CrawlJobs Logo

ISO Sr. Analyst

https://www.citi.com/ Logo

Citi

Location Icon

Location:
Mexico , Ciudad De Mexico

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

The Information Security Operations (ISO) Sr. Analyst is an intermediate level position responsible for leading efforts to prevent, monitor and respond to information/data breaches and cyber-attacks. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's data security policy.

Job Responsibility:

  • Address security issues identified in the various information security programs
  • Review and address issues identified within various Information Security (IS) programs and ensure all IS issues related to Internal Audit, and External Auditors are closed by their original target date
  • Improve the efficacy of governance processes by identifying risks, monitoring controls, and remediating issues
  • Establish cross-sector working relationships and complete weekly awareness discussions with local team to efficiently tackle security issues
  • Ensure risk exceptions are raised, registered and closed on a timely basis and communicate updates and changes to the global standards
  • Complete Risk Assessment process, including completing accurate inventory reporting, data classification, threat analysis, and action plans
  • Test and validate that the business complies with applicable IS requirements
  • develop and implement IS policies and procedures
  • Determine and validate appropriate level of controls are being implemented to safeguard sensitive data
  • Develop Corrective Action Plans for all Information Security-related gaps and approve all closures through reviewing evidence to ensure each closure meets Citi Requirements
  • Assume informal/formal mentorship role within teams and assist with the coaching and training of new team members
  • Operate with a limited level of direct supervision
  • Assess risk when business decisions are made, demonstrating particular consideration for the firm's reputation and compliance with laws, rules and regulations

Requirements:

  • 5-8 years of relevant experience
  • Proficient in interpreting and applying policies, standards and procedures
  • Consistently demonstrates clear and concise written and verbal communication
  • Proven influencing and relationship management skills
  • Proven analytical skills
  • Amplio conocimiento y cumplimiento de regulaciones mexicanas (en materia de SI) (CNBV y BANXICO)
  • Conocimientos técnicos relacionados con Seguridad de la Información y Ciberseguridad
  • Deseables certificaciones CRISC, CISA, CISM, CISSP, ISO27001:2022, ISO31000:2018
  • Experiencia en la elaboración de reportes y métricas ejecutivas dirigidas a la alta dirección
  • Habilidades de comunicación y negociación
  • Habilidades para identificar y resolver problemas
  • Licenciatura en informática, Ingienería en computación, Sistemas computacionales (terminada/itulado)
  • Indispensable idioma inglés al 80%
  • Indispensable conocimientos avanzados en paquetería office (excel, power point, word)

Nice to have:

Deseables certificaciones CRISC, CISA, CISM, CISSP, ISO27001:2022, ISO31000:2018

Additional Information:

Job Posted:
May 02, 2025

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for ISO Sr. Analyst

Business Risk and Control Sr Analyst

The Business Risk and Control Sr Analyst is a seasoned professional role. Applie...
Location
Location
Singapore , Singapore
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5-8 years of experience
  • Experience managing Regulatory Exams, Audits – both Internal and External
  • Familiar with Industry Standards/Certifications, including PCI & ISO
  • Technology Control / IT Risk & Control
  • Strong Program/Project Mgmt skills required – coordination of complex cross-functional exams across geographies
  • Strong interpersonal skills, including the ability to partner with others and deal effectively with multiple projects and changing priorities
  • Strong analytical and problem-solving skills with excellent follow-up and strong attention to detail
  • Exemplary written and oral communication skills required, ability to succinctly synthesize key messages and themes
  • Experience and ease in interfacing with Senior Management
  • Excellent influencing and negotiation skills and ability to work effectively with all levels of the organization as well as geographically disbursed/matrix teams
Job Responsibility
Job Responsibility
  • Coordinate Technology regulatory, audit and Industry certification (PCI/ISO) interaction activities across Asia region, in partnership with Global teams, to ensure consistency and excellence in execution of deliverables
  • Drive the examination process as a lead or support contact/central point of communication with regulators/auditors for examinations and requests – schedule, objectives, etc.
  • Oversee exam preparatory activities and provide feedback to management and the team regarding deliverable request and meeting materials
  • Provide coaching to the management and team in advance of exam meetings to ensure consistency, applicability of the message and the materials meet regulatory request/expectations
  • Lead the collection, review and delivery of all deliverables and follow-up requests required for successful completion of the examination process
  • Responsible for communicating exam status and updates to Senior Management and the team
  • Utilize strong analytical skills to evaluate controls, identify control issues, review project plans and corrective actions to identify missing milestones and tasks
  • Analyze regulatory requirements and help define and/or validate the controls that address these requirements
  • Review relevant regulatory publications and guidelines to determine possible impact on Technology controls and form a view on expectations to be communicated to senior management
  • Provide regional reporting to Senior Management on regulatory/audit focus areas, themes and trends and items for escalation
  • Fulltime
Read More
Arrow Right

