
Manager, Information Security (Validations)
- Makati City, Metro Manila
- Permanent
- Full-time
- Creating a framework for team member roles and responsibilities, emphasizing accountability, delivering results, creativity and innovation.
- Facilitating the hiring process to select knowledgeable and competent candidates for security roles.
- Strategically outlining operational goals and performance targets aligned with business priorities and evolving compliance requirements.
- Identifying skill gaps and mentoring team members to achieve their goals and grow professionally.
- Ensuring compliance with company policies and local employment regulations, and implementing corrective actions when necessary.
- Designing and maintaining a metrics and reporting framework to measure operational efficiency and maturity.
- Reporting daily, weekly, and/or monthly metrics and providing analysis to guide strategic decisions.
- Analyzing processes and trends to develop practical solutions and strategies.
- Leading documentation and review of policies and procedures to ensure relevance and accuracy.
- Coordinating with other InfoSec teams, compliance, and business units to achieve shared objectives.
- Advocating for a diverse and inclusive workforce that fosters creativity and innovation.
- Contributing to the CoE by owning and driving shared strategic initiatives, best practices, innovation, and stakeholder engagement.
- Driving AI-based automation and process optimization to enhance operational efficiency.
- Demonstrating flexibility and adaptability across multiple security domains, with a commitment to continuous learning and expertise development.
- Managing performance based on company policies and procedures.
- Collaborating with stakeholders to spearhead and/or implement reward and recognition initiatives that support team motivation and excellence.
- Certified Information Systems Security Professional (CISSP)
- Certified Information Security Manager (CISM)
- Strong leadership skills and ability to work effectively with business managers and key stakeholders.
- Ability to build professional relationships across all levels and understand business imperatives.
- Knowledge of standards such as ISO 27001, PCI-DSS, SOC1/2/3, HIPAA, SOC2+HITRUST, SOX, and FedRAMP.
- Excellent analytical skills and ability to manage multiple projects under tight deadlines.
- Project management skills including planning, scheduling, and resource management.
- Ability to lead and motivate cross-functional teams to achieve tactical and strategic goals.
- Strong communication skills and ability to influence stakeholders.
- Experience developing and maintaining policies, procedures, and standards.
- Familiarity with frameworks such as ISO 2700x, ITIL, and COBIT.
- Demonstrated flexibility in taking on various functions within the InfoSec domain.