Senior Security Compliance Analyst

TaskUs

Metro Manila

Hybrid

PHP 1,200,000 - 1,800,000

Full time

4 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

TaskUs in Metro Manila is seeking a Senior Security Compliance Analyst to lead audits, assess security controls, and align our environment with PCI DSS, SOC 2, HIPAA/HITRUST, and ISO 27001 requirements.

You will manage evidence for external certifications, drive remediation with operations, and mentor teams on policy adherence in a hybrid work setting.

Qualifications

  • Experience with PCI DSS, SOC 2, HIPAA/HITRUST, and ISO 27001.
  • Strong reporting and presentation skills for audits and risk reviews.
  • Knowledge of risk assessments, vendor security, and IT controls.

Responsibilities

  • Lead security compliance certifications such as ISO 27001, SOC 2, PCI DSS, HIPAA/HITRUST.
  • Coordinate evidence collection and responses for external audits and certifications.
  • Monitor and report compliance activities and remediation progress.
  • Develop and enforce security policies and procedures.
  • Provide guidance on compliance risks and emerging trends.
  • Deliver security compliance training to employees.
  • Support IT risk assessment processes and risk treatment tracking.
  • Stay current with regulatory changes and industry best practices.
  • Support incident response during security events.

Skills

PCI DSS
SOC 2
HIPAA
ISO 27001

Education

Bachelor's degree in MIS/CS

Job description

About TaskUs: TaskUs is a provider of outsourced digital services and next-generation customer experience to fast-growing technology companies, helping its clients represent, protect and grow their brands. Leveraging a cloud-based infrastructure, TaskUs serves clients in the fastest-growing sectors, including social media, e-commerce, gaming, streaming media, food delivery, ride-sharing, HiTech, FinTech, and HealthTech.

TaskUs People First culture has grown the company to have approximately 45K employees worldwide. We are currently in twenty-three locations across twelve countries, including the Philippines, India, and the United States.

It started with one ridiculously good idea to create a different breed of Business Processing Outsourcing (BPO)! We at TaskUs understand that achieving growth for our partners requires a culture of constant motion, exploring new technologies, being ready to handle any challenge at a moment’s notice, and mastering consistency in an ever-changing world.

What We Offer: TaskUs provides world-class benefit packages with competitive industry salaries to all its employees. With well-developed departments, such as Total Rewards, Wellness, HR, and Diversity, we continuously thrive in supporting a People First culture. We are known for our inclusiveness and community impact. We also promote internal mobility and professional development at every step of an employee's career within TaskUs. Come be part of TaskUs that supports People First by applying today!

What can you expect in a Senior Security Compliance Analyst role with TaskUs:

Think of yourself as someone who is responsible for security system assessments, monitoring, and reporting. You will have a significant role in performing audits, tracking vulnerability assessments, security testing, and working with operations teams on remediation and mitigation of audit findings.

Imagine yourself going to work with one thing on your mind: that you will lead the assessment and integration of security controls of the entire corporate environment in line with applicable requirements from PCI DSS, SOC 2, HIPAA/HITRUST, and ISO 27001. Responsible for policy assessment of endpoint and network security appliances, hardware, and software, enforcing the TaskUs security policies, and complying with requirements of internal and external security audits and recommendations.