Sr. Analyst, Contract & Account Management

This position is primarily responsible for managing the tracking of and fulfilme...
Location
Location
United States , Andover
Salary
Salary:
105000.00 - 158000.00 USD / Year
enel.com Logo
Enel
Expiration Date
May 31, 2026
Flip Icon
Requirements
Requirements
  • Bachelor’s degree or equivalent, Master’s degree preferred
  • Minimum of 5-7 years of related experience in energy market settlements
  • Self-motivated with the ability to work independently and as part of a group
  • Excellent communications, interpersonal, and organizational skills required
  • Demonstrates creativity, and independent thought when solving problems
  • Builds positive relationships with internal and external groups
  • Will require full knowledge of functional responsibilities of all groups/individuals within the organization
  • Strong analytical, critical and economical thinking and problem solving skills
  • Ability to multi-task, grasp complex issues, as well as pay strict attention to details
  • Strong communication skills in a team-oriented, open work space environment
Job Responsibility
Job Responsibility
  • Act as first point of contact for interpretation of settlement terms and commitments under the Power Purchase Agreements
  • Perform PPA contract administration by tracking, reporting and ensuring the fulfilment of contractual obligations such as output and availability targets and guarantees
  • Execute monthly/quarterly Renewable Energy Certificate (RECs) transfers and oversee invoicing to counterparties for each power plant
  • Coordinate and oversee curtailment reimbursement process invoicing to counterparties
  • Perform analytical research to determine cause of settlement discrepancies
  • Coordinate with counter-parties to proactively and timely resolve invoice reconciliation discrepancies
  • Provide data collection and reporting assistance during internal and external audits
  • Partner with Accounting Finance and Control unit to reconcile settlement statements
  • Respond to inquiries and provide regional, technical and administrative support
  • Acts as advisor to the group and may become actively involved in projects to meet schedules and resolve problems
What we offer
What we offer
  • Affordable, quality healthcare for you and your family
  • Life insurance and disability benefits
  • Retirement benefits
  • Flexible spending accounts
  • Tuition reimbursement
  • Professional development allowance
  • 401k with match fully vested as of day one
  • Generous PTO
  • Paid leave programs
  • Career growth and development support
  • Fulltime
Read More
Arrow Right

Sr Risk Analyst

The Security Controls Governance Specialist within Amgen’s Governance, Risk and ...
Location
Location
India , Hyderabad
Salary
Salary:
Not provided
amgen.com Logo
Amgen
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong attention to detail and ability to maintain accurate, audit-ready records
  • Familiarity with regulatory frameworks, such as ISO/IEC 27001, NIST SP 800-53
  • Intermediate to advanced knowledge of Excel
  • Experience in governance, risk, compliance, audit, and controls
  • Clear writing skills and ability to coordinate across technical and non-technical stakeholders
  • Owns day-to-day controls governance work with minimal oversight
  • Produces consistent, high-quality deliverables and improves processes when gaps are found
  • Bachelor’s or Master's degree and 5-8 years of directly related experience
Job Responsibility
Job Responsibility
  • Maintain the security controls library (control statements, guidance, ownership, version history)
  • Manage security control mappings and traceability (e.g. ISO 27001, NIST 800-53, EU AI Act)
  • Track security control testing activities (design/operating effectiveness), issues, and remediation through closure
  • Run governance routines (intake, reviews, approvals, change logs) and keep documentation organized
  • Produce simple reporting on security control coverage, testing status, exceptions, and remediation progress
  • Coordinate evidence collection and validate evidence quality (complete, clear, timely)
  • Performs Information Security subject‑matter expert (SME) review of SOPs and controlled documents in CDOCs to ensure alignment with applicable Amgen Information Security policies, standards, SOPs, and templates
  • provides documented review comments, identifies compliance gaps, and completes assigned CDOCs review and approval tasks within required timelines
Read More
Arrow Right

