CrawlJobs Logo

Security Risk Officer

techland.net Logo

Techland S.A.

Location Icon

Location:
Poland , Warszawa

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

Techland is one of the biggest video game companies in Poland, with over 30 years of experience in the gaming industry. From our studios in Wrocław and Warsaw, we’ve built an international team of more than 500 talented professionals, all dedicated to pushing the boundaries of game development. We’re known for creating iconic franchises like Call of Juarez and the zombie genre-defining Dying Light, which has been played by over 45 million players worldwide. With a focus on open-world action, storytelling, and community engagement, we’re committed to delivering unforgettable experiences to our players. We’re constantly striving to improve, innovate, and take on new challenges. With ambitious plans for the future, we’re looking for passionate people to be part of this exciting journey.

Job Responsibility:

  • Identifying, assessing, and monitoring risks related to IT, cybersecurity, data protection, and business continuity
  • Advising cross-functional teams on risk-aware decision-making in projects and operations
  • Coordinating audits, security reviews, compliance checks, and data protection impact assessments (DPIAs)
  • Overseeing implementation and tracking of security, IT, and data governance controls
  • Maintaining risk registers, control matrices, and mitigation plans
  • Managing third-party risk through vendor assessments and reviews
  • Ensuring compliance with relevant standards and regulations (e.g., ISO 27001, GDPR, NIST)
  • Supporting and coordinate incident response, including internal communication during critical events
  • Leading post-incident reviews and ensure integration of findings into risk management plans
  • Acting as liaison between Security, IT, Legal, and Executives during high-impact incidents

Requirements:

  • Proven experience in cybersecurity, IT governance or enterprise risk management
  • Familiarity with security frameworks (ISO 27001, NIST CSF, SOC 2) and risk management standards (e.g. ISO 31000)
  • Understanding of security controls in cloud, endpoint, infrastructure and application environments
  • Experience participating in or coordinating security incident response efforts
  • Ability to assess business impact during security events and help prioritize response actions
  • Familiarity with incident response processes, escalation paths and post-incident reviews (RCA, lessons learned)
  • Comfortable working under pressure and facilitating structured communication between stakeholders during incidents
  • Understanding of incident lifecycle, from detection to containment, recovery and root cause analysis
  • Excellent communication skills – ability to work across departments and present risk contextually
  • Comfortable with documentation, controls tracking, audit evidence and policy management
  • Solid understanding of GDPR and other data protection regulations
  • Very good command of English

Nice to have:

  • Professional certifications such as CRISC, CISSP, CISA, or ISO 27001 Lead Auditor
  • Experience in conducting or supporting internal audits, risk assessments and compliance projects
  • Ability to map risks to business processes and help define tolerances with stakeholders
  • Participation in tabletop exercises or real-world security incident coordination
  • Knowledge of frameworks such as NIST CSF or SANS Incident Handling
  • Certification in incident response or cyber resilience (e.g. GCIH, ISO 27035)
  • Background in security consulting, legal tech, or regulated industries (finance, healthcare, gaming)
  • Familiarity with tools like Confluence, Jira, GRC platforms or risk dashboards
What we offer:
  • A wide array of benefits: private medical care, life insurance, pro-health campaigns, gifts for different occasions
  • An outstanding work atmosphere in a highly-skilled team of professionals, with flexible working hours, no dress code, and full support of the dedicated HR Business Partner
  • Many opportunities for personal development: a dedicated development budget for each employee, extra two paid days for training and CSR, stable career paths, extensive internal and external training, and financing of English and Polish language classes
  • State-of-the-art offices filled with chillout zones, a fully equipped kitchen, a gym (Wrocław office), and a free car park (Warsaw limited amount of space)

Additional Information:

Job Posted:
February 11, 2026

Work Type:
On-site work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Security Risk Officer

