IT&Data Performance & Governance Manager (Cybersecurity Metrics)
Warszawa, Polska, mazowieckie, PolskaKey offer highlights
Min. 5 years of experience
Data: SQL / BI / Python
Remote work - no commuting
Full-time
O Tobie
Bachelor's degree in Information Security, Computer Science, Data Analytics, Business Management, or related field.
8+ years of experience in Cybersecurity, Data Analytics, Performance Management, Governance, or Risk Management.
3+ years in Product Owner, Performance Lead, Governance Lead, or similar leadership roles.
Experience working within a CISO organization.
Proven track record building enterprise-wide KPI and reporting frameworks.
Cybersecurity operations and risk management
NIST CSF, ISO 27001, CIS Controls
Security Operations Center (SOC)
Vulnerability Management
Identity & Access Management
Cloud Security
Governance, Risk & Compliance (GRC)
Security Performance Metrics and KRIs
Data visualization and analytics platforms
Power BI
ServiceNow
Jira
Strategic thinking
Change leadership
Product ownership
Roadmap management
Stakeholder prioritization
Agile methodologies
Data storytelling
KPI/KRI design
Predictive analytics
Performance management
Executive presence
Board-level reporting
Stakeholder engagement
Cross-functional collaboration
Required skills and qualifications
Education
Experience
Technical Knowledge - Strong understanding of:
Preferred Tools
Key Competencies
Leadership
Product Management
Analytics
Communication
About Danone
At the Danone group we are fulfilling our mission, according to which „we bring health to as many people as possible”.
Behind our brands is always technology pushing them forward. We know that the future of business is IT and data. That’s why we use advanced and innovative IT solutions which are implemented in all Danone units around the world.For more information about Danone, our divisions and culture, please explore https://careers.danone.com
WE OFFER
A revolutionary job that will be part of the digital transformation of global FMCG leader. We consider that it starts with people who notice more and make better decisions. And that’s exactly the kind of people we want to attract to DANONE.
We know that the future of business is IT and data. We are looking for catalysts for change. We ensure you work with great products, and technologies in an international environment, learning from experts and experienced managers but how much you will develop in this position depends on you!
We value smart working so that’s why while being focused on results, we offer flexible working hours and a home office policy. You are able to work from the office in Warsaw twice a week. Want to move to Warsaw? OK! We have a relocation package to help you out!
On top of that, you will have access to the benefits we offer to you and your family, including private medical care, benefits package for parents, life insurance, social fund, or employee discounts.
We’ve always been changers.
WHAT NEXT?
Click the “Apply” button and create your profile in the recruitment system by uploading a CV. We will get acquainted with your experience and then we will arrange the selected candidates for the first telephone interview. Next steps are two meetings with your future managers at Danone.
Do not hesitate and join our IT&DATA Team in Poland which vision is that the technology is a strategic differentiator for DANONE, powered by an IT agile organization.
We embrace diversity in our organization. This means giving full and fair consideration to all applicants without attention to race, color, religion, sex, age, sexual orientation, gender identity, national origin or disability status.
Danone Sp. z o.o. with its registered office in Warsaw (ul. Bobrowiecka 8, 00-728 Warsaw) is the controller of your personal data disclosed in the profile and in documents submitted during the recruitment process.
Administratorem Twoich danych osobowych udostępnionych w profilu oraz w dokumentach składanych w ramach rekrutacji jest Danone Sp. z o.o. z siedzibą w Warszawie (ul. Bobrowiecka 8, 00-728 Warszawa).
O pracy
Define and own the Cybersecurity Performance Measurement Strategy aligned with CISO objectives and enterprise priorities.
Establish a comprehensive framework of KPIs, KRIs, OKRs, and maturity indicators across cybersecurity domains.
Develop a multi-year roadmap for cybersecurity metrics, dashboards, and reporting capabilities.
Ensure performance metrics support regulatory, audit, risk management, and executive reporting requirements.
Act as Product Owner for the cybersecurity metrics platform and reporting ecosystem.
Manage the backlog for reporting, dashboard, and analytics enhancements.
Prioritize requirements based on business value, risk visibility, and stakeholder needs.
Define data models, metric definitions, governance standards, and quality controls.
Deliver executive-level dashboards and performance reviews for the CISO, CIO, Risk Committees, and senior leadership.
Translate technical cybersecurity data into clear business insights and recommendations.
Lead monthly and quarterly cybersecurity performance reviews.
Provide trend analysis, forecasting, benchmarking, and data-driven improvement recommendations.
Establish metric governance processes, ensuring consistency and integrity across reporting.
Collaborate with Security Operations, GRC, Risk Management, Identity, Architecture, Vulnerability Management, and Engineering teams to define data requirements.
Drive automation of data collection, reporting, and performance tracking.
Ensure compliance with enterprise data governance standards.
Build and lead the Cybersecurity Performance & Metrics capability.
Develop standard methodologies, templates, and reporting practices across the security organization, challenge value, ask for explanation,monitor action plan
Foster a culture of accountability, transparency, and continuous improvement through measurement.
Act as the primary advisor to the CISO on cybersecurity performance and organizational effectiveness.
Partner with Business, Technology, Risk, Audit, and Compliance stakeholders.
Facilitate alignment between security objectives and business outcomes.
Communicate complex analytical findings to both technical and non-technical audiences.
Cybersecurity Performance Management Framework
Enterprise Security KPI and KRI Catalogue
Executive CISO Dashboard
Security Scorecards and Performance Reports
Data Quality and Metrics Governance Model
Automated Reporting and Analytics Capability
Quarterly Security Performance Reviews
Security Maturity and Value Measurement Framework
The Performance & Governance Manager is responsible for defining, implementing, and continuously improving the Cybersecurity Performance Management framework across the CISO organization. The role owns the cybersecurity metrics product vision, strategy, and roadmap, ensuring that performance indicators provide meaningful insights into risk posture, operational effectiveness, compliance, resilience, and business value delivery.
The successful candidate will establish and lead the Performance & Metrics function, driving a data-driven culture across cybersecurity teams and enabling executive decision-making through actionable reporting and analytics.
Key Responsibilities:
Performance & Metrics Strategy
Metrics Product Ownership
Executive Reporting & Insight Generation
Data Governance & Analytics
Performance Management Leadership
Stakeholder Management
Key Deliverables