Sr Cybersecurity Analyst - GRC

Dexcom Philippines

Cebu City

On-site

PHP 1,200,000 - 1,800,000

Full time

21 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Comprehensive benefits program
Career development opportunities
Global growth exposure

Job summary

Dexcom Philippines is seeking a Senior Cybersecurity Analyst to join the GRC Information Security team. You will lead audit readiness, risk assessments, and GRC process improvements across the organization.

The role involves coordinating with control owners, auditors, and stakeholders to ensure regulatory compliance, evidence collection, and remediation tracking using OneTrust and other GRC tools. A strong background in ISO 27001 and NIST frameworks is expected.

Qualifications

  • Bachelor's degree in information security or related field.
  • 5+ years of experience in cybersecurity, IT risk, or audit.
  • Experience configuring or supporting GRC platforms such as OneTrust, Archer, ServiceNow GRC, AuditBoard or LogicGate.
  • Knowledge of ISO 27001, NIST CSF, NIST 800-53, PCI DSS, SOC 2 or HIPAA.
  • Experience supporting audit readiness, evidence collection, and remediation.
  • Ability to work with cross-functional teams.
  • Strong analytical and reporting skills.
  • Ability to plan, organize and execute GRC services.
  • Strong written and verbal communication.
  • Ability to resolve issues with stakeholders.

Responsibilities

  • Coordinate audit readiness and remediation follow-up for internal and external audits.
  • Support certification, compliance, and assessment activities with control owners and auditors.
  • Conduct risk assessments and track treatment plans and risk residuals.
  • Track control gaps, findings, risks, remediation plans, and closure.
  • Map regulatory and internal policy requirements to controls and reporting in the GRC platform.
  • Perform control mapping, gap analysis, and compliance assessments.
  • Support control testing, evidence collection, and monitoring.
  • Generate reports and dashboards on audit status, remediation progress, and risk trends.
  • Validate data quality and improve completeness and accuracy of records.
  • Configure, maintain and optimize OneTrust GRC workflows and permissions.

Skills

5+ years cybersecurity
GRC platform experience
ISO 27001
NIST CSF
Excellent communication

Education

Bachelor's degree in information security or related

Tools

OneTrust GRC
Archer
ServiceNow GRC
AuditBoard
LogicGate

Job description

Job Description:

The Company

Dexcom Corporation (NASDAQ DXCM) is a pioneer and global leader in continuous glucose monitoring (CGM). Dexcom began as a small company with a big dream: To forever change how diabetes is managed. To unlock information and insights that drive better health outcomes. Here we are 25 years later, having pioneered an industry. And we're just getting started. We are broadening our vision beyond diabetes to empower people to take control of health. That means personalized, actionable insights aimed at solving important health challenges. To continue what we've started: Improving human health.

We are driven by thousands of ambitious, passionate people worldwide who are willing to fight like warriors to earn the trust of our customers by listening, serving with integrity, thinking big, and being dependable. We've already changed millions of lives and we're ready to change millions more. Our future ambition is to become a leading consumer health technology company while continuing to develop solutions for serious health conditions. We'll get there by constantly reinventing unique biosensing-technology experiences. Though we've come a long way from our small company days, our dreams are bigger than ever. The opportunity to improve health on a global scale stands before us.

Meet The Team

The Governance, Risk & Compliance (GRC) team partners with business, technology, privacy, legal, and security stakeholders to strengthen the organization's cybersecurity and compliance posture. We help identify and manage cyber risk, support regulatory and industry compliance programs, drive audit readiness, and promote a culture of security across the enterprise.

Dexcom is seeking a Senior Cybersecurity Analyst to join the GRC Information Security team and support information security compliance, certification, audit, and risk management activities. The Senior Cybersecurity Analyst will coordinate with control owners, business stakeholders, auditors, and cybersecurity teams to prepare for audits, track findings, support risk treatment plans, and improve the consistency and effectiveness of GRC processes. This position will also contribute to security control assessment, testing, documentation, metrics, and continuous improvement efforts. And this role will manage and optimize the OneTrust GRC platform to support risk assessments, compliance workflows, evidence collection, control gap tracking, remediation activities, and reporting.

