Senior Security GRC Analyst

B&M Global Services Manila

Taguig

On-site

PHP 40,000 - 60,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

B&M Global Services Manila is looking for a professional to support security projects and execute audits. The ideal candidate will have a Bachelor's degree in Computer Science and expertise in conducting information security audits.

You will be responsible for managing audits, responding to client proposals, and ensuring compliance with security policies. Strong communication and organizational skills are essential, along with a comprehensive understanding of risk management concepts.

Qualifications

  • A thorough understanding of security concepts and best practices.
  • Proficient in the use of Microsoft Excel and Word.
  • Possess a Computer Science Bachelor’s Degree or substantial equivalent experience.

Responsibilities

  • Execute recurring information security controls audits.
  • Respond to client information security audits promptly.
  • Provide status reports to the IT GRC Manager.

Skills

Understanding of security concepts
Audit principles
Microsoft Excel and Word proficiency
Strong communication skills
Ability to manage multiple tasks

Education

Bachelor's Degree in Computer Science or equivalent experience

Tools

Active Directory
Networking
Cloud security concepts

Job description

To support the efforts of the organization by supporting Firm security projects, reporting, and audit preparation. The position is also responsible for the execution of internal and third-party information security audits to assess the firm’s risk posture relative to the established ISMS and risk management framework.

Main responsibilities
  • Execute recurring information security controls audits on both internal and external entities using an established ISMS and risk management framework
  • Provide effective responses to client Requests for Proposals and Requests for Information in support of the business development function
  • Respond to client information security audits in a timely, accurate, and effective manner
  • Monitor control systems to ensure that appropriate information access levels and security clearances are maintained
  • Monitor and report on compliance with the Firm’s information security policies and procedures
  • Maintain records of audit findings and ensure that corrective actions are implemented per the agreed remediation schedule
  • Provide status reports to the IT GRC Manager
  • Maintain the Firm's security-related information and metrics repositories
Skills and experience
  • A thorough understanding of security concepts and best practices.
  • Authoritative understanding of principles, theories, techniques, and methods of information system analysis and risk assessment.
  • Authoritative understanding of audit principles applied to common information security domains such as security policy, organizational structure, asset management, human resources, physical security, operations, communications, access control, development, and acquisition, incident management, business continuity, and compliance.
  • Working knowledge of common information systems such as Active Directory, networking, endpoint management, and cloud security concepts.
  • Proficient in the use of Microsoft Excel and Word.
  • Sufficient business acumen to understand the business drivers associated with risk management concepts, particularly those affecting client audits, RFPs, and contractual terms.
  • Strong communication skills - demonstrated ability to communicate professionally in business language, in both oral and written formats (English).
  • Gather and analyze facts, draw conclusions, define problems, and suggest solutions.
  • Work independently and within a team.
  • Remain productive and maintain focus without direct supervision.
  • Effectively manage multiple tasks concurrently.
  • Internalize and act upon constructive feedback.
  • Adopt new skills and improve existing skills in a dynamic environment.
  • Possess a Computer Science Bachelor’s Degree or substantial equivalent experience
  • A good amount of professional experience with a company-facing information security audit, client-facing audit response, third-party vendor risk management platforms, security metrics tracking and reporting, managing phishing campaigns, and remediation tracking.
  • Working knowledge of foundational information security systems and processes
  • CISA, CRISC, CISM or equivalent professional certification preferred
Additional Information

Baker McKenzie is an Equal Opportunity Employer. We are committed to promoting diversity and inclusion for all. Our unique international culture is reflected in the drawing together of a worldwide family of individuals from diverse cultures and backgrounds in all of our offices. We encourage the best people - regardless of race, religion or belief if any, gender, gender identity, disability, sexual orientation or age - to fulfill their professional aspirations with us. We are committed to ensuring an inclusive and accessible experience for all candidates.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security GRC Analyst
Senior Security GRC Analyst

B & M Global Services Manila, Inc. • Taguig

Hybrid
PHP 600,000 - 1,200,000
Senior Security GRC Analyst - Audits, Risk & Compliance
Senior Security GRC Analyst - Audits, Risk & Compliance

B & M Global Services Manila, Inc. • Taguig

Hybrid
PHP 600,000 - 1,200,000
Senior Governance Risk and Compliance Analyst
Senior Governance Risk and Compliance Analyst

Permhunt • Metro Manila

On-site
Competitive salary
Benefit package
On-call support
Cyber Governance, Risk and Compliance Specialist
Cyber Governance, Risk and Compliance Specialist

Virtual Business Partners Pty. Ltd. • Cebu City

On-site
PHP 800,000 - 1,200,000
HMO + Dental/Optical
Christmas vacation
Electricity & Data subsidies
+3
Security GRC Supervisor
Security GRC Supervisor

Aboitiz Power • Makati

On-site
PHP 1,200,000 - 1,800,000
Senior Security GRC Analyst: Audit & Risk Lead
Senior Security GRC Analyst: Audit & Risk Lead

B&M Global Services Manila • Taguig

On-site
PHP 40,000 - 60,000
Cybersecurity GRC Analyst
Cybersecurity GRC Analyst

Copeland India Private Ltd. • Quezon City

Hybrid
PHP 700,000 - 1,000,000
Flexible benefits plans
Paid parental leave
Vacation and holiday leave
Associate Specialist, GRC
Associate Specialist, GRC

Concentrix • Morong

On-site
PHP 500,000 - 1,200,000
Head of Security GRC (Governance, Risk & Compliance)
Head of Security GRC (Governance, Risk & Compliance)

Capacita Human Resource Management Consultancy • Philippines

On-site
PHP 1,800,000 - 3,500,000
Associate Specialist, Governance, Risk and Compliance
Associate Specialist, Governance, Risk and Compliance

Concentrix Philippines • Pampanga

On-site
PHP 900,000 - 1,500,000