Threat and Controls Assessment Consultant

~25 200 - 29 400 PLN/ mies.B2B (netto)
SeniorFull-time·B2B
#302222·Dodano około 2 miesiące temu·50
Źródło: nofluffjobs.com
Aplikuj teraz

Tech Stack / Keywords

CISSPCISMCloud securityAWSGCPAzureSDLCStakeholder management

Firma i stanowisko

Mindbox is a tech-driven company connecting top IT talents with technology projects for leading enterprises across Europe. The role is within the Threat and Controls Assessment team in Cybersecurity, focusing on threat modelling and control assessments across internal, external, and cloud environments.


Wymagania

  • Knowledge of risk and control management.
  • Ability to assess threats, controls, and vulnerabilities, and communicate findings to both technical and business stakeholders.
  • Industry-recognized certifications such as CISSP, CRISC, CISM, or Cloud Security certifications are desirable.
  • Strong understanding of security concepts and principles.
  • Hands-on experience with threat modelling and vulnerability assessment.
  • Knowledge of application design and architecture, network, host, and application security practices.
  • Familiarity with AWS, GCP, or Azure.
  • Understanding of SDLC with a focus on security.
  • Experience in process optimization and continuous improvement.
  • Awareness of emerging technologies and related security threats.
  • Strong communication and interpersonal skills.
  • Experience working in international and diverse environments.
  • Ability to translate technical gaps into business risks effectively.
  • Self-motivated, analytical, and able to work independently in complex environments.
  • Some travel may be required.

Obowiązki

  • Perform effective threat and control assessments of services across internal, external, and cloud estates.
  • Collaborate with developers, architects, and technical leads to understand end-to-end services and identify control gaps.
  • Evaluate potential products and solutions, providing technical recommendations.
  • Be hands-on with technology, contributing to design, development, and support with security recommendations.
  • Identify threats across applications, databases, networks, and infrastructure components.
  • Engage with other cybersecurity teams, senior management, and business stakeholders on security issues.
  • Contribute to process improvements, procedures, and tool development.
  • Stay up to date with industry trends and best practices.

Oferta

  • Flexible cooperation model (B2B, employment contract, etc.)
  • Hybrid work setup with remote days depending on client arrangements
  • Collaborative team culture with experienced professionals
  • Continuous development with access to training platforms and growth opportunities
  • Comprehensive benefits including Interpolska Health Care, Multisport card, Warta Insurance
  • High quality equipment including laptop and essential software
  • Sport subscription
  • Private healthcare
  • Life insurance
  • Training budget
  • Small teams
  • Free coffee
  • Free snacks
  • In-house trainings
  • Modern office
  • No dress code
Elastyczne godziny
Karta sportowa
Opieka zdrowotna
Ubezpieczenie
Dofinansowanie szkoleń
Szkolenia wewnętrzne
Darmowe napoje
Darmowe przekąski

Inne informacje

#LI-Hybrid - 6 days onsite per month

Mindbox S.A.

Mindbox S.A.

244 aktywne oferty

Zobacz wszystkie oferty
Aplikuj teraz