Ver oferta completa

IT RISK & COMPLIANCE SPECIALIST

Descripción de la oferta de empleo

About IT in Nestlé We are a team of IT professionals from many countries and diverse backgrounds, each with unique missions and challenges in the biggest health, nutrition and wellness company of the world.
We innovate every day through forward-looking technologies to create opportunities for Nestlé’s digital challenges with our consumers, customers and at the workplace.
We collaborate with our business partners around the world to deliver standardized, integrated technology products and services to create tangible business value.
Optimizing the ways of working through automation and innovation.
Under the supervision and guidance of her/his primary Line Manager and Product Manager based in Spain, the Specialist IT Compliance role is to assess, oversee and drive all compliance issues within his/her area (product, product group, stream) including but not limited to information security, data protection, privacy, 3rd party/vendor and procurement.
The role includes evaluating the unit's compliance with internal and extrenal policies, standards and regulations, assessing the risks associated with each product and supporting the product teams in documenting and implementing corrective and ensuring the appropriate actions, checks and reviews are in place to deliver a risk based continuous improvement management system for compliance.
To enable this, s/he is responsible for providing the tools, processes and frameworks to support IT Compliance in Nestlé and for conducting IT Cloud controls testing.
Position Snapshot Location.
Nestlé México Stream.
IT Security & Compliance Type of Contract.
Permanent   Key Responsibilities.
General Outputs Responsible for driving Risk, Compliance & Security as a management system within the product/product group team.
• Ensures the proper implementation, management and follows up of Risk, Compliance & Security within product/product groups • Ensures risk identification and controls mapping for all solutions and processes in product/product groups using the Nestlé Risk, Compliance & Security framework • Supports product/product groups in identifying and applying internal and external (legal, regulatory and commercial) compliance requirements • Coordinates audit-related tasks such as ensuring the readiness of IS/IT Product Managers, Partner Delivery Managers and their organizations for audits testing and facilitating the timely resolution of any audit findings • Ensures Risk, Compliance & Security gaps within the product/product groups are documented in corrective & preventative actions and tracked through the management system • Facilitates the creation and modification of all technology compliance policies and frameworks owned by their product/product groups • Supports the product/product group teams on implementing by design the required IS/IT compliance in their solutions to meet the desired level of compliance maturity in the Nestlé Framework • Responsible for tracking the product/product groups compliance through relevant metrics and driving continuos improvement through the management system Tools, Processes and Frameworks Responsible for implementing and sustaining the tools and process for the Nestlé Cloud Compliance Framework.
• Implements tools and process to support an integrated Risk, Compliance & Security Framework  • Maintains the management system through continuous review and evaluation of external frameworks and standards (e.
., ISO, COBIT, NIST, ITIL etc.) • Maintains and develops the Cyber Risk Framework to address the evolving risk environment • Develops and sustains the Controls Library by translating Nestlé, Regulatory & Industry standards into actionable control points • Collaborate with Audit, IT & NBE support functions to ensure one source of truth through integration of reporting corrective & preventative actions and audit findings  • Implement and sustain processes with Legal, Quality and Corporate Compliance to ensure IT teams are able to identifying and applying internal and external (legal, regulatory and commercial) compliance requirements • Processes and procedures for lifecycle management of all technology compliance policies, standards and frameworks in Nestlé, including exceptions management • Responsible for defining maintaining an integrated risk, compliance & security index Regulatory & Audit Outputs • Supports the execution of IT audit activities and requests • Works with IT teams and internal and external Auditors, tracking and following up all IT audits, internal review or regulatory findings as corrective & preventative actions through the management systems • Validates root causes have been addressed prior to closure of corrective & preventative actions  • Supports IT teams in ensuring the required levels of documentation and evidence to support audit and regulatory requirements • Drives root cause analysis across audits and reviews to identify and document required improvements in tools, processes and documentation in the cloud framework • Supports IT teams in the execution and follow-up of Partner Compliance Audits regarding the cloud framework   Required Profile.
• At least 5 years of experience in a combination of risk management, compliance, information security and IT audit jobs.
• Undergraduate degree in the field of computer science, Management Information Systems, IT Security or similars.
• Industry-related compliance, risk or security management certification is preferred.
• Demonstrated ability to apply IT-related knowledge and experience in solving compliance issues.
• Experience developing and submitting IT audit and compliance reports.
• Experience with effective communication at different levels in the organization and in English.
• Experience having worked in a global and multi-cultural environments with and virtual teams is preferred.
