Cyber Specialist

Aristocrat Gaming

Kraków

Hybrid

PLN 180,000 - 260,000

Full time

6 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Aristocrat Gaming is seeking a Cyber Specialist to lead security assessments across web, mobile, APIs, and cloud platforms. You will translate findings into risk-based recommendations and communicate with both technical and non-technical stakeholders.

The role is hybrid and based in Krakow, requiring in-office presence three days per week. You will work with Procurement, Legal, and business teams to resolve security concerns and support audits, while maintaining awareness of global security

Qualifications

  • Bachelor's degree in Cybersecurity or related field, or equivalent experience.
  • 5+ years of experience in cybersecurity, IT risk, IT audit, compliance, third-party risk management, security assessments, or related field.
  • Proven experience conducting independent security assessments and detailing risk-based findings.
  • Experience reviewing architecture and infrastructure security controls, vendor documentation, SOC reports, audit artifacts, remediation plans, and compliance evidence.
  • Certifications such as CISSP, CISA, CRISC, GIAC (or equivalents) are strongly preferred.

Responsibilities

  • Perform technical security assessments of web apps, mobile apps, APIs, applications, systems, cloud services, and other platforms.
  • Evaluate security controls (authentication, authorization, session management, encryption, logging, etc.) to detect risks and gaps.
  • Develop practical, risk-based recommendations balancing security with operational needs.
  • Document findings and risk decisions clearly and professionally.
  • Review evidence supporting controls and evaluate control efficiency.
  • Produce executive-ready assessment summaries, threat analyses, and remediation recommendations.
  • Present findings to technical and non-technical audiences.
  • Support reporting on assessment activity, risks, remediation, and security trends.
  • Review vendor security questionnaires, SOC reports, certifications, penetration testing reports, and supporting security documentation.
  • Evaluate security measures of vendors, SaaS, cloud providers, and technology partners.
  • Collaborate with Procurement, Legal, and business teams to resolve security concerns and residual risk.
  • Assist with internal/external audits and client assurance requests.
  • Maintain awareness of ISO 27001, NIST CSF, NIST 800-53, CIS Controls, PCI DSS, NIS2, OWASP, GLI and applicable regulatory requirements.
  • Contribute to ongoing improvement of security assessment processes, templates, standards, and reporting.

Skills

Cybersecurity
IT risk management
Security assessments
Vendor risk
Cloud security

Education

Bachelor's degree in Cybersecurity

Tools

SOC reports
GRC tools
Evidence management

Job description

At Aristocrat, we are driven by our mission to bring happiness to life through the power of play. We are a world-class team united by our passion for gaming and innovation, continually striving for excellence. As a Cyber Specialist, you'll be at the forefront of our cybersecurity efforts, ensuring our system, products, and processes are secure. This role is pivotal in maintaining our flawless security standards, and you'll have the chance to create a significant impact on our organization. Join us in our ambitious journey and be part of a team that values collaboration, inclusion, and continuous improvement!

This is a hybrid position based in Krakow, in the Unity Tower office. Team members are required to be in the office three days per week, with flexibility to select their in-office days based on personal preference and business needs.

What You'll Do

  • Perform technical security assessments of web apps, mobile apps, APIs, applications, systems, cloud services, technology platforms, business processes, and third-party solutions.

  • Evaluate application security controls, including authentication, authorization, session management, encryption, secrets management, logging, and secure configuration practices to detect potential risks, control gaps, and areas for improvement.

  • Develop practical, risk-based recommendations that balance security, operational requirements, and business objectives.

  • Document findings, conclusions, and risk decisions in a clear and professional manner.

  • Review evidence supporting security controls and evaluate control efficiency.

  • Produce executive-ready assessment summaries, threat analysis, and remediation recommendations.

  • Present findings to both technical and non-technical audiences.

  • Support reporting on assessment activity, emerging risks, remediation efforts, and security trends.

  • Review vendor security questionnaires, SOC reports, certifications, penetration testing reports, and supporting security documentation.

