Skip to content

IT Vulnerability Manager (Makati)

Job Category:

Information Tech

Job Level:


Open Date:




Close date:


Client Overview:

About Security Bank

We are the Philippines’ largest independent bank, having won countless awards over the years including the most prestigious industry award in both 2015 and 2016—the Bank of the Year – Philippines by The Banker.

We’re changing how people bank. From the moment customers enter our branches to their experience online, we make them feel valued and empowered.

Now, with more than 300 branches spanning the country, BetterBanking has become the gold standard in improving the banking lives of millions of Filipinos. But we’re far from done.

In our constant pursuit of excellence and improvement, we create teams that support our business and each other.

Client Industry:


Job Description and Qualification:


The Vulnerability Manager shall be responsible for ensuring that the regular vulnerability scanning and monitoring is conducted and coordinated with concerned units and that necessary patches are coordinated with Patch Manager to control, accept or mitigate the risk. The Manager shall ensure that all identified vulnerabilities are accounted and resolved within the agreed time frame.


1. Configure the vulnerability scanner and ensure that scans are scheduled and performed accordingly.
2. Conducts research and monthly checking of available patches from reputable sources.
3. Conducts research and attends training on common attack routes, new cyber security threats, trends and technologies to understand the controls needed in the IT environment.
4. Ensures that Vulnerability Assessment (VA) is performed on a regular basis and performed on applications that require VA (per policy or regulatory requirement) prior to production loading.
5. Reviews reports on vulnerability assessment that maybe provided by Security Operations Center and other parties.
6. Coordinates with Patch Manager and other concerned units to ensure that identified vulnerabilities are assessed, accepted or mitigated.
7. Coordinates with Network Operations Center (NOC), Incident Response Team (IRT), Security Operations Center (SOC) and other units on matters related to cyber security incidents due to unknown or identified vulnerability.
8. Keeps an inventory of all identified vulnerabilities and monitors status and actions taken to address the weakness.
9. Keeps an inventory of identified operating systems and applications that require patch updates.
10. Contributes to process improvement and recommends technology upgrade opportunities for the team
11. Assists the Head in preparing Management Reports
12. Performs other tasks that may be assigned from time to time


  • Minimum Education Required/Course:
  • Graduate of any business or related course.
  • Minimum Work Experience Required:
    • Minimum 3-5 years of experience in Information Technology, IT Security, Information Security or IS Audit 
  • Knowledge on IT and Bank Operations, Vulnerability Scanning / Management, Information Security, Risk Management, Business Continuity

Skills and other qualifications needed to fulfill the requirements of the job:

• High degree of organizational & analytical skills.
• Flexible and capable of taking multiple tasks and meet tight deadlines
• Self-motivated and result-oriented, driving projects to meet the designated schedule
• Excellent interpersonal communication & presentation skills.
• Proficient in both oral & written communication.
• Knowledge on IT Operations, IT Network/Infrastructure, Information Security, Business Continuity Management, Vulnerability Assessment and Penetration Testing, Network Security and Design, Advanced Networking/TCPIP
• Microsoft office skills.