29 Ofertas de It Risk en Mexico
Chief IT Risk Management Specialist
Hoy
Trabajo visto
Descripción Del Trabajo
We are seeking an experienced IT Audit Manager to lead our internal audit processes. This role will be responsible for assessing technological risks, regulatory compliance, and the effectiveness of IT governance.
- Lead specialized IT audits, risk assessments, and internal consulting services.
- Assess the effectiveness of IT governance, risk management, and internal controls.
- Ensure audit processes are aligned with both local and global group standards, meeting the highest quality and compliance levels.
What You'll Do:
The successful candidate will have a strong background in IT audit processes, regulatory compliance, and organizational policies. They will be responsible for leading multidisciplinary teams, managing projects and resources, and making data-driven decisions.
- Leadership of multidisciplinary teams.
- Analytical mindset and strategic vision.
- Project and resource management.
- Data-driven decision-making.
- Strong communication and influencing skills.
Requirements:
To be considered for this role, candidates must have a Bachelor's Degree in Computer Science, Information Systems, or a related field. They must also have at least 5 years of experience in IT Audit or IT systems development/support/management, and a minimum of 3 years in technology or audit project management.
- At least 5 years in IT Audit or IT systems development/support/management.
- Minimum 3 years in technology or audit project management.
- Proven background in internal audit processes, regulatory compliance, and organizational policies.
Key Skills:
The ideal candidate will possess excellent leadership, analytical, and communication skills. They will be able to drive continuous improvement and operational excellence within the organization.
- Leadership of multidisciplinary teams.
- Analytical mindset and strategic vision.
- Project and resource management.
- Data-driven decision-making.
- Strong communication and influencing skills.
Why Join Us?
Our organization values diversity and inclusion at every stage of our process. We respect and celebrate all forms of diversity regardless of health status, gender, sexual orientation, age, religion, marital status, disability, or any other condition.
If you are ready to take on this challenge and make an impact, we would love to hear from you.
IT Governance Risk and Compliance Manager
Publicado hace 9 días
Trabajo visto
Descripción Del Trabajo
As an IT Governance, Risk and Compliance (GRC) Manager, you enable Backbase in conducting its business in full compliance with all relevant national and international laws and regulations. This also includes professional standards, accepted business practices, internal policy standards and IT Security frameworks such as SOC2, ISO27001 and PCI-DSS etc. requirements.
There is both an ethical component and a pragmatic approach to compliance that this role would require in helping the organization manage risk and build trust with its Customers.
IT GRC Manager must present a good understanding of the highly innovative and dynamic environment of a FinTech organisation.
What you'll do Functional/ Technical Skills- Support design, implementation and management of IT Controls & Compliance Frameworks for an international organisation.
- Ensure compliance with the industry best security practices within SaaS environments.
- Manage and coordinate customer and independent third-party attestations as part of the contractual obligations and certification requirements.
- Support Third-Party Risk assessments and regular assurance program
- Prior experience working with GRC tools and platforms
- Ability to analyse and translate laws, regulations and technical requirements into commercially focussed business processes
- Ability to execute and report status on Risk Assessment and Risk Mitigation Program metrics.
- Proficient at maintaining policies and procedures as part of the Policy Governance Framework and coordinating that with other departments.
- Ability to integrate in an Agile/Scrum working environment to drive teams.
- Knowlege of multiple security and privacy frameworks, Third-party risk, outsourcing and banking regulations, etc.
- Knowledge of modern cloud technologies (AWS, Azure) and risks associated with Software-as-a-Service model.
- Knowledge of the requirements of ethics & compliance programs in international business
- Proven ability to lead tactical compliance setup and operations
- SME with the ability to give concise and to-the-point compliance advice
- Proactive & analytical program management approach.
- Strategic problem solver who can take issues and find practical business solutions
- Internal & external stakeholder management
- Collaboration and interaction with colleagues from all relevant departments, vendors, partners and customers.
