Senior IT Security Compliance Specialist (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior IT Security Compliance Specialist (Cybersecurity): Leading and enhancing the IT Compliance program to ensure adherence to global standards and regulatory mandates with an accent on GRC strategy, control frameworks, and regulatory alignment. Focus on designing compliance-by-design processes, automating evidence collection using Generative AI, and managing security maturity.
Location: Must be based in Poland (Hybrid in Warsaw with 4 days per month in office or Full Remote from Poland)
Company
is the leading provider of business sustainability ratings, helping companies manage environmental, social, and ethical risks.
What you will do
- Develop and implement a comprehensive GRC strategy, including policies, procedures, and security requirements.
- Deploy and maintain a consolidated control framework and conduct IT compliance gap assessments.
- Collaborate with Product teams to ensure "Compliance-by-Design" during the discovery phase of new features.
- Ensure organizational compliance with GDPR, ISO 27001, NIS2, SOC 2, and other industry standards.
- Perform deep-dive analysis for security questionnaires and review security clauses in contracts.
- Lead the adoption of Generative AI tools to automate evidence collection and policy drafting.
Requirements
- 5+ years of experience in GRC positions.
- Eligibility to work and live in Poland.
- Fluent written and spoken English.
- Hands-on experience creating compliance programs based on ISO 27001, SOC 2, or similar regulations.
- Practical experience using AI to streamline compliance workflows.
- Ability to translate technical risks into business impact for senior management.
Nice to have
- Hands-on experience with Google Workspace.
Culture & Benefits
- Flexible working hours and hybrid/remote work organization.
- Wellness allowance for mental and physical wellbeing and professional mental health support.
- Learning and development opportunities and peer recognition programs.
- Optional fully covered or co-financed health care and life insurance.
- Internet and electricity bill allowance, Multisport card, and lunch card.
- Additional day for community service when volunteering.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →