InfoSec Engineer Assessments

2 tygodni temu


Kraków, Lesser Poland Philip Morris International Management SA Pełny etat

MAKE HISTORY WITH USAt PMI, we've chosen to do something incredible.We're totally transforming our business and building our future on smoke-free products with the power to deliver a smoke-free future.With huge change, comes huge opportunity. So, wherever you join us, you'll enjoy the freedom to dream up and deliver better, brighter solutions and you will have the space to move your career forward in many different areas/directions.

IT at PMIPMI's journey to a smoke-free future implies a shift from a tobacco manufacturer to a science and technology-based consumer facing organisation.Such a shift creates an abundance of outstanding and transformative IT projects to match all levels of skills and ambitions.You'll feel like you're working in a start-up – with the freedom to shape and define the future of digital, but with the support and scope of a vast global business.You'll get a chance to work with ground breaking technologies (e.g., Cloud, APIs, AI) as well as management practices (e.g., Agile, Design Thinking, Product Management). Our environment is fast-paced and highly collaborative. If you want the freedom to find new ways to connect with consumers, there's no better place to progress your career.

Digital at PMI is dynamic and diverse. Join us and become a part of a top talent team where you can bring new insights to life in a global function that is a key driver of the success of our business.

IT HUB Krakow
With a team of over 300 and more than 20 nationalities, the IT HUB Krakow plays a critical role in creating a smoke-free future around the world. Become a part of a team of engineers, technicians, experts, IT freaks, researchers and innovators and create new IT work standards with us

Joining Information Security

Running at the forefront of PMI's Digital Transformation, Information Security offers guidance, solutions and advisory all across PMI, supporting our secure journey towards a smoke-free future.Our scope ranges from security assessments, architecture, governance and risk advisory, through resilience, cyber threat intelligence and incident response, to supporting PMI Functions, Markets, and Platforms (e.g. Finance, People & Culture, Operations, Consumer or Product) and building an organizational security culture.
JOIN US
WHO ARE WE LOOKING FOR?
  1. Proven experience, preferably in a large organization or consulting companies, in at least one of the areas:
    1. IT assurance: IT security, IT risk management, IT audit, IT controls,
    2. offensive security: ethical hacking, penetration testing, vulnerability assessment, red teaming
    3. secure software development: S-SDLC, DevSecOps
  2. Professional certifications in at least two of the following domains:
    1. IT systems security and auditing (e.g. CISA, CISSP, CRISC, CISM)
    2. cloud technologies (e.g. AWS, Azure, Salesforce)
    3. ethical hacking (e.g. OSCP, GIAC Penetration Tester, CEH)
  3. Proven track record in performing IT security assessments or IT audits for large scale solutions
  4. Good knowledge of typical application design patterns and their attack vectors (e.g. web, mobile, thick client, etc.)
  5. Strong understanding of modern application architectures including microservices, containers, APIs, serverless technologies and cloud environments
  6. Knowledge of basic identity and access management concepts (e.g. single-sign on, identity federation) and standards (e.g. SAML, OAuth 2.0, OpenID)
  7. Sound knowledge of impact and remediation techniques for vulnerabilities from and outside of OWASP Top 10
  8. Considerable technical writing proficiency and oral presentation skills
WHAT WE OFFER YOU
  • Wide range of trainings, optional language classes, further education and professional qualification support possibility
  • Private medical and dental care, life insurance
  • Lunch card (Sodexo), Multisport & Cafeteria program
  • Hybrid model of work and flexible working arrangements
  • Employee pension plan
  • Free bike and car parking for all employees
HOW CAN YOU MAKE HISTORY WITH US?
  1. Identify cybersecurity gaps in PMI applications and systems using a wide variety of methods, e.g. threat modeling, architecture reviews, access model reviews, configuration reviews, static and dynamic application security testing
  2. Evaluate the security posture of the third party solutions using TPCRM methodologies with cybersecurity focus
  3. Analyze the scope, methodology and results of cybersecurity activities (e.g. ethical hacking) performed by third parties around the presence of vulnerabilities in systems used or to be used by PMI
  4. Follow up with third parties on any inconsistency and ambiguity in the reports to have a reasonable level of assurance over security testing deliverables provided by vendors
  5. Describe and demonstrate identified issues in various forms (e.g. reports, technical debt definitions) and ensure that relevant collaborators understand the risk that those vulnerabilities pose to the Company
  6. Advise IT teams on how to replicate identified cybersecurity issues and remediate them in the most effective and cost-efficient way
  7. Partner with other Information Security leaders to ensure that PMI follows standard processes in the application security testing domain by continuously optimizing tools, techniques and methodologies
  8. Keep up to date with the constantly evolving cyber threat landscape and the latest developments in IT risk management and contribute to PMI's security standards
Who we're looking for
  • Proven experience, preferably in a large organization or consulting companies, in at least one of the areas:
  • IT assurance: IT security, IT risk management, IT audit, IT controls,
  • offensive security: ethical hacking, penetration testing, vulnerability
Please note that only on-line applications will be taken into consideration.Only selected candidates will be contacted

