Information Risk - Tlahuac, México - Trinity Industries

Trinity Industries
Trinity Industries
Empresa verificada
Tlahuac, México

hace 3 semanas

Rodrigo Fernández

Publicado por:

Rodrigo Fernández

Reclutador de talento para beBee


Descripción

Trinity Industries is looking for a
Information Risk & Compliance Supervisor in
Queretaro, MX.


The Information Risk and Compliance Supervisor functions within the Information GRC (IGRC) team, reporting to the Senior Director of IGRC within the Information Risk Management organization.

This role is pivotal in the day-to-day execution of core risk and compliance activities and leads a small team of risk and compliance analysts to achieve enterprise objectives in alignment with legal, regulatory, and information security requirements.


What You Will Do:


  • Provide oversight and guidance for the lifecycle management of organizational records, ensuring compliant handling, storage, retrieval, and disposition of both physical and electronic records.
  • Implement business records management policies, procedures, and processes to ensure compliance with legal and regulatory requirements.
  • Maintain business records retention schedules in alignment with business unit functions and ensure timely destruction or transfer of records as required.
  • Provide training to employees on business records management policies and procedures and provide ongoing support on adherence to those policies and procedures.
  • Document, communicate, and consult on enterprise Information Risk Management, processes, procedures, standards, and requirements.
  • Monitor and track business record archiving processes to ensure that duplicate copies are not retained in error.
  • Identify opportunities for process improvement and recommend changes to streamline business records management procedures.
  • Keep updated with industry standards and regulations related to records management and business record types and incorporate changes as appropriate.
  • Provide executivelevel reporting and summarization of the IGRC program.
  • Perform technical and process compliance assessments on new and existing systems, technologies, processes, and functions.
  • Maintain current awareness of present and emerging regulatory concerns and information security trends.

Supervisor Responsibilities

  • Manage the daily activities of two Risk & Compliance analysts, including performance reviews, time sheet approvals, goal setting, and professional development
  • Foster a collaborative and productive team environment, ensuring effective communication and coordination within the team
  • Provide mentorship and guidance to team members, assisting in their career growth and skill development
  • Oversee the allocation and prioritization of team tasks and projects, ensuring alignment with organizational objectives
  • Act as a point of escalation for complex issues or challenges faced by the team

What you will need:


  • Excellent oral and written communication skills (English and Spanish)
  • Experience with multinational/global enterprises
  • Knowledge of business records management principles, practices, and industry standards
  • Knowledge of legal and regulatory requirements related to business records management.
  • Extensive experience with three or more of the following:
  • ARMA
  • NIST CSF
  • NIST RMF
  • SOX
  • GDPR
  • HIPAA
  • PCI-DSS
  • COBIT
  • High personal integrity and confidentiality
  • Great attention to detail

Education and Experience

  • Seven years of experience in GRC organizations required.
  • Two or more years of experience managing a team
  • Experience with manufacturing or digital services desired.
  • CISM, CISA, CISSP, IGP, or equivalent certifications highly desired
  • Experience with technical editing desired
  • Experience with document management system administration
  • Experience with basic digital forensics operations
  • Experience with process automation
  • Experience with Microsoft Dynamics 365, PowerBI, PowerAutomate
  • Experience with security awareness training and event coordination
  • GCFE, CFCE, or previous forensics experience

Más ofertas de trabajo de Trinity Industries