yoinka

Cybersecurity Risk and Compliance Manager

EY

Katowice, Śląskie, PL, 40-202Mid
Sign in to applyVerified 1h ago
Location
Katowice, Śląskie, PL, 40-202
Work model
On-Site
Level
Mid

Skills

Cybersecurity

About this role

Cybersecurity Risk and Compliance Manager   Location: Katowice  - 2 days in office / 3 days remote   Let us introduce you the job offer by EY GDS Poland – a member of the global integrated service delivery center network by EY.   The opportunity   As a Manager within our Cybersecurity Risk, Compliance & Resilience (CRCR) competency, you will play a pivotal role in assisting EY clients in evaluating the effectiveness and efficiency of their cybersecurity and resiliency programs. Your focus will be on aligning these programs with business growth and operational strategies. In addition to conducting compliance and control evaluations, you will be instrumental in developing and implementing risk management strategies and business continuity plans, ensuring organizations are well-prepared to respond effectively to incidents and disruptions. You will identify deficiencies and provide actionable recommendations and guidelines to enhance cyber resilience. This role is not solely about overseeing others, you will be expected to bring your hands-on experience to the forefront, directly contributing to project delivery and execution, while also managing and coordinating efforts as needed.   Your key responsibilities

Evaluate and assess the effectiveness of clients' cybersecurity and risk management programs. Develop and implement risk management strategies Conduct compliance and control evaluations, ensuring adherence to regulations and standards such as ISO 27001 and NIST Perform audits or reviews of Information Security Management Systems (ISMS) and IT general controls. Manage Third Party Risk Management (TPRM) processes Provide domain knowledge in cybersecurity, including governance, IT infrastructure security, and risk management Actively participate in hands-on project delivery, ensuring technical and operational tasks are completed with high quality and aligned to client expectations Collaborate with engagement team members, fostering teamwork and responsibility Set up governance frameworks for cybersecurity services, ensuring alignment with organizational objectives Develop and monitor Key Performance Indicators (KPIs) to measure the effectiveness of cybersecurity services Oversee service delivery processes, ensuring high-quality service and client satisfaction Work on offer preparation, discussing client needs, preparing proposals, and actively pursuing and securing project engagements Balance direct hands-on involvement with team coordination, ensuring seamless execution of both technical tasks and broader project objectives

Skills and attributes for success   Minimum 8 years of experience in cybersecurity risk management, with proven expertise in overseeing and delivering complex risk assessments, threat modelling, and strategic mitigation planning including, but not limited to below areas:

Assuring the conformity to regulations, norms and standards such as ISO27001, NIST or any other ISMS governance systems Implementation of the risk management plans Experience in Third Party Risk Management (TPRM)

Domain knowledge in Cybersecurity, including governance, IT infrastructure security and risk management, cyber program assessments including cyber transformation and enterprise resilience Demonstrate excellent interpersonal skills, inspire teamwork and responsibility with engagement team members Strong analytical and problem-solving abilities, with a keen eye for detail Excellent interpersonal skills, with the ability to inspire teamwork and collaboration.

Strong project management skills, including

Project planning and resource management, ensuring alignment with client and organizational objectives Budgeting and work estimation (e.g., man-days estimation, resource allocation) Effective stakeholder communication, ensuring alignment of expectations and facilitating decision-making

To qualify for the role, you must have

Excellent command of the English

Cybersecurity Risk and Compliance Manager at EY, Katowice, Śląskie, PL, 40-202 | Yoinka