Sr Analyst, Cyber Risk Assurance - Guadalajara or Tijuana (Hybrid)
MXN 698K-800K (estimate) Senior-level Full Time
Tasks
- Advise stakeholders on cyber risk
- Assess risks using security frameworks
- Collaborate with incident response for risk impact analysis
- Collaborate with internal audit and compliance on alignment
- Develop IT controls testing approach
- Develop risk metrics dashboards and reporting
- Drive risk lifecycle intake treatment acceptance closure
- Identify control gaps and recommend remediation
- Improve risk assessment methodologies and GRC workflows
- Lead system risk assessments
- Maintain enterprise cyber risk register
- Mentor junior analysts on risk assessments
- Monitor remediation progress
- Perform postincident risk analysis
- Provide risk summaries for senior leadership
- Support risk escalation and acceptance
- Translate incident learnings into risk reduction
Perks/Benefits
Skills/Tech-stack
800-53 | Archer | CIS Critical Security Controls | CMMC | CSA Cloud | CSA Cloud Control Matrix | Cloud Control Matrix | Control Framework | Control matrix | Controls Testing | Critical Security Controls | Cyber Essentials | Cyber Essentials Plus | Cybersecurity | Enterprise Risk | Enterprise Risk Register | Executive Summaries | GRC | ISO 27001 | ISO 27002 | IT controls | Incident Response | NIST 800 | NIST 800-53 | NIST CSF | OneTrust | Penetration Testing | Purple Teaming | Reporting | Risk Management | Risk Metrics | Risk register | Security controls | ServiceNow | Unified Control Framework
Education
Related jobs
-
Lead, Governance & Compliance Analyst MXN 721K-840KAI Governance | Cloud Security | Compliance Evidence | Compliance Evidence Management | Control TestingCareer development | Flexibility & work-life balance | Headspace app access | Hybrid work model | Mental health daysSenior-level Full TimeMexico, Mexico City R2d ago
-
EDR | Event triage | Forensics | Incident Response | Indicators of compromiseMidday shift schedule | Remote work option | Training and development opportunitiesEntry-level Full TimeRemote (Mexico) R16d ago
-
Detection engineering | Detection rule development | EDR | Incident Response | Malware analysisAmericas shift schedule | Remote workMid-level Full TimeRemote (Mexico) R16d ago
-
Access Management | Alert Tuning | Best practices | Cloud Security | Infrastructure as CodeBenefits package | Competitive salary | Flexible work | Health insurance | Paid time offMid-level Full TimeMexico - Remote R1mo ago