Senior Vendor Information Security Analyst
Manila, Manulife Business Processing Services
ManulifeManulife is a leading financial services group. We provide financial advice, insurance, as well as wealth and asset management solutions for individuals, groups and institutions.
We are a leading financial services provider committed to making decisions easier and lives better for our customers and colleagues around the world. From our environmental initiatives to our community investments, we lead with values throughout our business. To help us stand out, we help you step up, because when colleagues are healthy, respected and meaningfully challenged, we all thrive. Discover how you can grow your career, make impact and drive real change with our Winning Team today.
Senior Vendor Information Security Analyst, Vendor Information Security Management
The Senior Vendor Information Security Analyst, Vendor Information Security Management reports locally to the Vendor Information Security Manager in MBPS and is responsible for supporting the VISM team in the delivery of Third-Party Risk Management Center of Expertise (COE) services. The incumbent will have a deep understanding of Information Security industry standards and best practices. The individual is accountable for driving and monitoring compliance to the Company’s Third-Party Risk Management Policy. As a subject matter expert, the incumbent is expected to contribute to development and delivery of vendor information security management training and provide input to relevant policies, processes and tools. In this capacity, the individual must be skilled in influencing others to assess and monitor vendor information security risk following the risk management policy.
Strong experience on the vendor risk assessment process across segments of Manulife:
Global Wealth & Asset Management (GWAM)
Group Functions Technology & Global Data (GFT&GD)
Enterprise Technology Services (ETS)
Leads the peer review of analyst work and spearhead new hire training for new members.
Conducts skills verification, training and calibration to facilitate the effective awareness and application of vendor information security, third-party risk management policy and best practices.
Effective oversight of the operations of the different segments, provides operational updates to the VISM Manager.
Serve as a subject matter expert in interpreting requirements and the first point of contact in addressing escalations.
Escalates complex risk issues to the MBPS VISM Manager and to the Onshore Segment Leads for resolution.
Develop and maintain standard operating procedures (SOPs).
Leads optimization and strategic projects and ensure process documentations and quality framework are up to date.
Support IT audits conducted by Audit Services, regulators, clients and third-party auditors.
Stay informed about the latest developments in the information security management field.
Perform any other job-related instructions, as requested, with reasonable accommodation.
3+ years’ experience in vendor management or third-party risk, Information Security Risk and Control, Internal Audit or Corporate Procurement or Contracts
3+ years in a professional environment
Graduate of 4 year course (Computer Science, Business or Finance preferred, but not required).
Knowledge of IT principles, operations and processes are important.
Experience with data cleanup projects involving vendor types of information
Proven management and leadership skills.
Demonstrated ability to meet deliverables on time
Familiarity with large scale company systems, databases and reporting tools – experience in Process Unity is preferred.
Strong interpersonal skills and service-oriented attitude
Exceptional multitasking skills with an aptitude to make the right decision on competing priorities and deadlines
Strong PC skills and proficiency with MS Excel, Word, Access and Sharepoint
Excellent communication skills including presentation skills with demonstrated ability to present at all organization levels.
Attentive to details and quality, well-organized, innovative and result driven;
Self-starter with high level of initiative;
Exercises good judgment;
Operates in a professional and ethical manner with customers and vendors;
About Manulife and John Hancock
Manulife Financial Corporation is a leading international financial services group that helps people make their decisions easier and lives better. With our global headquarters in Toronto, Canada, we operate as Manulife across our offices in Asia, Canada, and Europe, and primarily as John Hancock in the United States. We provide financial advice, insurance, and wealth and asset management solutions for individuals, groups and institutions. At the end of 2022, we had more than 40,000 employees, over 116,000 agents, and thousands of distribution partners, serving over 34 million customers. At the end of 2022, we had $1.3 trillion (US$1.0 trillion) in assets under management and administration, including total invested assets of $0.4 trillion (US $0.3 trillion), and segregated funds net assets of $0.3 trillion (US$0.3 trillion). We trade as ‘MFC’ on the Toronto, New York, and the Philippine stock exchanges, and under ‘945’ in Hong Kong.
Manulife is an Equal Opportunity Employer
At Manulife/John Hancock, we embrace our diversity. We strive to attract, develop and retain a workforce that is as diverse as the customers we serve and to foster an inclusive work environment that embraces the strength of cultures and individuals. We are committed to fair recruitment, retention, advancement and compensation, and we administer all of our practices and programs without discrimination on the basis of race, ancestry, place of origin, colour, ethnic origin, citizenship, religion or religious beliefs, creed, sex (including pregnancy and pregnancy-related conditions), sexual orientation, genetic characteristics, veteran status, gender identity, gender expression, age, marital status, family status, disability, or any other ground protected by applicable law.
It is our priority to remove barriers to provide equal access to employment. A Human Resources representative will work with applicants who request a reasonable accommodation during the application process. All information shared during the accommodation request process will be stored and used in a manner that is consistent with applicable laws and Manulife/John Hancock policies. To request a reasonable accommodation in the application process, contact email@example.com.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Information Security Specialist jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open IT Security Analyst jobs
- Open Senior Information Security Analyst jobs
- Open Consultant SOC / CERT H/F jobs
- Open Senior Information Security Engineer jobs
- Open Information Security Officer jobs
- Open Security Operations Engineer jobs
- Open Analyste CERT / Incident Responder junior (H/F) jobs
- Open Ingénieur DevSecops H/F jobs
- Open Staff Security Engineer jobs
- Open Cybersecurity Consultant jobs
- Open Senior Security Architect jobs
- Open Chief Information Security Officer jobs
- Open Analyste CERT / Incident Responder senior (H/F) jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Senior Security Analyst jobs
- Open o365 Security Architect jobs
- Open Principal Security Engineer jobs
- Open Senior Cyber Security Engineer jobs
- Open Staff Product Security Engineer jobs
- Open Electronic Warfare Advanced Tactical Trainer jobs
- Open Security Researcher jobs
- Open Product Security Engineer jobs
- Open Cyber Security Architect jobs
- Open SOC-related jobs
- Open GCP-related jobs
- Open Risk assessment-related jobs
- Open Governance-related jobs
- Open Network security-related jobs
- Open Pentesting-related jobs
- Open ISO 27001-related jobs
- Open CISM-related jobs
- Open Analytics-related jobs
- Open SaaS-related jobs
- Open Threat intelligence-related jobs
- Open IAM-related jobs
- Open Malware-related jobs
- Open Security Clearance-related jobs
- Open Vulnerability management-related jobs
- Open Java-related jobs
- Open CISA-related jobs
- Open Security assessment-related jobs
- Open DevOps-related jobs
- Open Kubernetes-related jobs
- Open Forensics-related jobs
- Open APIs-related jobs
- Open DoD-related jobs
- Open SQL-related jobs
- Open IDS-related jobs