#300714•Dodano Invalid Date•2•źródło: nofluffjobs.com
Cybersecurity Control Design Manager
25 200 - 29 400 PLN(znormalizowane)
Doświadczenie
Senior
Lokalizacja
Kraków
Tryb pracy
Hybryda
Wymiar
Full-time
GRCCybersecurityNISTCISStakeholder management
O ofercie
Mindbox is a tech-driven company connecting top IT talents with technology projects for leading enterprises across Europe, focusing on consulting, engineering, and talent development.
Wymagania
- Strong background in Risk and Controls Management, including control design, implementation, and assessment.
- Subject matter expertise in Control Management and familiarity with GRC tools (e.g., Helios).
- Generalist knowledge of Cybersecurity; specialist expertise is a plus.
- Familiarity with NIST 800-53 and CIS measures and metrics.
- Understanding of KCIs, KRIs, and KPIs in risk and control management.
- Excellent technical writing skills and proficiency in written English for high-quality documentation.
- Ability to translate complex IT concepts into business-friendly language.
- Strong stakeholder management and communication skills; influential and credible.
- Recognized cybersecurity certifications are an advantage.
Obowiązki
- Ensure Cybersecurity-owned controls in the Risk and Controls Library are designed according to organizational requirements and industry standards (e.g., NIST 800-53).
- Define and maintain control measurements aligned with the KCI Design Framework and CIS best practices.
- Ensure controls comply with legal, regulatory, and mandatory requirements.
- Prepare and present control governance reports feeding into Cyber and Tech RCMM.
- Design, manage, and maintain Policies, Procedures, and Standards for Cybersecurity controls across Engineering, Operations, and Security Assessment.
- Work closely with Control Owners and other stakeholders to ensure effective control implementation and reporting.
- Proactively manage issues and actions, including senior stakeholder engagement.
- Continuously assess and improve operational processes to enhance control effectiveness.
- Provide expertise on Helios-related issues and actions.
Benefity
- Flexible cooperation model (B2B, employment contract, etc.)
- Hybrid work setup with remote days depending on client arrangements
- Collaborative team culture with experienced professionals
- Continuous development with access to training platforms and growth opportunities
- Comprehensive benefits including Interpolska Health Care, Multisport card, Warta Insurance
- High quality equipment including laptop and essential software
- Sport subscription
- Private healthcare
- Life insurance
- Training budget
- Small teams
- Free coffee
- Free snacks
- In-house trainings
- Modern office
- No dress code
Inne informacje
#Li-Hybrid - 6 days per month on-site in Cracow