  • Evaluate the security measures of potential and current vendors, SaaS providers, cloud service providers, and technology partners.

  • Partner with Procurement, Legal, business teams, and vendors to resolve security concerns and detail residual risk.

  • Assist with internal audits, external audits, client assurance requests, and regulatory examinations.

  • Have a current, working awareness of ISO 27001, NIST CSF, NIST 800-53 and CIS Controls, PCI DSS, NIS2, OWASP, GLI and applicable regulatory requirements.

  • Contribute to the ongoing improvement of security assessment processes, templates, standards, and reporting practices.

What We're Looking For

  • Bachelor's degree in Cybersecurity, Information Security, Information Systems, Risk Management, Audit, Computer Science, or a related field, or equivalent experience.

  • Minimum of 5+ years of experience in cybersecurity, IT risk, IT audit, compliance, third-party risk management, security assessments, or related field.

  • Proven experience conducting independent security assessments and detailing risk-based findings.

  • Experience reviewing architecture and infrastructure security controls, vendor documentation, SOC reports, audit artifacts, remediation plans, and compliance evidence.

  • Experience collaborating within enterprise technology settings, cloud platforms, and third-party service vendors.

  • At least one of the following certifications: CISSP, CISA, CRISC, GIAC certifications (others are strongly preferred).

  • Experience performing vendor risk assessments or third-party security reviews.

  • Experience supporting audits, examinations, or client assurance activities.

  • Familiarity with cloud security, application security, identity and access management, or data protection controls.

  • Experience using GRC, workflow, ticketing, or evidence management platforms.

Compensation Philosophy

We offer a comprehensive pay and benefits package designed to stay competitive in the market, support your wellbeing, and recognise your contribution to our success. Our approach is underpinned by a pay-for-performance belief in rewarding individual impact. Your specific compensation package will be determined by factors such as your skills, experience, qualifications, and location.

Depending on your role and location, you may be eligible for annual bonuses and incentives, health and wellbeing benefits, paid time off, retirement plans, insurance coverage, and other local or statutory benefits.

Specific details about compensation and benefits for this position will be discussed during the recruitment process.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Specialist
Cyber Specialist

Aristocrat • Kraków

Hybrid
PLN 180,000 - 250,000
Cyber Specialist
Cyber Specialist

Aristocrat Leisure • Kraków

Hybrid
PLN 180,000 - 280,000
Hybrid work model
Krakow office access
Cyber Specialist
Cyber Specialist

GamblingCareers.com • Kraków

Hybrid
PLN 180,000 - 300,000
Cyber Risk & Assessment Specialist
Cyber Risk & Assessment Specialist

Aristocrat Gaming • Kraków

Hybrid
PLN 180,000 - 260,000
Senior Cybersecurity Assessment Lead
Senior Cybersecurity Assessment Lead

Aristocrat • Kraków

Hybrid
PLN 180,000 - 250,000
Hybrid Cybersecurity Specialist: Risk & Assessments
Hybrid Cybersecurity Specialist: Risk & Assessments

Aristocrat Leisure • Kraków

On-site
PLN 180,000 - 280,000
Hybrid work model
Krakow office access
Cybersecurity Risk Analyst
Cybersecurity Risk Analyst

Aristocrat • Kraków

On-site
PLN 180,000 - 260,000
(Cybersecurity) Threat and Controls Assessment Consultant
(Cybersecurity) Threat and Controls Assessment Consultant

Antal Poland • Kraków

Hybrid
PLN 180,000 - 240,000
B2B contract
Hybrid work model – 6 days per month
Lux Med private medical care
+2
Engineer - Cybersecurity (Vulnerability & Threat Management)
Engineer - Cybersecurity (Vulnerability & Threat Management)

Sysco Corporation • Poland

Hybrid
PLN 40,000 - 60,000
Professional development opportunities
Collaborative culture
Modern security technologies
Technical Product Owner
Technical Product Owner

GamblingCareers.com • Kraków

On-site
PLN 160,000 - 230,000