#LI-Hybrid

#J-18808-Ljbffr
  • Manager InfoSec

    2 miesięcy temu


    Kraków, Lesser Poland Philip Morris International Pełny etat

    MAKE HISTORY WITH USAt PMI, we've chosen to do something incredible. We're totally transforming our business and building our future on one clear purpose – to deliver a smoke-free future.With huge change, comes huge opportunity. So, wherever you join us, you'll enjoy the freedom to dream up and deliver better, brighter solutions and the space to move your...

  • Manager InfoSec

    2 tygodni temu


    Kraków, Lesser Poland Philip Morris International Management SA Pełny etat

    MAKE HISTORY WITH USAt PMI, we've chosen to do something incredible. We're totally transforming our business and building our future on one clear purpose – to deliver a smoke-free future.With huge change, comes huge opportunity. So, wherever you join us, you'll enjoy the freedom to dream up and deliver better, brighter solutions and the space to move your...

  • InfoSec Engineer II

    2 tygodni temu


    Kraków, Lesser Poland Qualtrics Pełny etat

    At Qualtrics, we create software the world's best brands use to deliver exceptional frontline experiences, build high-performing teams, and design products people love. But we are more than a platform—we are the creators and stewards of the Experience Management category serving over 18K clients globally. Building a category takes grit, determination, and...

  • InfoSec Engineer II

    1 miesiąc temu


    Kraków, Lesser Poland Qualtrics Pełny etat

    At Qualtrics, we create software the world's best brands use to deliver exceptional frontline experiences, build high-performing teams, and design products people love. But we are more than a platform—we are the creators and stewards of the Experience Management category serving over 18K clients globally. Building a category takes grit, determination, and...

  • InfoSec Engineer II

    4 tygodni temu


    Kraków, Lesser Poland Qualtrics Pełny etat

    At Qualtrics, we create software the world's best brands use to deliver exceptional frontline experiences, build high-performing teams, and design products people love. But we are more than a platform—we are the creators and stewards of the Experience Management category serving over 18K clients globally. Building a category takes grit, determination, and...

  • InfoSec Engineer II

    2 tygodni temu


    Kraków, Lesser Poland Qualtrics Pełny etat

    Qualtrics Know what your customers and employees need, when they need it, and deliver it every time with powerful, AI driven Experience Management (XM) software. View company page At Qualtrics, we create software the world's best brands use to deliver exceptional frontline experiences, build high-performing teams, and design products people love. But we...


  • Kraków, Lesser Poland Philip Morris International Pełny etat

    Are you an experienced information security professional looking for a challenging leadership role? Join our team at Philip Morris International as a Sr. Manager InfoSec Operations Program In this role, you will have the opportunity to make a significant impact in the field of information security while working for a world-class company.As the Sr. Manager...


  • Kraków, Lesser Poland Philip Morris International Pełny etat

    MAKE HISTORY WITH USAt PMI, we've chosen to do something incredible.We're totally transforming our business and building our future on smoke-free products with the power to deliver a smoke-free future.With huge change, comes huge opportunity. So, wherever you join us, you'll enjoy the freedom to dream up and deliver better, brighter solutions and you will...


  • Kraków, Lesser Poland Philip Morris International Pełny etat

    MAKE HISTORY WITH USAt PMI, we've chosen to do something incredible.We're totally transforming our business and building our future on smoke-free products with the power to deliver a smoke-free future.With huge change, comes huge opportunity. So, wherever you join us, you'll enjoy the freedom to dream up and deliver better, brighter solutions and you will...

