Login Enter

DaCodes

1 year ago

Subdirector de Ciberseguridad y Cumplimiento Tecnológico

Sign up free Log in

Sign up to save this job, get alerts, and apply with an optimized CV.

Company information

Company
DaCodes
Location
México Mexico
Posted
1 year ago
View all jobs at DaCodes

Job description

DaCodes is supporting the search for a Subdirector de Ciberseguridad y Cumplimiento Tecnológico, who will be responsible for leading the cybersecurity area, defining and implementing protection and compliance strategies, as well as coordinating audits and risk evaluations that ensure the operational resilience of the organization.

Are you interested in leading the cybersecurity strategy of an institution with a social purpose?

Requirements

Principal responsibilities
  • Define and plan the technology security and regulatory compliance strategy for the institution.
  • Supervise the technology security area and assign resources effectively.
  • Implement and maintain corporate security policies, procedures, and controls.
  • Integrate secure development practices into IT systems and coordinate incident response plans.
  • Direct audits and risk evaluations to detect vulnerabilities and ensure normative compliance (BANXICO, CNBV, INDEVAL).
  • Manage security programs in cloud environments (AWS, Azure, Google) and container platforms (Docker, Kubernetes).
  • Manage relationships with security providers, software, hardware, and regulatory bodies.
  • Prepare executive and technical reports for senior management on findings and mitigation strategies.
Profile desired
  • Bachelor's or Engineering degree in IT Security, Systems, or related fields.
  • +8 years of experience in cybersecurity and technological compliance in the financial sector or large-scale institutions.
  • Experience in security models IaaS, PaaS, and SaaS; incident management and security automation in DevOps environments.
  • Knowledge of banking regulations (Circular Única de Bancos, SPEI, LFPDPPP, Controles INDEVAL).
  • Leadership, decision-making, communication, and work under pressure skills.
  • Desired certifications: ISO 27000, CISSP, CISM, CISA, CEH, COBIT, Comptia Security+.
Key technologies and tools
  • AWS (IAM, VPC, Security Groups, CloudTrail, CloudWatch), Azure, and Google Cloud
  • Firewalls, IPS, IDS, WAF, HSM
  • Middleware (Glassfish, JBoss, Apache Solr, Nginx)
  • DevOps platforms and version control (Git, GitHub, GitLab, Jenkins)
  • Protocols and encryption SSL/TLS, VPN, TCP/IP
  • SQL databases, MySQL, Oracle
Other requirements
  • Work modality: Hybrid (Mérida, Yucatán)
  • Availability for travel and relocation according to the project
  • Knowledge of security frameworks and regulations of the Mexican financial system
  • Residence in Mexico and compliance with honorability criteria (Art. 24 Ley de Instituciones de Crédito)

Benefits

We are collaborating with a company located in Mérida, Yucatán, that is looking for talent to join its team. These are some of the benefits and perks that our client offers directly:

Prestations Superiores a la Ley

  • Vales de despensa: 6% del salario base (topado)
  • Aguinaldo: 15 días
  • Prima vacacional: 25% sobre los días de vacaciones
  • Vacaciones (1er año): 12 días
  • Fondo de ahorro: 9% del salario base (topado, anual) al cumplir el año
  • Seguro de vida: Equivalente a 24 meses de salario
  • Seguro de gastos médicos mayores (sólo colaborador)

Ubicación y Esquema de Trabajo

  • Ubicación: Mérida, Yucatán (9 vacantes disponibles)
  • Modalidad híbrida: 3 días en oficina + 2 días home office

Beneficios Adicionales

  • Viernes de tarde y amigos: Cada trimestre, el 30% del equipo sale a las 2:00 p.m. para fomentar un ambiente saludable y fortalecer la integración familiar
  • Programa “Invierte en ti”: Iniciativa trimestral para desarrollo personal y profesional
  • Capacitación continua: Formación en tecnologías emergentes y habilidades blandas

Required skills

Interested in this position?

Create your free account and tailor your CV to match this job.