Cybersecurity Risk Manager

Our client is one of the world’s leading FMCG companies with a portfolio of global and local brands of dairy products, water, beverages, and specialized nutrition. Due to the innovation growth, we are looking for an individual who will be responsible for planning, designing, and implementing the Risk Management framework and ensuring its adoption with local entities.

 

Our client’s offer:

  • A highly competitive salary and bonus;
  • An access to the benefits our Client offers to you and your family, including a company car, private health care, a benefits package for parents, life insurance, a MultiSport card, a social fund, or employee discounts,
  • Flexible hours and a home office policy, related to working from the office in Warsaw twice a week. Ready to move to Warsaw? We have a relocation package to help you out!
  • On top of that you will work with cutting-edge technologies in an international environment, being provided with the opportunity to apply your extensive experience in risk management on a global scale within a matrix-managed and highly modern organization;

As a Risk Manager, you’ll overview risk assessment, quantify risk tolerance, and develop mitigation strategies. Collaborating with departments and stakeholders, you’ll ensure effective risk management and promote security by design. You’ll ensure compliance with laws and best practices. Educating and training staff to enhance risk awareness will also be crucial.

 

Key Responsibilities:

  • Plan, design, and implement an overall risk management process for all the organization;
  • Make risk assessments for critical applications, with criteria established by the organization such as costs, legal requirements, and environmental factors, and evaluate previous handling of risks;
  • Establish and quantify the organization’s 'risk appetite’, i.e. the level of risk they are prepared to accept;
  • Report risk in an appropriate way for different audiences, for example, to the board of directors so they understand the most significant risks, to business heads to ensure they are aware of risks relevant to their parts of the business, and to individuals to understand their accountability for individual risks;
  • Participate to third -party/external risk management with Procurement, and definition of CyberSecurity Contractual Clauses;
  • Support the Compliance team and ensure compliance with relevant new legislation (including GDPR);
  • Provide support, education, and training to staff to build risk awareness within the organization.

 

Requirements:

  • A minimum of 7 years of experience in risk management, preferably in a related industry;
  • Strong understanding of risk management principles and best practices;
  • Strong leadership, communication, and interpersonal skills;
  • Ability to think strategically and build actionable security plans from Business risks;
  • Strong analytical and problem-solving skills;
  • Excellent verbal and written communication skills in English and the ability to communicate effectively with all levels of the organization;
  • Ability to work in complex, international environments and matrixed organizations;
  • Ability to work independently and as part of a team
  • Demonstrated knowledge of cybersecurity standards and regulations: NIST (CSF), ISO27001, CIS, PCI DSS, NIS, GDPR.

    Załącz swoje CV

    Zaznacz zgody:

    *chcę wziąć udział w tym procesie rekrutacji
    Usługa Formularza Rekrutacyjnego jest świadczona na zasadach określonych w Regulaminie. Administratorem Twoich danych osobowych Amberstone Associates Sp. z o.o. z siedzibą w Warszawie, pl. Jana Henryka Dąbrowskiego 1, 00-057 Warszawa. Twoje dane osobowe będą przetwarzane w celu umożliwienia aplikowania na powyższą ofertę pracy w ramach usługi Formularza Rekrutacyjnego, na zasadach opisanych w Regulaminie. Więcej informacji o przetwarzaniu danych osobowych, w tym o przysługujących Ci prawach, jest dostępne w Polityce prywatności.

    chcę być informowany o podobnych ofertach pracy
    Usługa Usługi Informowania o Ofertach pracy jest świadczona na zasadach określonych w Regulaminie. Administratorem Twoich danych osobowych Amberstone Associates Sp. z o.o. z siedzibą w Warszawie, pl. Jana Henryka Dąbrowskiego 1, 00-057 Warszawa. Twoje dane osobowe będą przetwarzane w celu umożliwienia włączenie przesłanych dokumentów aplikacyjnych do Bazy Danych Kandydatów w ramach Usługi Informowania o Ofertach pracy. Więcej informacji o przetwarzaniu danych osobowych, w tym o przysługujących Ci prawach, jest dostępne w Polityce prywatności.