Cybersecurity Specialist

2 semanas atrás


Sao Paulo, Brasil GM Financial Tempo inteiro

Overview:
The Senior Cybersecurity Specialist is responsible for executing a portion of the GM Financial (GMF) Cybersecurity Program designed to advise the organization on its management of cybersecurity risk by organizing information, enabling risk management decisions, and addressing threats to ensure the security of company systems and information assets. The Senior Cybersecurity Specialist is responsible for contributing to the success of comprehensive security initiatives, working with internal and external groups to ensure the program is operating effectively and efficiently, and developing strong partnerships with business partners across the enterprise to ensure company data and information systems are protected at the appropriate level.

**Responsibilities**:

- Demonstrated proficiency developing and updating Cybersecurity policies, standards and procedures referencing NIST 800-53 controls and the NIST Cyber Security Framework, including implementing revisions in accordance with updates in relevant regulatory or industry Cybersecurity practices
- Experience with relevant Cybersecurity regulations and industry compliance requirements
- Experience with audit management and tracking of remediation items and/or findings to completion
- Demonstrated capability to collaborate with business partners to manage Cybersecurity needs
- Experience with development of security requirements to protect the company from external and internal threats
- Experience with documentation and reporting of policy or procedure discrepancies and/or change requests
- Ability to initiate, facilitate and promote Cybersecurity within the organization and monitor adherence to Cybersecurity policies, standards and controls
- Conduct risk assessments on Information Technology, Cybersecurity, Third Party Vendor, and other relevant company risks, recommend mitigation strategies, and work with internal stakeholders to assign monitoring responsibility
- Interpret risk requirements and translate into actionable and sustainable implementations
- Identify new or implement changes to techniques (policies, procedures, KPIs, KRIs, tools, etc.) and processes for the Cybersecurity Risk Management program to remain relevant (changing risk and threat landscape and Business requirements, etc.) and effective
- Monitor changes to cybersecurity overall and proactively identify the need for changes to existing policies and procedures based on changes to the security risk landscape
- Demonstrate awareness of all information security trends, vulnerabilities, including and especially those influencing the auto finance industry
- Demonstrate extensive experience with conducting IT, security, and compliance-related risk assessments and advising on mitigation strategies
- Well-versed in various information security and risk frameworks/standards (ISO 31000, ISO 2700x, NIST 800 series, etc.)
- Broad base of knowledge across a variety of compliance and control frameworks (SOC, ISO, PCI, CSA STAR, etc.)
- Familiar with a broad range of technical concepts: logical access control, agile development process, secure coding principles

Qualifications:
**Required Skills**:

- Ability to initiate, facilitate and promote cybersecurity within the organization and monitor adherence to cybersecurity policies, standards and controls
- Advocate for cybersecurity as an essential business requirement and advocate the business need as the foundation for cybersecurity program design
- Ensure effective communication and partnership with all departments at GMF and serve as a liaison of Cybersecurity and first point of contact for cybersecurity concerns
- Represent the Global Cybersecurity organization on projects as needed
- Engage with business partners to translate high-level business requirements into enterprise security initiatives and programs to achieve the GMF’s mission, goals and objectives
- Work closely with business stakeholders and project teams to plan, design and check appropriate levels of security governance, resource management and asset management
- Assist management with special projects as requests

**Qualifications**:

- Fluency in English and Portuguese is required
- Fluency in English, Portuguese, and Spanish is preferred
- Must have a high-level understanding of the financial services industry, security, risk and privacy
- Must have current knowledge and stay up-to-date on the latest Cybersecurity legislation, regulations, advisories, alerts and vulnerabilities
- Must have knowledge of Information Security and Cybersecurity frameworks
- Ability to clearly explain and articulate technical concepts using non-technical language
- Knowledge of security methodologies, policies, standards and industry practices
- Knowledge of information technology systems, infrastructure and operations
- Strong analytical skills
- Excellent verbal communication skills
- Strong interpersonal skills
- Ability to meet time sensitive deadlines required
- Ability to work collabor



  • Sao Paulo, Brasil Siemens Tempo inteiro

    At **Siemens** we have some of the smartest minds working across the world, re-imagining the future and doing extraordinary things. As a **Business Development Specialist for OT Cybersecurity**, your role would focus on driving business growth and creating opportunities specifically in the field of cybersecurity for operational technology systems. OT refers...


