Apply with hirly
Senior GRC Specialist
Airwallex · MX - Mexico City
Upload your resume to see how well you match this job — free, in seconds, no account needed.
Your resume is used only to score it against this job. If you don't create an account, it is deleted within 24 hours.
About Airwallex Airwallex is the AI-native financial operating system for a real-time, intelligent economy. More than 676,000 businesses, including McLaren Racing, Qantas, SHEIN, and TikTok, use us, directly or through our platform partners, to run their financial operations or build and monetize financial products of their own. We started in Melbourne in 2015 to build the infrastructure global commerce runs on. We're the regulated backbone behind global payments: not by accident, but by design. A decade plus, 85+ licenses, and a financial infrastructure spanning North America, Europe, the Middle East, and Asia-Pacific. We're co-headquartered in San Francisco and Singapore, with more than 2,300 people across 27 offices. We hire builders with founder-level energy, people who move fast with good judgment, dig in with real curiosity, and make calls from first principles rather than waiting to be told what to do. Read our operating principles to see it in full. About the team Information Security drives risk, compliance, and security governance globally at Airwallex. The GRC function acts as the bridge between regulators, customers, partners, and the business — designing policies and controls that meet regional and global standards while challenging traditional industry norms. We partner across the enterprise, from Legal to Engineering to regional business entities, to build a security posture that scales as we grow globally. What you'll do As an INFOSEC Governance, Risk and Compliance Regional Specialist, you'll act as the regional anchor for Mexico City , while integrating closely with the global Information Security team. Reporting to the Senior GRC Manager, you'll be named a regional point of contact for government and regulatory bodies in Mexico, and you'll help design and implement policies that balance regional requirements with global standards. This role suits someone with an IT engineering or technology-focused legal background who has moved into information security compliance and retains hands-on security skills — someone who sees compliance as a challenge to iterate on, not a box to check. This role is based in Mexico City or San Francisco . Responsibilities
- Act as the regional anchor for Mexico City, prioritizing region-specific requirements while integrating with the global effort
- Serve as a trusted contact for Mexican regulatory bodies, customers, partners, and vendors, shaping external perception of the enterprise's security posture in the region
- Manage the implementation and monitoring of security controls, executing to a high standard while continuously refining and iterating
- Implement AI and automation wherever possible to streamline everyday compliance and security work, including reporting and communications
- Develop and maintain security documentation, including standards, policies, reporting metrics, dashboards, and evidence artefacts for internal and external stakeholders
- Act as a subject matter expert and generalist, relied upon by Airwallex teams as the authority on security compliance for the Mexico region
- Execute hands-on security tasks within the region as needed, balancing strategic ownership with practical, on-the-ground work
- Leverage project management experience to drive initiatives independently, without being bound to traditional solutions or methodologies Who you are
- 5-7 years of cybersecurity experience, with proven ability to work and execute independently
- Must hold a Mexican Tax ID (RFC) or have dual Mexican citizenship , as this role directly owns and represents the Mexico City region
- Fluent in both English and Spanish , written and spoken
- Prior experience in the fintech industry specifically is highly desired
- Deep knowledge of relevant compliance and control frameworks such as PCI-DSS, ISO 27001, SOC2, and similar standards, with a strong understanding of what makes a successful information security audit
- Knowledge of security compliance specific to the finance industry or the Mexican/LATAM region is highly valued
- Strong familiarity with Information Security concepts, practices, and solutions — whether from a technical background or from close collaboration with engineering teams
- Working knowledge of policy creation and maintenance, including tuning policies to meet complex regulatory requirements
- Working understanding of complex cloud environments and how they impact modern security and compliance operations
- Understanding of financial services or payments, especially with prior fintech experience
- A passion for solving complex challenges at high-growth startups and thinking creatively about "solved" problems
- An industry-leading security degree or certification is a strong benefit (e.g., BS/MS in Cybersecurity, CISSP, CEH, CISA) Applicant Safety Policy: Fraud and Third-Party Recruiters To protect you from recruitment scams, please be aware that Airwallex will not ask for bank details, sensitive ID numbers (i.e. passport), or any form of payment during the application or interview process. All official communication will come from an @ airwallex.com email address. Please apply only through careers.airwallex.com or our official LinkedIn page. Airwallex does not accept unsolicited resumes from search firms/recruiters. Airwallex will not pay any fees to search firms/recruiters if a candidate is submitted by a search firm/recruiter unless an agreement has been entered into with respect to specific open position(s). Search firms/recruiters submitting resumes to Airwallex on an unsolicited basis shall be deemed to accept this condition, regardless of any other provision to the contrary. Equal opportunity Airwallex is proud to be an equal opportunity employer. We value diversity and anyone seeking employment at Airwallex is considered based on merit, qualifications, competence and talent. We don’t regard color, religion, race, national origin, sexual orientation, ancestry, citizenship, sex, marital or family status, disability, gender, or any other legally protected status when making our hiring decisions. If you have a disability or special need that requires accommodation, please let us know.