Information Security Officer

Information Security Officer (ISO) is a subject matter expert for business, func...
Location
Location
Mexico , Ciudad De Mexico
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 6-10 years of relevant experience
  • Sound understanding of Information security domains such as Identity Access Management, Cryptography, Data Protection, Vulnerability Assessment, Single Sign-On, Multi-Factor Authentication etc
  • Knowledge of Cloud and Containers security will be of added advantage
  • Additional technical certifications are preferred
  • Demonstrated ability to research and apply current information regarding the IS field
  • Consistently demonstrates clear and concise written and verbal communication
  • Proven influencing and relationship management skills
  • Proven analytical skills
Job Responsibility
Job Responsibility
  • Work directly with business, functions and technology units and relevant stakeholders to facilitate/ perform Information Security risk assessment and risk management processes to protect information assets
  • Work with business and technology management to drive the information security program and information risk management activities
  • Work with the internal Application Development teams to develop strategies and plans for improving architecture and application security
  • Provide strategic risk guidance for business and technology projects, including the evaluation and recommendation of IS controls
  • Manage security incidents and events to protect corporate IT assets, including intellectual property, regulated data, and the company's reputation
  • Participate in the evaluation and selection of applications and systems with focus on Information Security areas
  • Facilitate compliance with all Information Security policies, standards and regulations / directives as mandated by Global CISO Organization
  • Participate/provide, as required, IS awareness training programs for employees, contractors and approved system users
  • Fulltime
Read More
Arrow Right

Information Security Officer

The Information Security Officer is a senior leadership role responsible for ove...
Location
Location
Portugal , Lisbon; Oporto; Madrid; Barcelona
Salary
Salary:
Not provided
https://www.tui.com Logo
TUI
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experienced authentic leader with a good understanding of technology and managing Information Security risks in the enterprise
  • Passionate about Information Security, delivering business value and driving continuous improvement
  • Strong people leadership skills and experience in building a positive enabling security culture based on trust, quality and pragmatic risk management
  • Great communicator and influencer comfortable working across hierarchical, organisational, cultural and market boundaries
  • Experience of managing teams, mentoring and developing security talent from different cultural backgrounds
  • Professionally qualified holding a recognised security accreditation (CISSP/CISM/CISA etc.,) or equivalent experience with demonstrable Continuous Professional Development
  • Maintain a good understanding of latest security threats and the mitigating strategies
  • Ability to provide advice and guidance on security strategies to manage identified risks and ensure adoption and adherence to standards
  • Experience of the implementation, operation and maintenance of an Information Security Management framework such as ISO27001 or NIST CSF
  • Good understanding of integrating security into software or product development lifecycle and cloud security
Job Responsibility
Job Responsibility
  • Promote and inspire a security first culture at TUI
  • Direct the development, implementation, delivery and support of an enterprise Information Security strategy aligned to the strategic requirements of the business
  • Lead the provision of Information Security resources expertise, guidance and systems necessary to execute strategic and operational plans across all of the organisation’s information systems
  • Ensure that each Domain is motivated and empowered to deliver the prioritised roadmap
  • Protect the TUI brand and its customers, detect and respond to incidents, strengthen defences, reduce the attack surface and secure behaviours
  • Drive adoption of and adherence to security policies, standards and controls through the provision of expert advice and guidance
  • Protect our most critical assets and ensure appropriate assurance and rigorous testing is in place
  • Ensure security incidents are managed effectively through engagement with the security operations team, and that lessons learned and audit findings are remediated
  • Ensure effective security operations (e.g. vulnerability scanning, patching)
  • Protect the integrity, availability, authenticity, non-repudiation and confidentiality of information and data in storage and in transit
What we offer
What we offer
  • Attractive remuneration, bonus opportunity, exclusive travel perks & discounts, extensive health & wellbeing support
  • Flexible working: hybrid or remote working models
  • Opportunities to upskill, reskill and grow your career
  • Access the TUI Tech Learning Hub to level-up and reach your ambitions
  • Participate in our tech communities and collaborate on global projects and teams
  • Get involved with incredible local charity and sustainability initiatives like the TUI Care Foundation and the Sustainable Tech Community
  • Fulltime
Read More
Arrow Right

