Information Security Compliance Manager
hace 2 días
**The**Opportunity**:
Position Summary
Primary
**Responsibilities**:
- Ensure regional compliance with global IT Security policy, standards and requirements
- Report out of regional Information Security status to global IT Security
- Risk management and prioritization based on global, regional and country needs
- Help ensure compliance with local laws and regulations pertinent to IT Security
- Manage and assist in collaborating with global and local personnel on incident response, breach prevention and digital forensics
- Delivery of Information Security projects for the region
- Ensure and improve IT Security awareness among local employees
- Management and development of metrics to provide visibility of compliance
- Develop formal metrics and KPIs to help provide insight and progress of management and control of the function to relevant management
- Train and develop teams on processes and capabilities and ensure processes are properly documented from end-to-end, including involvement of other teams and functions
- Resolve problems independently and understand, define and/or refine escalation processes and procedures.
Education and Experience
- Bachelor Degree in Information Technology, Information Security/Assurance, Engineering or related field of study preferred; at least six years of related experience and/or training (in addition to experience requirements below); or equivalent combination of education and experience preferred
- Strong interest in technology and a desire to learn and grow in applicable technologies field is required. Skills and knowledge must be kept current, including ongoing active pursuit of certifications
- Preferred experience managing personnel in a global environment
- Experience developing and implementing Information Security strategies in a global organization
- Preferred strong communication and management skills and experience working in a global matrixed environment
- Strong experience managing a team and interacting with various teams in order to socialize and gain agreement on execution of necessary activities
- Practical expertise with TCP/IP networking required
- Requires taking responsibility for the interaction and overall success of managed services
- Technical knowledge on a number of security technologies required
- Solid understanding of information security and networking required
- Extensive experience interacting with customers required
- Strong critical thinking and problem solving skills required
- A passion for information security and data security required
- Detail oriented with strong organization skills required
- Process workflow focus required with strong interpersonal skills including excellent written/verbal communication skills
**Position Summary**
**Primary Duties and Responsibilities**
- ** Security Assessment Framework development and management**: Develop, implement and maintain the processes of receiving, reviewing, and responding to security assessment questionnaires from customers, third-party auditors, and regulatory bodies, ensuring responses are accurate, timely, and comprehensive.
- ** Cross-Functional Collaboration**: Work closely with teams across the organization, including IT, legal, compliance, product, and operations, to gather necessary information and data to respond to security-related inquiries. Drive continuous improvement in areas that require improved communication and collaboration between functions.
- ** Documentation and Reporting**: Maintain accurate records of completed questionnaires and responses. Prepare and manage reports related to security assessments and audits for senior management and stakeholders. Managing and communicating gaps and open issues identified and ensuring the proper propagation of these items.
- ** Continuous Improvement**: Review and refine security questionnaire response capabilities and processes to improve efficiency, consistency, and quality of responses. Management and development of metrics to provide visibility of compliance.
- ** Compliance Oversight**: Ensure responses align with regulatory, Legal and industry standard compliance requirements (GDPR, SOC 2, HIPAA, etc.) and align with the organization’s internal security policies and standards.
- ** Risk Assessment and Mitigation**: Identify potential risks based on customer and auditor assessments and work with relevant departments to mitigate or address these concerns proactively.
- ** Customer Relationship Management**: Act as the primary point of contact regarding security assessment inquiries. Provide clear, concise, and professional communication to ensure customer confidence in our security practices.
- ** Training and Awareness**: Provide guidance and training to internal teams regarding security assessment best practices and the importance of responding to security questionnaires in alignment with company policies and industry standards.
**Education and Experience**
- Bachelor’s degree in Information Security, Computer Sc
-
VP, Information Security
hace 3 semanas
Ciudad de México DiDi Global A tiempo completoA leading mobility technology platform in Mexico City is seeking a Vice Information Security & Privacy Compliance Officer to ensure compliance with information security and privacy laws. The ideal candidate will have over 8 years of experience in information security with specific knowledge of fintech regulations. This role presents an opportunity to impact...
-
Analyst - Information Security
hace 6 días
Ciudad de México Citi A tiempo completoThe Information Security Ops (ISO) Intermediate Analyst is an intermediate level position responsible for leading efforts to prevent, monitor and respond to information/data breaches and cyber-attacks. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's data security...
-
Information Security Engineer
hace 12 horas
Ciudad de México Bishop Fox A tiempo completoGiven our exceptional growth, we are expanding and hiring an Information Security Engineer to join us on this exciting journey. This position will be responsible for helping to control information security risks by managing threat/vulnerability management systems and other security technologies to mitigate risks.**Responsibilities**:- Monitor systems for...
-
Analyst - Information Security
hace 4 días
Ciudad de México Citi A tiempo completoThe Information Security Ops (ISO) Intermediate Analyst is an intermediate level position responsible for leading efforts to prevent, monitor and respond to information/data breaches and cyber-attacks. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's data security...
-
Chief Information Security Officer
hace 13 horas
méxico beBeeSenior A tiempo completoSenior Security Leader Job Summary Our organization is seeking an experienced Senior Security Manager to join our team. As a key technical security expert, you will operate in an international context and collaborate closely with the cyber team to ensure the security and integrity of our information systems. This role involves serving as a central point of...
-
Security Project Manager
hace 4 semanas
Ciudad de México Asenium Consulting A tiempo completoFor one of my customer we are looking for a Security Project manager. Duration: Long-term(Contract to Hire) Location: Mexico(100% remote) Description: We are looking for an IT Security and Compliance Analyst. Reporting to the Group Information Systems Security Manager, this position operates in an international context. You will serve as a key technical...
-
Chief Information Security Officer
hace 2 días
Ciudad de México Citi A tiempo completoThe Chief Information Security Officer (CISO) is a senior executive responsible for establishing and maintaining the bank’s information security strategy and ensuring that all information assets and technologies are adequately protected. The CISO plays a critical role in safeguarding the bank's data, ensuring compliance with local regulations, and...
-
Information Security Engineer
hace 12 horas
Ciudad de México, CDMX Bishop Fox A tiempo completoGiven our exceptional growth, we are expanding and hiring an Information Security Engineer to join us on this exciting journey. This position will be responsible for helping to control information security risks by managing threat/vulnerability management systems and other security technologies to mitigate risks. **Responsibilities**: - Monitor systems for...
-
Information Security Tpisa Analyst
hace 2 semanas
Ciudad de México Citi A tiempo completoThe Info Sec Prof Senior Analyst is an intermediate level position responsible for leading efforts to prevent, monitor and respond to information/data breaches and cyber-attacks. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's data security policy.**Responsibilities**:-...
-
Information Security Intermediate Analyst
hace 2 semanas
Ciudad de México Citi A tiempo completoThe Information Security Ops (ISO) Intermediate Analyst is an intermediate level position responsible for leading efforts to prevent, monitor and respond to information/data breaches and cyber-attacks. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's data security...