Senior Manager Information Security
4M Oficinas, Paraguay
Millicom (Tigo)
Would you like to help us achieve our purpose of connecting more people, improve their lives and develop our communities? If so, Tigo is for you!
We believe in innovation, we adapt and are agents of change. Our customers are at the center of everything we do.
Come and grow with our team, where together we will transform lives and communities. Additionally, you will have the opportunity to participate in challenging projects and bring your innovative ideas.
This is your opportunity, come and be part of Sangre Tigo!
Apply right now!
Job Purpose
Lead and mature the organization's cybersecurity program by establishing, maintaining, and evolving a risk-based, NIST-aligned information security framework that safeguards critical assets, ensures regulatory compliance, and supports strategic business goals. The CISO will champion a culture of security across the organization, manage risks to information systems and infrastructure, and ensure the confidentiality, integrity, and availability of data. This role is instrumental in elevating the company’s information security maturity and aligning it with group-wide cybersecurity standards.
Key responsibilities
Develop and execute a comprehensive, enterprise-wide information security strategy and roadmap in alignment with the NIST Cybersecurity Framework and organizational goals.
Lead the continuous improvement of the company’s information security maturity level through defined assessments, gap analysis, and capability-building initiatives.
Oversee the design, implementation, and enforcement of information security policies, procedures, and controls across all technology platforms.
Manage and grow the information security function, including direct and indirect team members across areas such as security operations, compliance, risk management, and business continuity.
Collaborate with IT, network, and infrastructure teams to embed security into architecture, design, and operational processes.
Establish and maintain strong working relationships with business leaders, IT stakeholders, regulatory bodies, auditors, and other key partners to align security practices with business objectives.
Lead incident response and crisis management activities, ensuring prompt mitigation and root cause analysis of security events.
Direct risk assessments, third-party/vendor evaluations, and security audits; track remediation plans to close identified gaps.
Manage the information security budget, ensuring optimal allocation of resources and return on security investments.
Develop and implement a comprehensive security awareness and training program to foster a culture of shared security responsibility.
Provide regular reporting and metrics to local and group leadership on risk posture, program progress, and areas for improvement.
Ensure compliance with local and international cybersecurity laws, regulations (e.g., SOX), and industry standards.
Serve as a liaison between security, compliance, legal, audit, and HR functions to coordinate enterprise risk and governance activities.
Qualifications and experience
Education
Bachelor's degree in Computer Engineering, Systems Analysis, Information Security, or a related field.
Advanced degree (e.g., Master’s in Cybersecurity, MBA) preferred.
Certifications
One or more of the following required: CISSP, CISM, CISA, CRISC, or equivalent credentials.
Experience
Minimum 6 years of progressive experience in information security, risk management, or IT, with demonstrated leadership and strategic responsibility.
Strong background in telecommunications or critical infrastructure industries preferred.
Proven experience in leading security programs aligned to NIST, ISO 27001, COBIT, or similar frameworks.
Skills and Knowledge
Deep understanding of networks, databases, operating systems, identity and access management, and security operations.
Experience with IT governance, risk, and compliance (GRC) tools and methodologies.
Project and financial management experience, including budgeting and resource allocation.
Excellent communication and stakeholder management skills, capable of influencing at all organizational levels.
Fluency in English (intermediate or higher).
Familiarity with SOX compliance, including technical training and thresholds.
Experience managing cross-functional security councils or steering committees.
Exposure to group or multinational governance models in security.
Organization & People
Manage and develop a highly technical team, fostering innovation, collaboration, and alignment with business and market needs.
Drive talent recruitment, development, training, and retention in accordance with Tigo's strategic plan and HR policies.
Empower employees, provide regular constructive feedback, and celebrate team accomplishments.
Ensure the TIGO culture and values are reflected across the organization.
Participate in Millicom cross-fertilization initiatives through the security community.
Leadership&Key stakeholder management
Senior security leadership role within the telecoms industry.
Collaboration with C-Suite executives, demonstrating effective communication and inspiring confidence.
Collaboration with cross-functional teams (Procurement, Finance, B2B, and B2C) to design and deploy effective security measure.
Strategic thinking, translating complex ideas into clear proposals for business leaders and technical stakeholders.
Manage the company's security organization, consisting of direct reports and indirect reports (such as individuals in business continuity and IT operations), including recruitment, training, staff development, and performance management.
Experience with large-scale international technical change activities.
Tigo is a company committed to the digital transformation of Paraguay through innovative products and services. We have a clear purpose: to build digital networks that connect people, improve lives and develop our communities. Since 1992, we have sought to transform lives, accelerating the deployment of our high-speed data networks and significantly increasing access to digital highways for millions of people who are today taking advantage of the new digital economy. At the heart of this transformation is our Tigo people, a group of committed and talented individuals who are the DNA of our company, which we proudly call Sangre Tigo. Our Sangre Tigo moves us to work together for our purpose, to be innovative and agile, transparent and responsible, to place our clients at the center of everything we do, to be engines of positive change. Our strong work culture has been recognized by the “Great Place To Work® institute since 2012, forming part of the local ranking of the best companies to work for in Paraguay.
Millicom | Tigo is proud to be an Equal Employment Opportunity employer committed to a diverse workforce and nondiscrimination policy in all aspects of employment. We provide equal opportunity and access for all persons, without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, status as a disabled veteran or other protected veteran, or any other protected characteristic, in all phases of the employment process and in compliance with applicable federal, state, and local laws and regulations.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Agile Audits C CISA CISM CISO CISSP COBIT Compliance CRISC Finance Governance IAM Incident response ISO 27001 NIST Risk assessment Risk management Security strategy SOX Strategy
Perks/benefits: Career development Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.