Third-Party Security Risk Analyst Japanese Bilingual
Quezon City - Philippines
Job Summary
Job Expectations:
- Position Type: Experienced - Senior/Lead
- Employment Type: Full-Time Permanent (Direct Hire)
- Work Setup & Location: Hybrid (2-3x onsite per week) - Commonwealth Avenue Quezon City
- Work Schedule: Weekdays; Mid/Night Shift
- Budget: Up to 90K Salary 50K Monthly Language Premium
- Industry: Insurance & Financial Services
About the Job:
We are looking for a Vendor Information Security Senior Analyst to join our clients Vendor Information Security Management (VISM) / IT Governance this role you will assess and manage information security risks related to third-party vendors including vendors supporting Japan and other regions. You will work with global teams to ensure vendor risks are properly assessed documented and addressed.
Key Responsibilities:
- Perform information security risk assessments for new and existing vendors including vendors supporting Japan and other regions.
- Review vendor security documents such as audit reports penetration testing reports and vulnerability reports.
- Conduct virtual vendor assessments and site visits when required.
- Work closely with Procurement business stakeholders contract owners Security Privacy Business Continuity Legal and Compliance teams.
- Identify document and track security risks and control gaps related to vendor engagements.
- Maintain accurate vendor risk records using tools such as Archer or ProcessUnity.
- Support remediation tracking and communicate risk updates to stakeholders.
- Support internal and external audits including regulatory and client audits.
- Conduct security reviews of vendor contracts in partnership with Legal and Compliance teams.
- Ensure vendor security practices align with information security frameworks such as ISO 27001 NIST and PCI DSS.
- Stay updated on cybersecurity risks industry trends and regulatory requirements.
- Contribute to improving vendor risk management processes policies and procedures.
- Support other initiatives related to information security IT governance and business continuity.
Qualifications:
- Bachelors Degree in Computer Science Business Finance or a related field.
- At least 5 years of experience in Information Security IT Risk Governance Compliance Cybersecurity Technology Audit or Third-Party Risk Management.
- Experience in vendor risk assessments and security control reviews.
- Knowledge of IT risk and security frameworks such as ISO 27001 and NIST.
- Experience with vendor risk management tools such as Archer or ProcessUnity is an advantage.
- Experience in the financial services or insurance industry is a strong advantage.
- CISA CRISC CISSP or equivalent certification is preferred.
- Strong analytical communication and stakeholder management skills.
- Ability to manage multiple priorities in a global environment.
- Japanese language proficiency: JLPT N1 is required.
- Strong written and verbal communication skills in Japanese with the ability to work effectively with Japan-based stakeholders and vendors.
-
RecruitNest is your trusted career partner dedicated to connecting you with the right opportunities that match your skills goals and aspirations. We help you take the next step in your professional journey with personalized guidance and support.
Dont forget to follow us on LinkedIn to stay updated on upcoming and other job opportunities.