IT Governance Risk and Compliance Manager
Join to apply for the IT Governance Risk and Compliance Manager role at Nucoro (acquired by Backbase)
Location : Mexico City – Compliance. Hybrid
What you'll do
As an IT Governance, Risk and Compliance (GRC) Manager, you enable Backbase to conduct its business in full compliance with all relevant national and international laws and regulations, including professional standards, accepted business practices, internal policy standards and IT Security frameworks such as SOC2, ISO27001 and PCI‑DSS. This role integrates both ethical and pragmatic compliance approaches to help the organization manage risk and build trust with its customers. You must understand the highly innovative fintech environment.
Functional / Technical Skills
- Support design, implementation and management of IT Controls & Compliance Frameworks for an international organization.
- Ensure compliance with industry best security practices within SaaS environments.
- Manage and coordinate customer and independent third‑party attestations as part of contractual obligations and certification requirements.
- Support third‑party risk assessments and regular assurance programs.
- Prior experience with GRC tools and platforms.
- Analyze and translate laws, regulations, and technical requirements into commercially focused business processes.
- Execute and report status on Risk Assessment and Risk Mitigation Program metrics.
- Maintain policies and procedures as part of the Policy Governance Framework and coordinate with other departments.
Business, Product and Industry Knowledge
Integrate in an Agile / Scrum working environment to drive teams.Knowledge of multiple security and privacy frameworks, third‑party risk, outsourcing and banking regulations, etc.Understanding of modern cloud technologies (AWS, Azure) and risks associated with SaaS.Knowledge of ethics & compliance program requirements in international business.Complexity & Problem Solving
Proven ability to lead tactical compliance setup and operations.SME experience and ability to give concise compliance advice.Proactive and analytical program management approach.Strategic problem solver who can find practical business solutions.Collaborations and Interactions
Internal and external stakeholder management.Collaboration with colleagues from all relevant departments, vendors, partners, and customers.Who you are
Minimum of 6‑8 years relevant experience implementing compliance programs in an international environment.Bachelor’s degree required; academic degree desired in IT Security, Risk Management, Cyber Security, Information Security.Fluent in English (written and spoken) – required.Professional certifications (e.g., ISC² or CompTIA) desired or willingness to obtain.Experience managing in a functional way (not hierarchical).Employment Details
Seniority level : Mid‑Senior levelEmployment type : Full‑timeJob function : Information TechnologyBenefits
Company insurance covering you and your family.Lunch tickets.Referral bonus incentive.High‑spec Macs and technical setup.Personal development training budget.Casual dress code.#J-18808-Ljbffr