  • InfoSec Engineer I

    2 tygodni temu


    Kraków, Lesser Poland Qualtrics Pełny etat

    At Qualtrics, we create software the world's best brands use to deliver exceptional frontline experiences, build high-performing teams, and design products people love. But we are more than a platform—we are the creators and stewards of the Experience Management category serving over 18K clients globally. Building a category takes grit, determination, and...

  • InfoSec Engineer I

    1 miesiąc temu


    Kraków, Lesser Poland Qualtrics Pełny etat

    At Qualtrics, we create software the world's best brands use to deliver exceptional frontline experiences, build high-performing teams, and design products people love. But we are more than a platform—we are the creators and stewards of the Experience Management category serving over 18K clients globally. Building a category takes grit, determination, and...

  • InfoSec Engineer I

    4 tygodni temu


    Kraków, Lesser Poland Qualtrics Pełny etat

    At Qualtrics, we create software the world's best brands use to deliver exceptional frontline experiences, build high-performing teams, and design products people love. But we are more than a platform—we are the creators and stewards of the Experience Management category serving over 18K clients globally. Building a category takes grit, determination, and...


  • Kraków, Lesser Poland Iqvia Pełny etat

    Staff Engineer, Site Reliability EngineeringLocation (flexible): Poland, Spain or Italy (hybrid/remote)Role SummaryThis is a staff engineer position within the Analytics Center of Excellence (ACOE) department of the Research & Development Solutions org (R&DSIT). This SRE is responsible for the design and implementation of a hybrid cloud strategy including...


  • Kraków, Lesser Poland Base Poland (Poland) Pełny etat

    Senior Technology Continuity Engineer page is loaded Senior Technology Continuity Engineer Apply locations Krakow, Poland time type Full time posted on Posted 19 Days Ago job requisition id R26140 Job Description As a Senior Technology Continuity Engineer at Zendesk, you will play a crucial role in identifying, assessing, and mitigating risks that could...

  • DevOps Engineer

    2 tygodni temu


    Kraków, Lesser Poland ABB Schweiz AG Pełny etat

    DevOps EngineerAt ABB, we are dedicated to addressing global challenges. Our core values: care, courage, curiosity, and collaboration - combined with a focus on diversity, inclusion, and equal opportunities - are key drivers in our aim to empower everyone to create sustainable solutions.Write the next chapter of your ABB story.This position reports toHead of...

  • Security Engineer

    2 tygodni temu


    Kraków, Lesser Poland AirHelp Pełny etat

    Security EngineerDepartment: EngineeringEmployment Type: Full TimeLocation: KrakówReporting To: Head of SecurityDescriptionAre you excited about delivering reliable services to clients and are proactive about risk management and strategic security initiatives? Then join us as a Security Engineer. As a team, we are here to implement and manage security...

  • Network Firewall Engineer

    2 tygodni temu


    Kraków, Lesser Poland LTIMindtree Pełny etat

    LTIMindtreeis a global technology consulting and digital solutions company that enables enterprises across industries to reimagine business models, accelerate innovation, and maximize growth by harnessing digital technologies. As a digital transformation partner to more than 700+ clients, LTIMindtree brings extensive domain and technology expertise to help...

  • Software Engineer

    2 tygodni temu


    Kraków, Lesser Poland Aon Pełny etat

    Aon sp. z o.o. Software Engineer - Machine Learning and Automation Technologies As part of scaling technology talent within Aon IT Scale team you'll be responsible for application development practice which cuts across multiple different solution lines. Software Engineer is tasked to deliver automations to drive successful adoption of automation...

  • Security Engineer

    2 tygodni temu


    Kraków, Lesser Poland Verisk Pełny etat

    Verisk The world's most effective and responsible data analytics company in pursuit of our customers' most strategic opportunities. View company page We help the world see new possibilities and inspire change for better tomorrows. Our analytic solutions bridge content, data, and analytics to help business, people, and society become stronger, more...


  • Kraków, Lesser Poland Ocado Group Pełny etat

    As a Information Security Engineer, you'll be part of the InfoSec team in a highly dynamic and innovative environment committed to enhancing businesses' security posture and improving their infrastructure's security on cloud platforms. How you contribute to this goal will be determined by your skills and interests, whether this could be writing code for...