Senior Risk

hace 2 semanas


Mexico City Nestlé A tiempo completo

About IT In Nestlé

We are a team of IT professionals from many countries and diverse backgrounds, each with unique missions and challenges in the biggest health, nutrition and wellness company of the world. We innovate every day through forward-looking technologies to create opportunities for Nestlé’s digital challenges with our consumers, customers and at the workplace. We collaborate with our business partners around the world to deliver standardized, integrated technology products and services to create tangible business value.
 

To strengthen our IT Procurement/Mexico hub, we are looking for an IT Procurement Business System Analyst to complete our Source to Pay Department.

Under the supervision and guidance of your primary Community of Practice Lead and Product Manager based in Barcelona you will be responsible for one or several products within a product group and you will be responsible to serve as a liaison between Procurement and IS/IT. You will be accountable for the Procurement interface with IT to translate opportunities and issues supporting and and advising the best solutions. You will further translate business strategies, opportunities and needs into IS/IT product requirements, and plays a key role within the product team to specify, test and deploy those IT solutions.

 

Position Snapshot

Location: Nestlé México

Stream: IT Security And Compliance

Type of Contract: Permanent

 

Under the supervision and guidance of her/his primary Community of Practice Lead and Product Manager based in Switzerland, the Sr Risk and Compliance IT Specialist is responsible for implementing, coaching and supporting an integrated risk, compliance and security management systems in accordance to the business risk appetite. The management systems enable the IT teams globally to identify, document, measure and address its compliance requirements, including but not limited to data protection, privacy, 3rd party/vendor, information security and procurement. The Risk and Compliance Specialist's responsibilities include ensuring the teams are able to drive all their risks, compliance and security requirements through the management system, ensuring compliant and secure products & platforms meeting the business risk appetite. To enable this, s/he is responsible for providing the tools, processes and frameworks to support IT Compliance in Nestle and for conducting IT controls testing .

 

Key Responsibilities:

General Outputs
Responsible for coaching and reporting on Risk, Compliance & Security through the Nestlé Compliance and Information Security management system within IT:
• Supports risk identification and controls mapping for all solutions and processes in product/product groups and other IT teams using the Nestlé Security, Risk & Compliance framework and management system
• Responsible for conducting controls testing, management system reviews and reporting to assess the IT compliance and management system
• Supports all IT teams in identifying and applying Internal and External (legal, regulatory and commercial) compliance requirements
• Coaches and supports teams in managing Risk, Compliance & Security gaps through documented corrective & preventative actions, tracked through the management system
• Provides guidance and support to IT teams in implementing by design the required IT compliance in their solutions to meet the desired level of compliance maturity and risk appetite in the Nestlé Framework 
• Responsible for tracking the compliance through relevant metrics
• Advise on and promote importance of IT related Risk, Compliance and Security outside the IT community
• Contributes to IT Security and Compliance on-boarding of Nestlé acquired businesses

Tools, Processes and Frameworks
Responsible for implementing and sustaining the tools and process for the Nestlé Compliance & Information Security Management System:
• Implements tools and process to support an integrated Risk, Compliance & Security Framework (including regulatory requirements PCI, GDPR Quality etc.)
• Maintains the management system through continuous review and evaluation of external frameworks and standards (, ISO27001, COBIT, NIST, ITIL etc.)
• Maintains and develops the Nestlé Cyber Risk Framework to address the evolving risk landscape
• Develops and sustains the Controls Library by translating Nestlé, Regulatory & Industry standards into actionable control points
• Collaborate with Audit, IT & Nestlé support functions to ensure one source of truth through integration of reporting corrective & preventative actions and audit findings 
• Implement and sustain processes with Legal, Quality and Corporate Compliance to ensure IT teams are able to identifying and applying internal and external (legal, regulatory and commercial) compliance requirements
• Processes and procedures for lifecycle management of all technology compliance policies, standards and frameworks in Nestlé, including exceptions management
• Responsible for defining maintaining an integrated risk, compliance & security index (KPIs)

