CrawlJobs Logo

Cybersecurity Controls Design Manager

https://www.hsbc.com Logo

HSBC

Location Icon

Location:
Poland

Category Icon
Category:
IT - Administration

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided
Save Job
Save Icon
Job offer has expired

Job Description:

Cybersecurity Controls Design Manager will play a key role in the design and maintenance of the Cybersecurity control environment. The role holder will be tasked with defining and maintaining operational controls instances, their measurements as well as Policies, Procedures and Standards for Group Cybersecurity.

Job Responsibility:

  • Work with the Control Owners, 2LoD and CCO Technology to ensure that the Cybersecurity owned controls in the Risk and Controls Library are designed according to the Bank's requirements and industry standards
  • Work with the Control Owners and other stakeholders to ensure that Cybersecurity control measurements are defined in accordance with HSBC's KCI Design Framework and industry best practices
  • Work with Control Owner teams and CCO to ensure that the defined controls are compliant with Legal/Regulatory/Mandatory requirements
  • Design, manage and maintain Policies, Procedures and Standards for Cybersecurity controls
  • Provide key representation for and source of expertise on all (Helios) issues and actions
  • Be responsible for proactively managing the issues & actions due date
  • Prepare and present control governance related reports that feed into the Cyber and Tech RCMM

Requirements:

  • Strong Risk and Controls Background
  • Subject matter expertise in Control Management including controls design and implementation and control assessment
  • Ability to translate difficult IT concepts into business-friendly language
  • Familiarity with Helios is a plus
  • Knowledge of Cybersecurity - at least a generalist with specialist area expertise welcome
  • Understanding of metrics and measures in managing risks and controls (KCIs, KRIs, KPIs) is a must
  • Strong stakeholder management and communications skills
  • Team-oriented mentality combined with ability to complete tasks independently to a high quality standard

Nice to have:

Familiarity with Helios

What we offer:
  • Competitive salary
  • Annual performance-based bonus
  • Additional bonuses for recognition awards
  • Multisport card
  • Private medical care
  • Life insurance
  • One-time reimbursement of home office set-up (up to 800 PLN)
  • Corporate parties & events
  • CSR initiatives
  • Nursery discounts
  • Financial support with trainings and education
  • Social fund
  • Flexible working hours
  • Free parking

Additional Information:

Job Posted:
September 13, 2025

Expiration:
December 12, 2025

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Cybersecurity Controls Design Manager

Controls Design Analyst

Cybersecurity Controls Design Analyst will play a key role in the design and mai...
Location
Location
Poland
Salary
Salary:
Not provided
https://www.hsbc.com Logo
HSBC
Expiration Date
February 07, 2026
Flip Icon
Requirements
Requirements
  • Strong Risk and Controls Background
  • Subject matter expertise in Control Management. This includes but is not limited to controls design and implementation and control assessment
  • Ability to translate difficult IT concepts into business-friendly language
  • Familiarity with Helios is a plus
  • Knowledge of Cybersecurity – at least a generalist with specialist area expertise welcome
  • Understanding of metrics and measures in managing risks and controls (KCIs, KRIs, KPIs) is a must
  • Strong stakeholder management and communications skills
  • Team-oriented mentality combined with ability to complete tasks independently to a high quality standard.
Job Responsibility
Job Responsibility
  • Work with the Control Owners, 2LoD and CCO Technology to ensure that the Cybersecurity owned controls in the Risk and Controls Library are designed according to the Bank’s requirements and industry standards and best practices (e.g. NIST 800-53)
  • Work with the Control Owners and other stakeholders to ensure that Cybersecurity control measurements are defined in accordance with HSBC’s KCI Design Framework and industry best practices (CIS)
  • Work with Control Owner teams and CCO to ensure that the defined controls are compliant with Legal/Regulatory/Mandatory requirements and that measurements provide sufficient data for stakeholder reports
  • Design, manage and maintain Policies, Procedures and Standards for Cybersecurity controls, covering all areas across Engineering, Operations and Security Assessment and Testing
  • Provide key representation for and source of expertise on all (Helios) issues and actions
  • Be responsible for proactively managing the issues & actions due date, including senior stakeholder engagement
  • Prepare and present control governance related reports that feed into the Cyber and Tech RCMM.
What we offer
What we offer
  • Competitive salary
  • Annual performance-based bonus
  • Additional bonuses for recognition awards
  • Multisport card
  • Private medical care
  • Life insurance
  • One-time reimbursement of home office set-up (up to 800 PLN)
  • Corporate parties & events
  • CSR initiatives
  • Nursery discounts
  • Fulltime
Read More
Arrow Right