Sr. Risk Operations Analyst

The Risk Operations Senior Analyst plays a critical role within the Integrated R...
Location
Location
United States , Irvine
Salary
Salary:
120000.00 - 170000.00 USD / Year
haeaus.com Logo
Hyundai AutoEver America
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ years of experience in Technology Risk, Cyber Risk, GRC, or IT Risk Management
  • Hands-on experience running technology risk assessments, issue management, exception processes and maintaining control libraries, policies, and standards
  • Familiarity with GRC platforms
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer science or a related field
  • Strong knowledge of technology control frameworks (e.g., NIST CSF/800-53, ISO 27001, CIS)
  • Proven ability to create risk dashboards and executive-level reporting
  • Strong analytical, documentation, and process design skills
  • Excellent stakeholder management and communication skills
  • Proficient in English for effective communication and coordination
Job Responsibility
Job Responsibility
  • Maintain and evolve the enterprise technology control library, ensuring alignment with internal policies, standards, and external frameworks
  • Own the lifecycle management of technology risk policies and standards, including updates, reviews, approvals, and communications
  • Ensure controls, policies, and standards are clearly mapped to regulatory, legal, and business requirements
  • Run and continuously improve core Risk Operations processes, including: Technology Risk Assessments, Risk Issue Management, Risk Exception Management
  • Ensure risk processes are executed consistently, on time, and in accordance with defined methodologies
  • Act as a subject matter expert for risk process guidance to technology, security, and business teams
  • Design, build, and maintain risk dashboards and reporting
  • Translate risk data into meaningful insights for senior leadership, customers and risk committees
  • Ensure accuracy, completeness, and audit-readiness of risk data across systems
  • Partner closely with Customers, Senior and Executive Leaders, Legal and other groups, to drive timely remediation and risk ownership
  • Fulltime
Read More
Arrow Right

Sr. Cybersecurity Incident Response Analyst

Blue Yonder, a leading supply chain software company, is seeking a Sr Cybersecur...
Location
Location
Mexico , Monterrey; Mexico City
Salary
Salary:
Not provided
blueyonder.com Logo
Blue Yonder
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Information Security, or related equivalent experience
  • 5+ years of experience in information security or cybersecurity as an analyst, engineer or consultant
  • MUST have experience with incident response methodologies and tools (e.g. SANS IR, EDR, SIEM, Threat Intelligence, etc.)
  • Strong technical skills and attention to detail
  • Excellent verbal and written communication skills
  • Ability to work independently and as part of a team
  • Ability to work under pressure and in a fast-paced environment
  • Strong problem-solving skills and a proactive approach to work
  • Knowledge of security frameworks such as NIST and ISO 27001
  • Familiarity with security regulations and standards (e.g. PCI DSS, HIPAA, etc.)
Job Responsibility
Job Responsibility
  • Monitor and Analyze Security Alerts – Review alerts generated by security systems, appliances, and logs to determine the appropriate course of action to protect the enterprise and reduce overall risk
  • Incident Triage and Response – Quickly assess, prioritize, and respond to security incidents, ensuring timely containment, eradication, and recovery to minimize business impact
  • Root Cause Analysis (RCA) – Investigate security incidents to determine root causes, attack vectors, and vulnerabilities, providing recommendations to reduce the attack surface and prevent recurrence
  • Threat Hunting and Proactive Defense – Conduct proactive threat-hunting activities based on intelligence, anomalies, and adversary tactics to identify and mitigate threats before they escalate
  • Collaboration with Cross-Functional Teams – Work closely with IT, engineering, legal, compliance, and other teams to coordinate incident response efforts and ensure an effective security posture
  • Incident Documentation and Reporting – Maintain detailed documentation of security incidents, response actions, and lessons learned, ensuring continuous improvement in security processes
  • Develop and Improve Incident Response Playbooks – Enhance and maintain incident response procedures, ensuring alignment with industry best practices and emerging threats
  • Security Awareness and Training – Provide guidance, training, and mentorship to SOC analysts and IT staff on security threats, incident handling, and response best practices
  • Threat Intelligence Integration – Leverage threat intelligence sources to stay informed on evolving cyber threats and proactively adjust security strategies to defend against them
  • Fulltime
Read More
Arrow Right

