Jobiglo

No results.

This job is no longer available

This job expired on 20/09/2026. It no longer accepts applications.

Cybersecurity Risk and Compliance Specialist

KPMG Philippines · Région Capitale Nationale

Hybrid 🇬🇧 English
NIST CSF NIST 800-30 NIST AI RMF ISO 27001 SOC 2 PCI DSS CIS Controls OWASP LLM/GenAI guidance AWS Azure GCP network security endpoint security encryption access management application security data security security risk assessment tools

Job description

About the role

The Cybersecurity Risk and Compliance Specialist will lead assessments of technology environments, solutions and third‑party services to identify security gaps, vulnerabilities and compliance issues. The role supports senior leadership by delivering clear risk insights and actionable mitigation strategies.

Key responsibilities

  • Conduct threat, risk, cyber‑maturity and compliance assessments across enterprise applications, cloud platforms, data pipelines, APIs and AI‑enabled solutions.
  • Evaluate security policies, governance practices and technical controls against frameworks such as NIST CSF, NIST 800‑30, ISO 27001, NIST AI RMF and OWASP GenAI guidance.
  • Identify cyber threats, attack vectors and AI‑related risks (e.g., prompt injection, model poisoning) that could impact business operations.
  • Recommend risk mitigation measures, improve security architecture and align controls with business objectives.
  • Prepare detailed assessment reports, executive summaries and present findings to senior leadership and technical teams.

Required profile

  • Bachelor’s or Master’s degree in Cybersecurity, Information Security, Computer Science or related field.
  • 3‑7 years of experience in cybersecurity audits, risk assessments and security risk management.
  • Strong knowledge of industry frameworks (NIST, ISO, SOC 2, PCI DSS, CIS Controls, OWASP).
  • Hands‑on experience with security risk assessment tools and methodologies.
  • Excellent analytical, problem‑solving and communication skills.

Required skills

  • NIST CSF, NIST 800‑30, NIST AI RMF, ISO 27001, SOC 2, PCI DSS, CIS Controls, OWASP LLM/GenAI guidance
  • Cloud security (AWS, Azure, GCP)
  • Network security, endpoint security, encryption, access management
  • Application security, API/integration security, data security
  • Security risk assessment tools and methodologies

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec KPMG Philippines.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Explore further

Salaries, guides and searches in the Philippines.

A question about this job?

Ask it here: you will get the full job summary by e-mail, right away.

💬 Chat with us on Telegram

Published 2 months ago

42 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

KPMG Philippines

Région Capitale Nationale