Information Security Officer (ISO)

160 - 300 PLN/ godz.B2B
SeniorInne·B2B
#394054·Dodano 4 dni temu·3
Źródło: justjoin.it
⚠️Uwaga: ta oferta może już nie być aktualna. Sprawdź na stronie pracodawcy, czy rekrutacja jest nadal otwarta.
Aplikuj teraz

Tech Stack / Keywords

Information SecurityCybersecurityInformation Risk ManagementSecurity assessmentsSupplier Risk Assessments (SRA)Operational Risk Assessments (ORA)security governance frameworks and regulations

Firma i stanowisko

We are supporting a large international organization to strengthen its security governance framework and manage cybersecurity risks. The role collaborates closely with an established security team and senior IT leadership to improve the organization's security posture.

Wymagania

  • Proven experience in Information Security, Cyber Security, Information Risk Management, or similar role
  • Hands-on experience conducting security and risk assessments
  • Strong understanding of risk management methodologies and risk treatment processes
  • Experience conducting or coordinating Security Assessments, Supplier Risk Assessments (SRA), Operational Risk Assessments (ORA)
  • Strong communication and stakeholder management skills
  • Ability to challenge the status quo and drive continuous improvement
  • Pragmatic, risk-based mindset balancing security and business needs
  • English proficiency at minimum C1 level
  • Good knowledge of security governance frameworks and regulations such as ISO 27001, NIST, NIS2, DORA, CIS Controls, SOC2, GDPR

Nice to have:

  • Experience in financial services or highly regulated environments
  • Experience with vulnerability management and security operations
  • Experience supporting incident response activities
  • Knowledge of offensive security testing practices
  • Relevant security certifications (e.g., CISSP, CISM, ISO 27001), though not required

Obowiązki

  • Define and drive security strategy, priorities, and initiatives
  • Maintain security policies, standards, and procedures ensuring organizational adherence
  • Perform security and risk assessments including risk identification, evaluation, and treatment planning
  • Conduct Application and Information Classification (AIC) assessments
  • Conduct Supplier Risk Assessments (SRA)
  • Conduct Operational Risk Assessments (ORA)
  • Monitor and report on security vulnerabilities and risk exposure
  • Coordinate and support security testing and assessment activities
  • Detect, analyze, and support response to security incidents and threats
  • Advise management on information security risks and mitigation strategies
  • Promote security awareness and best practices across the organization
  • Collaborate with internal stakeholders to improve security processes and controls
  • Stay current with emerging threats, industry trends, and regulatory requirements

Benefity

  • Recruitment process consisting of one call with recruiter and one technical interview
  • Remote work option
  • B2B contract
  • Hourly rate between 160 and 300 PLN depending on experience and qualifications

Inne informacje

Informujemy, że administratorem danych jest Dawid Wierciak Flow to Grow, z siedzibą w Krakowie, ul. os. 2 Pułku Lotniczego 1H lok. 29 (dalej jako "administrator"). Masz prawo do żądania dostępu do swoich danych osobowych, ich sprostowania, usunięcia lub ograniczenia przetwarzania, prawo do wniesienia sprzeciwu wobec przetwarzania, a także prawo do przenoszenia danych oraz wniesienia skargi do organu nadzorczego. Dane osobowe przetwarzane będą w celu realizacji procesu rekrutacji. Podanie danych w zakresie wynikającym z ustawy z dnia 26 czerwca 1974 r. Kodeks pracy jest obowiązkowe. W pozostałym zakresie podanie danych jest dobrowolne. Odmowa podania danych obowiązkowych może skutkować brakiem możliwości przeprowadzenia procesu rekrutacji. Administrator przetwarza dane obowiązkowe na podstawie ciążącego na nim obowiązku prawnego, zaś w zakresie danych dodatkowych podstawą przetwarzania jest zgoda. Dane osobowe będą przetwarzane do czasu zakończenia postępowania rekrutacyjnego i przez okres możliwości dochodzenia ewentualnych roszczeń, a w przypadku wyrażenia zgody na udział w przyszłych postępowaniach rekrutacyjnych - do czasu wycofania tej zgody. Zgoda na przetwarzanie danych osobowych może zostać wycofana w dowolnym momencie. Odbiorcą danych jest serwis Rocket Jobs oraz inne podmioty, którym powierzyliśmy przetwarzanie danych w związku z rekrutacją.

Dawid Wierciak Flow to Grow

Dawid Wierciak Flow to Grow

18 aktywnych ofert

Zobacz wszystkie oferty
Aplikuj teraz