Information Security Director

hace 2 semanas


Xico, México Novartis A tiempo completo

387625BR

**Information Security Director - Americas**:
SecOps & Vulnerability Services Associate Director Role

About the Role

Location: Mexico City - Hybrid work
We are seeking an Information Security Director to lead our SecOps & Vulnerability Services Associate Director team and reduce risk exposure from security vulnerabilities with a major focus on high-risk and 0-day vulnerabilities emergency response and remediation.

Responsibilities

  1. Act as a Technical Security SME and point of contact for responding to ongoing high-risk vulnerability exposure:
  2. Monitoring and prioritizing security vulnerabilities through risk analysis to understand potential impact and translate vulnerability severity as security risk.
  3. Identifying potential improvement areas for vulnerability response and sharing learned lessons with teams and stakeholders.
  4. Taking accountability to ensure adherence with Security and Compliance policies and procedures.
  5. Staying up to date with the latest security threats and vulnerabilities, proactively recommending mitigation strategies. Developing and maintaining documentation of related processes and best practices.
  6. Implementing security policies, procedures, and standards to ensure the confidentiality, integrity, and availability of cloud resources from technical vulnerabilities.
  7. Providing security awareness and training to teams on security practices and vulnerability-related processes.

Commitment to Diversity & Inclusion

We are committed to building an outstanding, inclusive work environment and diverse teams representative of the patients and communities we serve.

Role Requirements

  1. University or master's level degree in business/technical/scientific area or comparable education/experience.
  2. 8+ years of overall working experience in information security, preferably in Application Security and Vulnerability Management domain.
  3. At least 3+ years in handling security vulnerability response and remediation or SOC, coordinating with relevant stakeholders, and implementing corrective actions.
  4. Strong security knowledge of top security vulnerabilities, leading vulnerability scoring standards, such as CVSS, and ability to translate vulnerability severity as security risk.
  5. Hands-on experience monitoring threat intel for high-risk vulnerabilities, finding ownerships, handling shadow IT asset scenarios, sensitizing teams for security remediation, performing quick tests for technical vulnerability confirmation, etc.
  6. Demonstrated leadership skills through experience in middle management and/or engagement with large security/development program stakeholders.
  7. Communication and collaboration: Persuasive communication skills to effectively convey security risks and vulnerabilities to both technical and non-technical stakeholders, and the ability to collaborate with cross-functional teams.
  8. Strong problem-solving skills and the ability to work independently.
  9. Continuous learning: A commitment to staying up to date with the latest security updates, vulnerability disclosures, and industry best practices.
  10. Knowledge of secure system development, AppSec and project/program management.
  11. Strong understanding of metrics, KPI/KRI, SLAs, and dashboards for vulnerability management and providing executive reporting.

Why Novartis?

We believe new insights, perspectives and ground-breaking solutions can be found at the intersection of medical science and digital innovation. That a diverse, equitable and inclusive environment inspires new ways of working.

Division

Operations

Business Unit

DATA, DIGITAL & IT

Work Location

Ciudad de México

Company/Legal Entity

NOV CORPORATIVO MéX

Functional Area

Technology Transformation

Job Type

Full Time

Employment Type

Regular

Shift Work

No

Early Talent

No



  • Xico, México Citi A tiempo completo

    The Information Security Director is a senior management position responsible for leading a team in the prevention, monitoring, and response to information/data breaches and cyber-attacks. The role ensures the execution of Information Security directives and activities in alignment with Citi's data security policy.**Key Responsibilities:**Educate and advise...


  • Xico, México Robert Bosch Group A tiempo completo

    Job Title: Information Security SpecialistRobert Bosch Group is seeking a highly skilled Information Security Specialist to join our team. As a key member of our Information Security department, you will play a critical role in ensuring the confidentiality, integrity, and availability of our information assets.Key Responsibilities:Develop and implement...


  • Xico, México Bishop Fox A tiempo completo

    Job Title: Information Security EngineerBishop Fox, a leading authority in offensive security, is seeking an experienced Information Security Engineer to join our team. As a key member of our security team, you will play a critical role in helping us control information security risks by managing threat/vulnerability management systems and other security...


  • Xico, México Citibank A tiempo completo

    The Senior Information Security Architect role is a senior-level position responsible for driving efforts to prevent, monitor, and respond to information/data breaches and cyber-attacks at Citibank. This position ensures the execution of Information Security directives and activities in alignment with Citi's data security policy.This critical role involves...


  • Xico, México Ntt Data, Inc. A tiempo completo

    Information Security Manager Job DescriptionNtt Data, Inc. is seeking a highly skilled Information Security Manager to join our team in Mexico City. As a key member of our security team, you will be responsible for ensuring the confidentiality, integrity, and availability of our clients' data and systems.Key Responsibilities:Develop and implement information...


