Post Job Free

Resume

Sign in

Information Security Officer

Location:
Makati, Philippines
Posted:
October 14, 2020

Contact this candidate

Resume:

JASON BRASILEÑO

Mandaluyong City · +639*********

adgze9@r.postjobfree.com · www.linkedin.com/in/jason-b-36306169 Experienced Risk Management Professional, Business Continuity Management Expert and Information Security Practitioner with a demonstrated history of working in various industries - Manufacturing, Chemical, Land, Construction, Food, Holdings, Finance, Banking, Utilities, Non-profit and Corporate Services.

Has more than 10 years of experience in Enterprise Risk Management (ERM), Disaster Preparedness and Response and Business Continuity Management. Well-versed in Crisis Communication and Management, Financial Risk, Physical Security, Information Security, and Data Privacy. Knowledgeable in various ISO Standards including ISO 31000, 9001, 22301, 27000 and 19011. With working knowledge on COBIT, NIST, GDPR and HIPAA

EXPERIENCE

APRIL 2019 - PRESENT

VICE PRESIDENT FOR RISK MANAGEMENT AND CHIEF RISK OFFICER, ST. LUKE’S MEDICAL CENTER, INC.

Performs forward looking environmental analysis and at the same time develops, administers, monitors, and reviews management policies, processes, procedures and systems to ensure that the Medical Center operates within the approved Enterprise Risk Management Framework and its related programs. Also acts as Chief Information Security Officer

Reports to the Board of Directors appropriate input related to Risk Management to ensure that risks are prioritized, addressed and that the culture of risk management is embedded within the organization. Heads the Risk Management, Data Security/Information Security and Data Privacy units of the organization

• Includes ownership of all established risk policies, covering strategic, market, credit, finance, compliance legal, liquidity, insurance, operational, reputation and other identified risk areas.

• Anticipates evolving issues and concern given developments in the regulatory front and business disruptions

• Ensures overall compliance to Data Privacy and a thorough implementation of the Information Management System across the medical center with oversight function on IT and Cybersecurity

• Develops and Implements a robust Business Continuity Management Program and Framework that is tailored-fit for the medical center and its affiliates

• Performs due diligence along with other stakeholders on emerging laws, new and/or updated regulations and potential business expansions/ventures 2

• Participates in the various committees and councils within the medical center geared towards improving Clinical Risks, Medical Ethics, Patient Safety and Quality of Care, and Innovations and Digitalization

• Ensures that all Risk Transfer strategies are embedded and appropriately sourced especially the procurement and management of various Insurance Policies and Programs

DECEMBER 2017 – APRIL 2019

HEAD OF RISK MANAGEMENT, D&L INDUSTRIES INC.

Acts as the Chief Risk Officer of the Group of Companies and has a direct reporting line to the COO, CEO and Board Risk Oversight Committee. Responsibility includes Enterprise Risk, Physical Security, Information Security, Family Security, Safety, Health, Environment, and Business Continuity.

Other functions:

• Heads Enterprise Risk Management including Financial and Non-Financial Risk Areas. Includes development, update, implementation and continual improvement of framework, policies and procedures.

• Leads development and implementation of Information Security Management System across the conglomerate.

• Heads the development, update, implementation and continual improvement of Business Continuity Management System including Emergency Response, Incident Reporting and Management, Crisis Management and Business Resiliency across the conglomerate.

• Heads the Corporate Asset Protection and Security Management including Executive Protection of VIPs.

• Heads the Corporate Safety Department, Corporate Environment Department, Corporate Occupational Health and ISO Systems Audit and Certification for the conglomerate

• Does due diligence for potential projects and business expansions JUNE 2014 – DECEMBER 2017

RISK MANAGER, ABOITIZ EQUITY VENTURES INC.

• Subject Matter Expert and Leads the Development, Update, Implementation and Continuous Improvement of the Group Level Business Continuity Management System including Framework, Policies and Procedures

• Provides input and support in the overall development, update, implementation and continual improvement of Corporate Level Enterprise Risk Management as well as its related framework, policies and procedures down to the business unit level

• Development of Regional BCP Scenarios including testing and continual improvement

• Development of Cyber Attack BCP and Incident Management including testing and continual improvement

• Leads Emergency Response Planning and Implementation

• Development of Information Security Management System Framework and Policies

• Integrates Risk Management and Business Continuity into the key processes – Security, Human Resource, Corporate Communication, Events, Accounting, Treasury, Admin, etc.

