Information Security

hace 2 semanas


Desde casa, México EPAM Systems, Inc. A tiempo completo

We are seeking a detail-oriented **Information Security Analyst** to join our growing team.

In this role, you will play a vital part in supporting third-party risk assessments and contributing to enterprise risk management initiatives, ensuring regulatory compliance and the security of data across our vendor network.

**Responsibilities**
- Support third-party risk assessments with a focus on Information Security and GRC, helping to evaluate inherent and residual risks to enable risk-informed decision-making
- Assist in conducting due diligence on prospective and existing vendors, with an emphasis on basic cybersecurity controls, regulatory compliance (e.g., GDPR, SOC 2, ISO 27001), and data protection practices
- Help ensure the integrity, consistency, and audit-readiness of third-party data within the GRC platform to support reporting and regulatory requirements
- Collaborate with stakeholders in Information Security, Privacy, Legal, Procurement, and Business Units to share insights and contribute to enterprise risk management initiatives
- Participate in processes related to third-party offboarding, ensuring risk management steps are followed, and data retention, access, and continuity controls are reviewed
- Assist in preparing documentation and responses for external audits, internal reviews, or regulatory inquiries related to third-party risk management practices
- Contribute to the maintenance and improvement of TPRM policies, playbooks, and program metrics to support ongoing program development

**Requirements**:

- 2+ years of experience in third-party risk management, information security, IT audit, or GRC, ideally within Gaming, Technology, or Consulting industries
- Basic understanding of security risk assessment frameworks and best practices (e.g., NIST, ISO 27001, SIG, CSA, etc.)
- Familiarity with tools like JIRA and GRC platforms (e.g., OneTrust, ServiceNow) is a plus, with a willingness to learn and support data analysis and platform improvements
- Ability to identify and assess security, privacy, and operational risks with an analytical, solutions-oriented mindset
- Strong verbal and written communication skills, with the ability to work collaboratively with team members and stakeholders across the organization
- Adaptability and willingness to take on tasks in a cross-functional environment, even in the face of ambiguity or changing requirements
- General understanding of regulatory requirements and good practices related to vendor management and data security is desirable
- Awareness of IT risk management concepts as well as familiarity with the S-SDLC and Agile Methodology is a bonus
- Fluent English communication skills at a B2+ level

**We offer**
- Career plan and real growth opportunities
- Unlimited access to LinkedIn learning solutions
- International Mobility Plan within 25 countries
- Constant training, mentoring, online corporate courses, eLearning and more
- English classes with a certified teacher
- Support for employee’s initiatives (Algorithms club, toastmasters, agile club and more)
- Enjoyable working environment (Gaming room, napping area, amenities, events, sport teams and more)
- Flexible work schedule and dress code
- Collaborate in a multicultural environment and share best practices from around the globe
- Hired directly by EPAM & 100% under payroll
- Law benefits (IMSS, INFONAVIT, 25% vacation bonus)
- Major medical expenses insurance: Life, Major medical expenses with dental & visual coverage (for the employee and direct family members)
- 13 % employee savings fund, capped to the law limit
- Grocery coupons
- 30 days December bonus
- Employee Stock Purchase Plan
- 12 vacations days plus 4 floating days
- Official Mexican holidays, plus 5 extra holidays (Maundry Thursday and Friday, November 2nd, December 24th & 31st)
- Monthly non-taxable amount for the electricity and internet bills

EPAM is a leading global provider of digital platform engineering and development services. We are committed to having a positive impact on our customers, our employees, and our communities. We embrace a dynamic and inclusive culture. Here you will collaborate with multi-national teams, contribute to a myriad of innovative projects that deliver the most creative and cutting-edge solutions, and have an opportunity to continuously learn and grow. No matter where you are located, you will join a dedicated, creative, and diverse community that will help you discover your fullest potential.



  • Desde casa, México Diebold Nixdorf A tiempo completo

    Supports development of a highly effective information security culture by contributing to the development, implementation and administration of a strategic and comprehensive Information Security Governance framework. Supports development and implementation of Information Security policies and standards. Implements and monitors key performance indicators,...


  • Desde casa, México American Express Global Business Travel A tiempo completo

    Amex GBT is a place where colleagues find inspiration in travel as a force for good and – through their work – can make an impact on our industry. We're here to help our colleagues achieve success and offer an inclusive and collaborative culture where your voice is valued.The Specialist, Information Security role is a supportive function whose objective...


  • Desde casa, México American Express Global Business Travel A tiempo completo

    Amex GBT is a place where colleagues find inspiration in travel as a force for good and – through their work – can make an impact on our industry. We're here to help our colleagues achieve success and offer an inclusive and collaborative culture where your voice is valued.The Analyst, Information Security role is a supportive function whose objective is...


  • Desde casa, México Integon Service Co. A tiempo completo

    **Key Responsibilities**:- Manages research and analysis of potential and known threats and vulnerabilities and develops testing and incident response plans to mitigate risk; leads teams monitoring systems for unusual activity, assists in directing execution and response to incidents and owns responsibility for coordinating and completing disaster recovery...


  • Desde casa, México U-Hi A tiempo completo

    **Senior Information Security Specialist - Remote**- **Location**: 100% remote (anywhere within Mexico)- **Job Type**: Full-time- **Salary**: Up to $78,000 MXN per month**Join Us in Building a More Secure Future**Are you a hands-on security professional looking to make a real impact? We’re looking for a **Senior Information Security Specialist** to help us...


  • Desde casa, México American Express Global Business Travel A tiempo completo

    Amex GBT is a place where colleagues find inspiration in travel as a force for good and – through their work – can make an impact on our industry. We're here to help our colleagues achieve success and offer an inclusive and collaborative culture where your voice is valued.The Manager, Information Security- STAR role is a unique, multi-faceted function...


  • Desde casa, México Framework Science A tiempo completo

    Framework Science is on a MISSION that focuses on Exploring new technologies and building tomorrow’s Applications. This means we hire TOP Engineers and Designers by providing great benefits and pay so they can focus on solving what’s never been solved before. Our aim is to push the needle of innovation while enabling Technical staff to impact code or...


  • Desde casa, México Luxoft A tiempo completo

    **Project** Description**:Luxoft DXC Technology Company is an established company focusing on consulting and implementation of complex projects in the financial industry. At the interface between technology and business, we convince with our know-how, well-founded methodology and pleasure in success. As a reliable partner to our renowned customers, we...


  • Desde casa, México EPAM Systems, Inc. A tiempo completo

    We are looking for a detail-oriented **Senior Information Security Analyst** to join our dedicated team. This position involves supporting third-party risk assessments and contributing to enterprise risk management efforts, ensuring regulatory compliance and safeguarding data within our vendor network. **Responsibilities** - Evaluate third-party risks with...


  • Desde casa, México Growth Partners Up A tiempo completo

    Responsible for managing and overseeing security project to ensure tasks are delivered on time, within budget and meet quality standards. - Ensure that the project risks are identified, monitored, and mitigated throughout the project lifecycle. - The Information Security Delivery Manager plays a critical role in ensuring that the organization's information...