Cybersecurity Specialist
Há 4 dias
Overview:
The Senior Cybersecurity Specialist is responsible for executing a portion of the GM Financial (GMF) Cybersecurity Program designed to advise the organization on its management of cybersecurity risk by organizing information, enabling risk management decisions, and addressing threats to ensure the security of company systems and information assets. The Senior Cybersecurity Specialist is responsible for contributing to the success of comprehensive security initiatives, working with internal and external groups to ensure the program is operating effectively and efficiently, and developing strong partnerships with business partners across the enterprise to ensure company data and information systems are protected at the appropriate level.
**Responsibilities**:
- Demonstrated proficiency developing and updating Cybersecurity policies, standards and procedures referencing NIST 800-53 controls and the NIST Cyber Security Framework, including implementing revisions in accordance with updates in relevant regulatory or industry Cybersecurity practices
- Experience with relevant Cybersecurity regulations and industry compliance requirements
- Experience with audit management and tracking of remediation items and/or findings to completion
- Demonstrated capability to collaborate with business partners to manage Cybersecurity needs
- Experience with development of security requirements to protect the company from external and internal threats
- Experience with documentation and reporting of policy or procedure discrepancies and/or change requests
- Ability to initiate, facilitate and promote Cybersecurity within the organization and monitor adherence to Cybersecurity policies, standards and controls
- Conduct risk assessments on Information Technology, Cybersecurity, Third Party Vendor, and other relevant company risks, recommend mitigation strategies, and work with internal stakeholders to assign monitoring responsibility
- Interpret risk requirements and translate into actionable and sustainable implementations
- Identify new or implement changes to techniques (policies, procedures, KPIs, KRIs, tools, etc.) and processes for the Cybersecurity Risk Management program to remain relevant (changing risk and threat landscape and Business requirements, etc.) and effective
- Monitor changes to cybersecurity overall and proactively identify the need for changes to existing policies and procedures based on changes to the security risk landscape
- Demonstrate awareness of all information security trends, vulnerabilities, including and especially those influencing the auto finance industry
- Demonstrate extensive experience with conducting IT, security, and compliance-related risk assessments and advising on mitigation strategies
- Well-versed in various information security and risk frameworks/standards (ISO 31000, ISO 2700x, NIST 800 series, etc.)
- Broad base of knowledge across a variety of compliance and control frameworks (SOC, ISO, PCI, CSA STAR, etc.)
- Familiar with a broad range of technical concepts: logical access control, agile development process, secure coding principles
Qualifications:
**Required Skills**:
- Ability to initiate, facilitate and promote cybersecurity within the organization and monitor adherence to cybersecurity policies, standards and controls
- Advocate for cybersecurity as an essential business requirement and advocate the business need as the foundation for cybersecurity program design
- Ensure effective communication and partnership with all departments at GMF and serve as a liaison of Cybersecurity and first point of contact for cybersecurity concerns
- Represent the Global Cybersecurity organization on projects as needed
- Engage with business partners to translate high-level business requirements into enterprise security initiatives and programs to achieve the GMF’s mission, goals and objectives
- Work closely with business stakeholders and project teams to plan, design and check appropriate levels of security governance, resource management and asset management
- Assist management with special projects as requests
**Qualifications**:
- Fluency in English and Portuguese is required
- Fluency in English, Portuguese, and Spanish is preferred
- Must have a high-level understanding of the financial services industry, security, risk and privacy
- Must have current knowledge and stay up-to-date on the latest Cybersecurity legislation, regulations, advisories, alerts and vulnerabilities
- Must have knowledge of Information Security and Cybersecurity frameworks
- Ability to clearly explain and articulate technical concepts using non-technical language
- Knowledge of security methodologies, policies, standards and industry practices
- Knowledge of information technology systems, infrastructure and operations
- Strong analytical skills
- Excellent verbal communication skills
- Strong interpersonal skills
- Ability to meet time sensitive deadlines required
- Ability to work collabor
-
Cybersecurity Transformation Specialist
4 semanas atrás
São Paulo, Brasil beBeeCybersecurity Tempo inteiroTransformative Cybersecurity Solutions Architect We are seeking a seasoned cybersecurity professional to join our team as a Transformative Cybersecurity Solutions Architect. In this role, you will serve as a trusted advisor responsible for influencing clients' cybersecurity transformation strategies and driving them to successful security outcomes. You will...