Cybersecurity Manager's Control Assessment (MCA) Business Risk Officer

This role is focused on transformation efforts related to Citi’s Manager’s Contr...
Location
Location
Hungary , Budapest
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8+ years of relevant experience
  • experience in Manager’s Control Assessment (MCA), Operational Risk, Information Security, Cybersecurity, Risk Management, and Governance, Risk and Control (GRC)
  • risk management, cybersecurity, and project management certifications are a plus (e.g. CRISC, CISA, CISM, CISSP, PMP)
  • ability to influence decisions with senior leadership and business partners
  • proficiency in Microsoft Office, advanced Excel skills (macros, pivots, complex formulas)
  • knowledge of data visualization/analytics business applications like Tableau, QlikView, and Microsoft Power BI
  • familiarity with Machine Learning and Artificial Intelligence (AI) is a plus
  • fluent in English
Job Responsibility
Job Responsibility
  • Manage the planning, coordination, and execution of MCA Transformation program for CISO
  • lead efforts in Global Process MCA Profiles (GPMPs) and Continuous Risk Management (CRM) for CISO
  • gain expert-level knowledge of MCA Standard, Procedure, and tools to support future-state MCA
  • support CISO Business Processes, Control Owners, and Global Assessment Unit (GAU) Owners in their responsibilities related to MCA execution
  • identify and document key controls necessary for mitigation of cybersecurity risk
  • drive problem solving and perform root cause analyses
  • simplify complex messages and summarize key points
  • partner with CISO’s Enterprise Architecture Methodology (EAM) Lead team to establish processes for decision-making and simplification
  • foster constructive dialogue and facilitate open discussions
  • actively manage relationships with CISO business partners and risk management teams
What we offer
What we offer
  • Cafeteria Program
  • Home Office Allowance
  • Paid Parental Leave Program
  • Private Medical Care Program
  • onsite medical rooms
  • Pension Plan Contribution
  • Group Life Insurance
  • Employee Assistance Program
  • access to learning and development programs, online course libraries, and upskilling platforms
  • flexible work arrangements
  • Fulltime
Read More
Arrow Right

Account Security Officer

HPE Operations is our innovative IT services organization. It provides the exper...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience in security policy, process, guidelines & procedures development and in doing security assessments based on industry standards such as ISO27001 and/or NIST
  • Ability to communicate with internal and external senior management confidently and professionally, breakdown and communicate complex concepts and issues into easily consumable written and verbal communications
  • High level of autonomy under general direction, and ability to independently complete, as well as lead team in the delivery of complex projects with multiple deliverables and technologies
  • Can demonstrate innovation and thought leadership through problem solving, new ideas, experience, or forward-thinking concepts
  • Strong interpersonal and written communication skills
  • Ability and willingness to travel, also across the countries
  • Ease to communicate at all levels, including management level presentations and summaries
  • Understanding of Cyber and IT security risks, threats and prevention measures
  • Experience in writing technical reports that analyze and interpret results
  • Understanding of security standards and best practices
Job Responsibility
Job Responsibility
  • Works closely with Managed Services teams to provide HPE’s customer with security governance reports and continuous feedback
  • Strategically aligned with HPE and HPE’s customer’s security initiatives
  • Accountable for all security-related compliance and delivery for the assigned Customer
  • Drives engagement with broader HPE teams to support Customer requirements
  • Actively manages and maintains ownership of cybersecurity risk management
  • Oversees implementation of security-related projects for the assigned Customer
  • Manages new and emerging Customer security policy requirements
  • Key participant in the Change Advisory Board (CAB) for the assigned Customer
  • Owns ongoing management and implementation of Customer-specific Security Incident Response Plan
  • Owns development and ongoing management of Customer-specific Account Security Handbook
What we offer
What we offer
  • Health & Wellbeing
  • Personal & Professional Development
  • Unconditional Inclusion
  • Fulltime
Read More
Arrow Right