Cybersecurity Controls Oversight Manager

Cybersecurity Controls Oversight Manager will play a key role in the monitoring ...
Location
Location
Poland , Krakow
Salary
Salary:
Not provided
https://www.hsbc.com Logo
HSBC
Expiration Date
February 07, 2026
Flip Icon
Requirements
Requirements
  • Risk and Controls Background: subject matter expertise in Control Monitoring and Assessment, ability to translate difficult IT concepts into business-friendly language, experience with Technology risks and controls
  • Technical background: knowledge of Cybersecurity – at least a generalist with specialist area expertise welcome, possession of recognized certificates will be an advantage, understanding of metrics and measures in managing risks and controls (KCIs, KRIs, KPIs) is a must, technical writing skills and highly proficient use of written English is required to ensure quality output for Control, Policies, Procedure and Standards design and maintenance
  • Strong stakeholder management and communications skills: experience of working at an operational level in international environments which drive a true international perspective
  • managing stakeholders including the Group CISO, Cybersecurity Leadership and staff, Chief Controls Office and Resilience Risk teams
  • Team-oriented mentality combined with ability to complete tasks independently to a high-quality standard: experience within fast-moving, complex and demanding corporate environments where Cybersecurity controls issues must be handled on a large scale and multi-task
  • Interpersonal Skills: influential, credible and persuasive, active listener embraces HSBC Values, shows good judgement and demonstrates high communication skills to achieve effective stakeholder management
Job Responsibility
Job Responsibility
  • Represent Cybersecurity Controls in senior management forums
  • Work with the Control Owners and other stakeholders to ensure timely execution of self-assessments
  • Collect and maintain accurate evidence and maturity scoring reviews for cybersecurity controls
  • Ensure that the defined controls are compliant with Legal/Regulatory/Internal requirements and that measurements provide sufficient data for stakeholder reports
  • Work with Enterprise Risk Management, Chief Control Office and Audit (internal and external) to ensure that the Cybersecurity owned controls are monitored, assessed and tested according to the internal requirements, Risk Management Framework (RMF) and industry standards and best practices
  • Manage escalation of issues through appropriate channels based on the results of oversight process
  • Ensure improvement actions are updated regularly and aligned to the control objectives
What we offer
What we offer
  • Competitive salary
  • Annual performance-based bonus
  • Additional bonuses for recognition awards
  • Multisport card
  • Private medical care
  • Life insurance
  • One-time reimbursement of home office set-up (up to 800 PLN)
  • Corporate parties & events
  • CSR initiatives
  • Nursery discounts
  • Fulltime
Read More
Arrow Right

