Security Specialist
6 dni temu
About us:
The Digital & Data department of Íslandsbanki is a collaborative group of software development professionals who work together following best practices and processes to deliver high-quality software solutions and capabilities.
- We believe in agile methodologies and cross-team synergy in product ideation and delivery
- We reach our development goals by encouraging team autonomy, employing a modern technology stack and automated processes, deployment pipelines, testing, and quality gates
As a Security Specialist, you will take ownership of security assessments, risk management, and process implementation in compliance with key regulations, including DORA, PSD2, and ISO27001. You will work closely with cross-functional teams to embed security practices in the development lifecycle, ensure an effective response to security incidents, and drive continuous improvement across the bank's cybersecurity strategy.
Responsibilities:
- Security Testing: Perform static (SAST), dynamic (DAST), interactive (IAST), and mobile application security testing (Android and iOS). Work with teams to implement fixes and improve security posture.
- Secure Code Review: Review code for security flaws and ensure alignment with coding standards and best practices. Integrate security into the software development lifecycle.
- Security Training: Lead security training initiatives for developers, QA teams, and other stakeholders to foster a culture of security awareness.
- Vulnerability Identification and Remediation: Regularly assess IT systems for security vulnerabilities. Collaborate with development teams to remediate identified risks through secure coding practices, dynamic testing, and other mitigation techniques.
- Compliance Management: Ensure that security processes align with regulatory frameworks (DORA, PSD2, ISO27001) and conduct regular audits and assessments to maintain compliance.
- Threat Modelling: Analyse applications and systems to identify potential threats and attack vectors. Develop and maintain threat models to prioritize security efforts.
- Incident Response: Participate in incident response activities by investigating, containing, and mitigating security breaches, working closely with response teams.
- Cross-Team Collaboration: Support cross-organizational efforts to develop security standards and processes. Work with stakeholders to promote secure development practices across the organization.
- Process Improvement: Continuously refine security assessment and risk management processes to improve efficiency and effectiveness.
- Stakeholder Communication: Build positive working relationships with stakeholders and leadership, providing clear insights and guidance on security matters.
Qualifications:
- Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent experience.
- 4+ years of experience in cybersecurity, application security, or a related field.
- Proven experience working with cross-functional or cross-team security projects.
- Familiarity with regulatory standards and frameworks such as DORA, PSD2, and ISO27001.
- Strong analytical and problem-solving skills, with the ability to think creatively and drive security improvements in a dynamic environment.
- Ability to collaborate effectively with technical and non-technical teams, with strong communication and influencing skills.
- Relevant application security certifications are highly desirable.
- Experience with cloud computing, networking, cloud application design, and development processes.
- Proficiency in program management and the ability to handle multiple projects simultaneously.
- Understanding of modern AppSec, DevSecOps and SecOps practices.
- Self-motivated and able to work independently with limited supervision.
What do we offer?
Self-development:
- Upskilling trainings
- Up to 10% of your week dedicated to self-development
- Conference and education budget – you name events
- Icelandic language courses during working hours
Physical wellbeing:
- Multisport card
- Healthcare plan
- Life insurance policy
- Restaurant pre-paid card
- On-site restaurant and fully equipped kitchen including healthy snacks and breakfasts/coffee/refreshments
Work arrangement:
- A competitive salary 23k-28k net on B2B contract
- 25 days 100% paid time off (B2B)
- Premium hardware (PC, screens, headphones)
- Company phone
- Flexible work schedule, emphasis on work-life balance
- (Almost) Remote work model. We ask you to participate in 2-3-day all team workshops/on site work in the office that happen in general every 3 months.
- Modern office in the center of Warsaw in CIC, offering yoga, game and wellness rooms, rooftop terrace, children's playroom, events and networking
- Occasional business travel to Iceland with some extra days on-site to visit the island
- Social events and team building activities
Recruitment Process:
We want to make sure our recruitment process is clear and transparent, so here's what you can expect:
- Initial Call (30 minutes)
This first conversation is an opportunity for us to introduce the company and the role, and for you to share more about yourself. It's a chance for us to get to know each other better in a relaxed, informal setting. - Technical Interview with the Hiring Manager
If we move forward, you'll meet with the hiring manager. This stage involves a deeper dive into the technical aspects of the role, as well as the specific tasks and challenges you'll be working on. You'll also learn more about the team structure and dynamics. - Technical Test (if applicable)
In some cases, we may include a short test to assess specific knowledge or skills related to the role. - Team Interview
Next, you'll have the opportunity to meet some of your potential team members. This step focuses on culture fit and collaboration within the team. - Final Interview with the Polish Team Manager
In the last step, you'll have a conversation with the manager of the Polish team. This is usually the final discussion before moving forward with an offer, which we hope to extend soon after
- We're excited to guide you through this process and are looking forward to potentially welcoming you to our team
-
Information Security Specialist IT
6 dni temu
Poland Ronal Group Pełny etat 60 000 € - 120 000 € rocznieHELLOWe are RONAL GROUP and our most important asset is our globally active team. With the right people by our side, our passion for what we do is what keeps the world moving.ARE WE RIGHT FOR YOU - AND ARE YOU RIGHT FOR US?Allow us to introduce ourselves: Founded in 1969, RONAL GROUP operates as a global company that prides itself on our multicultural...
