Senior Manager, Risk and Security Business Partner SA
Apply now »Date: Nov 21, 2023
Location: S�o Paulo, São Paulo, BR, 05423-010
Company: Bunge
Location : BAL - SEDE
City : Sao Paulo
State : São Paulo (BR-SP)
Country : Brazil (BR)
Requisition Number : 32523
Bunge has an exciting opportunity available for a Senior Manager, Risk and Security Business Partner. In this role you will be part of a global team working on challenging, meaningful projects impacting core business activities. Since 1818, Bunge has been connecting farmers to consumers to deliver essential food, feed, and fuel to the world. Looking to the future, our ambition is to continuously reinvent ourselves, leveraging data to be at the forefront of analytics, technology, and talent to accomplish our purpose in a better, faster and simpler way. Bunge is committed to operating and thriving in the digital world – creating world class agile teams where teammates are empowered and encouraged to collaborate and test and learn to succeed.
At Bunge, people don’t just come here to work, they come here to grow – solving challenges that directly impact the world with a diverse team of thinkers and doers. Bunge offers a strong compensation and benefits package, generous paid time off program, flexible work arrangements, and opportunity to progress. Our hybrid work environment provides a balance of in-office and remote work.
Most importantly, in all we do we live our values:
• Act as One Team by fostering inclusion, collaboration, and respect
• Drive for Excellence by being agile, innovative and efficient
• Do What's Right by acting safely, ethically, and sustainably
Overview:
We are looking for an experienced BT Risk and Security professional to join the BT Risk and Security team in the Business Technology (BT) organization. The Risk and Security Business Partner will be responsible for liaising with internal stakeholders and ensuring their cybersecurity requirements are met. This role will partner closely with Business Management, Legal, Procurement, Infrastructure, and Security Teams both on a regional and global level. This role reports to the Director, Risk and Security Business Partner in the BT Risk and Security organization.
Essential Functions:
- Be an active participant in the definition of BT Risk and Security Strategy and global initiatives, with the objective of continuously increase the maturity of the global security practices, risk management, control environment, and operations. Lead, monitor, track and report the design and implementation of the BT Risk and Security Strategy and initiatives in South America (Brazil, Argentina, Uruguay, Paraguay, Chile, etc.).
- Work in close cooperation with Business Technology Partners (BTPs) to ensure security requirements and controls are embedded since the planning phase for digital transformation and product roadmaps related to finance, commodity origination, and industrial operations. Closely collaborate with security partners, including incident response, architects, and engineers to seamlessly incorporate cybersecurity controls and risk management processes into their day-to-day operations.
- Identify threats, establish protection goals, objectives, and metrics consistent with Information Security program, both globally and region-specific. Proactively discuss with CISO and peers for continuous improvement of Bunge's Information Security Program. Keep up to date with emerging threats, security control environment and potential impacts on the business functions. Assess potential impacts on the BT environment and business applications caused by technical vulnerabilities as reported by threat intelligence feeds, government security agencies and other sources. Consult with SMEs to determine exposure level, explore mitigating factors, analyze business impact, and determine urgency.
- Build and maintain strong and positive working relationships and effective means of communication with business stakeholders, including Legal, Procurement, Finance, Industrial Operations, Business Risk Owners, Shared Service Center leads, Value Chain leaders, and others. Articulate technological risks in terms of business impacts. Advise on security/privacy regulatory matters.
- Manage BT risks in the region, by identifying, assessing, monitoring, reporting technology risks. Assess business impacts and explore compensating controls and proposing actions to be taken. Exercise critical reasoning and judgment on cost-benefits.
- Ensure an educated workforce in the region by supporting end-user training on information security topics. Coordinate and/or perform actions over user community to ensure adequate attendance levels on training.
- Support BT Directors and Managers to discuss audit findings. Advise on risk mitigation and definition of Management Action Plans (MAP).
- Manage BTRS staff, by recruiting, onboarding, training, and providing day-to-day guidance. Periodically discuss team performance and provide feedback, enabling individuals for successful progression in their careers within the company.
Management/Leadership:
- Deep understanding of Bunge mission, vision, and key business priorities
- Influence, motivate, and enable others to contribute to the organization's success.
- Mentor and lead a team of security analyst while delivering excellent customer service.
- Ensure projects are on time and in alignment with business priorities.
- Identify risks, gaps, and opportunities and communicate to stakeholders and other teams to drive resolution.
Minimum Requirements:
- Bachelors' degree required; Masters' degree preferred.
- 10+ years' experience formulating information security strategies, managing technology risks, translating business requirements into technical security requirements.
- Experience on the implementation and compliance reporting on NIST CSF, ISO 27001 and other well-established security frameworks.
- Strong technical writing skills using Microsoft Office products, SharePoint, Visio, PowerPoint, and other documentation tools.
- Excellent communication and documentation skills with the ability to understand complex issues.
- Knowledge of system lifecycle management procedures, e.g., patching, malware management, remote access procedures, system hardening, authentication, and authorization
- Ability to troubleshoot problems effectively and seamlessly, using your analytical skills, technical knowledge, and communication skills to identify, resolve, and document issues.
- Ability to proactively address problems to prevent them in the future by applying best practices, recommending improvements, and monitoring performance.
- Ability to work independently and manage multiple priorities in a fast-paced environment.
- Experience in disaster recovery testing and automation
- Technical certificates or certifications that are relevant to the role, including CISSP, CISM, CRISC or CISA (optional but preferred)
Bunge (NYSE: BG) is a world leader in sourcing, processing and supplying oilseed and grain products and ingredients. Founded in 1818, Bunge’s expansive network feeds and fuels a growing world, creating sustainable products and opportunities for more than 70,000 farmers and the consumers they serve across the globe. The company is headquartered in St. Louis, Missouri and has 25,000 employees worldwide who stand behind more than 350 port terminals, oilseed processing plants, grain facilities, and food and ingredient production and packaging facilities around the world.
Bunge is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, gender expression, transgender status, national origin, citizenship, age, disability or military or veteran status, or any other legally protected status. Bunge is an Equal Opportunity Employer. Minorities/Women/Veterans/Disabled
Job Segment:
Information Security, Sustainable Agriculture, Compliance, Risk Management, Procurement, Technology, Agriculture, Legal, Finance, Operations