¡Activa las notificaciones laborales por email!

Cybersecurity GRC Specialist

TechMahindra Cloud Services

Ciudad de México

Híbrido

MXN 300,000 - 600,000

Jornada completa

Hace 30+ días

Descripción de la vacante

Una empresa innovadora busca un Especialista en GRC de Ciberseguridad altamente calificado. Este rol desafiante implica gestionar la gobernanza de riesgos y cumplimiento, garantizando que los clientes mantengan posturas de seguridad robustas y conformes. Con un enfoque en la gestión de riesgos de terceros y el cumplimiento normativo, el candidato ideal liderará compromisos con clientes y aplicará las mejores prácticas de la industria. Únete a un equipo en crecimiento donde tu voz será escuchada y tu talento será nutrido, en un entorno que promueve la confianza y la innovación.

Servicios

Mentoría y oportunidades de crecimiento
Ambiente de trabajo cómodo
Beneficios adicionales a la ley

Formación

  • Experiencia en gestión de riesgos de terceros y cumplimiento normativo.
  • Certificaciones relevantes como ISO 27001, CISA, CISSP son preferidas.

Responsabilidades

  • Implementar y gestionar procesos TPRM y gobernanza de ciberseguridad.
  • Ejecutar evaluaciones de riesgo y cumplimiento, y dirigir actividades de remediación.

Conocimientos

Gestión de Riesgos de Terceros
Gobernanza de Ciberseguridad
Cumplimiento Normativo
Manejo de Excepciones de Políticas
Seguridad de Aplicaciones
Gestión de Vulnerabilidades
Control de Acceso
Continuidad del Negocio

Educación

Licenciatura en Sistemas de Información
Maestría en Ciberseguridad

Herramientas

Archer

Descripción del empleo

*This position is also open to work remotely from anywhere in Mexico*

Who is Tech Mahindra?

At Tech Mahindra, we not only provide Agile and DevOps methodologies to our customers, we have adopted the same within the company as well. Our nimble processes are not mired in red tape, yet robust, flexible and result-oriented. We are Software Engineers, Technical Architects, Cloud and DevOps specialists. But the most important, we are dreamers, creators and challengers. Each day, we strive to make great come alive. Our lemma: “work smart and play hard”

Our technology partners are Hashicorp, Cloudbees, Chef, Pagerduty, Docker and SAP.

We are always looking for the brightest candidates to come and we offer a work environment with everything you need to be your best. Does Ambition, Success, Fun, Friends & Learning define your idea of a career? Join us and be part of our family!

We’re looking for a Cybersecurity GRC Specialist

Role Overview:

We are seeking a highly skilled and motivated Third party Risk Management, Cyber Security Governance, Risk & Compliance Specialist to join our team. The ideal candidate will have extensive experience in Third-Party Risk Management (TPRM), policy exception handling, and setting up risk and compliance frameworks and processes. This role requires a strong understanding of risk domains, regulatory compliance, and industry best practices. The candidate should be capable of leading client engagements from a GRC perspective and possess excellent interpersonal skills.

Key Responsibilities:

  1. Implement and manage TPRM end-to-end processes, including policy exception handling and cyber security governance.
  2. Execute risk and compliance assessments, and drive remediation activities.
  3. Understand and manage cyber risk domains such as access control, operational security, data protection and privacy, vulnerability management, backup and recovery, application security, and business continuity.
  4. Ensure compliance with various regulatory requirements (e.g., HITRUST, PCI DSS etc).
  5. Apply industry best practices (e.g., ISO 27001, NIST, COBIT) in designing and documenting GRC processes and assessment frameworks.
  6. Archer Knowledge is Mandatory.
  7. Understand and manage application security risks and controls.
  8. Lead client engagements from a GRC perspective, demonstrating strong ownership and high impact.

Qualifications:

  1. Degree in Information Systems, Computer Science, or equivalent experience.
  2. Advanced degree in Engineering, Cybersecurity, Information Assurance, Information Security, Information Systems, or Computer Science is preferred.
  3. Relevant certifications such as ISO 27001, CRISC, CISA, CISSP, or the willingness and motivation to obtain similar certifications.
  4. Strong interpersonal skills and the ability to work collaboratively with clients and team members.

Preferred Skills:

  1. Experience in Supplier Risk Management.
  2. Expertise in Control Testing.
  3. Proficiency in Policy Exception Handling.

This position offers a unique opportunity to contribute to our cyber security governance and risk management efforts, ensuring our clients maintain robust and compliant security postures.

What you can expect from us:

  • At Tech Mahindra, what distinguishes us from other teams is the comfortable environment which engenders trust within teams and with our customers. Trust and openness leads to quality, innovation, commitment to deliverables, efficiency and cost-effectiveness for all our customers.
  • Work with some truly remarkable IT engineers, architects, specialists and more.
  • We’re growing at a phenomenal pace and we’d like some company.
  • Hear your voice, nurture your talent and help you strengthen your foot print!
  • Benefits above the law
  • Mentorship, and opportunities to grow and learn
Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra un archivo en formato PDF, DOC, DOCX, ODT o PAGES de hasta 5 MB.