Snapshot of Your Day We are looking for a cybersecurity professional who is energized about safeguarding our organization’s cyber posture by utilizing your skills to identify and manage cybersecurity risks relating to supplier engagements. How You’ll Make An Impact Conduct detailed assessments of cybersecurity practices and third‑party controls; analyze assessment findings to identify risks and gaps in security posture. Collaborate with key stakeholders to develop and implement improvement plans. Understand and translate cybersecurity legal clauses and terms within supplier contracts; lead and support required negotiations of those terms with procurement and/or legal. Keep abreast of cybersecurity trends and emerging threats to continually improve assessment methodologies. Make a direct impact on the organization’s cybersecurity posture by ensuring third‑party suppliers meet the highest security standards. What You Bring University degree from a faculty with a preference for computer science, data science, information technology, legal fields, or an equivalent technology/business management related degree. Fluency in English. Familiarity with information security risk methodologies, frameworks such as ISO 27001, NIST, COBIT and industry best practices to help ensure a secure cloud computing environment. Keen eye for detail and passion for excellence; deep understanding of cybersecurity principles; exceptional analytical abilities; familiarity with standard methodologies regarding security of networks, services, products, operations, etc. Good communication and presentation skills; passion for listening and collaborating with different functions like procurement, legal and suppliers. Ability to communicate with all levels of the organization up through and including executive management. Experience in the end‑to‑end management of supplier assessments, integration of application security standard processes, secure coding practices, etc. into remediation measures, and ensuring risk measures are properly documented, understood and handled. Energized to use innovative methods and ideas that drive supplier resilience; desire to get results and continuously improve processes and services; availability for international business trips (at least 10% of the time). Nice to have certifications such as CRISC, CISA, CCSK, CCAK, CSX‑. Practitioner, ISO 27001 Lead Auditor, PM or comparable certifications will be considered a plus. Previous work experience of 3 to 5 years as an information security auditor. Rewards/Benefits Career growth and development opportunities Supportive work culture Company‑paid health and wellness benefits Paid time off and paid holidays Savings fund Parental leave and family building benefits Our Commitment to Diversity Lucky for us, we are not all the same. Through diversity we generate power. We run on inclusion and our combined creative energy is fueled by over 130 nationalities. Siemens Energy celebrates character – no matter what ethnic background, gender, age, religion, gender identity, sexual orientation or disability. We energize society, all of society, and we do not discriminate based on our differences. #J-18808-Ljbffr
Cybersecurity Supplier Assessor
SIEMENS ENERGY
santiago de querétaro, santiago de querétaro
Publicado hace 20 días
Denunciar empleo