Cybersecurity Internal Assessor
Hitachi · Naucalpan de Juarez, Estado de México, Mexico
About The Role
We are looking for a Cybersecurity Internal Assessor to join our global Cybersecurity Internal Assessment Team. In this role, you will support internal assurance activities related to cybersecurity standards and regulations, including ISO/IEC 27001, IEC 62443, the EU NIS2 Directive, and the EU Cyber Resilience Act. You will help assess cybersecurity controls, regulatory readiness, and evidence of compliance across a large, global organization.
Additionally, you will conduct M&A security-related assessments and support secure shutdown activities, ensuring that cybersecurity risks are properly addressed during divestments, carve-outs, and site closures. This includes assessing the secure decommissioning of systems and applications, as well as access rights.
The successful candidate will work closely with cybersecurity, governance, risk, compliance, legal, product, and business stakeholders to plan and conduct assessments, identify gaps, document findings, and support remediation efforts. This is an opportunity to contribute to a growing internal assurance capability in an evolving regulatory environment where cybersecurity, resilience, and product security are increasingly business-critical.
How will you make an impact?
- Plan, prepare, and conduct cybersecurity internal assessments focused on regulatory requirements.
- Assess the design and operating effectiveness of cybersecurity controls, processes, and evidence against applicable requirements.
- Support gap assessments, readiness reviews, and internal assurance activities across relevant business units, countries, and product areas.
- Conduct interviews and workshops with control owners, product teams, and other stakeholders to understand processes, collect evidence, and validate assessment results.
- Document assessment scope, methodology, findings, risks, evidence, and conclusions in a clear and auditable manner
- Responsible for ensuring compliance with applicable external and internal regulations, procedures, and guidelines
Your Profile
- Bachelor’s degree in Cybersecurity, Information Security, Computer Science, Engineering, Risk Management, or a related field, or equivalent professional experience.
- Experience in cybersecurity, IT audit, internal audit, governance, risk and compliance, control testing, or regulatory assessments.
- Good understanding of cybersecurity control frameworks and standards, such as ISO/IEC 27001, NIST Cybersecurity Framework, IEC 62443, or similar.
- Knowledge of cybersecurity regulations, directives, or compliance expectations, ideally including EU NIS2 and/or the EU Cyber Resilience Act.
- Ability to translate regulatory or framework requirements into practical assessment criteria, evidence expectations, and actionable findings.
- Strong analytical, interviewing, documentation, and report-writing skills.
- Excellent written and spoken English, with the ability to communicate clearly with technical and non-technical stakeholders.
- Ability to work independently, maintain objectivity, and manage multiple assessment activities across an international environment
- Relevant professional certifications such as CISA, CISSP, ISO/IEC 27001 Lead Auditor, CRISC, CISM, or equivalent.
- Experience with regulatory readiness, assurance, or audit activities in large multinational organizations.
- Experience with product security, secure development lifecycle, vulnerability management, or industrial/OT cybersecurity would be an advantage.
- Familiarity with governance, risk, and compliance tools, assessment workflows, and evidence management practices.
- Experience working in cross-functional and geographically distributed teams.
More about us
- Work Life Balance
- Continuous improvement culture
- Possibility to grow globally
- Benefits above the regular in the market
Accessibility and reasonable accommodation
Qualified individuals with a disability may request a reasonable accommodation if you are unable or limited in your ability to use or access the Hitachi Energy career site as a result of your disability. You may request reasonable accommodations by completing a general inquiry form on our website. Please include your contact information and specific details about your required accommodation to support you during the job application process.
This is solely for job seekers with disabilities requiring accessibility assistance or an accommodation in the job application process. Messages left for other purposes will not receive a response.
Use of Al and automated tools in recruitment
As part of our recruitment process, Hitachi Energy uses digital and automated tools, including Al-supported solutions, to assist with activities such as application screening, job matching, and interview scheduling. These tools are designed to support our recruiters and do not replace human decision-making. Candidate data is processed in accordance with
Similar roles you might like
See all →This is an external listing. JobSpring does not represent or verify the employer. Report this listing
