Security Expert (Servers, End-User Devices & Security Testing)
Brak informacji o wynagrodzeniu
SeniorFull-time
#411230·Dodano 2 dni temu·0
Źródło: Provident PolskaTech Stack / Keywords
SecurityTestingEmbeddedCybersecurity
Firma i stanowisko
Provident Polska is a company operating on the Polish market for 29 years and has received the Top Employer award 13 times in a row. The role is within their Global Security Assurance team supporting Provident worldwide.
Wymagania
- Strong expertise in server and end-user device security.
- Experience in security assurance, vulnerability management, penetration testing, or resilience testing.
- Knowledge of security frameworks and standards including ISO 27001, NIST, and CIS Controls.
- Ability to assess risk, define security requirements, and drive remediation activities.
- Strong stakeholder management skills with experience working in global, cross-functional environments.
Obowiązki
Servers and end-user devices security:
- Act as the technical authority in ICT Controls for servers and end-user devices.
- Lead design, implementation, and continuous improvement of servers and end-user devices ICT policies, standards, and baselines.
- Collaborate with IT Teams to ensure proper implementation of requirements.
- Partner with IT and Security functions to identify and resolve ICT defects.
- Define criteria and measure effectiveness of ICT controls, providing insights and continuous improvement.
Security & Resilience Testing:
- Own and coordinate the full security and resilience testing lifecycle including planning, execution, remediation, and reporting.
- Define testing requirements from business, regulatory, and security perspectives.
- Manage relationships with external testing providers ensuring quality delivery.
- Validate results, assess risks, provide remediation recommendations, and maintain a knowledge base.
- Deliver testing reports for internal and regulatory stakeholders.
Additional Support:
- Support development and maintenance of ICT security policies, standards, procedures, and controls.
- Identify, assess, and mitigate ICT risks.
- Ensure compliance with frameworks like ISO 27001, NIST, and CIS Controls.
- Support security monitoring, investigations, and incident response.
- Monitor emerging threats and regulatory developments.
- Collaborate with global Security, IT, and business teams to enhance cybersecurity posture.
- Lead cross-functional initiatives across multiple geographies.
- Act as a trusted security advisor for business and technology teams.
Benefity
- Stable employment with 93% of employees on indefinite employment contracts.
- Hybrid work mode with office presence twice a week at Dworzec Gdański metro station in Warsaw.
- Extra 3 days of paid leave if full annual leave is used.
- Private medical care with appointment guarantee service (Medicover).
- Full implementation with mentor supervision and professional training.
- Access to development platform including e-learning, podcasts, and webinars.
- Training series such as "Effective Manager" for managerial roles.
- Business telephone provided (including private use).
- Access to ProviBenefity cafeteria platform or subsidies for Multisport cards.
- Life insurance on preferential terms (UNUM Życie TUiR S.A.).
- Christmas benefits and holiday co-financing for employees and children.
- Psychological support including care from psychologists, psychotherapists, dieticians, and coaching.
Płatny urlop
Opieka zdrowotna
Szkolenia wewnętrzne
Spotkania integracyjne
Telefon
Karta sportowa
Ubezpieczenie
PROVIDENT Polska
11 aktywnych ofert