IT Risk Specialist

hace 3 semanas


Mexico City Nubank A tiempo completo

About the RoleWe are a leading fintech company in Mexico, at the forefront of revolutionizing financial services through technology and innovation in Latin America. We are seeking a dynamic and experienced IT Risk Specialist to support the execution of the IT Risk programs and activities within the Non Financial Risk squad in Nu Mexico. This role combines strategic oversight of IT risk management, ensuring our organization is well-positioned to navigate and fight the complexities of the environment.Key ResponsibilitiesPerform, oversee and provide advisory on the identification, assessment, and mitigation of IT risks, incorporating innovative risk management practices and technology solutions.Evaluate existing IT systems, applications (e.g., microservices, webapps, mobile apps, etc.), IT third-party vendors such as SAAS, professional IT services, BPOs, APIs, and telecommunications infrastructure to support the implementation of Risk and Control Self Assessment Program (RCSA).Conduct independent control tests to verify the effectiveness of the IT control environment of the company, identify and document IT control gaps, and recommend risk mitigants.Establish and connect action plans for risk mitigation with the risk governance methodology of the firm.Execute technology risk assessments on new products & features according to the internal standard methodologies, policies and general practices.Generate and submit regulatory reports on IT risk for senior management, regulatory bodies and relevant committees.Provide oversight and subject matter expertise in IT and cybersecurity risk during the implementation of new IT systems, telecommunication infrastructure, and third-party services, as well as on relevant changes in existing technology and infrastructures supporting business products in Mexico.Monitor Engineering, Data and Cybersecurity incidents, perform independent analysis of root causes and risks, propose action plans to improve the control environment, analyze incident information to generate reports and metrics, and connect the action plans with the risk governance methodology of the firm.Support the monitoring of emerging IT & cyber risks, new threats, and infrastructure and application vulnerabilities.Enhance and maintain robust frameworks and policies for IT risk management and IT third-party risk management, aligned with global standards and meeting local regulatory requirements.Serve as a key advisor to risk leadership and internal stakeholders on IT risk matters, ensuring transparent communication and effective stakeholder management.Stay ahead of evolving regulatory guidelines, technological advancements, and industry best practices in risk management, applying insights to strengthen our risk posture.RequirementsMinimum of 5 years of experience in cybersecurity or IT Risk Management.Bachelors’ degree in Engineering, Computer Science, Information Technology, a Risk Management related field, or equivalent experience.In-depth knowledge of IT and cybersecurity risk management concepts, practices and methods.Understanding of cloud computing models such as Infrastructure as a Service (IaaS), Platform as a Service (PaaS), and Software as a Service (SaaS). Familiarity with cloud providers like Amazon Web Services (AWS) and serverless technologies.Understanding of cybersecurity concepts such as confidentiality, integrity and availability, supply chain risks, cryptography, endpoint and network security, cloud security, mobile security, API security, etc.Understanding of DevOps practices and tools used in cloud environments, such as continuous integration/continuous deployment (CI/CD) pipelines and containerization.Knowledge of risk management frameworks and methodologies to identify, assess and manage risks.Proven experience in risk management within the fintech sector is a plus.An advanced degree (e.g., MS with concentration in information systems) is a plus.Certificates in information security or IT risk management (CISSP, CEH, OSCP, CISA, CISM, CRISC, ISO27001 and/or other) is a plus.Proficiency in using risk management software, tools, and agile methodologies is highly preferred.An ability to navigate and thrive in a technology-driven environment, with a strategic mindset towards leveraging technology in risk management to transform our day-to-day.Fluent in English and Spanish, with exceptional communication skills to articulate complex risk scenarios and strategies effectively.BenefitsNubank equityHealth and life insuranceFood card17 days of paid vacation with 25% vacation bonusHoliday Bonus ("Aguinaldo") of 30 days of pay per yearNuCare - Our mental health and wellness assistance programNuLanguage - Our language learning programExtended maternity and paternity leavesDiversity and Inclusion at NuWe want to build products and experiences for everyone who wants to take back control over their finances, that's why we build strong and diverse teams that rise up to the challenge. We are a team of the most creative people in technology, and we hire under equal opportunity, irrespective of gender, ethnicity, religion, sexual orientation or background. We are proud to say that 30% of our team recognize themselves as part of the LGBTQ+ community, and 40% of our team identify as women, in all positions and seniority levels. We are a very process-light organization that values human interactions, and that is a very important part of our culture. At Nu, everyone has the opportunity to speak up and participate, grow and share ideas. #J-18808-Ljbffr