-
Cybersecurity Specialist
1 semana atrás
São Paulo, Brasil Shield Consulting Tempo inteiroGet AI-powered advice on this job and more exclusive features. In partnership with AgileBlue , Shield Consulting is seeking a Cybersecurity Account Manager to act as a trusted advisor and dedicated point of contact for our customers’ leadership teams. This role is key to ensuring strong client relationships, seamless onboarding, proactive communication,...
-
Cybersecurity Specialist
2 semanas atrás
São Paulo, São Paulo, Brasil Shield Consulting Tempo inteiro R$60.000 - R$120.000 por anoPosition OverviewIn partnership with AgileBlue, Shield Consulting is seeking aCybersecurity Account Managerto act as a trusted advisor and dedicated point of contact for our customers' leadership teams. This role is key to ensuring strong client relationships, seamless onboarding, proactive communication, and strategic alignment between Shield Consulting's...
-
Cybersecurity Compliance Senior Analyst
Há 5 dias
Sao Paulo, Brasil KAVAK Careers Tempo inteiroA KAVAK é uma empresa global com operações no Brasil, México, Argentina e Turquia; assim como a startup mais valiosa da América Latina e o 1º unicórnio mexicano. Investimos em talento, ideias, infraestrutura e tecnologia para continuar revolucionando a compra e venda de carros no mundo. Queremos garantir que nos rodeamos dos melhores talentos,...
-
Artificial Intelligence Specialist
2 semanas atrás
São Paulo, Brasil Black Box Tempo inteiroJoin to apply for the Artificial Intelligence Specialist role at Black Box . The Security Specialist oversees end-to-end security for our AI-powered SaaS platform, ensuring protection against threats and compliance with industry regulations. This role involves risk assessments, incident response, compliance audits, and implementing security best practices....
-
Cybersecurity & Network Administrator
1 dia atrás
São Paulo, São Paulo, Brasil trueITpros Tempo inteiro R$72.000 - R$108.000 por anoThe Opportunity: We are seeking a highly skilled and proactive Network Management and Cybersecurity Specialist to join our dynamic team. This is a critical role responsible for ensuring the robust security and optimal performance of our network infrastructure and data assets. The ideal candidate will possess a strong understanding of both network operations...
-
Enterprise Cybersecurity Strategist
3 semanas atrás
São Paulo, Brasil Kaspersky Tempo inteiroKaspersky has been protecting individuals and corporate clients all over the world from cyber threats for 27 years. We have 400 million unique users, 270 000 corporate clients, 517 products, 1100 technological patents and 34 offices around the world. Today our team has more than 5 500 top level experts, all of them regular people with their own talents and...
-
Specialist, Compliance
4 semanas atrás
São Paulo, Brasil IHS Towers Tempo inteiroJoin to apply for the Specialist, Compliance role at IHS Towers . Get AI-powered advice on this job and more exclusive features. Create and update compliance policies, procedures, guidelines, reporting, and training to comply with regulations, industry standards, and evolving technological trends. Design and execute relevant and meaningful compliance...
-
Artificial Intelligence Specialist
Há 2 dias
São Paulo, São Paulo, Brasil Black Box Tempo inteiro R$42.000 - R$84.000 por anoThe Security Specialist oversees end-to-end security for our AI-powered SaaS platform, ensuring protection against threats and compliance with industry regulations. This role involves risk assessments, incident response, compliance audits, and implementing security best practices.Qualifications:Fluent English5–10 years of cybersecurity experience.Expertise...
-
Cyber Security Governance Specialist
4 semanas atrás
São Paulo, Brasil Entain Tempo inteiroOverview Cyber Security Governance Specialist - Brazilian and American Markets at Entain. An experienced Regulatory technical compliance professional will join Entain’s global Cybersecurity team to focus on Brazilian and Americas (North, Central and South) businesses. The role involves reviewing operations for compliance with Cybersecurity and Technical...