Information Security Officer

TUI Group is the world’s number one integrated tourism business. The Security Do...
Location
Location
Portugal , Lisbon; Oporto
Salary
Salary:
Not provided
https://www.tui.com Logo
TUI
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • An experienced authentic leader with a good understanding of technology and managing Information Security risks in the enterprise
  • Passionate about Information Security, delivering business value and driving continuous improvement
  • Strong people leadership skills and experience in building a positive enabling security culture based on trust, quality and pragmatic risk management
  • Great communicator and influencer comfortable working across hierarchical, organisational, cultural and market boundaries
  • Experience of managing teams, mentoring and developing security talent from different cultural backgrounds
  • Professionally qualified holding a recognised security accreditation (CISSP/CISM/CISA etc.,) or equivalent experience with demonstrable Continuous Professional Development
  • Maintain a good understanding of latest security threats and the mitigating strategies
  • Ability to provide advice and guidance on security strategies to manage identified risks and ensure adoption and adherence to standards
  • Experience of the implementation, operation and maintenance of an Information Security Management framework such as ISO27001 or NIST CSF
  • Good understanding of integrating security into software or product development lifecycle and cloud security
Job Responsibility
Job Responsibility
  • Promote and inspire a security first culture at TUI
  • Direct the development, implementation, delivery and support of an enterprise Information Security strategy aligned to the strategic requirements of the business
  • Lead the provision of Information Security resources expertise, guidance and systems necessary to execute strategic and operational plans across all of the organisation’s information systems
  • Ensure that each Domain is motivated and empowered to deliver the prioritised roadmap
  • Protect the TUI brand and its customers
  • Detect and respond to incidents, strengthen our defences, reduce the attack surface and secure our behaviours
  • Drive adoption of and adherence to security policies, standards and controls through the provision of expert advice and guidance
  • Protect our most critical assets and ensure appropriate assurance and rigorous testing is in place
  • Ensure security incidents are managed effectively through engagement with the security operations team, and that lessons learned and audit findings are remediated
  • Ensure effective security operations (e.g. vulnerability scanning, patching)
What we offer
What we offer
  • Attractive remuneration
  • Bonus opportunity
  • Exclusive travel perks & discounts
  • Extensive health & wellbeing support
  • Flexible working
  • Opportunities to upskill, reskill and grow your career
  • Access the TUI Tech Learning Hub
  • Participate in tech communities and collaborate on global projects and teams
  • Get involved with local charity and sustainability initiatives like the TUI Care Foundation and the Sustainable Tech Community
  • Fulltime
Read More
Arrow Right

Information Security Officer

Elevate Our Security Posture: Join Us as an Information Security Officer. Are yo...
Location
Location
Poland , Łódź
Salary
Salary:
Not provided
arrive.com Logo
Arrive
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Information Security, or a related field
  • 5+ years of experience in an information security role, with at least 2 years in a leadership position
  • Relevant certifications (CRISC, CISSP, CISA, CISM) are preferred
  • Strategic Mindset: Deep understanding of business goals and objectives, with the ability to align cybersecurity risk management with overall business strategy
  • Risk Management Expertise: Proven ability to identify, assess, and prioritize cybersecurity risks
  • Technical Proficiency: In-depth knowledge of cybersecurity principles, security controls, incident response, and industry frameworks
  • Communication & Collaboration: Excellent communication skills, with the ability to translate complex technical concepts for non-technical audiences
  • Leadership: Proven ability to lead and mentor a team of security professionals
  • Thrive in a Fast-Paced Environment: Experience contributing to and managing cybersecurity within a high-growth company
Job Responsibility
Job Responsibility
  • Risk Management: Proactively identify, assess, and mitigate security risks and vulnerabilities
  • Security Awareness: Develop and deliver engaging training programs to educate employees on security best practices
  • Compliance: Ensure adherence to relevant security standards and regulations (ISO 27001, PCI DSS, GDPR)
  • Policy & Procedure Development: Lead the creation and maintenance of clear and concise security policies and procedures
  • Third-Party Risk Management: Assess and manage the security posture of third-party vendors and partners
  • Data Protection: Define requirements and contribute to implementing Data Loss Prevention (DLP) solutions
  • Security Frameworks: Contribute to the adoption and implementation of industry-leading security frameworks (NIST, CIS)
  • Business Partnership: Collaborate closely with business units to understand their security needs and align with the overall security strategy
  • GRC Program: Operate and mature our Governance, Risk, and Compliance (GRC) program
  • Leadership & Collaboration: Lead and mentor a team of security professionals, fostering a culture of collaboration and continuous improvement
Read More
Arrow Right