  • IT Risk

    hace 3 semanas


    Mexico City Nu A tiempo completo

    A leading fintech company in Mexico is seeking an IT Risk Specialist to enhance their risk management programs. This role requires a minimum of 5 years in cybersecurity, strong communication skills, and a bachelor's degree in a relevant field. Responsibilities include advising on IT risk identification, conducting control tests, and monitoring cybersecurity...


  • Mexico City Marsh & McLennan Companies A tiempo completo

    A global risk management firm is seeking an IT Lead Security Specialist in Mexico City. This hybrid role involves designing security controls, leading risk assessments, and collaborating on cybersecurity strategies. The ideal candidate has over 7 years of experience in cybersecurity with a strong focus on risk management, security advisory, and cloud...

  • IT Specialist

    hace 2 semanas


    Mexico City McLarens A tiempo completo

    McLarens is seeking an experienced IT Project Management Specialist to support the growth and maturity of its IT PMO function. This role combines hands-on project execution with the responsibility to establish, sustain, and improve project management processes across the IT organization. The ideal candidate will have a deep understanding of both Agile and...


  • Mexico City Marsh & McLennan Companies A tiempo completo

    IT Lead Security Specialist We are seeking an IT Lead Security Specialist to join our team at Oliver Wyman. This role will be based in Mexico City. This is a hybrid role that has a requirement of working at least three days a week in the office. As an IT Lead Security Specialist at Oliver Wyman, you will design and implement essential security controls that...


  • Mexico City Marsh & McLennan Companies A tiempo completo

    IT Lead Security Specialist We are seeking an IT Lead Security Specialist to join our team at Oliver Wyman. This role will be based in Mexico City. This is a hybrid role that has a requirement of working at least three days a week in the office. As an IT Lead Security Specialist at Oliver Wyman, you will design and implement essential security controls that...

  • IT Specialist

    hace 2 semanas


    Mexico City McLarens A tiempo completo

    McLarens is seeking an experienced IT Project Management Specialist to support the growth and maturity of its IT PMO function. This role combines hands-on project execution with the responsibility to establish, sustain, and improve project management processes across the IT organization. The ideal candidate will have a deep understanding of both Agile and...

  • Risk Specialist

    hace 6 días


    City, México AIG A tiempo completo

    Internal Controller Specialist At AIG, we are reimagining the way we help customers to manage risk. Join us as a Internal Controller Specialist to play your part in that transformation. It’s an opportunity to grow your skills and experience as a valued member of the team. Make your mark in Enterprise Risk Management AIG’s Enterprise Risk Management sets...


  • Mexico City Kyndryl A tiempo completo

    A leading technology services company in Mexico City seeks a Security Specialist to enhance client security. Responsibilities include risk assessment, policy development, and cybersecurity training. Ideal candidates should have experience in risk management and compliance and be customer-focused. This role offers opportunities for career growth within a...


  • Mexico City Aramco A tiempo completo

    Aramco energizes the world economy. Aramco occupies a special position in the global energy industry. We are one of the world’s largest producers of hydrocarbon energy and chemicals, with among the lowest Upstream carbon intensities of any major producer. With our significant investment in technology and infrastructure, we strive to maximize the value of...


  • Mexico City Aramco A tiempo completo

    Aramco energizes the world economy. Aramco occupies a special position in the global energy industry. We are one of the world's largest producers of hydrocarbon energy and chemicals, with among the lowest Upstream carbon intensities of any major producer. With our significant investment in technology and infrastructure, we strive to maximize the value of...