Senior Information Security Risk Analyst

Optum, a UnitedHealth Group Company

Manila

On-site

PHP 480,000 - 720,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Optum is a global health services company that partners with health systems to improve outcomes and efficiency. This role focuses on risk record management, remediation, and regulatory compliance across the organization in a dynamic, security-driven environment.

The successful candidate will work with cross-functional teams to ensure timely risk assessments, support governance efforts, and help modernize risk services while adhering to policies and SLAs.

Qualifications

  • Undergraduate degree or equivalent experience.
  • Relevant business experience, including internal audit and/ or Risk Assessment experience.
  • Understanding of regulatory mandates and security models to include GDPR, ISO 27001, HIPAA, SOX, PCI, GLBA, NIST.

Responsibilities

  • Leverage technical resources around the organization to get risk input for reviews.
  • Attend meetings to articulate risk records for review.
  • Collaborate with the team to support Risk Services modernization and data continuity.
  • Ensure timely deliveries for all assigned tasks as per SLA.
  • Educate the business on information security and drive remediation and compliance.

Skills

Internal audit
Risk assessment
Regulatory concepts
Stakeholder collaboration

Education

Undergraduate degree

Tools

Regulatory standards (GDPR, ISO 27001, HIPAA, SOX, PCI-DSS, NIST)

Job description

Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health optimization on a global scale. Join us to start Caring. Connecting. Growing together.

Primary Responsibilities:
  • Effectively leverage technical resources around the organization, including segment leads, managers, SISOs, BISOs, CISOs, Security Architects, Cloud Review, PCI Review, Audit & Compliance, other ad hoc technical support to get technical review and input on Risk Records
  • Attend meetings where technical support can engage with the team on Risk Records and be able to articulate the details of the Risk Record you are bringing up for their review
  • Collaborate with the team to support Risk Services modernization, relationship management, and data continuity efforts
  • Ensure timely deliveries for all assigned tasks as per SLA
  • Maintain eGRC Risk Record queue concordant with team determined SLAs (1-3 day for initial reach out on newly Assigned records, 7-10 day reach out on renewals)
  • Proper management of records that are waiting for response (5-day, 3-day, 1 day, close for non-response), as well as updating work logs with information and moving records appropriately between statuses
  • Effectively manage remediation tasks and expired risk records as part of core queue management (5-7-day SLA for updating tasks, questionnaires, and records)
  • Educate the business where applicable on information security, drive remediation and importance of compliance
    • examines records on IT systems for potential threats to its security based on our company policies/regulations
    • develops quality standards and remediation tasks with validation techniques (remediation checkpoints),
    • makes recommendations concerning software/system quality to become compliant with our policies/regulations
  • Work closely with local manger and segment lead to remove blockers

  • Comply with the terms and conditions of the employment contract, company policies and procedures, and any and all directives (such as, but not limited to, transfer and/or re-assignment to different work locations, change in teams and/or work shifts, policies in regards to flexibility of work benefits and/or work environment, alternative work arrangements, and other decisions that may arise due to the changing business environment). The Company may adopt, vary or rescind these policies and directives in its absolute discretion and without any limitation (implied or otherwise) on its ability to do so
Required Qualifications:
  • Undergraduate degree or equivalent experience
  • Relevant business experience, including internal audit and/ or Risk Assessment experience
  • Understanding of regulatory mandates and security models to include GDPR, ISO 27001, HIPAA, SOX, PCI, GLBA, NIST


At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age, location and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission.


Optum is a drug-free workplace. © 2026 Optum Global Solutions (Philippines) Inc. All rights reserved.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Information Security Risk Analyst
Senior Information Security Risk Analyst

Optum Philippines • Manila

On-site
PHP 600,000 - 1,000,000
Senior Information Security Engineering Consultant
Senior Information Security Engineering Consultant

Optum, a UnitedHealth Group Company • Calabarzon

On-site
PHP 1,200,000 - 1,800,000
Info Security Engineer - GRC and TPRM
Info Security Engineer - GRC and TPRM

Optum, a UnitedHealth Group Company • Calabarzon

On-site
PHP 600,000 - 1,200,000
Senior InfoSec Risk Analyst: Global Security & Compliance
Senior InfoSec Risk Analyst: Global Security & Compliance

Optum Philippines • Manila

On-site
PHP 600,000 - 1,000,000
Information Security Engineer Analyst
Information Security Engineer Analyst

Optum Philippines • Muntinlupa

On-site
PHP 480,000 - 720,000
Sr Info Sec Engineer - Risk GRC, Vendor, Education Training & Awareness
Sr Info Sec Engineer - Risk GRC, Vendor, Education Training & Awareness

Optum • Metro Manila

Hybrid
PHP 900,000 - 1,300,000
Hybrid
Laptop Provided
Medical Plan
+11
Info Security Engineer - GRC and TPRM
Info Security Engineer - GRC and TPRM

Optum Philippines • Muntinlupa

On-site
PHP 900,000 - 1,400,000
Senior Software Engineer I
Senior Software Engineer I

Optum Philippines • Taguig

On-site
PHP 1,800,000 - 2,400,000
Senior Software Engineer I
Senior Software Engineer I

Optum, a UnitedHealth Group Company • Manila

On-site
PHP 1,200,000 - 2,000,000
Information Security Engineer Analyst - SOC Analyst
Information Security Engineer Analyst - SOC Analyst

Optum Philippines • Muntinlupa

On-site
PHP 300,000 - 520,000