Cybersecurity Controls Design and Oversight Lead

Cybersecurity Controls Design and Oversight Lead will play a key role in the des...
Location
Location
Poland
Salary
Salary:
Not provided
https://www.hsbc.com Logo
HSBC
Expiration Date
January 27, 2026
Flip Icon
Requirements
Requirements
  • Expertise in Risk and Control Management (controls design and implementation and control assessment)
  • Ability to translate difficult IT concepts into business-friendly language
  • Experience with Technology risks and controls
  • Knowledge of Cybersecurity – at least a generalist with specialist area expertise welcome
  • Understanding of metrics and measures in managing risks and controls (KCIs, KRIs, KPIs)
  • Technical writing skills and highly proficient use of written English
  • Experience of working at an operational level in international environments
  • Senior stakeholder management skills
  • Experience within fast moving, complex and demanding corporate environments
  • Ability to identify and remediate challenges in governance processes
Job Responsibility
Job Responsibility
  • Working with Control Owners, 2LoD and CCO Technology to ensure Cybersecurity owned controls are designed according to Bank's requirements and industry standards
  • Working with Control Owners and stakeholders to ensure Cybersecurity control measurements are defined
  • Working with CTE and CMT teams to ensure controls are compliant with Legal/Regulatory requirements
  • Design, manage and maintain Policies, Standards and Procedures for Cybersecurity controls
What we offer
What we offer
  • Competitive salary
  • Annual performance-based bonus
  • Additional bonuses for recognition awards
  • Multisport card
  • Private medical care
  • Life insurance
  • One-time reimbursement of home office set-up (up to 800 PLN)
  • Corporate parties & events
  • CSR initiatives
  • Financial support with trainings and education
  • Fulltime
Read More
Arrow Right

Control Manager

The role involves oversight of technology services, managing risks, implementing...
Location
Location
Poland
Salary
Salary:
Not provided
https://www.hsbc.com Logo
HSBC
Expiration Date
February 17, 2026
Flip Icon
Requirements
Requirements
  • At least 3 years of hands-on experience with one or more or the control capabilities in the technology or cybersecurity domains either directly or as a 1/2/3LOD control management function
  • At least 3 years of hands-on experience and subject matter expertise in management of operational risk, non-financial risk and/or technology and information security risk
  • Experience across IT, Operations, Risk Management, and / or Audit roles requiring management of diverse risk types is desirable
  • Previous experience of identifying, defining and solving problems that have impact on your work or the wider business
  • Proven track record of process improvement and delivering as promised
  • Financial Services or other highly regulated industry experience/exposure is preferred
  • Ability to present complex issues concisely to senior partners using non-technical language
  • Active industry recognized certificates will be an asset, e.g. CISA, CISSP, CRISC, CCSP etc
Job Responsibility
Job Responsibility
  • Supporting the Enterprise Technology CCO to oversee the risk and control portfolio related to Enterprise Technology services provided to the Group across key Global Infrastructure (GI) Functions
  • Acting as trusted advisor for senior management by partnering to manage their technology risk
  • Promoting accountable risk and control decision-making based on quality data and analysis
  • Actively challenging poor, inefficient or excessive controls, related tasks and behaviours
  • Providing specialist risk and control knowledge and insights, leading efforts to continuously improve the control environment and monitoring of risk, including behaviours
  • Advising and designing process and controls in a commercially viable, practical and effective manner
  • Identifying trends to anticipate future developments in the risk and control environment
  • Influencing and shaping the development and implementation of future-fit risk management and regulatory frameworks
  • Providing updates on relevant changes to policy or projects related to operational risk that impact their area of responsibility
What we offer
What we offer
  • Competitive salary
  • Annual performance-based bonus
  • Additional bonuses for recognition awards
  • Multisport card
  • Private medical care
  • Life insurance
  • One-time reimbursement of home office set-up (up to 800 PLN)
  • Corporate parties & events
  • CSR initiatives
  • Nursery discounts
  • Fulltime
Read More
Arrow Right