• Corporate Resource on Hazard Mapping and Site Risk Assessment

• Corporate Resource in Project Risk Management and Due Diligence 3

• Provides input through Business Impact Analysis for Risk Finance and Insurance

• Internal Auditor for QMS, ISMS and BCMS

NOVEMBER 2012 – JUNE 2015

BUSINESS CONTINUITY PLANNING (BCP) MANAGER, MANILA WATER COMPANY, INC.

• Designs, Implements and Develops Business Continuity Management System for the whole Manila Water

• Designs and Develops Emergency Preparedness and Response Procedures

• Designs and Develops Disaster Management Procedures

• Designs and develops Incident Management and Crisis Management Procedures

• Conducts Drills on Emergency Preparedness and Response

• Conducts Drill on Business Continuity

• Works closely together with IT in developing IT Disaster Recovery Plan

• Conducts Internal Audit (ISO 9001, 14001, 22301, OSHAS 18000)

• Safety Kasangga

• Liaisons with external organizations on matters related to DRRM and Business Continuity and serves as focal person for the organization

• Conducts Training and develops modules on Business Continuity

• Acts as resource person on the subject of Business Continuity, Incidents and Disasters

• Department and Group Enterprise Risk Management Champion

• Conducts Facility Health Checks

• Lead on formulation of Risk Appetite for the Operations Group

• Acts as a resource on New Business Ventures

JANUARY 2012 – NOVEMBER 2012

ASSOCIATE OPERATIONAL RISK MANAGEMENT OFFICER, UNIONBANK OF THE PHILIPPINES

• Ensures that the bank’s Enterprise Risk and Operational Risk Management Framework, Policy, Guidelines and templates are updated and cascaded

• Designs, Implements and Develops Business Continuity Management System for the whole bank

• Designs and Develops Disaster Management Procedures

• Designs and develops Incident Management and Crisis Management Procedures

• Conducts Drills on Emergency Preparedness and Response and Business Continuity

• Works closely together with IT in developing IT Disaster Recovery Plan

• Liaisons with external organizations on matters related to DRRM and Business Continuity and serves as focal person for the organization

• Conducts Training and develops modules on Business Continuity and Operational Risk Management

• Acts as resource person on the subject of Business Continuity, Incidents and Disasters

• Ensures that all new products and key changes in the processes of the banks are assessed through the bank’s risk management framework. Provides review and advisory on the subject matter

4

• Assists in the conduct of Technology Risk Assessment and incorporates them in the bank’s risk register

• Provides update/report to the Board Operational Risk Management Committee and Board Technology Risk Committee of the Bank

EDUCATION

AY 2010 – AY 2012

MA PHILOSOPHY (NON-DEGREE), ATENEO DE MANILA UNIVERSITY JUNE 1999 – MARCH 2003

BC CHEMISTRY, CENTRAL PHILIPPINE UNIVERSITY

JUNE 1995– MARCH 1999

HIGH SCHOOL, PHILIPPINE SCIENCE HIGH SCHOOL – WESTERN VISAYAS CAMPUS SKILLS

• Enterprise Risk Management

• Operations Risk Management

• Business Continuity Management

• Internal Audit

• Crisis Communication Planning and Crisis Management CERTIFICATIONS AND

AFFILIATIONS

• Business Continuity Management System Lead Auditor (ICOR)

• Certified Crisis Communications Planner (ICOR)

• Business Continuity Certified Specialist

• Certification from the Business Continuity Institute

• Confined Space Rescue Technician from

• Quality Management System Internal Auditor

• Environment, Health and Safety Internal Auditor

• Crisis Communication Planning and Crisis Management

• Certified in Corporate Security Management (CICSM) from NDCP

• Certified Chief Information Security Officer from EC Council

• Certified Risk Analysts from AMERICAN ACADEMY OF FINANCIAL MANAGEMENT USA (in-process)

• PARIMA Member

• Emergency Preparedness and Response

• Stakeholder Management/Business Planning

• Corporate Security Management including Physical and VIP Security

• Information Security Management and Data Privacy

• Government Relations

(references available upon request)



Contact this candidate