HirePortal

IT Security Assistant Manager

  • ibex
  • Manila, Philippines
  • PHP 960,000 – PHP 1,440,000

Overview

To protect IBEX infrastructure from emerging threats and support the organization in achieving its business objectives through proactive and effective information security practices.

This position serves as an AM IT Security resource with a strong background in Network and Cyber Security. The role involves coordinating and supporting the implementation of the IT Security Roadmap and security processes to safeguard IBEX Global assets.

Responsibilities

  • Oversee enterprise security operations, ensuring effective monitoring of security events, threats, and risks across infrastructure
  • Lead and guide incident response activities, ensuring timely investigation, escalation, containment, and resolution of security incidents
  • Review and analyze complex security incidents and provide strategic recommendations for remediation and risk reduction
  • Ensure enforcement of security baselines and hardening standards across all network and infrastructure components
  • Drive vulnerability management activities, including assessment oversight, risk prioritization, and remediation tracking with IT teams
  • Ensure implementation and effectiveness of security controls to protect organizational data, systems, and networks
  • Manage and oversee enterprise security technologies including NGFW, IDS/IPS, WAF, SIEM, Email Security, Endpoint Security, IAM, PAM/PIM, and wireless security solutions
  • Ensure continuous compliance with PCI-DSS, SOC 2, ISO 27001, and CIS Controls through control validation and coordination with stakeholders
  • Lead security assessments, reporting, and executive-level communication of security posture and risks
  • Govern incident and vulnerability management processes, ensuring proper documentation, tracking, and lessons learned implementation
  • Oversee SIEM use case development, tuning, and optimization to improve detection accuracy and reduce false positives
  • Lead threat hunting initiatives using MITRE ATT&CK framework and ensure proactive identification of emerging threats
  • Collaborate with Tier-2 and senior SOC teams to enhance detection capabilities and improve network security posture
  • Coordinate with IT infrastructure, application, and business teams to ensure security is embedded in operational and change processes
  • Drive improvements in security tools, automation, and operational efficiency across SOC and security platforms
  • Provide guidance on cloud security controls across AWS, Azure, and GCP environments and ensure alignment with best practices
  • Liaise with vendors for escalations, security solutions, and technical issue resolution
  • Evaluate, recommend, and oversee the implementation of new security technologies, integrations, and platform enhancements including conducting security proof-of-concept (POC) evaluations
  • Contribute to the development and enhancement of enterprise security policies, standards, and procedures
  • Lead security assessments of new technologies, applications, and infrastructure projects to ensure compliance with security requirements prior to production deployment

Qualifications

Non-Negotiable:

  • Overseeing end-to-end security operations, including SIEM administration, threat detection, and ensuring visibility across infrastructure.
  • Team Management
  • Leading incident response (investigation, containment, escalation, resolution) and providing deeper analysis with strategic risk-based remediation guidance.
  • Driving vulnerability assessment, prioritization and ensuring security baselines/hardening and control effectiveness across systems.
  • Ensuring compliance with frameworks (ISO 27001, SOC2, PCI-DSS), guiding security tooling (NGFW, NDR, SIEM, etc.), vendor coordination, security reviews.

Additional Skills

  • Strong understanding of infrastructure security, SOC operations, and compliance frameworks
  • 'Strong knowledge of enterprise information security, risk management, and governance
  • Solid understanding of network security (firewalls, IDS/IPS, VPN, DNS, WAF) and secure architecture
  • Hands-on experience in administration of SIEM platforms, including tuning, correlation, and use case development
  • Experience in incident response, including investigation, escalation, containment, and reporting

Skills

  • Network Security
  • Incident Response
  • SIEM
  • Vulnerability Management
  • Firewall Management
  • IAM
  • Compliance

Related jobs

ibexApply for this job