- Minimum of 6-8 years of relevant working experience in the practical implementation of Compliance programs in an international environment
- Bacheloru2019s degree required; - Acedemic degree desired in the area of IT Security,
- Fluent English - written and spoken required (mandatory)
- Professional certifications (e.g. ISC2 or CompTIA certifications) desired or willingness to obtain them
- Experience with managing in a functional way (not hierarchical)
Loud and busy sometimes but always friendly, helpful, and super fun. We love to celebrate each other’s achievements, share jokes, and our love for food, movies, traveling, and sports. We’re one big and diverse family working towards the same goal.
InsuranceBackbase covers you. With our company insurance, we make sure you and your family are safe and have access to different insurances.
LunchLunch tickets so you don’t have to worry about bringing your own food.
ReferralReferral bonus incentive for bringing the best talent.
High spec equipmentWe provide all employees with high-spec Macs and tech set up.
Clothing #J-18808-LjbffrINFORMATION SECURITY LEAD
Publicado hace 8 días
Trabajo visto
Descripción Del Trabajo
At TE, you will unleash your potential working with people from diverse backgrounds and industries to create a safer, sustainable and more connected world.
**Job Overview**
In this role at TE Connectivity, you will lead the development and implementation of OT Cybersecurity requirements across our manufacturing facilities within North America. This critical role ensures the robustness, security, and resilience of our OT systems against ever-evolving cyber threats. You will design, execute, and oversee OT Cybersecurity strategies, policies, standards, and best practices while integrating scalable security solutions to safeguard TE's operational environments effectively
**Responsibilities and duties**
+ Define OT Cybersecurity management methodologies aligned with industrial standards and frameworks (e.g., ISA/IEC 62443, NIST, ISO 27001), ensuring scalability for implementation across the production locations of the North America business unit.
+ Provide templates, tools, and training materials supporting the deployment activities at the plants including technical and organizational support for them.
+ Offer effective support for risk assessments at the plants, including the definition of necessary improvement measures.
+ Coordinate with the management of the business units of the Segment on the definition and execution of short- and long-term roadmaps for OT cybersecurity deployment at their plants.
+ Define and maintain reporting formats for program performance and deployment progress, providing regular updates to senior management on risks, issues, and project statuses.
+ Clearly communicate roles, expectations, and accountabilities to team members, resolving conflicts and facilitating issue resolution while establishing effective escalation paths.
+ Drive compliance, track best practices, and identify opportunities for process enhancements to achieve strategic goals.
+ Establish an OT cybersecurity team and develop competence within the North America business unit to effectively respond to the continuously increasing demands in this field.
**Knowledge and Experience:**
**Job Requirements**
**Knowledge and Experience:**
+ University degree in IT, CS, or engineering
+ At least years of demonstrated Project/Program Management experience in technology
+ Strong leadership skills with a track record of managing cross-functional projects with local and global teams in a matrix environment.
+ Demonstrated ability to successfully manage multiple projects and programs and meet scope, schedule, and budget requirements.
+ Confidence in communicating to peers and senior management.
+ Clear, strategic thinker with vision and the ability to execute on priorities with a results-oriented focus.
+ Familiarity with international cybersecurity standards including ISA/IEC 62443, NIST, and ISO 27001.
+ Excellent problem-solving skills, capable of analyzing complex security systems and threats.
+ Ability to engage collaboratively with Cybersecurity, IT, Operation and business leadership, influencing outcomes through expertise and analysis.
+ Demonstrable ability in creating a holistic strategy and driving implementation.
**#LI-Hybrid**
Location: Hermosillo
**Competencies**
Location:
Hermosillo, SON, MX, 83118
City: Hermosillo
State: SON
Country/Region: MX
Travel: 50% to 75%
Requisition ID:
Alternative Locations:
Function: Information Technology
TE Connectivity and its subsidiaries, affiliates, and operating units (collectively, the "Company") is committed to providing a work environment that prohibits discrimination on the basis of age, color, disability, ethnicity, marital status, national origin, race, religion, gender, gender identity, sexual orientation, protected veteran status, disability or any other characteristics protected by applicable law or regulation.
Manager of Information Security
Publicado hace 5 días
Trabajo visto
Descripción Del Trabajo
Manager of Information Security
Your Mission, Should You Choose to Accept It:
- Forge a Cyber Fortress: Design and implement a cutting-edge Governance, Risk, and Compliance (GRC) framework that not only meets but exceeds the stringent demands of CNBV, Banxico, SHCP, PCI DSS 4.0, and PCI PIN. Your goal? Achieving ISO 27001 certification and setting a new industry benchmark.
