This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
As our business continues to grow, so does the need to strengthen and continuously improve our security practices across the organisation. In this role, you will support the development, implementation, and maintenance of information security processes that help protect both our company and our customers’ data. You will work closely with teams across the business on risk management, security controls, audits, documentation, and compliance-related activities. Documentation, third-party audits, and certifications are key focus areas, helping us continuously improve while ensuring our global customers can trust our services and security standards.
Job Responsibility:
Maintain risk management processes within the ISMS
Support the development and maintenance of security documentation
Maintain and improve the Information Security Management System (ISMS)
Implement relevant risk controls in cooperation with internal teams
Support the preparation for and completion of external audits
Process customer security-related requests and questionnaires
Review information security assessments for new vendors
Contribute to security awareness and education initiatives
Manage communication related to security controls and practices
Requirements:
At least 1 year of experience or degree in cybersecurity or governance, risk and compliance (GRC) in a technology company
Effective communication skills (oral and written) at all levels of the organization
Ability to systematize data and offer effective solutions in conditions of limited time
Understanding of Risk Analysis and Compliance approach
Sufficient technical foundation to understand larger internet-based systems
Strong sense of ownership and ability to remain composed in dynamic environments
Team-oriented mindset with the ability to build positive working relationships
Understanding of information security frameworks and standards, especially ISO 27001 standard
Good knowledge of Project/Product IT lifecycle
Task-oriented approach
Nice to have:
Experience bridging policy and implementation
Experience with various security certifications implementation within the organization
Eager to learn, develop in the subject, open to new challenges
What we offer:
4 additional working days of vacation leave per full calendar year
3 days of internal sick leave without a doctor's note
Health and Life Insurance
Employee Capital Plan (PPK)
Multisport card compensation
Coverage of professional training sessions, meetups, etc.
English-speaking club with native speakers
Polish language classes
Internet and Glasses reimbursement
Cosy office in Krakow city centre (Długa, 72) with beverages, fruit, and cookies