OT Cybersecurity Manager

Safeguard the integrity and resilience of energy infrastructure by leading the d...
Location
Location
Greece , Athens
Salary
Salary:
Not provided
https://www.metlengroup.com Logo
Metlen Group
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's or Master's degree in Cybersecurity, Electrical Engineering, or related field
  • 5+ years of experience in OT/ICS cybersecurity, preferably in the energy or industrial sector
  • Strong knowledge of OT protocols (e.g., Modbus, DNP3), network segmentation, and industrial control systems
  • Hands-on experience with firewalls, SIEM, IDS/IPS, and endpoint protection in OT environments
  • Excellent problem-solving, communication, and stakeholder engagement skills
Job Responsibility
Job Responsibility
  • Design, implement, and maintain OT security controls and architectures across energy infrastructure
  • Collaborate with engineering and IT teams to ensure secure integration of OT systems
  • Conduct risk assessments, vulnerability analyses, and incident response planning for OT environments
  • Monitor and analyze OT network traffic and logs to detect and respond to threats
  • Ensure compliance with industry standards and regulatory requirements (e.g., NIS2, IEC 62443)
  • Lead end-to-end planning and execution of OT security initiatives
  • Drive change initiatives to support adoption of new systems, processes, and behaviors
  • Coordinate stakeholder engagement across domains and senior leadership
  • Identify and mitigate risks, dependencies, and blockers
  • Monitor initiative performance and incorporate lessons learned
What we offer
What we offer
  • Competitive remuneration package
  • Ticket Restaurant Card
  • Group Health Insurance Plan
  • Preferential household electricity plan
  • Pension Plan
  • Fulltime
Read More
Arrow Right

Vulnerability Management Response Lead

The Vulnerability Response Lead is a key role within the Vulnerability Managemen...
Location
Location
Poland
Salary
Salary:
Not provided
https://www.hsbc.com Logo
HSBC
Expiration Date
January 30, 2026
Flip Icon
Requirements
Requirements
  • Minimum of 3-5 years’ experience in working in IT Security or similar role
  • Experience of working in roles within Cyber Security Operations, Risk Management, and Governance, within a mid to large enterprise or equivalent organisation
  • Ability to understanding, apply, and improve elements of the Vulnerability Management Lifecycle and use multiple toolsets to convey information, obtain data, and make it meaningful to future plans
  • Lateral thinking and creative form to deploy expertise in the uplift of people skills, process identifications, and technological adjustments
  • Ability to recognise threats and risk, and act with insight to deliver a core part of the Cyber Security Operational model in HSBC
  • Ability to produce clear and concise reports for targeted audiences across internal and external stakeholders
  • Understanding and experience in the practical application and execution of Vulnerability scanning technologies and their application (e.g. Nessus, SAST/MAST/DAST (Checkmarx, Netsparker, Fortify, IBM AppScan, etc.), Tenable.io, Security Center (or similar Vulnerability Scanning products), risk consolidation platforms)
  • Vulnerability assessments, scoring and ratings and how they are applied
  • Patch Management
  • Business and architectural design, including controls analysis, process flows and data flows
Job Responsibility
Job Responsibility
  • Support the remediation efforts of newly discovered vulnerabilities, where the risk score is deemed critical and an immediate risk to HSBC
  • Monitor external threat feeds and Cyber Intelligence Threat Analysis to identify any newly reported external risks
  • Manage the documentation of FRTF and ITAG initiatives and providing / identifying expert advice & guidance on remediation approaches
  • Track and report of ITAG and FRTF initiatives, as well as producing closure reports for completed ITAG’s and FRTF’s
  • Follow operational processes and ensure that they provide the most streamlined and efficient method of operations, whilst identifying opportunities for improvement
  • Support thematic reviews to drive and systematic uplifts and enhancements to services that help protect the bank
  • Maintain operational documentation on what reports are available and how / where to access them
  • Conduct holistic reviews of the overall baseline security posture
  • Contribute to and inform requests from Regulators, Internal/ External Audit, and 2LOD challenges/ Papers
  • Support the commentary for routine governance submissions e.g. Cybersecurity Executive Committee Monthly Update, Risk Map, KCIs, KRIs
What we offer
What we offer
  • Competitive salary
  • Annual performance-based bonus
  • Additional bonuses for recognition awards
  • Multisport card
  • Private medical care
  • Life insurance
  • One-time reimbursement of home office set-up (up to 800 PLN)
  • Corporate parties & events
  • CSR initiatives
  • Nursery discounts
  • Fulltime
Read More
Arrow Right