  • Sao Paulo, Brasil Siemens Mobility Tempo inteiro

    **Job Description**: **Job ID**: - 375863**Company**: - Siemens Infraestrutura e Industria Ltda.**Organization**: - Digital Industries**Job Family**: - Sales**Experience Level**: - Experienced Professional**Full Time / Part Time**: - Full-time**Remote vs Office**: - Office/Site only**Contract Type**: - Permanent- At - **Siemens** we have some of the...


  • Campinas, São Paulo, Estado de São Paulo, Brasil Averis Tempo inteiro

    KEY RESPONSABILITIESTake a leading role as Cybersecurity Specialist at Averis Americas, encompassing both administrative and technical pillars, actively engaging and enhancing the team to ensure effective performance in safeguarding the client company's information.Hands-on and technical activities focused on cybersecurity in its broader aspects.Act as a...


  • Sao Paulo, Brasil Siemens Healthineers Tempo inteiro

    Do you want to help create the future of healthcare? Siemens Healthineers is a place for people who dedicate their energy and passion to this greater cause. It reflects their pioneering spirit combined with our long history of engineering in the ever-evolving healthcare industry. We offer you a flexible and dynamic environment where you have the space to...


  • Sao Paulo, Brasil Yoctoo Tempo inteiro

    Job Published: 27 July 2023 - LocationSão Paulo - Specialisms Security Nosso cliente é uma multinacional do setor do agronegócio, presente em mais de 100 países e uma das principais produtoras globais de fertilizantes. **RESPONSBILIDADES E ATRIBUIÇÕES**: - Administração de ambientes computacionais e participação na definição da arquitetura...


  • Sao Paulo, Brasil Siemens Healthineers Tempo inteiro

    Do you want to help create the future of healthcare? Siemens Healthineers is a place for people who dedicate their energy and passion to this greater cause. It reflects their pioneering spirit combined with our long history of engineering in the ever-evolving healthcare industry. We offer you a flexible and dynamic environment where you have the space to...


  • Sao Paulo, Brasil Siemens Healthineers Tempo inteiro

    Do you want to help create the future of healthcare? Siemens Healthineers is a place for people who dedicate their energy and passion to this greater cause. It reflects their pioneering spirit combined with our long history of engineering in the ever-evolving healthcare industry. We offer you a flexible and dynamic environment where you have the space to...

  • Recruitment Researcher

    1 semana atrás


    Sao Paulo, Brasil Sigma Software Tempo inteiro

    Company Description Sigma Software provides top-quality software development solutions and IT consulting to more than 170 customers all over the globe. Volvo, SAS, Oath Inc., Fortum, IGT (previously GTECH), Checkmarx, Formpipe Software, JLOOP, Vergence Entertainment, Collective, Genera Networks, Viaplay, and others trust us to develop their products. Our...


  • São Paulo, Brasil IQVIA Tempo inteiro

    At IQVIA, we look for the very best people, and then give them meaningful work to do. We don’t simply think about careers, we think about contributions. Those who choose to work with us are joining a recognized global leader – a company uniquely positioned to help clients make the most of market opportunities and respond to challenges that affect global...

  • Manager, Security Architect

    1 semana atrás


    São Paulo, Brasil IQVIA Tempo inteiro

    At IQVIA, we look for the very best people, and then give them meaningful work to do. We don’t simply think about careers, we think about contributions. Those who choose to work with us are joining a recognized global leader – a company uniquely positioned to help clients make the most of market opportunities and respond to challenges that affect global...

  • Data Governance

    2 semanas atrás


    São Paulo, Brasil BRP Tempo inteiro

    JOB DESCRIPTION BRP is seeking a Data Governance & Protection Advisor/Specialist who will be participating to support our Data Platform Modernization (DPM) project at BRP. This position will be responsible for establishing the data governance capabilities that includes establishing stewardship management, setting up business glossaries, reference data...