Cybersecurity Risk Manager - Warsaw - Frontex
SEIDOR · Warsaw, Poland
You apply off-site, with the employer or the job board. I never handle applications.
ABOUT THE JOB
We are a large company with a start-up spirit. We organize ourselves into expert knowledge Units that collaborate with each other.
That's why we are looking for curious individuals who are motivated by challenges and eager to grow personally and professionally, to join our team and make a positive impact on the world through technology.
ARE YOU UP FOR THE CHALLENGE?
We want you to be a part of our team, from Warsaw, as a Cybersecurity Risk Manager.
WHAT WILL YOU DO IN YOUR DAY-TO-DAY?
- Develop an organization’s cybersecurity risk management strategy
- Manage an inventory of organization’s assets
- Identify and assess cybersecurity-related threats and vulnerabilities of ICT systems
- Identification of threat landscape including attackers’ profiles and estimation of attacks’ potential
- Assess cybersecurity risks, and propose most appropriate risk treatment options, including security controls, and risk mitigation and avoidance that best address organizations’ strategy
- Monitor effectiveness of cybersecurity controls and risk levels
- Ensure that all cybersecurity risks remain at an acceptable level for the organization’s assets
- Develop, maintain, report and communicate complete risk management cycle
Will you join us in humanizing technology?
WHAT DO WE EXPECT FROM YOU?
The consultant must demonstrate experience in:
- 10+ years of experience
Certifications: At least four internationally recognized certifications—subject to Contracting Authority approval—from CISA, CISM, CRISC, CISSP, CGRC, CSSLP, CCSP, CISSP-ISSMP, GSNA, GCCC, GIAC ISO 27000, ISO 27001 Lead Implementer/Auditor, ISO 27005 Risk Manager, or equivalents.
Specific Requirements:
- Experience in making Business Impact Assessments
- Knowledge on risk assessment implementation in GRC Service Now
- Experience in preparing personal data protection documentation
- Experience in tools for graphical and programmatic threat modelling.
- Experience in threat modelling for DevOps
- Experience in designing Zero Trust ArchitectureExpirience in Securing Software Development Lifecycle
- Experience in designing controls for defending Directory Services