Overview

Head of Information Security and Business Systems Jobs in Manila, National Capital Region, Philippines at The Luxe Nomad

Title: Head of Information Security and Business Systems

Company: The Luxe Nomad

Location: Manila, National Capital Region, Philippines

Company Description The Luxe Nomad is Asia-Pacific’s largest luxury vacation rental management company, offering an exclusive collection of private villas, chalets, and condo hotels across more than 1,400 rooms. Its curated properties are located in sought-after destinations such as Bali, Koh Samui, Phuket, Niseko, Rusutsu, and Furano. With a mission to inspire unforgettable holidays, The Luxe Nomad focuses on memorable stays and genuine hospitality. The company is dedicated to helping guests travel better by removing the guesswork from trip planning and providing a seamless, high-end experience. Team members join a growing organization that values service excellence, attention to detail, and a passion for travel.

Role Description

We are establishing information security and data governance as a formally owned discipline within the group, and this is the role that owns it. As a dedicated security and systems leader, you will build the function from the ground up: one security strategy and roadmap for the whole group, consistent across all three markets, with governance embedded in how the business operates.

The role also owns the governance of our business systems – the platforms the business runs on – covering users and permissions, licence and cost control, and the procurement of new business software. Day-to-day IT support stays with our managed IT provider, with this role as their internal owner for larger initiatives.

This is a hands-on leadership role. You will set the strategy and do much of the early work yourself, working alongside our Product & Technology team and external partners. The role is not a helpdesk (that stays with our managed IT provider), not a developer (integration and data work stays with Product & Technology), and not the owner of technology architecture – you work within the technology roadmap, you do not set it. You will report to the VP of Product and present progress to senior leadership.

Qualifications

1.    8+ years across information security, IT and business systems, including experience leading security or IT for an organisation.

2.    Experience building a security programme from early maturity – policies, risk registers, access management and vendor risk – not just operating an established function.

3.    Working knowledge of recognised security frameworks – ISO 27001 and NIST CSF – and experience applying them to a real programme of work.

4.    Experience governing a varied SaaS estate – users, permissions, licensing and cost control – and running software procurement or an outsourced IT relationship.

5.    Working knowledge of data protection and privacy regulation, ideally across APAC jurisdictions.

6.    Working knowledge of database and data-store best practices – access controls, backup and recovery, retention, and data quality.

7.    Experience commissioning penetration tests and security audits, and turning findings into a prioritised remediation plan.

8.    Clear written communication – you can draft a policy, brief a vendor, and report to a board.

9.    Comfort operating as a function of one to start with, in a lean, distributed business where external partners handle much of the technical delivery.

Upload your CV/resume or any other relevant file. Max. file size: 800 MB.