Airwallex is the AI-native financial operating system for a real-time, intelligent economy. More than 676,000 businesses, including McLaren Racing, Qantas, SHEIN, and TikTok, use us, directly or through our platform partners, to run their financial operations or build and monetize financial products of their own.
We started in Melbourne in 2015 to build the infrastructure global commerce runs on. We're the regulated backbone behind global payments: not by accident, but by design. A decade plus, 85+ licenses, and a financial infrastructure spanning North America, Europe, the Middle East, and Asia-Pacific.
We're co-headquartered in San Francisco and Singapore, with more than 2,300 people across 27 offices. We hire builders with founder-level energy, people who move fast with good judgment, dig in with real curiosity, and make calls from first principles rather than waiting to be told what to do. Read our operating principles to see it in full.
About the team
Information Security drives risk, compliance, and security governance globally at Airwallex. The GRC function acts as the bridge between regulators, customers, partners, and the business — designing policies and controls that meet regional and global standards while challenging traditional industry norms. We partner across the enterprise, from Legal to Engineering to regional business entities, to build a security posture that scales as we grow globally.
What you'll do
As an INFOSEC Governance, Risk and Compliance Regional Specialist, you'll act as the regional anchor for Mexico City, while integrating closely with the global Information Security team. Reporting to the Senior GRC Manager, you'll be named a regional point of contact for government and regulatory bodies in Mexico, and you'll help design and implement policies that balance regional requirements with global standards. This role suits someone with an IT engineering or technology-focused legal background who has moved into information security compliance and retains hands-on security skills — someone who sees compliance as a challenge to iterate on, not a box to check.
This role is based in Mexico City or San Francisco.
Responsibilities
Act as the regional anchor for Mexico City, prioritizing region-specific requirements while integrating with the global effort
Serve as a trusted contact for Mexican regulatory bodies, customers, partners, and vendors, shaping external perception of the enterprise's security posture in the region
Manage the implementation and monitoring of security controls, executing to a high standard while continuously refining and iterating
Implement AI and automation wherever possible to streamline everyday compliance and security work, including reporting and communications
Develop and maintain security documentation, including standards, policies, reporting metrics, dashboards, and evidence artefacts for internal and external stakeholders
Act as a subject matter expert and generalist, relied upon by Airwallex teams as the authority on security compliance for the Mexico region
Execute hands-on security tasks within the region as needed, balancing strategic ownership with practical, on-the-ground work
Leverage project management experience to drive initiatives independently, without being bound to traditional solutions or methodologies
Who you are
5-7 years of cybersecurity experience, with proven ability to work and execute independently
Must hold a Mexican Tax ID (RFC) or have dual Mexican citizenship, as this role directly owns and represents the Mexico City region
Fluent in both English and Spanish, written and spoken
Prior experience in the fintech industry specifically is highly desired
Deep knowledge of relevant compliance and control frameworks such as PCI-DSS, ISO 27001, SOC2, and similar standards, with a strong understanding of what makes a successful information security audit
Knowledge of security compliance specific to the finance industry or the Mexican/LATAM region is highly valued
Strong familiarity with Information Security concepts, practices, and solutions — whether from a technical background or from close collaboration with engineering teams
Working knowledge of policy creation and maintenance, including tuning policies to meet complex regulatory requirements
Working understanding of complex cloud environments and how they impact modern security and compliance operations
Understanding of financial services or payments, especially with prior fintech experience
A passion for solving complex challenges at high-growth startups and thinking creatively about "solved" problems
An industry-leading security degree or certification is a strong benefit (e.g., BS/MS in Cybersecurity, CISSP, CEH, CISA)
To protect you from recruitment scams, please be aware that Airwallex will not ask for bank details, sensitive ID numbers (i.e. passport), or any form of payment during the application or interview process. All official communication will come from an @airwallex.com email address. Please apply only through careers.airwallex.com or our official LinkedIn page.
Airwallex does not accept unsolicited resumes from search firms/recruiters. Airwallex will not pay any fees to search firms/recruiters if a candidate is submitted by a search firm/recruiter unless an agreement has been entered into with respect to specific open position(s). Search firms/recruiters submitting resumes to Airwallex on an unsolicited basis shall be deemed to accept this condition, regardless of any other provision to the contrary.
Airwallex is proud to be an equal opportunity employer. We value diversity and anyone seeking employment at Airwallex is considered based on merit, qualifications, competence and talent. We don’t regard color, religion, race, national origin, sexual orientation, ancestry, citizenship, sex, marital or family status, disability, gender, or any other legally protected status when making our hiring decisions. If you have a disability or special need that requires accommodation, please let us know.