- Master the Cloud Frontier: Navigate and secure our dynamic, cloud-based architecture, leveraging NIST CSF to ensure robust protection against evolving cyber threats.
- Become the Guardian of Trust: Proactively evaluate and monitor security controls, aligning with global standards to safeguard our critical information and systems.
- Lead a Cross-Functional Security Alliance: Collaborate with diverse teams to seamlessly integrate security policies and procedures, fostering a culture of security awareness and accountability.
- Be the Shield Against the Unknown: Spearhead our incident detection and response capabilities, ensuring swift and effective mitigation of security breaches.
- Innovate and Influence: Identify emerging risks and champion strategic improvements, shaping the future of fintech security in Mexico.
What We're Looking For:
- Education: University degree in Computer Science, Systems Engineering, or a related field (completed and professional certificate/license).
- Specialization: Cybersecurity, IT Audit, Software Engineering Management.
- Experience: Cybersecurity, Technology/Software Engineering, Information Security Analysis, SOC Function Management, IT Audit, or a similar role.
- Years of Experience: 4 - 5 years.
- Languages: English.
- Additional Language Proficiency: Business level.
- Technical Skills: Vulnerability Management, Risk Management, Incident Management, Security Framework Adoption. Knowledge of network security, operating systems, AWS services, database configurations.
- Certifications / Courses / Diplomas: CISA, CISSP, CRISC, or CISM.
- Product Focus: Multiproduct.
- Specific Knowledge: BI tools, AI, PCI standards, NIST CSF, ISO 27001, COBIT.
- Other Skills: Drata, Vanta, AWS, Okta, IAM.
What We Offer:
- A dynamic and collaborative work environment where you can develop your full potential.
- Opportunities to learn and grow professionally using cutting-edge technologies.
- A passionate and talented team with whom you can share knowledge and experiences.
- A competitive compensation package and attractive benefits.
- The opportunity to positively impact the lives of thousands of people and contribute to the development of the country.
Manager - Information Security - TEMPORAL

Publicado hace 21 días
Trabajo visto
Descripción Del Trabajo
**Job Number**
**Job Category** Information Technology
**Location** Mexico Regional Office, Ejercito Nacional No. 350 Suite 4C, Mexico City, MÉX, Mexico, 11560VIEW ON MAP ( Full Time
**Located Remotely?** Y
**Position Type** Management
**JOB SUMMARY:**
The Manager, Continent Information Security Partnerships, Property Security Reviews & Audits, is a key role in continent security aspects relating to planning, executing and managing the Marriott Security Assessment program, providing the necessary support to above property and on property teams. The objective for this role is to attain maximum security compliance status and ensure that all IT Operations in the continent follow the company security standards. Enforce Marriott Security Standards and requirements for properties. The role will perform tracking and reporting on the established security policies and processes as implemented at the hotels and will have a direct reporting line to the Senior Director/Director, Continent Information Security Partnerships.
This position maintains strong relationships with and provides support to Property teams, Area IT Leaders with continent IT operations and provides assistance in liaising with additional teams within Information Security and will require to travel for up to 75% of the work capacity.
**CANDIDATE PROFILE**
**Education and Experience** **Required** :
Education and Experience
+ 5+ years Information Technology or information security work experience including:
+ 3+ years in executing technology plans and/or information security projects, programs, and/or portfolios
+ 2+ years' in implementing enterprise security risk management frameworks and processes.
+ Bachelor's degree in Computer Sciences, Information Technology, Information Security, Cybersecurity or related field or equivalent field experience.
+ Fluent in English and Spanish, both spoken and written.
Preferred:
+ Professional certifications related to security assessment, such as CISA, CRISC, PCI ISA, ISO/IEC 27001 Lead Auditor, etc.
+ Hotel IT Management.
+ Cybersecurity experience.
+ Good understanding of PCI DSS and NIST CSF.
+ Expert level understanding of key network and technical security controls.
+ Experience participating in and coordinating activities for security incident responses.
+ Knowledge of global regulatory standards to include GDPR and CCPA.
