Cybersecurity: Governance, Risk and Compliance Specialist
Brak informacji o wynagrodzeniu
MidFull-time
#416379·Dodano wczoraj·1
Źródło: InnergoTech Stack / Keywords
CybersecuritySecurityServiceNowSAP
Firma i stanowisko
INNERGO is a company founded on 100% Polish capital, operating in the IT integrator market since 2009 with over 150 employees. It specializes in advanced telecommunication integration projects, combining top-tier global products with a wide portfolio of own services. The company has completed over 2000 projects across various industries, focusing on LAN/WLAN, MPLS, SD WAN, enterprise telecom systems, server platforms, cyber security implementations, Apple device services, 5G and LTE private networks, Connected City solutions, and no-code platform applications.
Wymagania
- Bachelor’s degree in information technology, legal, or equivalent experience
- Understanding of security frameworks like NIST and regulatory requirements (governance, risk management, privacy, data security)
- Knowledge of security protocols and standards
- Solid knowledge of information security principles and practices
- Minimum 3 years of experience in IT, Data Governance, IT Risk Management, and IT Compliance
- Experience with IT general computer control evaluations and external audits
- Intermediate knowledge of privacy assessment (GDPR)
- Understanding of industry control frameworks and leading practices
- Experience evaluating system security requirements
- Knowledge of system functions, security policies, technical security safeguards, and operational security measures
- Familiarity with industry-leading practices, security frameworks, policies, and standards
- Intermediate operational knowledge of ServiceNow
- Intermediate operational knowledge of SAP GRC
- Ability to prioritize, make discretionary decisions, and notify management appropriately
- Strong interpersonal skills to work with diverse technical teams
- Experience communicating and presenting to management-level audiences
- Organized, detail-oriented, analytical, self-starter with strong collaboration skills
- High integrity and ability to maintain confidentiality
- Proficiency in English, both written and verbal
Nice to have:
- ISACA CISM certification
- ISACA CRISC certification
- ISACA CGEIT certification
- (ISC)2 CISSP certification
Obowiązki
- Monitor user access to IT systems, including semiannual access reviews, termination validation, and privilege access reviews
- Validate segregation of duties within key application functions
- Establish communication with business and regional IT teams for global IT control assessments
- Ensure projects comply with organizational policies and security standards
- Assist with vulnerability assessments and SoX audit processes
- Retain necessary audit documentation following procedures
- Participate in incident response activities
- Develop and support IT Governance, Risk Management, and Compliance processes
- Assess applications, vendors, and processes from cybersecurity and privacy perspectives
- Collaborate with IT and Legal teams to ensure compliance with regulations such as SoX, GDPR, and DOL
Benefity
- Necessary tools for work provided
- Co-financing for private medical care, life insurance, and sports card
- Integration meetings and trips
- Additional days off
Opieka zdrowotna
Ubezpieczenie
Karta sportowa
Płatny urlop
Spotkania integracyjne
Innergo
5 aktywnych ofert