Confirmed on the employer's own hiring board on Sep 24, 2026. First seen by Alion on Sep 24, 2026. Hitachi scores A on the Alion truth index.
Location:
Bogota, Cundinamarca, ColombiaJob ID:
R0137949Date Posted:
2026-09-24Company Name:
HITACHI ENERGY MEXICO, S.A. DE C.V.Profession (Job Category):
IT, Telecom & InternetJob Schedule:
Full timeRemote:
NoJob Description:
The Opportunity
We are looking for a Cybersecurity Internal Assessor to join our global Cybersecurity Internal Assessment Team. In this role, you will support internal assurance activities related to cybersecurity standards and regulations, including ISO/IEC 27001, IEC 62443, the EU NIS2 Directive, and the EU Cyber Resilience Act. You will help assess cybersecurity controls, regulatory readiness, and evidence of compliance across a large, global organization.
Additionally, you will conduct M&A security-related assessments and support secure shutdown activities, ensuring that cybersecurity risks are properly addressed during divestments, carve-outs, and site closures. This includes assessing the secure decommissioning of systems and applications, as well as access rights.
The successful candidate will work closely with cybersecurity, governance, risk, compliance, legal, product, and business stakeholders to plan and conduct assessments, identify gaps, document findings, and support remediation efforts. This is an opportunity to contribute to a growing internal assurance capability in an evolving regulatory environment where cybersecurity, resilience, and product security are increasingly business-critical.
How will you make an impact?
- Plan, prepare, and conduct cybersecurity internal assessments focused on regulatory requirements.
- Assess the design and operating effectiveness of cybersecurity controls, processes, and evidence against applicable requirements.
- Support gap assessments, readiness reviews, and internal assurance activities across relevant business units, countries, and product areas.
- Conduct interviews and workshops with control owners, product teams, and other stakeholders to understand processes, collect evidence, and validate assessment results.
- Document assessment scope, methodology, findings, risks, evidence, and conclusions in a clear and auditable manner
- Responsible for ensuring compliance with applicable external and internal regulations, procedures, and guidelines
Your Profile
- Bachelor’s degree in Cybersecurity, Information Security, Computer Science, Engineering, Risk Management, or a related field, or equivalent professional experience.
- Experience in cybersecurity, IT audit, internal audit, governance, risk and compliance, control testing, or regulatory assessments.
- Good understanding of cybersecurity control frameworks and standards, such as ISO/IEC 27001, NIST Cybersecurity Framework, IEC 62443, or similar.
- Knowledge of cybersecurity regulations, directives, or compliance expectations, ideally including EU NIS2 and/or the EU Cyber Resilience Act.
- Ability to translate regulatory or framework requirements into practical assessment criteria, evidence expectations, and actionable findings.
- Strong analytical, interviewing, documentation, and report-writing skills.
- Excellent written and spoken English, with the ability to communicate clearly with technical and non-technical stakeholders.
- Ability to work independently, maintain objectivity, and manage multiple assessment activities across an international environment
- Relevant professional certifications such as CISA, CISSP, ISO/IEC 27001 Lead Auditor, CRISC, CISM, or equivalent.
- Experience with regulatory readiness, assurance, or audit activities in large multinational organizations.
- Experience with product security, secure development lifecycle, vulnerability management, or industrial/OT cybersecurity would be an advantage.
- Familiarity with governance, risk, and compliance tools, assessment workflows, and evidence management practices.
- Experience working in cross-functional and geographically distributed teams.
More about us
- Work Life Balance
- Continuous improvement culture
- Possibility to grow globally
- Benefits above the regular in the market
Accessibility and reasonable accommodation
Qualified individuals with a disability may request a reasonable accommodation if you are unable or limited in your ability to use or access the Hitachi Energy career site as a result of your disability. You may request reasonable accommodations by completing ageneral inquiry formon our website. Please include your contact information and specific details about your required accommodation to support you during the job application process.
This is solely for job seekers with disabilities requiring accessibility assistance or an accommodation in the job application process. Messages left for other purposes will not receive a response.
Use of Al and automated tools in recruitment
As part of our recruitment process, Hitachi Energy uses digital and automated tools, including Al-supported solutions, to assist with activities such as application screening, job matching, and interview scheduling. These tools are designed to support our recruiters and do not replace human decision-making. Candidate data is processed in accordance with applicable data protection and employment laws as well asHitachi's Global Data Privacy Notice.
Background Screening and Security Checks
As part of the hiring process, Hitachi Energy conducts pre-employment background checks that may include verification of employment history, education, criminal records, and other relevant information, in accordance with applicable laws.
For certain roles-particularly those involving access to sensitive information, financial responsibilities, client data, regulated environments, or security-sensitive functions-additional or more comprehensive background or security screenings may be required. These may include, but are not limited to, enhanced criminal history checks, credit history reviews (where legally permissible), sanctions screening, or other due diligence measures aligned with the responsibilities of the position.
The scope and depth of any background or security review will be determined based on the nature of the role and business necessity, and will always be conducted in compliance with applicable federal, state, and local laws. Candidates will be notified and, where required, asked to provide consent prior to the initiation of any such checks.

