The Coordinator of Architecture SI role at CSC AF - CENTRO DE SERVICIOS COMPARTIDOS AF, S.A. DE C.V. involves leading the development and ensuring the implementation of security architecture design, focusing on controls, tools, and processes to enhance capabilities in preventing, detecting, responding to, and recovering from cyber threats and vulnerabilities, especially within the evolving banking sector.He/She will be an active participant in solution design, incorporating security best practices, principles, and controls across every architectural layer, component, and network segment of the company. The primary objective is to address the current resource constraints in managing information security architecture by gaining a thorough and detailed understanding of the controls, processes, and technologies that should be implemented across each security architecture layer. It aims to prevent the lack of security controls from escalating into critical, unaddressed risks that could cause incidents impacting the business.
Responsibilities: - Developing robust and scalable security reference architectures and technical designs.
- Ensuring proper security configuration in cloud environments, applications, network devices, servers, and computing equipment.
- Promoting the adoption of controls, tools, and processes related to DevSecOps practices.
- Collaborating with various teams to ensure security needs are met.
- Staying updated with the latest security trends, technologies, and best practices.
- Evaluating and recommending new security technologies and tools.
- Ensuring all architectures comply with relevant laws, regulations, standards, and best practices.
Requirements: - Teamwork and collaboration skills.
- Knowledge of cybersecurity laws and regulations (CNBV, SPEI, Fintech Law, privacy laws, PCI DSS).
- Knowledge of security frameworks and international best practices (NIST, CIS, ISO27001, OWASP, MITRE).
- Knowledge of cybersecurity operations in digital banking environments.
- Skills in cyber risk management and root cause analysis.
- Certifications like CISM, CISSP, CRISC, CCSK, CCNA, CCIE, CompTIA Network+, CompTIA Security+, CompTIA Cloud+ (or equivalent) are desirable.