Regulatory & Audit Outputs
• Supports the execution of IT audit activities and requests
• Works with IT teams and internal and external Auditors, tracking and following up all IT audits, internal review or regulatory findings as corrective & preventative actions through the management systems
• Validates root causes have been addressed prior to closure of corrective & preventative actions 
• Supports IT teams in ensuring the required levels of documentation and evidence to support audit and regulatory requirements
• Ensures all IT teams are trained in identifying and reporting Security, Risk & Compliance incidents and events to meet internal & external requirements
• Drives root cause analysis across audits and reviews to identify and document required improvements in tools, processes and documentation
• Supports IT teams in the execution and follow-up of Partner Compliance Audits (including cloud)

 

Required Profile:

• 6+ years of experience in a combination of risk management, compliance, information security and IT jobs - thereof >3 years in a senior role
• Undergraduate degree in the field of computer science, law, IT Security, Quality Management or business administration; graduate degree in one these fields preferred
• Industry-related compliance, risk or security management certification is preferred. Valuable Certifications: ISO 27000 (any is valuable), or CISM, or CISA, or CRISC, or COBIT. Desirable only.
• Demonstrated ability to apply IT-related knowledge and experience in solving compliance issues
• Experience developing and submitting IT audit and compliance reports
• Experience with effective communication at different levels in the organization and in English
• Experience having worked in a global environment and with virtual teams 



  • Mexico City Citi A tiempo completo

    The Business Risk Senior Analyst is a seasoned professional role. Applies in-depth disciplinary knowledge, contributing to the development of new techniques and the improvement of processes and work-flow for the area or function. Integrates subject matter and industry expertise within a defined area. Requires in-depth understanding of how areas collectively...


  • Mexico City Capital One A tiempo completo

    WeWork Reforma Latino (97001), Mexico, Ciudad de Mexico, Ciudad de MexicoSr Manager Risk Management Sr Manager, Risk Management Capital One is one of the fastest growing organizations in the world today and we are growing our tech teams globally. You’ll play a pivotal role in developing and driving our international risk management strategy—from day...

  • Infrastructure Risk

    hace 1 semana


    Mexico City Citi A tiempo completo

    The Business Risk Senior Analyst is a seasoned professional role. Applies in-depth disciplinary knowledge, contributing to the development of new techniques and the improvement of processes and work-flow for the area or function. Integrates subject matter and industry expertise within a defined area. Requires in-depth understanding of how areas collectively...

  • Risk and Control

    hace 2 semanas


    Mexico City Citi A tiempo completo

    The Compl Bus Control Group Mgr is accountable for management of complex/critical/large professional disciplinary areas. Leads and directs a team of professionals. Requires a comprehensive understanding of multiple areas within a function and how they interact in order to achieve the objectives of the function. Applies in-depth understanding of the business...

  • Banamex Retail Risk Head

    hace 1 semana


    Mexico City Citi A tiempo completo

    The Country Risk Exec Group Mgr (MD) manages multiple teams of senior professionals through other senior managers. The job requires a broad and comprehensive understanding of the different systems, theories and practices relevant to a function as well as practical experience of multiple business cycles. In-depth knowledge of the industry and direct...

  • Head of Financial Risk

    hace 1 semana


    Mexico City Nubank A tiempo completo

    About the team : The Credit Risk Squad is part of the 2nd line of Defense. It is responsible for managing and overseeing our organization's credit risk function by providing independent oversight, review & challenge of the risk takers, defined as 1st line of Defense. As a second line, the Credit Risk team monitors credit risk exposure, conducts credit risk...

  • Enterprise Risk

    hace 22 horas


    Mexico City Citi A tiempo completo

    Job Background The Risk Data, Analytics, Reporting & Technology (DART) function is responsible for (i) supporting intelligent risk decisions and proactive management of Citi’s risks across the enterprise, (ii) delivering risk information and analysis to help risk managers and senior management navigate complex risks and regulatory landscape, (iii)...

  • Business Risk Officer

    hace 3 semanas


    Mexico City Citi A tiempo completo

    The Business Risk Officer is a strategic professional who stays abreast of developments within own field and contributes to directional strategy by considering their application in own job and the business. Recognized technical authority for an area within the business. Requires basic commercial awareness. There are typically multiple people within the...