Where You Come In
  • You will coordinate audit readiness, evidence collection, control owner preparation, audit workflow tracking, findings management, and remediation follow-up for internal and external audits.
  • You will support security certification, compliance, and assessment activities by partnering with control owners, cybersecurity teams, business stakeholders, and auditors.
  • You will conduct and support risk assessments using defined risk criteria, scoring methodologies, risk tolerance levels, and treatment tracking processes.
  • You will track control gaps, audit findings, risks, remediation plans, and risk treatment activities through closure.
  • You will support mapping of applicable regulatory, framework, and internal policy requirements to controls, assessments, evidence requests, and reporting within the GRC platform.
  • You will perform control mapping, gap analysis, and compliance assessments against applicable frameworks, standards, regulations, and internal policy requirements.
  • You will support control testing, evidence collection, and continuous monitoring activities to assess control effectiveness and identify remediation needs.
  • You will generate and maintain reports, dashboards, metrics, and status updates that communicate audit status, remediation progress, control health, risk trends, and compliance indicators.
  • You will validate GRC data quality and work with stakeholders to improve completeness, accuracy, and consistency of records, assessments, evidence, and reporting.
  • You will configure, maintain, and support the OneTrust GRC platform to enable security risk assessments, compliance, audit, remediation, and reporting workflows.
  • You will manage user access, permissions, templates, workflows, assessments, and reporting configurations in alignment with defined GRC and cybersecurity requirements.
  • You will evaluate OneTrust features, releases, and configuration options and recommend practical improvements to usability, workflow efficiency, reporting, and stakeholder experience.
  • You will identify opportunities to improve GRC processes, workflows, templates, documentation, reporting, and automation.
  • You will support stakeholder enablement by developing guidance, job aids, and communications for OneTrust users, control owners, and GRC stakeholders.
  • You will monitor changes in regulations, industry standards, and best practices and help translate applicable changes into GRC processes, assessments, and reporting.
What Makes You Successful
  • You possess a bachelor's degree in information security, Information Systems, Computer Science, Business, or a related field, or equivalent practical experience.
  • You bring 5+ years of experience in cybersecurity, information security, IT risk management, compliance, audit, or a related information technology function, or an equivalent combination of education and experience.
  • Your experience configuring, administering, or supporting a GRC platform such as OneTrust, Archer, ServiceNow GRC, AuditBoard, LogicGate, or a similar tool.
  • Your working knowledge of cybersecurity, risk, and compliance frameworks such as ISO 27001, NIST CSF, NIST 800-53, PCI DSS, SOC 2, HIPAA, or similar standards.
  • Your experience supporting audit readiness, evidence collection, control testing, compliance assessments, issue tracking, and remediation activities.
  • Your ability to support risk assessments, control gap analysis, risk treatment plans, and remediation tracking across business and technology stakeholders.
  • Your ability to effectively work in cross-functional teams and collaborate with stakeholders from various departments.
  • Your strong analytical skills, including the ability to analyze GRC data, identify trends, validate data quality, and develop useful metrics or reports.
  • Your ability to plan, organize, and execute work related to GRC services.
  • Your strong written and verbal communication skills, with the ability to translate cybersecurity risk, compliance, and audit concepts into clear business language.
  • Your ability to partner with control owners, business stakeholders, auditors, and cybersecurity teams to resolve issues and drive audit, risk, and compliance activities to completion.
Nice To Have Qualifications
  • OneTrust GRC experience or certification.
  • Experience supporting cybersecurity, privacy, audit, or compliance activities in a regulated environment, such as medical device, healthcare, life sciences, financial services, or technology.
  • Professional certification such as CISSP, CISA, CISM, CRISC, Security+, ISO 27001 Lead Implementer, or ISO 27001 Lead Auditor.
  • Experience developing GRC dashboards, metrics, workflow automation, or reporting processes.
What You’ll Get
  • A front row seat to life changing CGM technology. Learn about our brave #dexcomwarriors community.
  • A full and comprehensive benefits program.
  • Growth opportunities on a global scale.
  • Access to career development through in-house learning programs and/or qualified tuition reimbursement.
  • An exciting and innovative, industry-leading organization committed to our employees, customers, and the communities we serve.
Travel Required
  • 0-5%
Experience And Education Requirements
  • Typically requires a Bachelor's degree in a technical discipline, and a minimum of 5-8 years related experience or Master's degree and 2-5 years equivalent industry experience or a PhD and 0-2 years experience.

