Executive Recruitment Firm Monroe Consulting Group Philippines is recruiting on behalf of a financial technology company in the Philippines, operating as an Electronic Money Issuer licensed by the Bangko Sentral ng Pilipinas. They provide financial services through their e-wallet and develop payment solutions for businesses nationwide.
Job Summary
Our client is seeking an experienced and dynamic Senior Information Security Specialist. The role involves safeguarding systems and data by implementing robust security measures, ensuring compliance with financial and regulatory standards, and mitigating potential risks. It requires expertise in cybersecurity frameworks, incident response, risk assessment, and secure software development. Collaboration with various business units is essential to align security strategies with business objectives and optimize information protection processes.
The position is based onsite in Pasig City, Philippines.
Key Responsibilities
- Develop, implement, and maintain security policies, standards, and procedures to protect systems, data, and applications against cyber threats.
- Conduct risk assessments, vulnerability testing, and security audits to identify potential threats and recommend mitigation strategies.
- Monitor, analyze, and respond to security incidents, ensuring timely resolution and reporting of breaches.
- Implement and maintain secure coding techniques and guidelines in collaboration with the development team.
- Perform penetration testing and collaborate with third-party providers for advanced security evaluations.
- Integrate and manage security measures for third-party financial APIs and payment gateways to ensure compliance with industry standards.
- Optimize and monitor identity and access management (IAM) systems, ensuring appropriate permissions and roles across the organization.
- Collaborate with Finance, Business Development, Customer Care, and other stakeholders to align security objectives with business needs.
- Ensure compliance with financial regulations, such as PCI DSS and ISO 27001, while optimizing information security processes.
- Provide training and awareness programs to employees, ensuring a security-conscious culture across the organization.
Key Qualifications
- Bachelor's degree or equivalent experience in Information Security, Computer Science, Information Technology, or a related field.
- Over 5 years of experience in Information Security with a focus on the financial or fintech domain.
- Proficient in security frameworks such as ISO 27001, NIST, or CIS Controls.
- Experienced in AWS security services (e.g., IAM, AWS Shield, GuardDuty) and secure cloud configurations.
- Skilled in risk management, vulnerability scanning tools, and incident response processes.
- Familiar with financial APIs, payment gateways, and third-party integrations with a focus on secure transactions.
- Strong understanding of financial compliance requirements, including PCI DSS, GDPR, and AML/KYC.
- Hands-on experience with tools such as SIEM, firewalls, and endpoint protection systems.
- Excellent analytical and problem-solving skills, with the ability to assess security gaps and implement optimal solutions.
- Strong communication skills, both verbal and written, to articulate security policies and collaborate with cross-functional teams.
- Certifications such as CISSP, CEH, or CompTIA Security+ are highly desirable.