+ Ability to demonstrate security experience via certifications (CISSP, CISA, CRISC, CISM, PCI ISA, etc.) or significant career accomplishments.
+ Demonstrated ability to apply organizational information security policies at a discipline unit level.
+ Knowledge of IT security within an infrastructure environment.
+ Proven ability to effectively prioritize and execute tasks in a high-pressure environment.
+ Experience in business systems and process planning.
+ Graduate/postgraduate degree.
**CORE WORK ACTIVITIES**
+ Lead and execute audits, security assessments, and control reviews across infrastructure, applications, data, cloud, and third-party services.
+ Evaluate the effectiveness of information security controls (technical and administrative) aligned with corporate standards.
+ Perform risk-based assessments and identify vulnerabilities, non-compliances, and improvement opportunities.
+ Review historical audit and assessment findings and real-time observations, both internal and external, to determine areas for improvement, including developing and disseminating best practices, standardized configurations, and implementation guides across the hotel portfolio.
+ Review artifacts, interview key stakeholders and identify areas for improvement.
+ Develop and manage the end-to-end audit or assessment program, including planning, scoping, scheduling, stakeholder engagement, fieldwork, and follow-up.
+ Organize and facilitate kick-off meetings, status updates, walkthroughs, and closing sessions.
+ Track and report audit timelines, milestones, and risk issues to ensure timely completion.
+ Build relationships and collaborate with key stakeholders to develop pragmatic remediation plans and track closure progress through defined follow-up cycles.
+ Prepare clear, concise, and well-structured audit reports with actionable findings and risk ratings.
+ Provide input on risk treatment strategies, control enhancements, and policy updates.
+ Develop effective communication plans to collaborate with the stakeholders by customizing individual needs.
+ Contribute to the maturity of the information security internal audit methodology, templates, and knowledge base.
**Additional Functions:**
+ Represents Security in signing off on new property openings reviewing the implemented policies and controls.
+ Provides tactical communications and issues remediation planning and implementation with the continent IT Operations team.
+ Signs off the new property openings including tracking that all necessary information on the property systems and security readiness is registered, such as application inventory.
+ Facilitates educational calls, materials and meetings to the Continent IT Operations and field associates
+ Tracks the compliance performance of the continent and work with on property IT associates along with the Area IT Managers towards issues remediations, providing necessary escalations and follow ups to the respective teams.
+ Reporting on security & compliance related metrics to different stakeholders including GIS, Continent leadership
+ Provides answers to general questions and queries around IT security and other related queries.
+ Identifies learning and knowledge gaps and facilitates educational calls, materials and meetings to the Continent IT Operations and field associates
**Additional Responsibilities**
+ Informs, updates, and provides information to supervisors, co-workers, and subordinates by telephone, in written form, e-mail, or in person in a timely manner.
+ Attends and participates in all relevant meetings.
+ Presents ideas, expectations and information in a concise, organized manner.
+ Uses problem solving methodology for decision making and follow up.
+ Maintains positive working relations with internal customers and department managers.
+ Manages time effectively and conducts activities in an organized manner.
+ Performs other reasonable duties as assigned by manager.
_At Marriott International, we are dedicated to being an equal opportunity employer, welcoming all and providing access to opportunity. We actively foster an environment where the unique backgrounds of our associates are valued and celebrated. Our greatest strength lies in the rich blend of culture, talent, and experiences of our associates. We are committed to non-discrimination on any protected basis, including disability, veteran status, or other basis protected by applicable law._
Marriott International is the world's largest hotel company, with more brands, more hotels and more opportunities for associates to grow and succeed. **Be** where you can do your best work, **begin** your purpose, **belong** to an amazing global team, and **become** the best version of you.
Information Security II JR

Publicado hace 21 días
Trabajo visto
Descripción Del Trabajo
Compucom Systems, Inc. provides end-to-end IT managed services to enable the digital workplace for enterprise, midsize and small businesses. To enable our clients to focus on what matters most, we employ a customer-centric, hard-working, and talented group of people that Act Like an Owner, Do the Right Thing, and Have Fun Doing It!