-
Enterprise Security Sales Specialist
6 dni temu
Poland Akamai Pełny etat 60 000 zł - 100 000 zł rocznieDescriptionWould you like to work in a dynamic sales-growth role?Do you love collaborating across teams to deliver customer success?Join our Enterprise Security TeamOur Enterprise Security team focuses on the development and selling of our network security solutions addressing micro-segmentation, secure remote access and authentication, and DNS threat...
-
Security Operations Specialist
1 tydzień temu
Demant Business Services Poland Sp. z o.o. Demant Pełny etat 60 000 zł - 1 000 000 zł rocznieSecurity Operations SpecialistWe are looking for a skilled colleague with expertise in Incident Response and threat hunting techniques to join our IT Security Operations team. As an IT Security Operations Specialist, you will play a crucial role in ensuring the security of our global networks, systems, and data. You will be responsible for maintaining, and...
-
IT Security Team Lead
6 dni temu
Poland master-TMS Pełny etat 60 000 zł - 120 000 zł rocznieIn Poland - WarsawWe are looking for a dedicated Team Lead IT Security to guide our IT Security Team, ensuring they understand team goals and requirements and maintain effective and consistent quality of service. This role is ideal for someone with strong leadership, technical, and communication skills who can effectively manage team dynamics, optimize...
-
Poland GR8 Tech Pełny etat 30 000 zł - 60 000 zł rocznieGR8 Tech is a leading B2B provider of iGaming solutions that empowers operators to grow, lead, and win.We deliver high-impact, full-cycle tech solutions designed to scale. From seamless integration and expert consulting to long-term operational support, our platform powers millions of active players and drives real business growth. It's more than just a...
-
Security Specialist
4 dni temu
Warsaw, BY, Poland Palo Alto Networks Pełny etat 40 000 € - 80 000 € rocznieCompany Description Our MissionAt Palo Alto Networks everything starts and ends with our mission:Being the cybersecurity partner of choice, protecting our digital way of life.Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and...
-
Senior Cyber Security Specialist
1 tydzień temu
Poland Jit Pełny etat 120 000 zł - 240 000 zł rocznieSalary: PLN/day on B2BWork model: elastic hybrid from Gdynia / Gdańsk / Warszawa (at least 2-3 days per week from the office)Why choose this offer?You can expect a flexible work organizationThe international work environment will give you the opportunity to interact with the English language on a daily basisScandinavian organizational culture will...
-
Information Security Analyst
1 tydzień temu
Poland DP World Pełny etat 45 000 zł - 60 000 zł rocznieDescriptionDP World, the global leader in port and logistics operations which handles more 10% of world trade, we are looking for the Information Security Analyst who will be an integral part of the Information Security team for the region. Serving as a key contributor to the prevention of security incidents across the region, this role requires a broad...
-
Team Lead Support Specialist
6 dni temu
Poland SOCRadar Pełny etat 40 000 zł - 80 000 zł rocznieBuild a great career with SocradarSOCRadar is well positioned for continued success with a focus on innovation, global expansion, and feature-rich multifunctionality. Enterprises around the world are increasingly selecting SOCRadar to get proactive by understanding their attack surface and gaining automation-enabled visibility into surface, deep, and dark...
-
Export Specialist with French language
6 dni temu
Poland ASSA ABLOY Pełny etat 40 000 zł - 60 000 zł rocznieExport Specialist with French languageLokalizacja: Gdańsk ul. Leona Droszyńskiego 24, bud F2ASSA ABLOY Mercor Doors is part of ASSA ABLOY, a global leader in comprehensive building security systems, committed to meeting your needs for security and comfort. The company is a leading manufacturer of technical steel doors, wooden doors, doors and walls made...