  • Banca Empresarial

    hace 2 semanas


    Mexico City Citi A tiempo completo

    The Credit Portfolio Senior Analyst is an intermediate-level position responsible for conducting credit reviews, credit approval and monitoring the portfolio to identify credit migration in coordination with the Risk Management team. The overall objective of this role is to manage Citi's portfolio exposure to clients and counterparties globally. ...

  • VP Risk Treasurer

    hace 3 días


    Mexico City Citi A tiempo completo

    The Risk Treasurer is a senior level position responsible for overseeing the balance sheet and managing bank risk, in coordination with the Trading team. The overall objective of this role is to ensure bank compliance and liquidity in line with all regulatory requirements and limits. Responsibilities: Oversee the balance sheet, liquidity, cash flow and...


  • Mexico City Citi A tiempo completo

    El Gerente de Riesgo Comercial brinda un liderazgo completo y tiene la responsabilidad de supervisión. Proporciona dirección y liderazgo operativo/de servicios a los equipos. Aplica conocimientos disciplinarios mediante la provisión de perspectivas de valor agregado o servicios de asesoría. Puede contribuir con el desarrollo de nuevas técnicas, modelos...


  • Mexico City Citi A tiempo completo

    The Credit Portfolio Intermediate Analyst is an intermediate-level position responsible for conducting credit reviews, credit approval and monitoring the portfolio to identify credit migration in coordination with the Risk Management team. The overall objective of this role is to manage Citi's portfolio exposure to clients and counterparties globally. ...


  • Mexico City Servicios Comerciales Amazon Mexico S. de R.L. de C.V. - D44 A tiempo completo

    Amazon's Risk and Compliance Services (RCS) is in search of an experienced governance/company secretariat professional to support our regulated financial services entities across Canada and Latin America (LATAM). Based in Mexico, the successful candidate will join a high-performing team of governance experts collaborating closely with Boards of Directors and...


  • Mexico City Citi A tiempo completo

    The Credit Risk Intmd Analyst is a developing professional role. Deals with most problems independently and has some latitude to solve complex problems. Integrates in-depth specialty area knowledge with a solid understanding of industry standards and practices. Good understanding of how the team and area integrate with others in accomplishing the objectives...


  • Mexico City Citi A tiempo completo

    The Operational Risk Sr Analyst is a seasoned professional role. Applies in-depth disciplinary knowledge, contributing to the development of new techniques and the improvement of processes and work-flow for the area or function. Integrates subject matter and industry expertise within a defined area. Requires in-depth understanding local regulations to...

  • Oliver Wyman

    hace 4 semanas


    Mexico City MMC Corporate A tiempo completo

    Oliver Wyman is a global leader in management consulting. With offices in 70 cities across 30 countries, Oliver Wyman combines deep industry knowledge with specialized expertise in strategy, operations, risk management, and organization transformation. Our 6,500+ professionals help clients optimize their business, improve their operations and risk profile,...


  • Mexico City Citi A tiempo completo

    The Business Risk Senior Analyst is a seasoned professional role. Applies in-depth disciplinary knowledge, contributing to the development of new techniques and the improvement of processes and work-flow for the area or function. Integrates subject matter and industry expertise within a defined area. Requires in-depth understanding of how areas collectively...

  • Senior Analyst

    hace 4 semanas


    Mexico City Zendesk A tiempo completo

    Job DescriptionWho we're looking forWould you like to work on an innovative and sophisticated Security team for a global SaaS company that’s constantly pushing forward? Zendesk is looking for a Senior Security Analyst with excellent communication and analytical skills to help us protect our internal partners, our products and our customers by being able to...

  • Fraud Risk Sr Analyst

    hace 4 semanas


    Mexico City Citi A tiempo completo

    El analista sénior de riesgo de fraude es un puesto profesional experimentado. Aplica profundos conocimientos sobre la disciplina al contribuir con el desarrollo de nuevas técnicas y la mejora de los procesos y el flujo de trabajo para el área o función. Integra la experiencia en la materia y la industria dentro de un área definida. Requiere una...


  • Mexico City Citi A tiempo completo

    The Credit Portfolio Senior Analyst is an intermediate-level position responsible for conducting credit reviews, credit approval and monitoring the portfolio to identify credit migration in coordination with the Risk Management team. The overall objective of this role is to manage Citi's portfolio exposure to clients and counterparties globally. ...