The role of the Information Security II is to be a part of Infrastructure Security
Administrator Team that is involved in designing and implementing the enterprise
infrastructure and information across organizational holdings domestic and
internationally.
The position scope involves designing, implementation and configuration of key
enterprise security initiatives. Specific initiatives include maintaining and configuring the
following products as well as other security devices & operations:
Skills which are a must:
- Advance knowledge of the OSI networking model
- Advance knowledge on UDP/TCP/IP protocols
- Experience working with Firewalls 1 year + industry experience (Next Generation
are desirable)
- Experience in networking (routing is a must) 3 years + industry experience
- Basic knowledge on network security best practices
Desirable Skills are a plus:
- Basic understanding of Site-to-Site VPNs
- Basic knowledge and experience on Cisco ASA, Checkpoint or Palo Alto
Firewalls
- Basic knowledge on Zscaler Proxies
The Information Security II is expected to maintain professional working relationships.
Contacts will include key corporate stakeholders, the Information Security Team,
business unit personnel, associated working groups, and external contacts within the
information security industry. The individual is expected to meet objectives with integrity
and efficiency.
Equal Employment Opportunity
CompuCom is committed to providing equal employment opportunities in all employment practices. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, citizenship status, marital status, age, disability, protected veteran status, sexual orientation or any other characteristic protected by law
CompuCom is committed to providing equal employment opportunities in all employment practices. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, citizenship status, marital status, age, disability, protected veteran status, genetic information, sexual orientation, gender identity or expression, or any other status protected by law.
Information Security II jr

Publicado hace 21 días
Trabajo visto
Descripción Del Trabajo
Compucom Systems, Inc. provides end-to-end IT managed services to enable the digital workplace for enterprise, midsize and small businesses. To enable our clients to focus on what matters most, we employ a customer-centric, hard-working, and talented group of people that Act Like an Owner, Do the Right Thing, and Have Fun Doing It!
The role of the Information Security II is to be a part of Infrastructure Security
Administrator Team that is involved in designing and implementing the enterprise
infrastructure and information across organizational holdings domestic and
internationally.
The position scope involves designing, implementation and configuration of key
enterprise security initiatives. Specific initiatives include maintaining and configuring the
following products as well as other security devices & operations:
Skills which are a must:
- Advance knowledge of the OSI networking model
- Advance knowledge on UDP/TCP/IP protocols
- Experience working with Firewalls 1 year + industry experience (Next Generation
are desirable)
- Experience in networking (routing is a must) 3 years + industry experience
- Basic knowledge on network security best practices
Desirable Skills are a plus:
- Basic understanding of Site-to-Site VPNs
- Basic knowledge and experience on Cisco ASA, Checkpoint or Palo Alto
Firewalls
- Basic knowledge on Zscaler Proxies
The Information Security II is expected to maintain professional working relationships.
Contacts will include key corporate stakeholders, the Information Security Team,
business unit personnel, associated working groups, and external contacts within the
information security industry. The individual is expected to meet objectives with integrity
and efficiency.
Equal Employment Opportunity
CompuCom is committed to providing equal employment opportunities in all employment practices. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, citizenship status, marital status, age, disability, protected veteran status, sexual orientation or any other characteristic protected by law
CompuCom is committed to providing equal employment opportunities in all employment practices. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, citizenship status, marital status, age, disability, protected veteran status, genetic information, sexual orientation, gender identity or expression, or any other status protected by law.
Sé el primero en saberlo
Acerca de lo último It risk Empleos en Mexico !
Manager of Information Security
Hoy
Trabajo visto
Descripción Del Trabajo
Manager of Information Security
Hoy
Trabajo visto
Descripción Del Trabajo
Manager of Information Security
Your Mission, Should You Choose to Accept It:
- Forge a Cyber Fortress: Design and implement a cutting-edge Governance, Risk, and Compliance (GRC) framework that not only meets but exceeds the stringent demands of CNBV, Banxico, SHCP, PCI DSS 4.0, and PCI PIN. Your goal? Achieving ISO 27001 certification and setting a new industry benchmark.
- Master the Cloud Frontier: Navigate and secure our dynamic, cloud-based architecture, leveraging NIST CSF to ensure robust protection against evolving cyber threats.
