Specialist (Cybersecurity)

NTUC FIRST CAMPUS LIMITED

Santo Niño 1st

On-site

PHP 1,200,000 - 1,800,000

Full time

2 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

NTUC FIRST CAMPUS LIMITED in the Philippines is seeking an experienced cybersecurity professional to lead risk governance, risk assessment, and incident response for enterprise systems. The role involves vulnerability management, security testing oversight, third‑party risk, security policy development, training, and collaboration with infrastructure, app teams, and vendors to strengthen defenses.

Minimum 3 years in cybersecurity, a Bachelor’s in CS/IT/Cybersecurity, and certifications such as

Qualifications

  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity or a related field.
  • Relevant professional certifications such as CISSP, CISM, or CISA are preferred.
  • Minimum of 3 years of experience in cybersecurity.
  • Experience in cybersecurity governance, technology risk, or compliance assurance.
  • Experience with security technologies such as firewalls, intrusion detection/prevention systems, and data encryption.

Responsibilities

  • Perform security risk assessments and advise on risk treatment plans.
  • Maintain cybersecurity risk registers and oversee remediation actions.
  • Review security testing reports and collaborate with application teams for remediation.
  • Conduct regular vulnerability scans, penetration testing, and risk assessments across devices, software, and cloud.
  • Lead employee training programs to mitigate phishing and social engineering risks.

Skills

Cybersecurity governance
Risk assessment
Incident response
Security testing
Vulnerability management

Education

Bachelor's degree in Computer Science/Information Technology/C cybersecurity

Tools

Firewalls
EDR
PAM
Vulnerability Scanning
WAF

Job description

Key Responsibilities

  • Perform security risk assessments, formulate and advise on a risk treatment plan, assist the business in performing business impact analysis,
  • Maintain cybersecurity risk registers, track remediation actions, and oversee security control testing.
  • Review security testing reports (e.g. vulnerability assessment, penetration testing and secure code review) and work with application teams for remediation.
  • Conduct regular vulnerability scans, penetration testing, and risk assessments to identify flaws across hardware, software, and cloud environments.
  • Research emerging cyber threat vectors, vulnerabilities (CVEs), and attacker methodologies to update defensive protocols proactively.
  • Work closely with Infrastructure and End User Support teams to identify and address any risks and gaps in the infrastructure, endpoints, and application systems
  • Collaborate with third-party vendors and contractors to ensure the security of outsourced systems and services meets the industrial best practice to configure, deploy, and maintain critical security infrastructure, including firewalls, antivirus software, data loss prevention (DLP) tools, and regular vulnerability scans.
  • Support vendor due-diligence process and help to guide overall third-party risk management efforts.
  • Design and lead employee training programs to mitigate human-centric risks like phishing, social engineering, and poor password hygiene (e.g. newsletters, trainings, phishing campaigns)
  • Lead the implementation of security protocols, establish robust system hardening standards across enterprise assets, conduct regular risk assessments on hardening control applied.
  • Policy & Framework Development: Design, update, and maintain enterprise cybersecurity policies, standards, and control frameworks aligned with business goals
  • Support and administer cybersecurity operations using enterprise security solutions (e.g. onboarding of privileged accounts to PAM, implementing WAF for website protection, and reviewing firewall rules, Tenable, Web defacement tools, report phishing tool management, etc.)
  • Support both internal audit and external audits (e.g. ISO 27001, NIST, OWASP)
  • Primary Point of Contact, and First Responder (monitoring and responding to alerts from Managed Services)
  • Perform log analysis, investigate and respond to security incidents, including suspicious activities, phishing attempts, malware infections and data breaches.
  • Collaborate with various teams to investigate, contain and remediate security incidents.


Education

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity or a related field
  • Relevant professional certifications such as CISSP, CISM, or CISA are preferred.


Experience

  • Minimum of 3 years of experience in cybersecurity
  • Experience in cybersecurity governance, technology risk, or compliance assurance
  • Experience with security technologies such as firewalls, intrusion detection/prevention systems, and data encryption
  • Has knowledge in security technologies such as Antivirus/Endpoint Detection and Response (EDR), Privilege Access Management (PAM), Vulnerability Scanning tools, Phishing reporting tools, Web Defacement monitoring tools and Web Application Firewall (WAF)
  • Familiarity with security assessment tools and techniques, including vulnerability scanning and penetration testing.
  • Experience in vendor and project management


Skills and Attributes

  • Excellent communication skills and the ability to explain complex technical concepts to non-technical stakeholders.
  • Deep understanding of network infrastructure, TCP/IP protocols, routers, switches, and secure architecture principles.
  • Strong analytical and problem-solving skills
  • Highly driven and willing to learn
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Junior Cyber Security Engineer/Analyst
Junior Cyber Security Engineer/Analyst

PM Consulting • Philippines

On-site
PHP 600,000 - 900,000
Cybersecurity Analyst
Cybersecurity Analyst

ContactPoint360 • Cebu City

On-site
PHP 900,000 - 1,300,000
Junior Cyber Security Engineer
Junior Cyber Security Engineer

Dormont Manufacturing Co • Philippines

On-site
PHP 420,000 - 620,000
Information Security Analyst
Information Security Analyst

Satellite Office • Metro Manila

On-site
PHP 1,200,000 - 1,600,000
Security Analyst / Network Security Analyst
Security Analyst / Network Security Analyst

RippedBoxStation • Philippines

On-site
PHP 260,000 - 420,000
Security Engineer
Security Engineer

AUTOMATED TECHNOLOGIES (ATI) INC • Philippines

On-site
PHP 600,000 - 900,000
Senior Cyber Security Engineer
Senior Cyber Security Engineer

Morgan McKinley • Philippines

On-site
PHP 1,200,000 - 2,400,000
IT Security Specialist
IT Security Specialist

ibex • Mandaluyong

On-site
PHP 420,000 - 640,000
Senior Security Consultant
Senior Security Consultant

Hunter's Hub Inc. • Taguig

On-site
IT Security Specialist
IT Security Specialist

Ibex Limited • Manila

On-site
PHP 600,000 - 900,000