Golder Associates Ltd. | Regional Information Security Officer | perú

hace 3 días


perú, Perú Golder Associates Ltd. A tiempo completo

Job Description - Regional Information Security Officer (24001138)

Regional Information Security Officer - (24001138)

Regional Information Security Officer (LAC)

About us

WSP is a global consulting firm assisting public and private clients to plan, develop, design, construct, operate and maintain thousands of critical infrastructure projects around the world.

Position Summary

WSP’s Information Security Office (ISO) is responsible for the deployment and maintenance of the information security framework for both the IT organization and wider business community. This includes the Governance mechanisms, policies and processes, tools and technologies, and employee training required to protect WSP information and that of our clients.

The role of Regional Information Security Officer reports directly to the Business Information Security Officer and is responsible for delivering the Information Security Framework into the applicable region of WSP. This is primarily an internally facing role, although some interaction with clients and third parties may be required.

This position requires a senior management professional with relevant experience and a strong working knowledge of IT security, risk management, regulatory compliance, information and public cloud service technology, IT operations management principles, and third-party security management.

Responsibilities

  • Information Security Strategy: Collaborate with the Business Information Security Officer to define the regional organization's information security strategy, vision, and goals. Translate strategic objectives into actionable plans and initiatives that align with business objectives and industry best practices.
  • Senior Stakeholder Engagement and Relationship Management: Develop highly effective relationships with business and IT leadership within their areas of responsibility, in order to deliver the information security strategy and goals and the management of security risk.
  • Information Security Governance: Oversee WSP's implementation and maintenance of its ISO27001 aligned Data and Information Security Management System. Establish and maintain the Information Security Governance framework; including running the Information Security Committees; coordinating IS risk management, executive reporting and participate in other forums where information security input and approval is required based on documented policies and processes.
  • Risk Management: Oversee the identification, reporting, assessment, and mitigation of information security risks. Work closely with cross-functional teams to ensure risk management practices are embedded in business processes and projects. Monitor the effectiveness of risk mitigation measures and drive continuous improvement.
  • Security Awareness and Training: Develop and deliver comprehensive security awareness and training programs to promote a security-conscious culture. Collaborate with stakeholders to address security education needs and ensure employees understand their roles and responsibilities in protecting information assets. Communicate the value of information technology (IT) security throughout all levels of the organization stakeholders.
  • Acquisition, Mergers and Integrations: Direct the security matters relating to all aspects of Acquisitions, Mergers, Integrations and Divestments. Including the security evaluation of potential acquisitions through to the integration of the acquired businesses into WSP’s security ecosystem.
  • Client Support: Develop and maintain a program of client support, to ensure that all client security requirements are identified, assessed, delivered and reported to relevant business leaders.
  • Vendor Risk Management: Develop and maintain a robust vendor risk management program. Conduct assessments of vendors and service providers to ensure they meet information security requirements and adhere to contractual obligations.
  • Incident Response and Management: Develop and maintain an incident response plan and coordinate the response to information security incidents. Lead investigations, root cause analyses, and corrective actions to mitigate the impact of incidents and prevent future occurrences; liaise with external organizations (clients, law enforcement, local governments) as required.
  • Security Reporting and Metrics: Develop and maintain metrics, reports, and dashboards to track the effectiveness of the information security program. Provide regular updates to senior leadership on the organization's security posture and recommend remedial actions as needed.

Leadership and People Responsibilities:

  • Displays leadership and independence in performing their role, with an ability to make complex decisions with limited input and review from senior staff.
  • High level of personal integrity, and the ability to professionally handle confidential matters and exude the appropriate level of judgment and maturity.
  • Assist in the hiring, training, and coaching of new and existing staff, and provide coaching to staff executing all aspects of information security and risk assessment and support.
  • Develop positive working relationships with other team members and business partners and partner across teams to align with WSP internal and external client demands.
  • Capable of rapidly assimilating and internalizing new complex business, technology, and risk management concepts and dependencies.
  • Capable of clearly defining, presenting and selling recommended strategies to senior management teams in a business or technical context as appropriate.
  • Critical thinker with strong problem-solving skills, project management skills; financial/budget management, scheduling and resource management.
  • Able to interpret and apply laws, regulations, policies and guidance relevant to the organization information security objectives.
  • Able to exercise judgement when policies are not well-defined.
  • Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate between specialized groups of business unit and IT professionals.
  • Accommodation of schedule for international conference calls, limited travel within the regions you are responsible for.
  • Ability to work with people from different backgrounds and cultures across the region and the world.

Finance/Budgetary Responsibilities:

  • Support the Business Information Security Officer in developing the budget projections based on objectives.