To all Staffing and Recruiting Agencies: Our Careers Site is only for individuals seeking a job at Dexcom. Only authorized staffing and recruiting agencies may use this site or to submit profiles, applications or resumes on specific requisitions. Dexcom does not accept unsolicited resumes or applications from agencies. Please do not forward resumes to the Talent Acquisition team, Dexcom employees or any other company location. Dexcom is not responsible for any fees related to unsolicited resumes/applications.

AI in Hiring Notice

We may use AI supported tools to help make our hiring process more efficient, consistent, and accessible for candidates around the world. All hiring decisions are made by people.

At Dexcom, we are committed to providing a fair and inclusive recruitment process, and welcome candidates of all genders and gender identities to apply. If any wording in this description appears unintentionally gendered or exclusionary, please be assured this is not intentional.

Should a reasonable accommodation be necessary to aid a disability, requests should be sent to Dexcom Talent Acquisition at talentacquisition@dexcom.com.

#DexcomPhilippines
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr Cybersecurity Analyst - GRC
Sr Cybersecurity Analyst - GRC

Dexcom Philippines • Philippines

On-site
PHP 900,000 - 1,500,000
Full benefits program
Career growth opportunities
Learning & development programs
+1
Sr Cybersecurity Analyst - GRC
Sr Cybersecurity Analyst - GRC

Dexcom Inc. • Philippines

On-site
PHP 900,000 - 1,300,000
Full benefits program
Career development opportunities
Global growth opportunities
+1
Sr Cybersecurity Analyst - GRC Manila, Philippines + 1 more Posted 20 hours ago
Sr Cybersecurity Analyst - GRC Manila, Philippines + 1 more Posted 20 hours ago

Dexcom Inc. • Manila

On-site
PHP 1,200,000 - 1,800,000
Comprehensive benefits
Career development
Global opportunities
Sr Cybersecurity Analyst
Sr Cybersecurity Analyst

Dexcom Philippines • Philippines

On-site
PHP 1,200,000 - 1,700,000
Staff Cybersecurity Engineer (SecOps)
Staff Cybersecurity Engineer (SecOps)

Dexcom Philippines • Philippines

On-site
PHP 1,800,000 - 2,400,000
Comprehensive benefits
Career development
Tuition reimbursement
+1
Staff Cybersecurity Engineer SecOps
Staff Cybersecurity Engineer SecOps

Dexcom Philippines • Philippines

On-site
PHP 1,200,000 - 2,400,000
Full benefits
Career growth
Tuition reimbursement
+1
Sr Staff Program Manager
Sr Staff Program Manager

Dexcom Philippines • Philippines

Hybrid
PHP 1,800,000 - 2,200,000
Comprehensive benefits
Career growth opportunities
Tuition reimbursement
Sr Staff Program Manager
Sr Staff Program Manager

Dexcom Philippines • Taguig

Hybrid
PHP 1,800,000 - 2,400,000
Comprehensive benefits
Global growth opportunities
Career development programs
+1
Advanced Support Specialist 1
Advanced Support Specialist 1

Dexcom Philippines • Philippines

Hybrid
PHP 300,000 - 420,000
Comprehensive benefits program
Growth opportunities on a global scale
Career development via in-house学习 orTu
Sr DevOps Engineer
Sr DevOps Engineer

Dexcom Philippines • Cebu City

On-site
PHP 1,200,000 - 2,400,000
Comprehensive benefits
Career growth
Tuition reimbursement
+2