Security Expert (Servers, End-User Devices & Security Testing)

Brak informacji o wynagrodzeniu
SeniorFull-time
#411230·Dodano 2 dni temu·0
Źródło: Provident Polska
Aplikuj teraz

Tech Stack / Keywords

SecurityTestingEmbeddedCybersecurity

Firma i stanowisko

Provident Polska is a company operating on the Polish market for 29 years and has received the Top Employer award 13 times in a row. The role is within their Global Security Assurance team supporting Provident worldwide.

Wymagania

  • Strong expertise in server and end-user device security.
  • Experience in security assurance, vulnerability management, penetration testing, or resilience testing.
  • Knowledge of security frameworks and standards including ISO 27001, NIST, and CIS Controls.
  • Ability to assess risk, define security requirements, and drive remediation activities.
  • Strong stakeholder management skills with experience working in global, cross-functional environments.

Obowiązki

Servers and end-user devices security:

  • Act as the technical authority in ICT Controls for servers and end-user devices.
  • Lead design, implementation, and continuous improvement of servers and end-user devices ICT policies, standards, and baselines.
  • Collaborate with IT Teams to ensure proper implementation of requirements.
  • Partner with IT and Security functions to identify and resolve ICT defects.
  • Define criteria and measure effectiveness of ICT controls, providing insights and continuous improvement.

Security & Resilience Testing:

  • Own and coordinate the full security and resilience testing lifecycle including planning, execution, remediation, and reporting.
  • Define testing requirements from business, regulatory, and security perspectives.
  • Manage relationships with external testing providers ensuring quality delivery.
  • Validate results, assess risks, provide remediation recommendations, and maintain a knowledge base.
  • Deliver testing reports for internal and regulatory stakeholders.

Additional Support:

  • Support development and maintenance of ICT security policies, standards, procedures, and controls.
  • Identify, assess, and mitigate ICT risks.
  • Ensure compliance with frameworks like ISO 27001, NIST, and CIS Controls.
  • Support security monitoring, investigations, and incident response.
  • Monitor emerging threats and regulatory developments.
  • Collaborate with global Security, IT, and business teams to enhance cybersecurity posture.
  • Lead cross-functional initiatives across multiple geographies.
  • Act as a trusted security advisor for business and technology teams.

Benefity

  • Stable employment with 93% of employees on indefinite employment contracts.
  • Hybrid work mode with office presence twice a week at Dworzec Gdański metro station in Warsaw.
  • Extra 3 days of paid leave if full annual leave is used.
  • Private medical care with appointment guarantee service (Medicover).
  • Full implementation with mentor supervision and professional training.
  • Access to development platform including e-learning, podcasts, and webinars.
  • Training series such as "Effective Manager" for managerial roles.
  • Business telephone provided (including private use).
  • Access to ProviBenefity cafeteria platform or subsidies for Multisport cards.
  • Life insurance on preferential terms (UNUM Życie TUiR S.A.).
  • Christmas benefits and holiday co-financing for employees and children.
  • Psychological support including care from psychologists, psychotherapists, dieticians, and coaching.
Płatny urlop
Opieka zdrowotna
Szkolenia wewnętrzne
Spotkania integracyjne
Telefon
Karta sportowa
Ubezpieczenie
PROVIDENT Polska

PROVIDENT Polska

11 aktywnych ofert

Zobacz wszystkie oferty
Aplikuj teraz