Requirements

Required

  • 5+ years related senior level experience in Information Security, IT risk, IT Audit or a similar position involving IT and business change.
  • Graduate of college or university, preferably with a degree in computer science or information management, or Professional certification in one or more of the following disciplines — IT governance (e.g., CGEIT), security (e.g., CISSP, CISM), internal audit (CISA).
  • Working (not necessarily technical) knowledge of security technologies (encryption, data protection, network intrusion prevention, host intrusion prevention, firewalls, privilege access, etc.)
  • Working (not necessarily technical) knowledge of information technologies (networking concepts, protocols, servers, workstations, laptops, LAN/WAN, wired/wireless, TCP/IP, cloud computing).
  • Working (not necessarily technical) knowledge of IT security technologies (network security, encryption, data protection, network intrusion prevention, host intrusion prevention, firewalls, privileged access, etc.)
  • Working (not necessarily technical) knowledge of enterprise IT threats and vulnerabilities (including but not limited to attacks and attack trends, ransomware, social engineering, advanced persistent threats, threat actors, etc.)
  • Knowledge of security best practices (physical, technical and organizational controls).
  • Experience with IT and IS Governance frameworks such as COBIT, ITIL, NIST-CSF and ISO 2700x.
  • Experience with governance, compliance and audit within IT environments.
  • Experience of risk management, including risk analysis, mitigation and monitoring.
  • Knowledge of information security regulations and legislation applicable to WSP.
  • Fluency in written and spoken English.

Preferred

  • Master's or other advanced degree in IT, Computer Science, Engineering or related field.
  • Master’s degree in Business Administration or related field.
Primary Location

Chile

Other Locations

Brazil, Mexico, Panama, Argentina, Colombia, Trinidad and Tobago, Peru

#J-18808-Ljbffr

  • perú, Perú Golder Associates Ltd. A tiempo completo

    Job Description - Regional Ethics and Compliance Officer (24001315) As Regional Ethics and Compliance Officer in the WSP Latin Americas and Caribbean (WSP LAC) region, you will manage a regional ethics and compliance team to deliver specialized, functional services from the Ethics and Compliance department, including training, policy and procedure...


  • perú, Perú Golder Associates Ltd. A tiempo completo

    Job Description - Regional Project Delivery Director (24001211) REGIONAL PROJECT DELIVERY DIRECTOR Introduction Project Delivery (PD) is the lifeblood of our organization. WSP has launched a Project Delivery Initiative (PDI) to define and implement a "One WSP" approach across all of its operations worldwide. The PD function is a global community of...


  • perú, Perú Golder Associates Ltd. A tiempo completo

    About the RoleThis exciting opportunity is seeking an IT Security Strategist to lead our regional information security efforts. Based in Chile, you will be responsible for developing and implementing information security strategies to ensure the confidentiality, integrity, and availability of our organization's information assets.The ideal candidate will...


  • perú, Perú Golder Associates Ltd. A tiempo completo

    Job Description - IT Engineering Applications Specialist (24001147) Overview WSP is seeking a dynamic IT Support Analyst specializing in Engineering Software. The ideal candidate is action-oriented, outcome-focused, and passionate about computer-aided design technologies. We are looking for a collaborative team player who aligns with our firm’s vision...


  • perú, Perú Golder Associates Ltd. A tiempo completo

    Job Description - IT Engineering Applications Specialist (LAC) (24001193) Overview WSP is seeking a dynamic IT Support Analyst specializing in Engineering Software. The ideal candidate is action-oriented, outcome-focused, and passionate about computer-aided design technologies. We are looking for a collaborative team player who aligns with our firm’s...


  • perú, Perú Golder Associates Ltd. A tiempo completo

    About WSP At WSP, we are driven by inspiring future-ready pioneers to innovate. We’re looking to grow our teams with people who are ready to collaborate in building communities and expanding our skylines. To do this, we hire candidates of all experiences, skillsets, backgrounds and walks of life. We actively foster a work environment and culture where...


  • perú, Perú Golder Associates Ltd. A tiempo completo

    Job Overview">We are seeking a highly skilled IT Support Analyst to join our team as an Engineering Software Delivery Specialist. In this role, you will be responsible for delivering exceptional support and expertise in engineering software applications, including AutoCAD, Revit, ProjectWise, and BIM360/ACC.">About the Role">">As an Engineering Software...


  • perú, Perú Golder Associates Ltd. A tiempo completo

    About the RoleWe are seeking a highly skilled and experienced Global Project Delivery Strategist to join our team in Latin America and the Caribbean. As a key member of our Regional Leadership Team, you will be responsible for leading our efforts in creating a best-in-class Project Delivery capability across the region.The ideal candidate will have a strong...


