Cybersecurity Manager

CIMMYT - International Maize and Wheat Improvement Center

Mexico

On-site

PHP 4,426,000 - 6,640,000

Full time

44 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

CIMMYT - International Maize and Wheat Improvement Center in Mexico invites an experienced Cybersecurity Manager to lead its information security program globally. The postholder will own the ISMS, oversee the cybersecurity team, drive compliance with ISO/IEC 27001:2022 and NIST CSF v2.0 across country offices, and manage risk, incident response, and vendor governance.

We offer an attractive remuneration package and opportunities for professional development within a mission-driven,

Qualifications

  • Bachelor’s degree in computer science or related field; master's advantageous.
  • Security certification required: CISSP, CISM, ISO/IEC 27001 Lead Implementer or Lead Auditor, or equivalent.
  • +8 years of professional experience in information security, incl. 3 years in managing/supervising a technical team.
  • Experience implementing ISO/IEC 27001 ISMS including Annex A control mapping and audit evidence.
  • Experience in managing security vendors, contracts, licenses and budgets.
  • Experience in multi-country or distributed organizations; international non-profit or research context is a plus.

Responsibilities

  • Lead CIMMYT's information security function and cyber team.
  • Maintain ISO/IEC 27001:2022 aligned ISMS and related standards.
  • Prepare and present risk and control items; drive actions.
  • Configure and troubleshoot security platforms, EDR, IAM, vulnerability mgmt, encryption, SIEM, and network security.
  • Own vulnerability and patch management with remediation targets and closure.
  • Oversee security incident response end-to-end with timelines and RCA.
  • Validate control effectiveness with testing for bypass routes.
  • Oversee identity and access governance.
  • Support internal and external audits and donor due diligence.
  • Coordinate with regional IT and run organization-wide security awareness.
  • Report monthly on security posture and metrics.

Skills

Information security
Team management
Risk assessment
Incident response
Vendor management
ISO/IEC 27001

Education

Bachelor's degree in Computer Science or related field
Master's degree advantageous

Tools

SIEM systems
Identity & access management
Vulnerability scanning tools

Job description

CIMMYT - International Maize and Wheat Improvement Center Mexico Both national and international Senior level

CIMMYT is a cutting-edge, non-profit, international organization dedicated to solving tomorrow’s problems today. It is entrusted with fostering improved quantity, quality, and dependability of production systems and basic cereals such as maize, wheat, triticale, sorghum, millets, and associated crops through applied agricultural science, particularly in the Global South, through building strong partnerships. This combination enhances the livelihood trajectories and resilience of millions of resource-poor farmers, while working towards a more productive, inclusive, and resilient agrifood system within planetary boundaries. CIMMYT is a core CGIAR Research Center, a global research partnership for a food-secure future, dedicated to reducing poverty, enhancing food and nutrition security, and improving natural resources. For more information, visithttps://www.cimmyt.org/

We are seeking an experienced, hands-on Cybersecurity Manager to lead the protection of the information assets underpinning its global research operations.

The postholder leads CIMMYT's information security function and its Information Security Management System, aligned to ISO/IEC 27001:2022, with operational ownership of the Center's security platforms and of the team that runs them.

Key Responsibilities:

