Senior Information Security Risk Analyst

Optum Philippines

Manila

On-site

PHP 600,000 - 1,000,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Optum Philippines is seeking a proactive professional to support risk services by reviewing Risk Records, ensuring timely deliveries, and collaborating with security architects and segment leads. You will help modernize Risk Services, manage records, and drive remediation aligned with SLAs.

The role requires an undergraduate degree or equivalent, plus experience in internal audit and risk assessment, with knowledge of GDPR, ISO 27001, HIPAA, and PCI standards.

Qualifications

  • Undergraduate degree or equivalent experience.
  • Understanding of regulatory mandates and security models including GDPR, ISO 27001, HIPAA, SOX, PCI, GLBA, NIST.

Responsibilities

  • Examine records on IT systems for potential threats per company policies and regulations.
  • Develop quality standards and remediation tasks with validation techniques.

Skills

Risk assessment
Information security
Regulatory knowledge
Communication

Education

Bachelor's degree or equivalent experience

Tools

eGRC
PCI Review

Job description

Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health optimization on a global scale. Join us to start Caring. Connecting. Growing together.

Primary Responsibilities
  • Effectively leverage technical resources around the organization, including segment leads, managers, SISOs, BISOs, CISOs, Security Architects, Cloud Review, PCI Review, Audit & Compliance, other ad hoc technical support to get technical review and input on Risk Records
  • Attend meetings where technical support can engage with the team on Risk Records and be able to articulate the details of the Risk Record you are bringing up for their review
  • Collaborate with the team to support Risk Services modernization, relationship management, and data continuity efforts
  • Ensure timely deliveries for all assigned tasks as per SLA
  • Maintain eGRC Risk Record queue concordant with team determined SLAs (1-3 day for initial reach out on newly Assigned records, 7-10 day reach out on renewals)
  • Proper management of records that are waiting for response (5-day, 3-day, 1 day, close for non-response), as well as updating work logs with information and moving records appropriately between statuses
  • Effectively manage remediation tasks and expired risk records as part of core queue management (5-7-day SLA for updating tasks, questionnaires, and records)
  • Educate the business where applicable on information security, drive remediation and importance of compliance
  • Work closely with local manager and segment lead to remove blockers
  • Comply with the terms and conditions of the employment contract, company policies and procedures, and any and all directives (such as, but not limited to, transfer and/or re-assignment to different work locations, change in teams and/or work shifts, policies in regards to flexibility of work benefits and/or work environment, alternative work arrangements, and other decisions that may arise due to the changing business environment). The Company may adopt, vary or rescind these policies and directives in its absolute discretion and without any limitation (implied or otherwise) on its ability to do so
  • Examines records on IT systems for potential threats to its security based on our company policies/regulations
  • Develops quality standards and remediation tasks with validation techniques (remediation checkpoints)
  • Makes recommendations concerning software/system quality to become compliant with our policies/regulations
Required Qualifications
  • Undergraduate degree or equivalent experience
  • Relevant business experience, including internal audit and/or Risk Assessment experience
  • Understanding of regulatory mandates and security models to include GDPR, ISO 27001, HIPAA, SOX, PCI, GLBA, NIST

At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone of every race, gender, sexuality, age, location and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission.

Optum is a drug-free workplace. © 2026 Optum Global Solutions (Philippines) Inc. All rights reserved.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Information Security Risk Analyst
Senior Information Security Risk Analyst

Optum, a UnitedHealth Group Company • Manila

On-site
PHP 480,000 - 720,000
Senior Information Security Engineering Consultant
Senior Information Security Engineering Consultant

Optum, a UnitedHealth Group Company • Calabarzon

On-site
PHP 1,200,000 - 1,800,000
Info Security Engineer - GRC and TPRM
Info Security Engineer - GRC and TPRM

Optum, a UnitedHealth Group Company • Calabarzon

On-site
PHP 600,000 - 1,200,000
Senior InfoSec Risk Analyst: Global Security & Compliance
Senior InfoSec Risk Analyst: Global Security & Compliance

Optum Philippines • Manila

On-site
PHP 600,000 - 1,000,000
Information Security Engineer Analyst
Information Security Engineer Analyst

Optum Philippines • Muntinlupa

On-site
PHP 480,000 - 720,000
Info Security Engineer - GRC and TPRM
Info Security Engineer - GRC and TPRM

Optum Philippines • Muntinlupa

On-site
PHP 900,000 - 1,400,000
Sr Info Sec Engineer - Risk GRC, Vendor, Education Training & Awareness
Sr Info Sec Engineer - Risk GRC, Vendor, Education Training & Awareness

Optum • Metro Manila

Hybrid
PHP 900,000 - 1,300,000
Hybrid
Laptop Provided
Medical Plan
+11
Information Security Engineer Analyst - SOC Analyst
Information Security Engineer Analyst - SOC Analyst

Optum Philippines • Muntinlupa

On-site
PHP 300,000 - 520,000
Tech Support Consultant
Tech Support Consultant

UnitedHealth Group • Muntinlupa

On-site
Confidential
Senior InfoSec Risk Analyst – Risk Management & Compliance
Senior InfoSec Risk Analyst – Risk Management & Compliance

Optum, a UnitedHealth Group Company • Manila

On-site
PHP 480,000 - 720,000