  • perú, Perú Golder Associates Ltd. A tiempo completo

    Job Title: Engineering Software SpecialistWe are seeking a highly skilled IT Support Analyst specializing in engineering software to join our team. The ideal candidate will have experience with computer-aided design technologies and be passionate about implementing and optimizing engineering software.Why this Role?We offer a dynamic work environment that...


  • perú, Perú Golder Associates Ltd. A tiempo completo

    About WSPWe are a global professional services company driven by innovation and a passion for shaping the future. At WSP, we foster a work environment that values diversity, equity, and inclusion, where talented individuals from diverse backgrounds come together to achieve exceptional results.Position Overview:The Senior Project Coordinator will play a key...


  • perú, Perú Forsyth Barnes A tiempo completo

    i Ad by beBee i Ad by beBee Head of Digital Marketing Main, Perú Forsyth Barnes A tiempo completo about the rolePermanent Job Alert Role : Head of Digital MarketingRate : £130,000 + PackageLocation: West Midlands -Birmingham - Forsyth Barnes are exclusively partnered with a rapidly growing automotive organisation who are looking to double...


  • perú, Perú Bbvacib A tiempo completo

    SOFTWARE SOLUTIONS DEVELOPMENT ASSOCIATE I ¿Quieres desarrollar tu carrera profesional? BBVA es una empresa global con más de 160 años de historia que opera en más de 25 países en los que damos servicio a más de 80 millones de clientes. Somos más de 121.000 profesionales que trabajamos en equipos multidisciplinares y de perfiles tan diversos como...


  • perú, Perú Ancarevet A tiempo completo

    Join Our Team as a Full-Time or Part-Time Veterinarian! Are you ready to embark on a fulfilling journey in veterinary medicine, surrounded by a team that's dedicated to excellence, collaboration, and continuous growth? Ancare Veterinary Hospital is seeking a passionate veterinarian to join our dynamic team in the vibrant LaSalle-Peru-Illinois Valley region,...


  • perú, Perú Lycopodium Limited A tiempo completo

    With offices in Australia, Africa, Canada, Peru and the Philippines, Lycopodium proudly delivers high quality professional engineering and project delivery services globally, across the resources, infrastructure and industrial processes sectors. By joining our global team and learning from renowned subject matter experts, we can offer you a diverse career...


  • perú, Perú IDB Invest A tiempo completo

    División de Energía - Consultoría nacional de apoyo técnico El Grupo BID es una comunidad de personas diversas, versátiles y apasionadas, unidas para mejorar vidas en América Latina y el Caribe. Aquellos que trabajan con nosotros encuentran un propósito y hacen lo que más les gusta en un entorno inclusivo, colaborativo, ágil y gratificante. El Banco...


  • perú, Perú Vicarius A tiempo completo

    Vicarius is an Israeli-born cybersecurity startup backed by tier-1 investors from San Francisco, Portugal, and Tel Aviv. Vicarius is tackling the biggest challenge of all: security vulnerabilities. Our platform, vRx, is a simple, self-serve product that helps companies identify, prioritize, and fix security threats in an integrated, automated, and...


  • perú, Perú BBVA PERU A tiempo completo

    SOFTWARE SOLUTIONS DEVELOPMENT ASSOCIATE I-2 Apply remote type Hybrid locations Lima, San Isidro time type Full time posted on Posted 6 Days Ago time left to apply End Date: December 13, 2024 (2 days left to apply) job requisition id JR00058898 ¿Quieres desarrollar tu carrera profesional? BBVA es una empresa global con más de 160 años de historia que...


  • perú, Perú IDB Invest A tiempo completo

    División de Energía - Consultoría nacional de apoyo técnico El Grupo BID es una comunidad de personas diversas, versátiles y apasionadas, unidas para mejorar vidas en América Latina y el Caribe. Aquellos que trabajan con nosotros encuentran un propósito y hacen lo que más les gusta en un entorno inclusivo, colaborativo, ágil y gratificante. El Banco...


  • perú, Perú buscojobs Brasil A tiempo completo

    Assists in the development and implementation of the Strategic Plan, Marketing Plan, Budget, and Goals Programme to ensure ongoing optimum guest satisfaction, sales potential, and profitability. Ensures the highest level of guest satisfaction by providing quality guest services and amenities within corporate standards. Interacts with guests and individuals...


  • perú, Perú Amazon A tiempo completo

    The ARG-PER-COL Payroll Specialist is responsible for supporting the full cycle of payroll operations for multiple countries in the Latin America (LATAM) region. This role is designed to support ARG, PER and COL. This includes supporting payroll processing, ensuring compliance with local labor laws and regulations, and providing support and training to...