Enable job alerts via email!

Cyber Security team - Multiple Opportunities - Katowice

Ernst & Young Advisory Services Sdn Bhd

Katowice

On-site

PLN 80,000 - 120,000

Full time

6 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Ernst & Young is seeking technology-savvy specialists for multiple roles in their Cyber Security team. Positions like Pentester and DevSecOps Engineer will engage in cutting-edge projects, offering opportunities for career growth and development in a dynamic, global environment focused on innovative solutions.

Benefits

Continuous learning and development
Flexible work environment
Leadership development

Qualifications

  • Minimum 2 years of experience in related positions.
  • Strong analytical and problem-solving skills.
  • Knowledge of various security standards and technologies.

Responsibilities

  • Delivering Attack & Penetration Testing projects.
  • Designing and implementing security solutions.
  • Evaluating clients' cybersecurity and compliance programs.

Skills

Penetration Testing
Cloud Security
Project Management
Security Architecture
Identity Management
Data Protection

Education

CISA
CISSP
CISM
ISO27001 Lead Auditor

Tools

Docker
Kubernetes
Terraform
SailPoint
Saviynt

Job description

Press Tab to Move to Skip to Content Link

Other locations: Primary Location Only

Date: May 23, 2025

Requisition ID: 1610201

Cyber Security Team - Multiple Opportunities

Let us introduce you to the job offers by EY GDS Poland – a member of the global integrated service delivery center network by EY.

The opportunity

We are looking for top-notch, technology-savvy specialists willing to move our projects onto a new track! You will use the most advanced technology stack and have an opportunity to develop and implement new solutions while working with top leaders in their industries. As part of our global team, you will participate in international projects.

Right now, we are looking for multiple roles to join the Cyber Security team within EY GDS Consulting:

Pentester

The Pentester is responsible for delivering Attack & Penetration Testing projects and various other security projects including application code review, social engineering, Red Team Assessments, Purple Team Assessments, Threat Modeling, and Security Architecture reviews.

  • Minimum 2 years of experience in conducting penetration tests,
  • Knowledge of security issues at the technical level,
  • Knowledge of solutions and recommendations to prevent or mitigate security vulnerabilities,
  • Knowledge of application security verification standards,
  • Understanding of how information technology systems work: networking architecture, protocols, operating systems, and web applications (backend to frontend).
DevSecOps and Cloud Engineer

The DevSecOps Specialist is responsible for designing and implementing Continuous Integration and Deployment/Delivery solutions. The Cloud Engineer should have an understanding of Cloud delivery, security, and deployment models for IaaS, PaaS, SaaS offerings from at least one major Cloud vendor such as AWS, Azure, or GCP.

  • Experience in deployment security in SDLC and CI/CD, automation tools like Docker, Kubernetes, OpenShift, Jenkins, and Terraform.
  • Knowledge of test automation and vulnerability scanning (DAST/SAST) is a plus.
  • Understanding of cloud security standards like NIST, CIS, ISO, CSA STAR.
Information Security Consultant

As an Information Security Consultant within Strategy, Risk, Compliance & Resilience (SRCR), you will help EY clients evaluate the effectiveness of their cybersecurity and resiliency programs.

  • Strong analytical and problem-solving skills, effective team collaboration, and attention to detail.
  • Project Management and Audit skills.
  • Certifications such as CISA, CISSP, CISM, ISO27001 Lead Auditor/Implementer are advantageous.
  • Knowledge of standards like ISO27001, NIST, TISAX, and IT controls including ITGC, ITAC, SOX compliance, SSAE16, and general controls.
Data Protection Consultant

The Data Protection Consultant is responsible for data identification and protection, applying policies accordingly.

  • Experience with Data Security Technologies like DLP, CASB, DAM, Encryption, PKI, and related tools.
IAM Consultant and IAM Architect

Responsible for designing and implementing identity management processes and leading technical teams on IAM platform projects using tools like SailPoint or Saviynt.

  • Strong understanding of identity governance, lifecycle, and access management concepts.
  • Experience with provisioning workflows, solution design, and configuration.
Threat Detection & Response Consultant/Architect

Responsible for creating solutions and architectures as a Subject Matter Expert in SIEM, SOC, vulnerability management, and RFP solutioning.

What we offer

EY GDS offers a dynamic, global environment with opportunities for continuous learning, leadership, and diversity. We work across multiple locations and sectors, providing a wide range of career opportunities and exciting projects.

  • Continuous learning and development.
  • Flexible work environment to make an impact your way.
  • Leadership development and inclusive culture.
About EY

EY exists to build a better working world, leveraging data and technology with diverse teams across over 150 countries, providing trust through assurance, and helping clients grow and transform.

If you meet the above criteria, please contact us promptly. The EY experience is yours to build.

In accordance with the Whistleblower Protection Act, misconduct should be reported via the EY Ethics Hotline.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.