#300714Dodano Invalid Date2źródło: nofluffjobs.com
Mindbox S.A.
Mindbox S.A.

Cybersecurity Control Design Manager

25 200 - 29 400 PLN(znormalizowane)
Doświadczenie

Senior

Lokalizacja

Kraków

Tryb pracy

Hybryda

Wymiar

Full-time

GRCCybersecurityNISTCISStakeholder management

O ofercie

Mindbox is a tech-driven company connecting top IT talents with technology projects for leading enterprises across Europe, focusing on consulting, engineering, and talent development.

Wymagania

  • Strong background in Risk and Controls Management, including control design, implementation, and assessment.
  • Subject matter expertise in Control Management and familiarity with GRC tools (e.g., Helios).
  • Generalist knowledge of Cybersecurity; specialist expertise is a plus.
  • Familiarity with NIST 800-53 and CIS measures and metrics.
  • Understanding of KCIs, KRIs, and KPIs in risk and control management.
  • Excellent technical writing skills and proficiency in written English for high-quality documentation.
  • Ability to translate complex IT concepts into business-friendly language.
  • Strong stakeholder management and communication skills; influential and credible.
  • Recognized cybersecurity certifications are an advantage.

Obowiązki

  • Ensure Cybersecurity-owned controls in the Risk and Controls Library are designed according to organizational requirements and industry standards (e.g., NIST 800-53).
  • Define and maintain control measurements aligned with the KCI Design Framework and CIS best practices.
  • Ensure controls comply with legal, regulatory, and mandatory requirements.
  • Prepare and present control governance reports feeding into Cyber and Tech RCMM.
  • Design, manage, and maintain Policies, Procedures, and Standards for Cybersecurity controls across Engineering, Operations, and Security Assessment.
  • Work closely with Control Owners and other stakeholders to ensure effective control implementation and reporting.
  • Proactively manage issues and actions, including senior stakeholder engagement.
  • Continuously assess and improve operational processes to enhance control effectiveness.
  • Provide expertise on Helios-related issues and actions.

Benefity

  • Flexible cooperation model (B2B, employment contract, etc.)
  • Hybrid work setup with remote days depending on client arrangements
  • Collaborative team culture with experienced professionals
  • Continuous development with access to training platforms and growth opportunities
  • Comprehensive benefits including Interpolska Health Care, Multisport card, Warta Insurance
  • High quality equipment including laptop and essential software
  • Sport subscription
  • Private healthcare
  • Life insurance
  • Training budget
  • Small teams
  • Free coffee
  • Free snacks
  • In-house trainings
  • Modern office
  • No dress code

Inne informacje

#Li-Hybrid - 6 days per month on-site in Cracow