Information Security Engineer - Compliance y Mercado Pago

MercadoLibre
Mexico
Workplace: HybridFull timeFunction: CybersecurityExperience: 5+ yearsEducation: bachelorsSkills: []

Design and scale secure, high-impact information security systems for Mercado Pago. Continuously evaluate new security technologies, implement and manage information security and cybersecurity programs, and support financial regulatory requirements (CNBV, Banxico, UIF). Work with international security frameworks (ISO 27001, NIST CSF, SOC 2, COBIT, OWASP, PCI) and partner with regulators and internal/external auditors, combining security engineering with secure software and architecture practices.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
MercadoLibre
MercadoLibre
1 day ago

Information Security Engineer - Compliance y Mercado Pago

âś“ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 2 hours agoStatus: Live

Job Summary

Design and scale secure, high-impact information security systems for Mercado Pago. Continuously evaluate new security technologies, implement and manage information security and cybersecurity programs, and support financial regulatory requirements (CNBV, Banxico, UIF). Work with international security frameworks (ISO 27001, NIST CSF, SOC 2, COBIT, OWASP, PCI) and partner with regulators and internal/external auditors, combining security engineering with secure software and architecture practices.
Location: Mexico
Workplace: Hybrid
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Continuously identify and evaluate new alternatives and technologies to raise security levels across the ecosystem.
  • •Implement and manage information security and cybersecurity programs.
  • •Address financial sector regulatory requirements from CNBV, Banxico, and UIF.
  • •Support implementation of international security frameworks including ISO 27001, NIST CSF, SOC 2, COBIT, OWASP, and PCI.
  • •Establish relationships and respond to regulatory authorities as well as internal and external audits.

Key Requirements

  • •5+ years of information security experience in financial institutions or regulated sectors.
  • •Degree in Systems Engineering or related fields.
  • •Hands-on development knowledge with Go, Python, Node.js, and SQL, plus collaboration methodologies and tools like Scrum, Lean, Git, and Git Flow.
  • •Secure development and software security knowledge, including OWASP Top 10/OWASP API Top 10 and security architecture/design practices (SSDLC, ATAM, STRIDE, SAST, DAST, Threat Models).
  • •Strong fundamentals in information security, network security, physical security, encryption, access control, and security policies; certifications such as CISSP, CISM, CISA, CRISC, or ISO 27001 Lead Implementer/Auditor are desirable.
Experience:5+ yearsFinancial servicesRegulated industries
Education:Bachelor's
Certifications:CISSPCISMCISACRISCISO 27001 Lead ImplementerISO 27001 Auditor
Languages:Spanish
Tech Stack:GoPythonNode.jsSQLScrumLeanGitGit FlowISO 27001NIST CSFSOC 2COBITOWASPPCIOWASP Top 10OWASP API Top 10SSDLCATAMSTRIDESAST

Company Brief

MercadoLibre
Operates Latin America's leading e‑commerce marketplace and fintech ecosystem, offering online buying and selling, classifieds, payment processing, credit, and logistics services across multiple countries in the region.
Industry: Online Marketplaces
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: Buenos Aires, Argentina
Founded: 1999
Glassdoor
Glassdoor: 3.8
WebsiteLinkedIn