Apply now »

Cyber & Digital Security Sr Specialist

Cyber & Digital Security Sr Specialist

About IT in Nestlé

We are a team of IT professionals from many countries and diverse backgrounds, each with unique missions and challenges in the biggest health, nutrition and wellness company of the world. We innovate every day through forward-looking technologies to create opportunities for Nestlé’s digital challenges with our consumers, customers and at the workplace. We collaborate with our business partners around the world to deliver standardized, integrated technology products and services to create tangible business value.

 

As a Sr. Specialist Cyber Security you’ll provide technical security support and scripting expertise for global security initiatives. You’ll provide support for global initiatives and deployment of security and compliance solutions such as MFA, SSO, SFAT. You’ll be responsible for establishing and maintaining security products, platforms and solutions designed to mitigate IT risks across Nestlé Group to ensure that information assets are adequately protected. You will also be responsible for the identification, evaluation and reporting of information security risks in a manner that meets compliance and regulatory requirements, aligning with and supporting the risk posture of the enterprise. Also, provide support for scripting for automation initiatives. 

 

Key Responsibilities: 

•    Ensures new products, platforms and solutions are implemented "Secure & Compliant by Design"
•    Works directly with IT Product Managers, BRMs and IT Customers to facilitate business IT risk assessment and risk management processes, and works with stakeholders through the enterprise on identifying acceptable levels of residual risk
•    Facilitates a reporting framework in collaboration with the Office of the CIO to measure the efficiency and effectiveness of the program, promoting appropriate resource allocation, and increase the maturity of the security
•    Defines and facilitates the information security risk assessment process, including the reporting and oversight of treatment efforts to address findings
•    Provides strategic risk guidance for IT projects and product management, including the evaluation and recommendation of technical controls
•    Liaises with the Enterprise Architecture team to ensure alignment between the security and enterprise architectures, thus coordinating the strategic planning implicit in these architectures
•    Ensures that security programs are in compliance with relevant laws, regulations and policies to minimize or eliminate risk and audit findings
•    Ensure the consistent application of security policies and standards across all product groups; technology projects and systems
•    Works closely with Enterprise Architects ensure adequate security solutions are in place throughout all IT products and platforms to mitigate identified risks sufficiently and to meet business objectives and regulatory requirements
•    Develop the business, information and technical artifacts that constitute the enterprise information security architecture and solutions
•    Serves as a security expert in DevOps, application development, infrastructure design and deployment, database design, network and/or platform (operating system) efforts, helping product teams comply with enterprise and IT security policies, industry regulations and best practices

 

Required Profile: 
•    Degree in business administration or a technology-related field, or equivalent work- or education-related experience
•    5+ years of experience in a combination of risk management, information security and IT jobs 
•    Experience in implementing cyber security
•    Experience in effective communication at different level in the organization and in English
•    Preference to have worked in a global environment and with virtual teams
•    Proven track record and experience developing information security policies and procedures and successfully executing programs that meet objectives of excellence in a dynamic environment

We are Nestlé, the largest food and beverage company. We are 308,000 employees strong driven by the purpose of enhancing the quality of life and contributing to a healthier future. Our values are rooted in respect: respect for ourselves, respect for others, respect for diversity and respect for our future. With more than CHF 91.4 billion sales in 2018, we have an expansive presence with 413 factories in more than 85 countries. We believe our people are our most important asset, so we'll offer you a dynamic inclusive international working environment with many opportunities across different businesses, functions and geographies, working with diverse teams and cultures. Want to learn more? Visit us at www.nestle.com.

About IT in Nestlé

We are a team of IT professionals from many countries and diverse backgrounds, each with unique missions and challenges in the biggest health, nutrition and wellness company of the world. We innovate every day through forward-looking technologies to create opportunities for Nestlé’s digital challenges with our consumers, customers and at the workplace. We collaborate with our business partners around the world to deliver standardized, integrated technology products and services to create tangible business value.

 

As a Sr. Specialist Cyber Security you’ll provide technical security support and scripting expertise for global security initiatives. You’ll provide support for global initiatives and deployment of security and compliance solutions such as MFA, SSO, SFAT. You’ll be responsible for establishing and maintaining security products, platforms and solutions designed to mitigate IT risks across Nestlé Group to ensure that information assets are adequately protected. You will also be responsible for the identification, evaluation and reporting of information security risks in a manner that meets compliance and regulatory requirements, aligning with and supporting the risk posture of the enterprise. Also, provide support for scripting for automation initiatives. 

 

Key Responsibilities: 

•    Ensures new products, platforms and solutions are implemented "Secure & Compliant by Design"
•    Works directly with IT Product Managers, BRMs and IT Customers to facilitate business IT risk assessment and risk management processes, and works with stakeholders through the enterprise on identifying acceptable levels of residual risk
•    Facilitates a reporting framework in collaboration with the Office of the CIO to measure the efficiency and effectiveness of the program, promoting appropriate resource allocation, and increase the maturity of the security
•    Defines and facilitates the information security risk assessment process, including the reporting and oversight of treatment efforts to address findings
•    Provides strategic risk guidance for IT projects and product management, including the evaluation and recommendation of technical controls
•    Liaises with the Enterprise Architecture team to ensure alignment between the security and enterprise architectures, thus coordinating the strategic planning implicit in these architectures
•    Ensures that security programs are in compliance with relevant laws, regulations and policies to minimize or eliminate risk and audit findings
•    Ensure the consistent application of security policies and standards across all product groups; technology projects and systems
•    Works closely with Enterprise Architects ensure adequate security solutions are in place throughout all IT products and platforms to mitigate identified risks sufficiently and to meet business objectives and regulatory requirements
•    Develop the business, information and technical artifacts that constitute the enterprise information security architecture and solutions
•    Serves as a security expert in DevOps, application development, infrastructure design and deployment, database design, network and/or platform (operating system) efforts, helping product teams comply with enterprise and IT security policies, industry regulations and best practices

 

Required Profile: 
•    Degree in business administration or a technology-related field, or equivalent work- or education-related experience
•    5+ years of experience in a combination of risk management, information security and IT jobs 
•    Experience in implementing cyber security
•    Experience in effective communication at different level in the organization and in English
•    Preference to have worked in a global environment and with virtual teams
•    Proven track record and experience developing information security policies and procedures and successfully executing programs that meet objectives of excellence in a dynamic environment

We are Nestlé, the largest food and beverage company. We are 308,000 employees strong driven by the purpose of enhancing the quality of life and contributing to a healthier future. Our values are rooted in respect: respect for ourselves, respect for others, respect for diversity and respect for our future. With more than CHF 91.4 billion sales in 2018, we have an expansive presence with 413 factories in more than 85 countries. We believe our people are our most important asset, so we'll offer you a dynamic inclusive international working environment with many opportunities across different businesses, functions and geographies, working with diverse teams and cultures. Want to learn more? Visit us at www.nestle.com.

Ciudad de Mexico, MX, 11520

Ciudad de Mexico, MX, 11520

Apply now »