Security Analyst
2 dni temu
A career at Booksy means you're part of a global team focused on helping people around the world feel great about themselves, every day. From empowering entrepreneurs to build successful businesses, to supporting their customers arrange 'me time' moments, we're in the business of helping people thrive and feel fantastic.
Working in an ever-changing, scale-up where things are messy, and resources are limited isn't for everyone. If you thrive in a stable environment with big budgets, clear processes and structures then, if being honest, we're probably not for you. However, if you love bringing order to chaos, inventively solving problems, and prioritizing your own path within ambiguity, then you're likely to love it here.
RequirementsThe Security team coordinates security efforts for the entire Booksy organisation globally. The Security Analyst (GRC) plays a key part in ensuring the organisation's security posture is robust and aligned with industry best practices and regulatory requirements. As a Security Analyst, you will therefore be responsible for implementing and maintaining an effective GRC framework, conducting risk assessments, and driving continuous improvement of our security controls.
Responsibilities- Develop, implement, and maintain an effective GRC framework, including policies, procedures, and standards.
- Collaborate with other risk-management teams to identify and prioritize security risks.
- Develop and maintain an inventory of security controls (ITGC) and ensure their effectiveness through regular testing and monitoring.
- Advise System Owners on the most effective implementation of IT Controls in context of their systems.
- Conduct internal compliance assessments and assist with regulatory compliance efforts (e.g., NIS2, PCI-DSS, SOX, GDPR).
- Prepare and present reports on security risks and compliance status to the management.
- Good understanding of technical and organizational security concepts and their consequences for Booksy.
- Sound experience in defining and operating GRC frameworks and IT Control Frameworks.
- Ability to plan inter-team projects including multiple stakeholders. Define expectations from every project member and project timelines. Coordinate project delivery and escalations.
- Ability to identify risks in around systems and business processes, determine long-term solutions, (backed up by custom analysis) and lead the project to implement them.
- Experience with security control frameworks (e.g., NIST Cybersecurity Framework, CIS Controls).
- Knowledge of relevant security standards and regulations (e.g., NIS2, PCI-DSS, GDPR, SOX).
- Experience with GRC automation tools (e.g., OneTrust, ServiceNow, RSA Archer) is a plus.
- Relevant certifications (e.g., CISSP, CISM, CISA, CRISC) are a plus.
- The opportunity to be part of something big - the world's fastest growing beauty marketplace.
- Flexible working hours and opportunity to work remotely within your country.
- Work in a welcoming team which is always ready to help.
- Opportunity to develop in an international environment - we have teams in 6 countries.
- Additional benefits that might differ depending on the location.
Our Diversity and Inclusion Commitment:
We work in a highly creative and diverse industry so it goes without saying that we strive to create an inclusive environment for all. We welcome people from all backgrounds and are committed to fair consideration in our hiring process. If you have any accessibility needs or require reasonable adjustments during the interview process, please contact us at , so we can best support you .
Kindly submit your application and CV in English to ensure it is successfully reviewed.
-
Security Operations Analyst
1 tydzień temu
Poland Attio Pełny etatAttio is on a mission to redefine CRM for the AI era.We're building the first AI-native CRM — designed for the most ambitious go-to-market teams. We recently announced our $52M Series B, led by GV (Google Ventures), with support from Redpoint, Balderton, Point Nine, and 01A. Our team thrives on solving complex technical challenges, delighting our users,...
-
Security Analyst
2 tygodni temu
Poland - Warsaw - ASEC Aviva Employment Services Pełny etatHi, we're glad you're here We are hiring to our Aviva Services Excellence Centre Take a look at our job description - maybe it suits you or one of your friends?Aviva is seeking a Security Analyst who will be responsible for day-to-day security threat monitoring and analysis. You will manage security incidents and review security alerts for next steps...
-
Senior Cloud Security Operations Analyst
9 godzin temu
Poland Enterprise AI decisioning and workflow automation platform Pełny etatJob ID: 22326 Meet Our Team: Pega is The Enterprise Transformation Company that helps organizations Build for Change with enterprise AI decisioning and workflow automation. We offer a commercial SaaS version of our industry-leading platform to our global clients. Pega was recently recognized as one of the "Top 10 Tech Winners For The AI Revolution" by...
-
SOC Analyst
4 dni temu
Poland Semrush Pełny etatHi thereWe are Semrush, a global Tech company developing our own product – a platform for digital marketers.Are you ready to be a part of it? This is your chance We're hiring for SOC Analyst (Security Operations Team).Tasks in the roleIncident Response. Responding to security incidents, investigating and analyzing them, coordinating with other teams, such...
-
Junior Service Analyst with Portuguese
1 tydzień temu
Uniwersytecka , - Katowice, Poland Sopra Steria Pełny etatCompany Description Sopra Steria is one of the largest players in the tech industry in Europe, known for its consulting, digital services and software development. We operate in nearly 30 countries in the world, hiring more than 55,000 employees.The Polish branch, as the Global Delivery Center, operates in Katowice since 2007 and has been growing ever since....
-
Junior Service Analyst with Portuguese
1 tydzień temu
Uniwersytecka , - Katowice, Poland Sopra Steria Pełny etatCompany Description Sopra Steria is one of the largest players in the tech industry in Europe, known for its consulting, digital services and software development. We operate in nearly 30 countries in the world, hiring more than 55,000 employees.The Polish branch, as the Global Delivery Center, operates in Katowice since 2007 and has been growing ever since....
-
Marketing Data Analyst
1 tydzień temu
Poland Appfire Technologies. Pełny etatAt Appfire, we believe that great work happens when people get to choose how they work. After 20 years of creating software that empowers teams to break silos and collaborate seamlessly, we've learned that one size does not fit all. That's why at Appfire, you choose. Choose to work where you thrive: Whether from home, in one of our offices, or while...
-
Financial Analyst/Controller with German
4 dni temu
PL-Gdansk, Poland (Aleja Grunwaldzka) Arrow Electronics Pełny etatPosition:Financial Analyst/Controller with GermanJob Description:About ArrowArrow ECS GmbH is a leading value-added distributor specializing in innovative IT solutions and services. With a broad portfolio of technologies in Cloud, Security, Data Center, and IoT, the company supports its partners in implementing complex IT projects and driving digital...
-
SOAR developer
4 dni temu
Poland Euroclear Pełny etatDescriptionDivision: CISOCyber Defense Center is part of the Chief Information Security Officer Office. The main responsibility of the team is to reduce the risk of Euroclear cyber threat surface by monitoring for malicious intent targeted at Euroclear's services, it's supporting assets and people. We do this through the Cyber Threat Management (CTM)...
-
Senior IT Business Analyst
4 dni temu
Poland Euroclear Pełny etatDescription The TribeThe COI (Customer Onboarding & Interaction) tribe contributes to the division strategy by delivering and supporting cost-effective, time-to-market solutions for digital customer experience through agile practices. The domain covers all aspects of the customer onboarding journey.The MissionEuroclear has launched the CIAM project to...