pracaon.plpracaon.pl

Security Expert (Servers, End-User Devices & Security Testing)

Warszawa, Polska
Provident
Partner
8Tg
Gehalt nach Vereinbarung
Vollzeit • Hybrid • Öffentliche Sicherheit und Schutz

Wichtige Merkmale des Angebots

  • Beschäftigung: Vertrag

  • Sicherheit: Einrichtung / Überwachung / Patrouillen

  • Auf der Suche nach Experten – Senior/Experte

  • Hybridmodell - teilweise remote

  • Vollzeit

Description

We are looking for a Security Expert to join our Global Security Assurance team, supporting Provident all over the globe. In this role, you will act as a technical authority for server access and end-user device security, as well as security and resilience testing, ensuring security is embedded by design across projects, IT changes, and operational environments.

Departament

  • Biuro IT Information Security

What we can offer

  • Stable employment – 93% of people are employed under an employment contract for an indefinite period.

  • Safety – we have been on the Polish market for 29 years.

  • Friendly work environment – we have received the Top Employer award 13 times in a row.

  • Hybrid work – we usually meet in the office twice a week (Dworzec Gdański metro station).

  • Extra 3 days of paid leave – if you use all your leave in a given calendar year.

  • Private medical care with appointment guarantee service (Medicover).

  • Full implementation under the supervision of a mentor, including a package of professional implementation training.

  • Access to the development platform, including e-learning training, podcasts and webinars.

  • Activities supporting development in the organization, e.g. the "Effective Manager" training series for people holding managerial positions.

  • Business telephone (also for private use).

  • Access to the ProviBenefity cafeteria platform, which is supplied with a monthly amount to be used, or subsidies for your Multisport card - you choose from 5 types of cards.

  • Life insurance (UNUM Życie TUiR S.A.) on preferential terms.

  • Christmas benefits and co-financing for the "Holidays under the pear tree" holiday for you and your children.

  • Psychological support for employees, including: care of a psychologist (including children's), psychotherapist, dietician, coaching.

Key responsibilities

  • Servers and end-user devices security

  • Technical authority in ICT Controls for servers and end user devices.

  • Lead from the security area the design, implementation, and continuous improvement of servers and end user devices ICT policies, standards and baselines.

  • Works with IT Teams to ensure proper implementation of related requirements.

  • Partner with IT and Security functions to identify and resolve servers and end-user devices ICT defects.

  • Define criteria and measure effectiveness of ICT controls in the area of servers and end user devices, providing structured insight into control effectiveness and continuous improvement.

  • Security & Resilience Testing

  • Own and coordinate the end-to-end security and resilience testing lifecycle, including planning, execution, remediation, and reporting.

  • Define testing requirements based on business, regulatory, and security needs.

  • Manage relationships with external testing providers and ensure quality delivery.

  • Validate results, assess risks, provide remediation recommendations, and maintain a knowledge base of findings and lessons learned.

  • Deliver testing reports for internal stakeholders and regulatory requirements.

  • You will also support:

  • Support the development and maintenance of ICT security policies, standards, procedures, and controls.

  • Identify, assess, and mitigate ICT risks.

  • Ensure compliance with regulatory requirements and industry frameworks, including ISO 27001, NIST, and CIS Controls.

  • Support security monitoring, investigations, and incident response activities.

  • Monitor emerging threats and regulatory developments, providing expert guidance to stakeholders.

  • Collaborate with global Security, IT, and business teams to strengthen the overall cybersecurity posture.

  • Lead cross-functional initiatives and influence stakeholders across multiple geographies.

  • Act as a trusted security advisor for business and technology teams.

  • What we're looking for

  • Strong expertise in server and end-user device security.

  • Experience in security assurance, vulnerability management, penetration testing, or resilience testing.

  • Knowledge of security frameworks and standards (ISO 27001, NIST, CIS Controls).

  • Ability to assess risk, define security requirements, and drive remediation activities.

  • Strong stakeholder management skills and experience working in global, cross-functional environments.

Das Angebot wurde von einem externen Portal importiert.Anzeigenquelle

Weitere ähnliche Anzeigen