VP, Information Security Officer (ISO), Markets, Taiwan

The Chief Information Security Office (CISO) is home to deeply talented colleagu...
Location
Location
Taiwan , Taipei
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of relevant experience in Information & Cybersecurity space or related domains such as risk management, auditing, consulting & advisory services
  • One or more of IS/Cybersecurity industry standard certifications (e.g. CISA, CISSP, CISM, SANS GIAC, CEH, CRISC, CCSP,SSCP, CompTIA Security+ etc.) are mandatory
  • Strong understanding of Information security domains with hands on experience of performing application security risk assessments covering controls such as Identity & Access Management, API Security, Cloud/SaaS Security, Cryptography, Sensitive Data protection, Audit Logging/Monitoring, Secure SDLC controls
  • Sound knowledge of Network Security controls (including Firewalls, IDS/IPS) and Application Vulnerability Assessments/Source code & component vulnerability scanning related controls
  • Good understanding of Markets Business and Applications such as such as trading platforms, order management systems, risk management systems, pricing engines etc. is an advantage
  • Hold relevant professional certificates recognized by local authorities
  • Sound knowledge of IS/Cybersecurity related local regulatory, and compliance requirements in the financial services industry and Securities & Futures Markets
  • Understanding of policy compliance and how it relates to risk
  • Extensive knowledge of information security risk assessment methodologies/industry standards
  • Demonstrated ability to take ownership and follow up on issues
Job Responsibility
Job Responsibility
  • Act as a Trusted Security Advisor to business and technology teams, guiding them on IS/Cyber risks
  • Appropriately assess risks when business decisions are made, demonstrating consideration for the firm's reputation and safeguarding Citigroup, its clients and assets
  • Drive compliance with applicable Information & Cybersecurity laws, rules and regulations, adhering to relevant Policy, applying sound ethical judgment regarding personal behavior, conduct and business practices, and escalating, managing and reporting control issues with transparency
  • Serve as the local point of contact of all information security matters, including management, governance, compliance, and third-party risk management
  • Manage local audit and regulatory engagements impacting CISO
  • Drive country-specific control implementations or special programs, where deemed necessary based on risk assessments or local regulatory requirements
  • Work with business & technology management to drive the information security program and govern risk management activities including CSRA (Cybersecurity Risk Appetite) reporting
  • Work with the internal Applications Development function to facilitate improvements in both architectural and application security posture
  • Provide strategic risk guidance for business and technology projects, including the evaluation and recommendation of security controls and corrective actions to mitigate/remediate risks
  • Manage security incidents and events to protect corporate IT assets, including intellectual property, regulated data and the company's reputation
What we offer
What we offer
  • Extensive on-the-job training and exposure to senior leaders
  • Access to telehealth options, health advocates, confidential counseling
  • Expanded Paid Parental Leave Policy
  • Access to an array of learning and development resources
  • Generous paid time off packages
  • Resources and tools to volunteer in the communities
  • Fulltime
Read More
Arrow Right

Operational Risk Management Officer

Allianz Technology is a global leader in driving technological innovation and op...
Location
Location
Spain , Barcelona
Salary
Salary:
Not provided
https://www.allianz.com Logo
Allianz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong background in IT risk management, IT audit or IT security
  • Experience in Non-Financial Risk Management (NFRM) processes, including scoping, risk & control assessment, control documentation, quality assurance, control testing and assurance reporting
  • Proficiency in Excel and other relevant risk management tools
  • Familiarity with enterprise risk frameworks and methodologies
  • Ability to provide functional support to Functional/Entity Risk Officers
  • Strong knowledge-sharing capabilities, including creating guidance documents and delivering training sessions
  • Effective stakeholder collaboration skills
  • Strong communication and interpersonal skills
  • Preferred qualifications include prior experience in IT governance, compliance, or regulatory risk management
  • Exposure to risk reporting and assurance practices
Job Responsibility
Job Responsibility
  • Support activities related to the Non-Financial Risk Management (NFRM) lifecycle
  • Provide functional support to Functional/Entity Risk Officers on risk-related topics
  • Assist the Risk Management function in providing guidance and sharing best practices
  • Establish and maintain strong relationships with stakeholders in business IT functions, Risk Officers, and other safeguarding functions
What we offer
What we offer
  • Hybrid work model
  • Up to 25 days per year working from abroad
  • Company bonus scheme
  • Pension
  • Employee shares program
  • Multiple employee discounts
  • Career development and digital learning programs
  • International career mobility
  • Flexible working
  • Health and wellbeing offers
  • Fulltime
Read More
Arrow Right