Sr Data Architect

The Sr Data Architect is responsible for leading architecture capabilities for t...
Location
Location
India , Gurgaon
Salary
Salary:
Not provided
https://www.baxter.com/ Logo
Baxter
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of experience as a data professional
  • 5+ years working with multiple Database Management Software (SQLServer, Oracle, Snowflake, etc.)
  • 3+ years serving explicitly in a Data Architect or Data Modeler role
  • 3+ years utilizing data modeling tools (ERwin, ER/Studio, PowerDesigner, etc.)
  • 3+ years creating conceptual, logical and physical data model
  • Bachelor’s degree in relevant area
  • Knowledge of enterprise-level business function/capability and data modeling
  • Prior experience in a complex, highly integrated services environment
  • Prior experience with Master Data Management, Metadata Management, and/or canonical modeling
  • Familiarity with Industry Standard and Healthcare Standard data formats (ISO, ANSI X12, HL7, etc.)
Job Responsibility
Job Responsibility
  • Understand and document current end-to-end data flow diagrams of business subject areas and re-architect data ingestion processes into relevant applications
  • Collaborating with Data Integration Engineers and Business Owners to standardize B2B and B2C data exchange formats
  • Lead the development and implementation of data standards and best practices for data governance, data management, and data quality
  • Assist Data Governance Organization team members in the cataloging, defining, securing, and measuring of organizational data and information assets
  • Provide guidance on security, privacy, data management, and regulatory compliance around our data assets
  • Provide technical vision, leadership, and guidance to architects, analysts, and stewards on the team
  • Perform other duties as assigned
What we offer
What we offer
  • Paid Time Off
  • Employee Heath & Well-Being Benefits
  • Continuing Education/ Professional Development
  • Support for Parents
  • Employee Assistance Program
Read More
Arrow Right
New

Nurse

The Health, Safety and Environment (HSE) team at Club Med ensures the safety and...
Location
Location
South Africa , Tinley Manor
Salary
Salary:
Not provided
clubmed.us Logo
Club Med
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Licensed nurse, holding an official State Registered Nursing qualification
  • Attentive, with strong listening, analytical, and observational skills
  • Responsible, reassuring guests by showing empathy and clear communication
  • Decisive, able to make rapid, appropriate decisions
  • English required
  • French, Afrikaans, and Zulu appreciated
Job Responsibility
Job Responsibility
  • Assess patients’ condition (pain levels, symptoms), administer first aid, decide on further medical care if needed, and update follow-up records
  • Provide suitable treatments for children according to their specific needs
  • Manage medical supply inventory and ensure replenishment of necessary equipment
  • Prepare and coordinate home care files in collaboration with ISOS and work closely with the department manager
  • Collaborate with local doctors and medical facilities to ensure optimal patient follow-up
  • Maintain strict hygiene and safety standards within your workspace
What we offer
What we offer
  • Accommodation provided on site or nearby
  • Meals included with a fixed contribution
  • Access to Resort facilities and activities (gym, swimming pool, outdoor activities)
  • Preferential rates at the boutique, spa, excursions
  • Tailored training throughout your career
  • Internal and international mobility
  • Fulltime
Read More
Arrow Right
New

Restaurant Shift Supervisor

As a Service Leader, you will be responsible for achieving guest satisfaction th...
Location
Location
United States , Blaine
Salary
Salary:
18.00 - 19.00 USD / Hour
perkinsrestaurants.com Logo
Perkins Restaurant & Bakery
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Basic skills such as sanitation, safety, and customer service taught through in-house training
  • Trustworthy
  • can be relied upon to deal with payment of guest checks and operate cash register
  • Must be able to communicate clearly
  • Must be able to coordinate multiple tasks simultaneously
  • Must have high level of mobility/flexibility
  • Must be able to work irregular hours under heavy stress/pressure during peak times
  • Must possess a high level of coordination
  • Must lift and carry serving trays weight up to 20 pounds for distances up to 30 feet
  • Must be able to fit through an opening 30” wide
Job Responsibility
Job Responsibility
  • Ensures that all guests are properly greeted, seated, and served
  • Accountable for proper resolution of all guest complaints
  • Accountable for proper handling of cash, credit card information, gift cards and all things related to the payment of guest checks
  • Ensures proper control of the facility and equipment through preventive maintenance, repairs, security measures, and adherence to safety and sanitation requirements
  • Monitors and oversees food temperatures during hot and cold handling to reduce the incidence of risk factors known to cause food borne illness
  • Trains employees during shift to guarantee proper and productive performance
  • Takes responsibility and verifies that all menu items are prepared and served according to standards
  • Anticipates, identifies and corrects system breakdowns to achieve maximum guest satisfaction
  • Communicates with Manager on Duty and coworkers regarding product/service deficiencies, equipment, safety problems, etc.
  • Responsible for change fund, cash register, and guest check control
What we offer
What we offer
  • Educational Assistance with DeVry University with complimentary laptop
  • Immediate Family Members are also eligible
  • Competitive Pay with Service Award Incentive
  • Get paid daily through Daily Pay
  • Comprehensive Health Benefits including Medical, Dental, Vision, and more
  • 401(k) retirement savings with company match
  • Flexible Schedule
  • All you can eat pancakes + meal discounts
  • Employee Discount Program
  • Development Pathway
  • Parttime
Read More
Arrow Right