- Become the Guardian of Trust: Proactively evaluate and monitor security controls, aligning with global standards to safeguard our critical information and systems.
- Lead a Cross-Functional Security Alliance: Collaborate with diverse teams to seamlessly integrate security policies and procedures, fostering a culture of security awareness and accountability.
- Be the Shield Against the Unknown: Spearhead our incident detection and response capabilities, ensuring swift and effective mitigation of security breaches.
- Innovate and Influence: Identify emerging risks and champion strategic improvements, shaping the future of fintech security in Mexico.
What We're Looking For:
- Education: University degree in Computer Science, Systems Engineering, or a related field (completed and professional certificate/license).
- Specialization: Cybersecurity, IT Audit, Software Engineering Management.
- Experience: Cybersecurity, Technology/Software Engineering, Information Security Analysis, SOC Function Management, IT Audit, or a similar role.
- Years of Experience: 4 - 5 years.
- Languages: English.
- Additional Language Proficiency: Business level.
- Technical Skills: Vulnerability Management, Risk Management, Incident Management, Security Framework Adoption. Knowledge of network security, operating systems, AWS services, database configurations.
- Certifications / Courses / Diplomas: CISA, CISSP, CRISC, or CISM.
- Product Focus: Multiproduct.
- Specific Knowledge: BI tools, AI, PCI standards, NIST CSF, ISO 27001, COBIT.
- Other Skills: Drata, Vanta, AWS, Okta, IAM.
What We Offer:
- A dynamic and collaborative work environment where you can develop your full potential.
- Opportunities to learn and grow professionally using cutting-edge technologies.
- A passionate and talented team with whom you can share knowledge and experiences.
- A competitive compensation package and attractive benefits.
- The opportunity to positively impact the lives of thousands of people and contribute to the development of the country.
Manager of Information Security
Hoy
Trabajo visto
Descripción Del Trabajo
Manager of Information Security
Your Mission, Should You Choose to Accept It:
- Forge a Cyber Fortress: Design and implement a cutting-edge Governance, Risk, and Compliance (GRC) framework that not only meets but exceeds the stringent demands of CNBV, Banxico, SHCP, PCI DSS 4.0, and PCI PIN. Your goal? Achieving ISO 27001 certification and setting a new industry benchmark.
- Master the Cloud Frontier: Navigate and secure our dynamic, cloud-based architecture, leveraging NIST CSF to ensure robust protection against evolving cyber threats.
- Become the Guardian of Trust: Proactively evaluate and monitor security controls, aligning with global standards to safeguard our critical information and systems.
- Lead a Cross-Functional Security Alliance: Collaborate with diverse teams to seamlessly integrate security policies and procedures, fostering a culture of security awareness and accountability.
- Be the Shield Against the Unknown: Spearhead our incident detection and response capabilities, ensuring swift and effective mitigation of security breaches.
- Innovate and Influence: Identify emerging risks and champion strategic improvements, shaping the future of fintech security in Mexico.
What We're Looking For:
- Education: University degree in Computer Science, Systems Engineering, or a related field (completed and professional certificate/license).
- Specialization: Cybersecurity, IT Audit, Software Engineering Management.
- Experience: Cybersecurity, Technology/Software Engineering, Information Security Analysis, SOC Function Management, IT Audit, or a similar role.
- Years of Experience: 4 - 5 years.
- Languages: English.
- Additional Language Proficiency: Business level.
- Technical Skills: Vulnerability Management, Risk Management, Incident Management, Security Framework Adoption. Knowledge of network security, operating systems, AWS services, database configurations.
- Certifications / Courses / Diplomas: CISA, CISSP, CRISC, or CISM.
- Product Focus: Multiproduct.
- Specific Knowledge: BI tools, AI, PCI standards, NIST CSF, ISO 27001, COBIT.
- Other Skills: Drata, Vanta, AWS, Okta, IAM.
What We Offer:
- A dynamic and collaborative work environment where you can develop your full potential.
- Opportunities to learn and grow professionally using cutting-edge technologies.
- A passionate and talented team with whom you can share knowledge and experiences.
- A competitive compensation package and attractive benefits.
- The opportunity to positively impact the lives of thousands of people and contribute to the development of the country.