R

Third-Party Security Risk Analyst - Japanese Bilingual

Job Description - Third-Party Security Risk Analyst - Japanese Bilingual

Job Expectations:

  • Position Type: Experienced - Senior/Lead
  • Employment Type: Full-Time, Permanent (Direct Hire)
  • Work Setup & Location: Hybrid (2-3x onsite per week) - Commonwealth Avenue, Quezon City
  • Work Schedule: Weekdays; Mid/Night Shift
  • Budget: Up to ₱90K Salary + ₱50K Monthly Language Premium
  • Industry: Insurance & Financial Services

About the Job:

We are looking for a Vendor Information Security Senior Analyst to join our client's Vendor Information Security Management (VISM) / IT Governance team. In this role, you will assess and manage information security risks related to third-party vendors, including vendors supporting Japan and other regions. You will work with global teams to ensure vendor risks are properly assessed, documented, and addressed.

Key Responsibilities:

  • Perform information security risk assessments for new and existing vendors, including vendors supporting Japan and other regions.
  • Review vendor security documents such as audit reports, penetration testing reports, and vulnerability reports.
  • Conduct virtual vendor assessments and site visits when required.
  • Work closely with Procurement, business stakeholders, contract owners, Security, Privacy, Business Continuity, Legal, and Compliance teams.
  • Identify, document, and track security risks and control gaps related to vendor engagements.
  • Maintain accurate vendor risk records using tools such as Archer or ProcessUnity.
  • Support remediation tracking and communicate risk updates to stakeholders.
  • Support internal and external audits, including regulatory and client audits.
  • Conduct security reviews of vendor contracts in partnership with Legal and Compliance teams.
  • Ensure vendor security practices align with information security frameworks such as ISO 27001, NIST, and PCI DSS.
  • Stay updated on cybersecurity risks, industry trends, and regulatory requirements.
  • Contribute to improving vendor risk management processes, policies, and procedures.
  • Support other initiatives related to information security, IT governance, and business continuity.

Qualifications:

  • Bachelor's Degree in Computer Science, Business, Finance, or a related field.
  • At least 5 years of experience in Information Security, IT Risk, Governance, Compliance, Cybersecurity, Technology Audit, or Third-Party Risk Management.
  • Experience in vendor risk assessments and security control reviews.
  • Knowledge of IT risk and security frameworks such as ISO 27001 and NIST.
  • Experience with vendor risk management tools such as Archer or ProcessUnity is an advantage.
  • Experience in the financial services or insurance industry is a strong advantage.
  • CISA, CRISC, CISSP, or equivalent certification is preferred.
  • Strong analytical, communication, and stakeholder management skills.
  • Ability to manage multiple priorities in a global environment.
  • Japanese language proficiency: JLPT N1 is required.
  • Strong written and verbal communication skills in Japanese, with the ability to work effectively with Japan-based stakeholders and vendors.

-

RecruitNest is your trusted career partner, dedicated to connecting you with the right opportunities that match your skills, goals, and aspirations. We help you take the next step in your professional journey with personalized guidance and support.

Don't forget to follow us on LinkedIn to stay updated on upcoming and other job opportunities.

Original job Third-Party Security Risk Analyst - Japanese Bilingual posted on GrabJobs ©. To flag any issues with this job please use the Report Job button on GrabJobs.
Share Job
Share Job

Similar Third-Party Security Risk Analyst Jobs in the Philippines

GrabJobs is the no1 job portal in the Philippines, connecting you to thousands of jobs fast! Find the best jobs in the Philippines, apply in 1 click and get a job today!

Mobile Apps

Copyright © 2026 Grabjobs Pte.Ltd. All Rights Reserved.