Information Security Analyst

Posted:
6/10/2024, 5:00:00 PM

Location(s):
Manila, Metro Manila, Philippines ⋅ Metro Manila, Philippines

Experience Level(s):
Junior ⋅ Mid Level ⋅ Senior

Field(s):
IT & Security

Bill Gosling Outsourcing is committed to the career development of our people. If you are interested in joining a company with modern facilities and a team environment, click on the “Apply” button to get started!

  • Hands on installation, support, configuration and maintenance of Bill Gosling’s network and security equipment (hardware and software).
  • Create and assist with the maintenance of Business Management System and Business Continuity Management Manual including: Request for Change, Incident, Problem and Risk Identification process per Bill Gosling’s ISO 9001/27001 processes related to networking and security infrastructure.  Ensure information is accurate and complete and provide clarification as requested.  Execute changes upon approval.
  • Manage the securitization of LAN, WAN, routers/switches, internal/external connectivity, Firewalls, VPN, VOIP, wireless and related network/security technologies as required.
  • Creation and maintenance of internal and external information security documentation such as client/vendor/internal audits.
  • Participation in Disaster Recovery / Business Continuity / Cyber Response planning and testing.
  • Contribute to operational and support best practices and standard process development through secure practices.
  • Ensure network and security infrastructure and related procedures support business requirements.
  • Collaborate with, support, and provide coverage for other roles within the IT department as needed.
  • Perform other duties as assigned by management and/or supervisor.
  • Deal with clients in a professional and appropriate manner, in accordance with Bill Gosling Outsourcing’s “Promise of Performance” and “The Gosling Theory” and all Company Policies
  • On-call and after-hours work required
  • Ability to travel to/from branch offices if required
  • Highly available and reliable in times of emergency changes and/or support
  • Contact person for Network / Information Security related matters
  • Participation in weekly Change Advisory Board (CAB), Control Self-Assessment (CSA) Board and Information Security and Risk meetings
  • Logging of RFCs, Incidents, Problems and Risks per Bill Gosling’s ISO 27001 and PCI DSS standard processes.
  • Function as an internal consulting resource on network, information security issues and/or coordinate information security efforts with the internal Control Self-Assessment (CSA) team or other business functions
  • Conduct/complete information security risk assessment programs including internal, vendor and client assessments
  • Provide, coordinate and/or assist with network and information security awareness, Incident response and change management, Business continuity & disaster recovery programs and serve as the information security contact for all internal/external users/clients/vendors/contractors
  • Ensure the secure operation of the organization’s computer systems, servers, and network connections. 
  • Audit network and user activity in addition to assisting with the maintenance of the Branch Test/Task Schedule.
  • Perform internal/external vulnerability scanning, reporting and remediation
  • Determine network and security needs, develop, and implement solutions.
  • Identification of non-conforming processes, security or services
  • Report access privileges inappropriate to job duties to the MC and/or VP for correction
  • Internal consulting related to understanding of ISO 9001/27001(Security) standard
  • Understanding of PCIDSS and requirements related to certification at Bill Gosling Outsourcing
  • Champion company core values and other company programs
  • Other duties as assigned

Education

Post-graduate degree in the Information Security field or equivalent

Experience

Minimum two years of work experience in IT and/or Information Security

Knowledge of computer networks, information systems, infrastructure and applications

Ability to troubleshoot, configure and deploy information systems from a security perspective considered an asset

Certificates, Licenses, & Registration:

CISSP Certified, or be able to pass the CISSP Official Exam within time allotted, or country specific equivalent

Cisco CCNA certified in R&S and/or in Security, or be able to pass the Exam(s) within time allotted, or country specific equivalent

Reports to: Information Security Team Lead/Manager