Thrive

Security Engineer - GRC

Thrive Mabalacat, Pampanga, Philippines

IT Services and IT Consulting · 1,001-5,000 employees

20 h ago
Remote security Mid (2-5 yrs) Full-time Philippines
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The Security Engineer will manage security awareness training and phishing campaigns while troubleshooting IT auditing platforms. They will also work closely with clients to ensure compliance with security standards and maintain accurate system configurations.

What they look for

Security awareness training Phishing campaigns IT auditing Networking concepts Cybersecurity Risk management Active Directory Entra ID Compliance frameworks ISO27001 CMMC DNS HTTP/S SMTP ServiceNow KnowBe4

Requirements

Candidates should have 3-5 years of experience in information security and a strong understanding of networking, operating systems, and risk management. Proficiency in compliance frameworks and excellent communication skills are essential for this role.

Full description

About Us:

Thrive is a rapidly growing technology solutions provider focusing upon Cloud, Cyber Security, Networking, Disaster Recovery and Managed Services.  Our corporate culture, engineering talent, customer-centric approach, and focus upon “next generation” services help us stand out amongst our peers.  Thrive is on the look-out for individuals who don’t view their weekdays spent at “a job”, but rather look to develop valuable skills that ignite their passion and lead to a CAREER.  If you’re attracted to a “work hard, play hard” environment, seeking the guidance, training and experience necessary to build a lucrative career, then welcome to THRIVE!!

 

Position Overview:

We are seeking a Security Engineer to join our Infosec GRC team. This role is responsible for the management and delivery of security awareness training and phishing campaigns, generating reports from our IT auditing platform, and troubleshooting of these platforms.

The Security Engineer will work closely with clients to ensure our services meet their compliance requirements. This is an ideal opportunity for someone who is committed to continuous learning, transitioning from IT, and is interested in a cybersecurity career.

 

 

Primary Responsibilities:

 

•       Management and execution of security awareness training campaigns

•       Management and execution of phishing tests

•       Troubleshoot phishing email delivery/interaction issues

•       Troubleshoot security tool performance issues, integrations and other platform problems

•       Create and maintain documentation for security processes, procedures, and technologies

•       Setup and generate IT audit reports

•       Audit client setups, ensuring accurate configuration is maintained

•       Stay current on security threats, attack techniques, and best practices through training and research

•       Perform other duties as required.

Qualifications:

  • Strong understanding of networking concepts, operating systems
  • Knowledge of cybersecurity threats and risk management, especially human risk management
  • Ability to communicate technical security concepts to non-technical audiences
  • Strong interest in cybersecurity
  • Demonstrates sound security practices and attention to detail
  • Willingness to learn and grow

Required Skills:

  • Ability to analyze data from multiple sources and use findings to support troubleshooting and decision-making
  • Foundational understanding of Active Directory, Entra ID, and email systems, including common configuration and troubleshooting tasks
  • Excellent written and verbal communication skills
  • Customer service skills
  • Knowledge of compliance frameworks such as ISO27001, CMMC, etc.
  • Foundational networking knowledge, including protocols such as DNS, HTTP/S, SMTP

Preferred Skills:

  • Prior experience with ServiceNow and KnowBe4
  • 3-5 Years of experience in information security or a related technical role.
  • Relevant coursework, certifications or lab experience.
  • One or more of the following or relevant certifications: Security+, SACP, CISSP, CISA, CISM

Similar roles