About IT in Nestlé We are a team of IT professionals from many countries and diverse backgrounds, each with unique missions and challenges in the biggest health, nutrition and wellness company of the world.
We innovate every day through forward-looking technologies to create opportunities for Nestlé’s digital challenges with our consumers, customers and at the workplace.
We collaborate with our business partners around the world to deliver standardized, integrated technology products and services to create tangible business value.
Optimizing the ways of working through automation and innovation.
Under the supervision and guidance of her/his primary Line Manager and Product Manager based in Spain, the Specialist IT Compliance role is to assess, oversee and drive all compliance issues within his/her area (product, product group, stream) including but not limited to information security, data protection, privacy, 3rd party/vendor and procurement.
The role includes evaluating the unit's compliance with internal and extrenal policies, standards and regulations, assessing the risks associated with each product and supporting the product teams in documenting and implementing corrective and ensuring the appropriate actions, checks and reviews are in place to deliver a risk based continuous improvement management system for compliance.
To enable this, s/he is responsible for providing the tools, processes and frameworks to support IT Compliance in Nestlé and for conducting IT Cloud controls testing.
Position Snapshot Location.
Nestlé México Stream.
IT Security & Compliance Type of Contract.
Permanent   Key Responsibilities.
General Outputs Responsible for driving Risk, Compliance & Security as a management system within the product/product group team.
• Ensures the proper implementation, management and follows up of Risk, Compliance & Security within product/product groups • Ensures risk identification and controls mapping for all solutions and processes in product/product groups using the Nestlé Risk, Compliance & Security framework • Supports product/product groups in identifying and applying internal and external (legal, regulatory and commercial) compliance requirements • Coordinates audit-related tasks such as ensuring the readiness of IS/IT Product Managers, Partner Delivery Managers and their organizations for audits testing and facilitating the timely resolution of any audit findings • Ensures Risk, Compliance & Security gaps within the product/product groups are documented in corrective & preventative actions and tracked through the management system • Facilitates the creation and modification of all technology compliance policies and frameworks owned by their product/product groups • Supports the product/product group teams on implementing by design the required IS/IT compliance in their solutions to meet the desired level of compliance maturity in the Nestlé Framework • Responsible for tracking the product/product groups compliance through relevant metrics and driving continuos improvement through the management system Tools, Processes and Frameworks Responsible for implementing and sustaining the tools and process for the Nestlé Cloud Compliance Framework.
• Implements tools and process to support an integrated Risk, Compliance & Security Framework  • Maintains the management system through continuous review and evaluation of external frameworks and standards (e.
., ISO, COBIT, NIST, ITIL etc.) • Maintains and develops the Cyber Risk Framework to address the evolving risk environment • Develops and sustains the Controls Library by translating Nestlé, Regulatory & Industry standards into actionable control points • Collaborate with Audit, IT & NBE support functions to ensure one source of truth through integration of reporting corrective & preventative actions and audit findings  • Implement and sustain processes with Legal, Quality and Corporate Compliance to ensure IT teams are able to identifying and applying internal and external (legal, regulatory and commercial) compliance requirements • Processes and procedures for lifecycle management of all technology compliance policies, standards and frameworks in Nestlé, including exceptions management • Responsible for defining maintaining an integrated risk, compliance & security index Regulatory & Audit Outputs • Supports the execution of IT audit activities and requests • Works with IT teams and internal and external Auditors, tracking and following up all IT audits, internal review or regulatory findings as corrective & preventative actions through the management systems • Validates root causes have been addressed prior to closure of corrective & preventative actions  • Supports IT teams in ensuring the required levels of documentation and evidence to support audit and regulatory requirements • Drives root cause analysis across audits and reviews to identify and document required improvements in tools, processes and documentation in the cloud framework • Supports IT teams in the execution and follow-up of Partner Compliance Audits regarding the cloud framework   Required Profile.
• At least 5 years of experience in a combination of risk management, compliance, information security and IT audit jobs.
• Undergraduate degree in the field of computer science, Management Information Systems, IT Security or similars.
• Industry-related compliance, risk or security management certification is preferred.
• Demonstrated ability to apply IT-related knowledge and experience in solving compliance issues.
• Experience developing and submitting IT audit and compliance reports.
• Experience with effective communication at different levels in the organization and in English.
• Experience having worked in a global and multi-cultural environments with and virtual teams is preferred.
Ciudad de Mexico, MX, Ciudad de Mexico, MX,
Ver oferta completa

