Hitachi logo
Hitachi

Hitachi Social Innovation is POWERING GOOD

Cybersecurity Professional

Security EngineerSecurity EngineerFull TimeRemoteLeadTeam 10,001+Since 1910H1B SponsorCompany SiteLinkedIn

Location

Mexico

Posted

1 day ago

Salary

0

Seniority

Lead

Bachelor Degree10 yrs expEnglishCyber Security

Job Description

Cybersecurity Professional

Hitachi

• Conduct cybersecurity risk assessments for technology, business, and operational initiatives. • Analyze threats, vulnerabilities, and control effectiveness to determine residual risk. • Maintain and update cybersecurity risk registers. • Evaluate risks against approved risk appetite and risk tolerance thresholds. • Track risk mitigation and remediation activities through closure. • Support the operation of the Cybersecurity Risk and Control Framework (CRCF). • Challenge the completeness and accuracy of risk assessments and mitigation plans. • Monitor adherence to cybersecurity policies, standards, and control requirements. • Assist with exception and risk acceptance reviews. • Support cybersecurity governance forums and reporting activities. • Assist with internal and external cybersecurity audits. • Coordinate evidence collection and remediation tracking. • Assess compliance with internal cybersecurity standards and regulatory requirements. • Support control assessments and gap analyses. • Develop risk metrics, dashboards, and management reports. • Prepare materials for management and governance reviews. • Escalate significant cybersecurity risk exposures and emerging trends. • Collaborate with IT, Product Security, IAM, Legal, Procurement, Privacy, and business teams. • Provide guidance on cybersecurity risk management processes and requirements. • Facilitate risk reviews and risk treatment discussions with stakeholders. • Promote cybersecurity awareness and risk-informed decision making.

Job Requirements

  • Bachelor's degree in Cybersecurity, Information Security, Computer Science, Information Systems, Risk Management, or related discipline.
  • 10+ years of experience in cybersecurity, risk management, audit, compliance, or information security.
  • Knowledge of cybersecurity risk management methodologies and control frameworks.
  • Ability to analyze complex technical and business risks.
  • Strong written, presentation, and communication skills.
  • Knowledge of common cybersecurity frameworks and regulations (e.g., NIST, ISO 27001, GDPR).
  • Relevant certifications such as CompTIA Security+ or CISSP are a plus.
  • Excellent analytical and problem-solving skills.

Benefits

  • Health insurance
  • Flexible work arrangements
  • Professional development opportunities

Related Categories

Related Job Pages

More Security Engineer Jobs

Security / Compliance Architect

NATIONMIND LLC

NationMind LLC is a technology consulting firm focused on Technical Engineering, software development, technicians, QA testing and services. We help clients build reliable, scalable applications with a strong emphasis on automation, performance, and quality. Our team works across industries, delivering solutions that drive innovation and operational efficiency.

Role Description The Security / Compliance Architect is the primary security design authority for the engagement. This role is responsible for: - Defining the controlled data boundary. - Translating compliance and business requirements into enforceable controls. - Shaping the secure enclave design. - Ensuring the overall solution is defensible from a governance, audit, and risk-management standpoint. This is a client-facing onshore role requiring strong experience in data protection, compliance-aligned architecture, information protection controls, and regulated collaboration environments. Key Responsibilities - Lead the definition of the controlled data / CUI boundary, including in-scope users, repositories, workflows, endpoints, and approved handling paths. - Translate customer requirements into a target-state security architecture for a secure collaboration enclave. - Define the DLP and information protection strategy across collaboration, email, endpoint, and removable media channels. - Establish the control intent for classification, labeling, monitoring, restriction, blocking, exception handling, and audit evidence generation. - Drive alignment between business process requirements and security control design to ensure the solution is usable as well as compliant. - Lead design decisions related to: - Approved vs non-approved storage locations - Secure collaboration patterns - External sharing restrictions - Exception governance - Evidence and logging requirements - Review current-state data handling patterns and identify exposure points, control gaps, and architectural risks. - Produce client-facing security design artifacts, including boundary definitions, control strategies, architecture requirements, and decision packs. - Support design reviews, steering discussions, and executive readouts. - Work closely with the platform lead to ensure Microsoft control implementation aligns with security intent. - Support pilot validation by reviewing policy effectiveness, exception scenarios, usability impacts, and audit defensibility. - Provide oversight during deployment and handover to ensure the final state aligns with the approved security design. Qualifications - 8+ years in cybersecurity architecture, security consulting, or security engineering roles. - Strong experience in one or more of the following: - Data Loss Prevention - Information Protection / Data Classification - Secure collaboration architecture - Microsoft Purview / MIP / DLP - Compliance-driven security design - Experience defining and operationalizing controls for sensitive or regulated data. - Strong understanding of: - Secure data boundaries - Access control and least privilege concepts - Audit evidence requirements - Policy exception governance - Endpoint, email, and collaboration security controls - Experience working directly with business stakeholders, security leadership, and platform teams in regulated environments. - Strong workshop facilitation, requirements analysis, and executive communication skills. - Ability to convert ambiguous customer requirements into precise security architecture decisions. Requirements - This is a remote position.

United States
$62 - $65 / hour
Lakeshore Learning Materials logo

IT Security Manager

Lakeshore Learning Materials

Lakeshore Learning Materials describes itself as a leading developer and retailer of high-quality classroom materials and furniture for early childhood programs

• Lead a team of security engineers and analysts protecting Lakeshore across vulnerability management, incident detection and response, and identity and access management • Shape security strategy while partnering across the business to reduce risk and develop a sustainable security program • Drive execution of multi-year security initiatives, translating strategy into execution and maintaining progress amid shifting priorities • Partner with senior stakeholders/leadership to develop and maintain information security policies, procedures, GRC, and plans • Evaluate security technologies and controls, overseeing implementation and continuous improvement efforts to strengthen security posture • Identify the root causes of technical and operational problems, leading the team to sustainable solutions

California
$123K - $185K / year
Full TimeRemoteTeam 11-50Since 2001H1B No Sponsor

• Own the product strategy for this market: who we're building for, what problems we solve, how we're differentiated • Lead market and customer discovery with developers, engineering leaders, and security teams to find real signal • Test hypotheses around buyers, pricing, and packaging — iterate fast • Build and drive the roadmap, translating customer insight into a prioritized backlog • Partner with sales and leadership to shape GTM: positioning, pricing, and the sales motion for a new buyer • Define what success looks like and track the signals that tell us the market bet is working

United States
Blu logo

Information Security Engineer, Mid-level

Blu

Conectando o varejo à indústria

Full TimeRemoteTeam 201-500Since 2013H1B Sponsor

• Perform troubleshooting in the environment to identify the root cause of issues and/or demonstrate the absence of errors/blocks on security and network assets such as: NG Firewall, WAF, ZTNA, VPN, IPS, SIEM, EDR, routing, and cloud provider security tools; • Monitor and respond effectively during incidents; • Participate in and contribute to security risk management; • Use your security experience and knowledge to identify threats in corporate environments and propose mitigations; • Develop creative solutions for complex security problems that balance business needs and risks; • Strong focus on task automation.

Brazil