Senior Manager – InfoSec Risk and Compliance (Clark/ Onsite)

Posted 2 Days Ago
Be an Early Applicant
Pampanga, Davao, Davao del Sur, Davao, PHL
In-Office
Senior level
Artificial Intelligence • Analytics
The Role
Leads enterprise information security risk and compliance programs, including framework implementation, risk assessments, vulnerability analysis, audits, vendor risk management, regulatory reporting, security training, and remediation. Partners with IT, Legal, and business teams to maintain compliance with ISO 27001, SOC 2, GDPR, and related standards. Presents reports to senior leadership and the board while building and mentoring a risk and compliance team. The role is onsite in Clark, Pampanga, Philippines.
Summary Generated by Built In
Company Description

Artificial Intelligence. Automation. Cloud engineering. Advanced analytics. For business leaders, these are key factors of success. For us, they’re our core expertise.
We work with iconic brands worldwide. We bring them a unique value proposition through market-leading technology and business process excellence.

We’ve created over 200 unique inventions under several patents across AI and other critical technologies. Leveraging our advanced products and platforms, we drive digital transformation, optimize critical business operations, reinvent experiences, and pioneer new solutions, all provided through a seamless “as a service” model.

For each company, we provide new keys for their businesses, the people they work with, and the customers they serve. We tailor proven and rapid formulas, to fit their unique DNA. We bring together human expertise and artificial intelligence to develop digital chemistry. This unlocks new possibilities, transformative outcomes and enduring relationships.

Sutherland
Unlocking digital performance. Delivering measurable results.

Job Description

We're looking for an experienced Senior Manager – InfoSec Risk and Compliance to join our organization in Angeles, Philippines. In this strategic leadership role, you will oversee the development, implementation, and management of comprehensive information security risk and compliance programs. You will drive organizational alignment with regulatory requirements, manage security risk assessments, and ensure adherence to industry standards and best practices. This position requires a decisive leader with strong analytical capabilities and meticulous attention to detail.

  • Develop and execute information security risk management strategies aligned with organizational objectives and regulatory requirements
  • Design, implement, and maintain compliance frameworks and policies in accordance with applicable standards (ISO 27001, SOC 2, GDPR, and other relevant regulations)
  • Conduct comprehensive risk assessments and vulnerability analyses to identify, evaluate, and prioritize security risks across the organization
  • Lead cross-functional teams to remediate identified risks and compliance gaps within established timelines
  • Manage audit activities, including internal and external audits, and coordinate remediation efforts to address findings
  • Establish and oversee vendor risk management programs to ensure third-party security compliance
  • Develop and deliver security awareness and compliance training programs to all organizational levels
  • Prepare and present risk and compliance reports to senior leadership and the board of directors
  • Stay current with evolving regulatory landscapes and emerging security threats to ensure organizational preparedness
  • Collaborate with IT, Legal, and Business units to integrate security and compliance into organizational processes
  • Manage compliance calendars and ensure timely submission of regulatory documentation and certifications
  • Build and mentor a high-performing compliance and risk management team

Qualifications

Required Qualifications:

  • 8+ years of progressive experience in information security, risk management, or compliance functions
  • 5+ years in a senior management or leadership role overseeing security and compliance programs
  • Demonstrated expertise in risk assessment methodologies and frameworks (NIST, ISO 27001, COBIT)
  • Strong knowledge of regulatory requirements and compliance standards (GDPR, SOC 2, HIPAA, PCI-DSS, or equivalent)
  • Proven ability to develop and implement security policies, procedures, and governance frameworks
  • Excellent analytical and problem-solving skills with the ability to translate complex security concepts for diverse audiences
  • Strong organizational and project management capabilities with demonstrated ability to manage multiple initiatives simultaneously
  • Exceptional communication and stakeholder management skills across all organizational levels
  • Experience conducting security risk assessments and audit management

Preferred Qualifications:

  • Professional certifications such as CISSP, CISM, or CCSK is added advantage
  • Experience with Governance, Risk, and Compliance (GRC) tools and platforms
  • Background in incident response management and security incident investigation
  • Familiarity with vendor risk management and third-party security assessments
  • Experience managing security budgets and resource allocation
  • Knowledge of emerging security threats and industry trends
  • Experience in regulated industries (financial services, healthcare, telecommunications)

Additional Information

Interested candidates must be willing to work onsite in Clark, Pampanga

Skills Required

  • 8+ years of progressive experience in information security, risk management, or compliance functions
  • 5+ years in a senior management or leadership role overseeing security and compliance programs
  • Expertise in risk assessment methodologies and frameworks, including NIST, ISO 27001, and COBIT
  • Strong knowledge of regulatory requirements and compliance standards, including GDPR, SOC 2, HIPAA, PCI-DSS, or equivalent
  • Experience developing and implementing security policies, procedures, and governance frameworks
  • Excellent analytical and problem-solving skills
  • Strong organizational and project management capabilities
  • Exceptional communication and stakeholder management skills
  • Experience conducting security risk assessments and managing audits
  • Professional certification such as CISSP, CISM, or CCSK
  • Experience with Governance, Risk, and Compliance tools and platforms
  • Background in incident response management and security incident investigation
  • Familiarity with vendor risk management and third-party security assessments
  • Experience managing security budgets and resource allocation
  • Knowledge of emerging security threats and industry trends
  • Experience in regulated industries such as financial services, healthcare, or telecommunications
  • Willingness to work onsite in Clark, Pampanga

Sutherland Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Sutherland and has not been reviewed or approved by Sutherland.

  • Flexible Benefits Flexible scheduling and work-from-home arrangements are offered on certain programs, supported by remote-work infrastructure and virtual IT support. Program-specific flexibility is emphasized for “Sutherland Anywhere” roles.
  • Leave & Time Off Breadth Paid time off and paid training are positioned as standard elements, with some materials also highlighting flexible vacation days. Core leave features are presented as part of the baseline package.
  • Strong & Reliable Incentives Performance incentives, bonuses, and commissions are available on selected programs to supplement base pay. Goal-linked earnings opportunities are described for certain functions.

Sutherland Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Pittsford, NY
39,547 Employees
Year Founded: 1986

What We Do

We make digital ?????™ by combining human-centered design with real-time Analytics, AI, Cognitive Technology & Automation to create exceptionally engineered Brand Experiences! Sutherland is an experience-led digital transformation company. Our mission is to deliver exceptionally engineered experiences for customers and employees today, that continue to delight tomorrow. For over 35 years, we have cared for our customers’ customers, delivering measurable results and accelerating growth. Our proprietary, AI-based products and platforms are built using robust IP and automation. We are a team of global professionals, operationally effective, culturally meshed, and committed to our clients and to one another. We call it One Sutherland. #MakeDigitalHuman

Similar Jobs

UL Solutions Logo UL Solutions

Intern

Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
Remote or Hybrid
Philippines
15000 Employees

UL Solutions Logo UL Solutions

Information Technology Manager

Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
Remote or Hybrid
Philippines
15000 Employees

CrowdStrike Logo CrowdStrike

Associate HR Services Partner (Remote, PHL)

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
Philippines
11000 Employees

Smartly Logo Smartly

Customer Success Manager

AdTech • Artificial Intelligence • Digital Media • Marketing Tech • Social Media • Software • Generative AI
Easy Apply
Remote or Hybrid
Philippines
805 Employees

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Artificial Intelligence • Fintech • Software
New York, New York
9 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account