Network Engineer

AAC Inc is seeking a highly skilled and motivated professional to join our team ...
Location
Location
United States , Camp Pendleton
Salary
Salary:
Not provided
aac.com Logo
AAC
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Active Secret clearance
  • 10+ years of experience
  • High School Diploma or greater
  • IAT Level III certification in one of: Cisco Certified Security Professional (CCSP), Fortinet Certified Network Security Professional (FCNSP), Juniper Networks Certified Specialist Security (JNCIP-SEC), Certified Modeling & Simulation Professional (CMSP), Cisco Certified Network Practitioner (CCNP)
  • Experience assisting Government Lead in daily engineering duties
  • Experience evaluating communication hardware/software and troubleshooting LAN/BAN/WAN
  • Experience providing technical leadership in integration and test of complex large-scale computer integrated networks
  • Experience scheduling conversions and cutovers
  • Experience designing and providing near real time full spectrum situational awareness of IT services
  • Experience delivering Navy/Marine Corps NetOps control and visibility via electronic network management systems
Job Responsibility
Job Responsibility
  • Assist the Government Lead in the daily engineering duties on systems
  • Evaluate communication hardware and software communication, troubleshoot LAN/BAN/WAN and other network related problems
  • Provide technical leadership in the integration and test of complex large-scale computer integrated networks
  • Schedule conversions and cutovers
  • Design and provide near real time full spectrum situational awareness of IT services, events, incidents, and infrastructure to support vulnerability analyses
  • Deliver Navy/Marine Corps NetOps control and visibility via electronic network management systems and Command and Control (C2) facilities
  • Facilitate the Government’s exercise of network operational control over critical services and infrastructure
  • Design and perform schema extensions for directory services
  • Perform system integration and server installation on server hardware
  • Perform system backup (Disaster Recovery), security updates, and system integration with HBSS
  • Fulltime
Read More
Arrow Right
New

Cyber Security Compliance Manager

The Cyber Security Compliance Manager is responsible for developing, maintaining...
Location
Location
United States , Orlando
Salary
Salary:
Not provided
threatlocker.com Logo
ThreatLocker
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum 6 years of experience in corporate compliance, cybersecurity governance, or risk management
  • Bachelor’s degree in Management Information Systems (MIS), Computer Science (CS), or a related field (Master’s preferred)
  • Proven success managing SOC 2, FedRAMP, or NIST 800-171 programs
  • Deep understanding of IT and security controls across cloud, network, and endpoint environments
  • Exceptional organizational skills with a strong ability to manage multiple projects under tight deadlines
  • Clear and concise communicator, capable of interfacing effectively with executives, engineers, and auditors
  • Proven negotiation, documentation, and analytical skills with acute attention to detail
  • Self-motivated, resourceful, and adaptable in a fast-moving, high-accountability culture
  • Excellent written communication and presentation skills
Job Responsibility
Job Responsibility
  • Develop and implement organizational compliance strategies that align with company objectives
  • Design, monitor, and enhance control systems to detect and prevent violations of legal rules and internal policies
  • Collaborate with leadership to advance ThreatLocker’s corporate governance and compliance maturity
  • Align documentation, processes, and controls with frameworks including SOC 2 Type II, FedRAMP, NIST 800-171, ISO 27001, and other emerging standards
  • Own and lead external audit engagements, including evidence collection, gap remediation, and continuous improvement tracking
  • Oversee the development, review, and management of corporate compliance and information security policies
  • Identify, assess, and mitigate organizational and product risks through collaboration with technical and operational teams
  • Conduct internal compliance audits and risk assessments to verify adherence to internal and external standards
  • Manage vendor and supply chain compliance processes, including due diligence and ongoing risk monitoring
  • Develop and deliver staff compliance training and awareness programs
  • Fulltime
Read More
Arrow Right
Welcome to CrawlJobs.com
Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.