  • Lead CIMMYT's information security function, and manage, coach and develop the cybersecurity team, including objective setting, evidence-based performance assessment, technical mentoring and cross-cover.
  • Operate and continuously improve the Information Security Management System aligned to ISO/IEC 27001:2022 and NIST CSF v2.0, maintaining the supporting standards, procedures and the evidence that demonstrates the controls operate as documented.
  • Prepare and present risk and control items, and follow through on decisions and actions arising.
  • Perform and oversee hands‑on configuration, integration, tuning and troubleshooting across the security platform estate, endpoint detection and response, identity and privileged access management, vulnerability management, encryption, SIEM and log management, and network security.
  • Own vulnerability and patch management: scan coverage, remediation targets by severity, exception handling and verified closure.
  • Own security incident response end to end , detection and triage, containment decisions, documented timelines, root cause analysis, post‑incident review and corrective actions.
  • Validate control effectiveness before controls are declared in place, including testing for bypass routes, and maintain the technical evidence that supports that conclusion.
  • Own identity and access governance.
  • Support internal audit, external audit and donor due diligence.
  • Manage security suppliers and licences and renewals.
  • Coordinate security standards and support with regional IT specialists across country offices, and run the organization‑wide security awareness programme.
  • Report monthly on security posture, risk and control performance through agreed metrics.
Requirements
  • Bachelor’s degree in computer science, Information Technology, Information Security or a related field. A master's degree is an advantage.
  • A security certification is required: CISSP, CISM, ISO/IEC 27001 Lead Implementer or Lead Auditor, or equivalent. Technical platform certifications are an advantage
  • +8 years of professional experience in information security, of which at least three years managing or supervising a technical team.
  • Practical experience implementing and operating an ISO/IEC 27001 management system, including Annex A control mapping, Statement of Applicability, and the production of audit evidence.
  • Experience managing security vendors, contracts, licences and budgets.
  • Experience in a multi-country or distributed organization is an advantage; experience in international research, development or non‑profit organizations is a further advantage.

CIMMYT offers an attractive remuneration package and support for continuous professional development. In addition to the provisions of the Mexican Labor Law our package of benefits includes year‑end bonus (40 days), vacation premium (56%), life and medical insurance, supermarket coupons, savings fund, social Mexican benefits (IMSS, SAR / Infonavit).

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cybersecurity Manager – ISO 27001 & Incident Response
Senior Cybersecurity Manager – ISO 27001 & Incident Response

CIMMYT - International Maize and Wheat Improvement Center • Mexico

On-site
PHP 4,426,000 - 6,640,000
Global Cybersecurity Manager - ISO 27001 & Risk Lead
Global Cybersecurity Manager - ISO 27001 & Risk Lead

CIMMYT • Mexico

On-site
MXN 900,000 - 1,300,000
Year-end bonus (40 days)
Vacation premium (56%)
Life and medical insurance
+3
M26338 Assistant Research Associate
M26338 Assistant Research Associate

CIMMYT • Mexico

On-site
MXN 280,000 - 420,000
Life and medical insurance
Year-end bonus (40 days)
Vacation premium (56%)
+3
M26336 Program Finance Business Partner (Locally Recruited)
M26336 Program Finance Business Partner (Locally Recruited)

CIMMYT • Mexico

On-site
MXN 700,000 - 900,000
Year-end bonus (40 days)
Vacation premium (56%)
Life and medical insurance
+3
M26273 Financial Planning Analysis Manager (Locally Recruited)
M26273 Financial Planning Analysis Manager (Locally Recruited)

CIMMYT • Mexico

On-site
MXN 900,000 - 1,200,000
Year-end bonus (40 days)
Vacation premium (56%)
Life and medical insurance
+3
CLM Specialist (Contract Lifecycle Management) - Locally Recruited
CLM Specialist (Contract Lifecycle Management) - Locally Recruited

CIMMYT • Hinoba-an

On-site
PHP 796,000 - 1,326,000
Health insurance
Cybersecurity CDTR IAM - Senior Associate
Cybersecurity CDTR IAM - Senior Associate

PwC México • Mexico

On-site
MXN 420,000 - 720,000
Senior Cyber Security Engineer
Senior Cyber Security Engineer

Description Ciklum • Mexico

On-site
PHP 5,576,000 - 8,055,000
Medical insurance
Udemy license
Language courses
+2
Senior Technical Account Manager, Mexico City
Senior Technical Account Manager, Mexico City

Wiz • Mexico

On-site
PHP 3,281,000 - 4,739,000
Hybrid work model
Security Risk Management
Security Risk Management

LaPieza • Mexico

On-site
PHP 4,991,000 - 6,862,000