  • Xico, México Ntt Data, Inc. A tiempo completo

    About the RoleWe are seeking a highly skilled Information Security Manager to join our team in Mexico City, Mexico. As a key member of our security team, you will be responsible for ensuring the delivery of information security services to our clients is in compliance with contractual and regulatory requirements.Key ResponsibilitiesCollaborate with clients...


  • Xico, México Citigroup Inc. A tiempo completo

    Job SummaryThe Information Security Intermediate Analyst at Citigroup Inc. is a crucial role responsible for ensuring the execution of Information Security directives and activities in alignment with the company's data security policy.Key ResponsibilitiesVerify with technology teams that technology Information Security (IS) is compliant with standards and...


  • Xico, México Mx012 Oliver Wyman Servicios, S. De R.L. De C.V. A tiempo completo

    Job Title: Senior Security Controls & Risk AnalystOliver Wyman, a global leader in management consulting, seeks a Senior Security Controls & Risk Analyst to join our Information Technology Services team. As a trusted member of our team, you will ensure the continuous improvement of information security within our infrastructure, applications, and business...


  • Xico, México Revolut Ltd A tiempo completo

    About RevolutRevolut is a global financial super app that empowers individuals to take control of their finances. With a mission to deliver more visibility, control, and freedom, Revolut has been revolutionizing the way people manage their money since 2015.Job DescriptionWe are seeking an experienced Information Security Engineer to join our Technology team....


  • Xico, México Ingram Micro A tiempo completo

    Ingram Micro is a world-leading technology distributor with operations in 64 countries and more than 35,000 associates. We touch 80% of the technology you use every day with our focus on Technology Solutions, Cloud, and Commerce and Lifecycle Solutions.**Job Summary:**We are seeking a highly skilled Information Security Manager to join our team in the...


  • Xico, México Trustwave A tiempo completo

    About TrustwaveTrustwave is a leading cybersecurity and managed security services provider focused on threat detection and response. Our team of cyber consultants, threat hunters, and researchers serves clients in 96 countries, providing a world-class experience in cybersecurity.Job SummaryWe are seeking an experienced Information Security Advisor to join...


  • Xico, México Citibank A tiempo completo

    Job Title: Information Security Risk ManagerThe Information Security Risk Manager is a critical role responsible for leading efforts to prevent, monitor, and respond to information/data breaches and cyber-attacks. This position ensures the execution of Information Security directives and activities in alignment with Citi's information security policy.Key...


  • Xico, México Pluxee A tiempo completo

    Job DescriptionPluxee is a global player in employee benefits and engagement, operating in 31 countries. Our company helps businesses attract, engage, and retain talent through a range of solutions across Meal & Food, Wellbeing, Lifestyle, Reward & Recognition, and Public Benefits.As a trusted partner, Pluxee is committed to creating a positive impact on all...


  • Xico, México Teletech A tiempo completo

    Key ResponsibilitiesThe Information Security Principal Engineer will be responsible for handling key functional and compliance processes at the intersection of information security, supplier/vendor security and risk management.This includes supporting new sale/client opportunities including Requests for Information (RFIs) and Requests for Production (RFPs),...


  • Xico, México Ingram Micro A tiempo completo

    The role of a Professional, Information Security at Ingram Micro offers a unique opportunity to work in a dynamic environment where cutting-edge solutions are developed and delivered worldwide.**Key Responsibilities:**- Investigate and analyze security incidents to identify potential threats and vulnerabilities- Collaborate with the Security Incident...


  • Xico, México Trustwave A tiempo completo

    About TrustwaveTrustwave is a leading cybersecurity and managed security services provider focused on threat detection and response. We uncover threats that others can't and respond quicker than others can to protect against the devastating impacts of cyberattacks.Job SummaryWe are seeking an experienced Information Security Advisor to join our team. As a...


  • Xico, México Citi A tiempo completo

    The Chief Information Security Officer at Citi is a senior management level position responsible for leading the organization's Information Security initiatives. This role requires a strategic thinker who can manage a team of security professionals and oversee the implementation of information security policies and procedures.Key Responsibilities:Manage a...


  • Xico, México Citigroup Inc. A tiempo completo

    Job SummaryThe Senior Information Security Analyst will lead efforts to prevent, monitor, and respond to information/data breaches and cyber-attacks. This role is responsible for ensuring the execution of Information Security directives and activities in alignment with Citi's information security policy.Key ResponsibilitiesAddress security issues identified...


  • Xico, México Citi A tiempo completo

    Job Title: Information Security Operations AnalystCiti is seeking an experienced Information Security Operations Analyst to join our team. As an Information Security Operations Analyst, you will be responsible for leading efforts to prevent, monitor, and respond to information/data breaches and cyber-attacks.Key Responsibilities:Verify technology Information...


  • Xico, México Citigroup A tiempo completo

    Job Title: Senior Information Security AnalystThe Senior Information Security Analyst is a critical role within Citigroup, responsible for leading efforts to prevent, monitor, and respond to information/data breaches and cyber-attacks. This position ensures the execution of Information Security directives and activities align with Citi's information security...