Назад
Company hidden
11 дней назад

Cyber Specialist (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Poland
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Cyber Specialist (Cybersecurity): Conducting security assessments across applications, cloud services, APIs, vendors, and technology platforms with an accent on risk-based analysis, compliance controls, and third-party security reviews. Focus on identifying control gaps, documenting executive-ready findings, developing remediation recommendations, and improving enterprise security assessment processes.

Location: Hybrid in Krakow, Poland; office attendance required three days per week at the Unity Tower office.

Company

hirify.global develops gaming and interactive entertainment products, combining technology, innovation, and cybersecurity.

What you will do

  • Perform technical security assessments of web and mobile applications, APIs, systems, cloud services, technology platforms, business processes, and third-party solutions.
  • Evaluate authentication, authorization, session management, encryption, secrets management, logging, secure configuration, and other application security controls.
  • Develop risk-based recommendations that balance security, operational requirements, and business objectives.
  • Document findings, risk decisions, threat analyses, remediation recommendations, and executive-ready assessment summaries.
  • Assess vendors, SaaS providers, cloud service providers, and technology partners using questionnaires, SOC reports, certifications, penetration testing reports, and other security evidence.
  • Support audits, client assurance requests, regulatory examinations, security reporting, and continuous improvement of assessment processes and standards.

Requirements

  • Bachelor’s degree in cybersecurity, information security, information systems, risk management, audit, computer science, or a related field, or equivalent experience.
  • At least 5 years of experience in cybersecurity, IT risk, IT audit, compliance, third-party risk management, security assessments, or a related field.
  • Independent experience conducting security assessments and documenting risk-based findings.
  • Experience reviewing architecture and infrastructure controls, vendor documentation, SOC reports, audit artifacts, remediation plans, and compliance evidence.
  • Experience with cloud platforms, enterprise technology environments, third-party vendors, vendor risk assessments, audits, or client assurance activities.
  • At least one certification such as CISSP, CISA, CRISC, or GIAC, plus familiarity with ISO 27001, NIST CSF, NIST 800-53, CIS Controls, PCI DSS, NIS2, OWASP, and GLI.

Nice to have

  • Additional cybersecurity certifications.
  • Experience with cloud security, application security, identity and access management, or data protection controls.
  • Experience using GRC, workflow, ticketing, or evidence management platforms.

Culture & Benefits

  • Collaborative environment focused on inclusion, continuous improvement, and innovation.
  • Hybrid work arrangement with flexibility to choose office days according to personal preference and business needs.
  • Compensation and benefits may include annual bonuses, incentives, health and wellbeing benefits, paid time off, retirement plans, insurance coverage, and local statutory benefits.
  • Compensation details are determined based on skills, experience, qualifications, and location and are discussed during the recruitment process.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →