RESPONSIBILITIES:
- Responsible for protecting corporate network based information assets from intentional or accidental destruction or modification while minimizing the impact upon those who need legitimate access to computer and communications systems and data.
- Assists in the advancement of Development & Security Operations (DevSecOps) Security Plan
- Assists in the compliance of internal and external audit findings on DevSecOps processes.
- Assists in the compliance to the security related Philippine laws
- R.A. 10173 (Data Privacy Act of 2012)
- R.A. 10175 (Cybercrime Prevention Act of 2012)
- Monitors and audits the enterprise Infrastructure (desktop, laptop, servers, network, application and databases) in compliance to DevSecOps policies, procedures and guidelines
- Confirm that monitoring and response activities are completed for security violations and attacks through incidents response tracking
- Ensure configurations for servers, laptops, and desktop as well as other equipment which are deployed throughout the corporate domain
- Investigate and advise on latest security related vulnerabilities to ensure infrastructure's security posture is strong
- Conducts security orientation & awareness and security vulnerability assessments & penetration testing for the enterprise hardware, software, database and network services and resources.
*REQUIREMENTS:
- Bachelor’s Degree in Computer Science, Information Technology, Computer Engineering, Electronics and Communications Engineering or any related course.
- With at least three (3) years solid experience in IT and/or Operational Security.
- Good understanding of the requirements of Philippine laws but not limited to Data Privacy Act (RA10173), Department of Information and Communications Technology Law (RA 10844), Copyright Law (RA 8293) and Cybercrime Prevention Act (RA10175).
- Experience in Firewalls, Windows Servers, Intrusion Detection systems, Virus Protection Software, Secure communications and internet/intranet security
- Experienced in the implementation of security strategies with different operating system platforms, applications, databases and network infrastructures.
- Preferably with experience in formulating, documenting and implementing security related policies, procedures, guidelines & forms and Problem Solving & Escalation Management
- Knowledgeable in monitoring, assessment, and treatment of Cyber Security Risks.
- Knowledgeable with Vulnerability Assessment and Penetration Testing (VAPT) tools.
- Good communication and writing skills (both in English and Filipino)