Key Responsibilities:
  • Lead and support efforts for security compliance certifications such as ISO 27001, SOC 2, PCI DSS, HIPAA, HITRUST, and others.
  • Manage evidence collection and responses for external audits and certifications.
  • Monitor, document, and report compliance activities, make decisions regarding audit findings and remediation progress.
  • Handling the Security Controls requirements in line with Client Expectations.
  • Perform internal audits, control testing, and gap assessments to assess compliance status.
  • Develop, maintain, and enforce security policies, standards, and procedures.
  • Provide leadership with guidance on compliance risks, emerging trends, and areas for improvement.
  • Provide security compliance training and awareness to employees.
  • Lead the development and maintenance of IT and Security Risk Assessment procedures and processes, and collaborate with business units outside of Information Security to complete the Risk Assessment and track Risk Treatment activities.
  • Recommends and supports the deployment and use of additional security products and tools, as well as conducting Risk Assessments and Vendor Security Assessments.
  • Strong practical experience with Business Impact Analysis (BIA).
  • Provide incident response support during security events. Participate in analyzing, troubleshooting, and investigating system anomalies using security reports, network traffic, logs, and alerts.
  • Performs additional duties as assigned within the scope of security compliance activities and serves as a backup for team members in any necessary or assigned situations.
  • Stay current with regulatory changes, emerging compliance requirements, and industry best practices.
  • Manage the security of the IT infrastructure which are deployed and hosted in house and in the colocation DC.
  • Should be able to use the AI tools and platforms for automation and also lead the core certification engagements we have in our Security Compliance department.
Required Qualifications:
  • In-depth and hands-on experience of the following compliance requirements: PCI DSS, SOC 2, HIPAA/HITRUST, and ISO 27001.
  • At least 4 years of experience in IT/IS Security Compliances/Consulting focuses on IT security, IT audit, Risk Assessments, Vendor Security Assessment, and/or due diligence reviews.
  • Candid Industry-recognized presentation skills with the ability to prepare reports and presentations.
  • An industry recognized information security certification, such as CISA, ISO LA/LI, CISM, CISSP, ISO 31000, RIsk Professional, and Certified Third-Party Risk Professional.
  • Sound technical writing, documentation, and communication skills are required.
  • Functional awareness of both information system platforms with a strong IT technical understanding and aptitude for analytical problem-solving.
  • Strong understanding of Third-party, enterprise, network, system and application-level risk and controls
  • Ability to handle sensitive and/or confidential material and information with suitable discretion.
  • Excellent interpersonal skills and a professional demeanor.
  • BPO contact center experience preferred, but not required.
Education / Certifications:
  • Bachelor’s degree in MIS/Computer Science or Business and/or a combination of education and relevant experience.
Work Location / Work Schedule / Travel:
  • Hybrid work setup with frequent visit to any of the PH sites for audits and compliance (commonly core Metro sites)
  • Shifting Schedule, majority is either day or mid shift

How We Partner To Protect You: TaskUs will neither solicit money from you during your application process nor require any form of payment in order to proceed with your application. Kindly ensure that you are always in communication with only authorized recruiters of TaskUs.

DEI: In TaskUs we believe that innovation and higher performance are brought by people from all walks of life. We welcome applicants of different backgrounds, demographics, and circumstances. Inclusive and equitable practices are our responsibility as a business. TaskUs is committed to providing equal access to opportunities. If you need reasonable accommodations in any part of the hiring process, please let us know.

We invite you to explore all TaskUs career opportunities and apply through the provided URL https://www.taskus.com/careers/.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Compliance Analyst
Senior Security Compliance Analyst

TaskUs • Pasig

On-site
PHP 1,000,000 - 1,600,000
Global Audit and Compliance Manager | Pampanga
Global Audit and Compliance Manager | Pampanga

TaskUs • Angeles

On-site
PHP 1,200,000 - 1,800,000
Physical Safety and Security Manager
Physical Safety and Security Manager

TaskUs • Philippines

On-site
PHP 700,000 - 1,100,000
Global Audit and Compliance Manager | Hybrid Work
Global Audit and Compliance Manager | Hybrid Work

TaskUs • Angeles

On-site
Technical Support Engineer (EP & Security) - L1
Technical Support Engineer (EP & Security) - L1

TaskUs • Las Piñas

On-site
PHP 446,000 - 781,000
Senior Security Compliance Lead - ISO 27001 & SOC 2
Senior Security Compliance Lead - ISO 27001 & SOC 2

TaskUs • Pasig

On-site
PHP 1,000,000 - 1,600,000
Senior Manager, People Solutions (HR Transformation)
Senior Manager, People Solutions (HR Transformation)

TaskUs • Antipolo, Hinoba-an

On-site
PHP 3,000,000 - 4,500,000
Competitive industry salaries
Comprehensive benefits packages
Senior Manager, People Solutions (HR Transformation)
Senior Manager, People Solutions (HR Transformation)

LizardBear Tasking, Inc. (PEZA) • Philippines

On-site
PHP 2,000,000 - 3,000,000
Technical Support Engineer
Technical Support Engineer

TaskUs • Las Piñas

On-site
PHP 391,000 - 670,000
IT Service Desk Intern
IT Service Desk Intern

TaskUs • Philippines

On-site
PHP 167,000 - 234,000
Mentorship
Professional growth