Detalles de la oferta

Empresa
  • Sin especificar
Municipio
  • En todo México
Dirección
  • Sin especificar - Sin especificar
Fecha de publicación
  • 28/11/2024
Fecha de expiración
  • 26/02/2025
Account Manager Soluciones de IT
Involve RH

Confidencial cuenta con una posición como account manager soluciones de it para prospectar clientes nuevos y vender más soluciones de it a los clientes existentes para llegar a la cuota de ventas... funciones: contacto de leads para la venta de soluciones de ciber seguridad prospectar clientes nuevos......

Administrative Program & Content Manager
Ubiquiti, Inc. (ui.com)

It background: understanding of foundational it networking concepts (routing, switching, 802... responsibilities: database management: manage and consolidate databases for our global it training program... join forces with us on our mission to build a better it industry... is an equal opportunity employer......

Mexico - Workday HCM Functional Junior Analyst (ENTRY LEVEL)
BNB

Understand workday’s implementation methodology and use it on all engagements... become a successful professional by helping our customers achieve their highest development! it is a position focused on cloud services... are you a digital enabler? join our multicultural and interdisciplinary team of top......

México - Workday HCM Functional Analyst (Entry Level)
BNB

Understand workday’s implementation methodology and use it on all engagements... don't know what workday is yet? don't worry! not only is this vacancy available for people with experience in workday, but it is also open for entry levels! if you want to make an impact, keep reading! description are you......

Customer Service Agent
New Rich Network

It's a challenging role, balancing both commercial and experiential priorities, but get it right and it's one of the most rewarding in the company... resolve complaints and customer problems in an efficient, professional and friendly manner... this is a rare opportunity to help shape an exciting business......

Mexico - Workday Integration Consultant
BNB

Don't know what workday is yet? don't worry! not only is this vacancy available for people with experience in workday, but it is also open for entry levels! if you want to make an impact, keep reading! description are you a digital enabler? join our multicultural and interdisciplinary, quickly growing......

FOOD AND RESTAURANT DEPARTMENT
Rainsteal Oil & Gas Limited, UK.

Administrative department business analyst, payroll manager, marketing specialist, administration supervisor, human resources officer, financial analyst, senior marketing analyst, logistics coordinator / expert, procurement officer, secretary / office assistants / office clerks / front desk clerks, account......

Technical Department
Rainsteal Oil and Gas Limited, UK.

Administrative department business analyst, payroll manager, marketing specialist, administration supervisor, human resources officer, financial analyst, senior marketing analyst, logistics coordinator / expert, procurement officer, secretary / office assistants / office clerks / front desk clerks, account......

Google Ads Manager
No Bull Marketing

Find your 'why' and live it... nice-to-have:language skills: native spanish speakers are welcome, as it may benefit team communications and client interactions... your day to day:daily collaboration: engage in daily strategy meetings via zoom with a fellow google ads manager from argentina and a german/australian......

Microsoft Dynamics Product Support Engineer _ Remote
Cliecon solution inc

Net) strong experience in customization and configuration strong knowledge data migration and power platform integration good experience with security and role-based access control ms dynamics 365 – f&o; – finance functional engineer/consultant hands on experience with finance modules & configuration......