a fulfilling career. And with Metrobank's strong heart for the community, you have the chance to give back and make worthwhile contributions to our nation's economic and social development.

With Metrobank, a meaningful life is within your reach!

Position Title: Security Governanace Management
Job Summary:

Formulate and recommend information security policies and procedures to meet the bank’s information security objectives and ensure effective implementation. Monitor the accomplishments of the plans and programs of the Division. Plan and execute the annual security awareness program.

Specific Duties & Responsibilities:
  • Formulates, recommends and reviews information security policies and procedures to meet the bank’s information security objectives.
  • Addresses information security policy gaps on physical, environmental, personnel security, business continuity and secure application development lifecycle management.
  • Establishes and implements an Information Security Advocacy, Awareness and Training Program to include the latest information security threats, issues, best practices, methodologies, standards and advisories. Prepares content for publishing/release.
  • Analyzes results of the Awareness program to determine success rate, improvements in the program and where employees need information security knowledge reinforcements.
  • Liaises with other units of the Bank on their information security governance, risk and compliance related duties, responsibilities and practices.
  • Point of contact for ISD BSP related requirements and compliance requirements.
  • Monitors accomplishment of tactical plans and programs.
  • Works with other ISD Departments to ensure closure of audit and compliance exceptions
  • Proactively works with the Department Head in managing accomplishment of tasks and deliverables.
  • Performs other information security related duties and responsibilities as directed by the Department Head.
Qualification
  • Experienced and well versed in information security risk assessment and management
  • Has experience in information security governance, risk management, Compliance Audit and Policy Framework, Metrics Measurement, Awareness, Training, and Advocacy
  • Extensive knowledge in various information security governance frameworks, and experiencing managing information security strategies and programs
  • Has working knowledge, understanding and experience in bank processes, IT processes, access controls, data security, controls assurance, controls and risk assessments.
  • Strong attention to detail, analytical, and problem-solving skills; strong learning agility with the abilityto learn new processes.
  • Preferably with IS security related certification such as CISM, CRISC.
  • Knowledgeable on various compliance and regulatory requirements (i.e., BSP, DPA, PCI-DSS, etc.)
  • People Management Skills: Ability to lead and work well with the team, internal, and external clients. Have good teamwork and collaboration skills: good team players with the ability to lead security initiatives.
  • Good Project management skills: to lead and manage accomplishments of assigned tasks.
  • Possess excellent time management skills, thrive in a fast paced demanding environment
  • Be a self-managed, self-starter with good organizational skills to include good follow-up skills
  • Be able to work under pressure on multiple tasks/projects simultaneously.
  • Good written and verbal communication skills: to effectively articulate and explain complex security topics in simple language, concise and easy to understand concepts.
  • Knowledge in using MS office tools such as PowerPoint, word, excel and project
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

NETWORK SECURITY ENGINEER
NETWORK SECURITY ENGINEER

Metrobank • Taguig

On-site
Network Security Engineer
Network Security Engineer

Metrobank • Metro Manila

On-site
PHP 700,000 - 1,000,000
Head, Security Architecture and Innovation
Head, Security Architecture and Innovation

Metrobank • Metro Manila

On-site
PHP 1,200,000 - 2,000,000
NETWORK SECURITY ENGINEER
NETWORK SECURITY ENGINEER

Metrobank • Hinoba-an

On-site
PHP 600,000 - 900,000
SECURITY ASSURANCE AND ASSESSMENT OFFICER
SECURITY ASSURANCE AND ASSESSMENT OFFICER

Metrobank • Taguig

On-site
PHP 600,000 - 800,000
Opportunities for professional development
Community contribution initiatives
Security Architect
Security Architect

Metrobank • Metro Manila

On-site
PHP 1,500,000 - 2,100,000
IT Security Risk Assessment Officer
IT Security Risk Assessment Officer

Metrobank • Philippines

On-site
PHP 650,000 - 900,000
OFFENSIVE SECURITY OFFICER
OFFENSIVE SECURITY OFFICER

Metrobank • Hinoba-an

On-site
PHP 600,000 - 1,000,000
Senior Data Security Manager
Senior Data Security Manager

UnionBank • Pasig

On-site
PHP 1,800,000 - 3,200,000
InfoSec Governance & Policy Leader
InfoSec Governance & Policy Leader

Metrobank • Taguig

On-site
PHP 1,000,000 - 1,800,000