Cyber Specialist

Aristocrat

Kraków

Hybrid

PLN 180,000 - 250,000

Full time

47 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Aristocrat is seeking a Cyber Specialist in Kraków to lead security assessments for web and mobile apps, APIs, and cloud services. You will analyze authentication, encryption, and logging controls, and translate findings into actionable risk decisions.

The role requires 5+ years of cybersecurity, experience with audits or vendor risk, and familiarity with ISO 27001, NIST CSF, and CIS Controls. This hybrid position is based in Kraków at the Unity Tower office.

Qualifications

  • Minimum 5+ years in cybersecurity, IT risk, IT audit, compliance, or related field.
  • Experience conducting independent security assessments and detailing risk-based findings.
  • Experience reviewing architecture/infrastructure security controls, vendor docs, SOC reports, and audit artifacts.
  • Certifications such as CISSP, CISA, CRISC, GIAC (or equivalent) are highly preferred.

Responsibilities

  • Perform security assessments of web apps, mobile apps, APIs, cloud services, and third-party solutions.
  • Evaluate controls related to authentication, authorization, session management, encryption, and logging.
  • Develop risk-based recommendations balancing security with business needs.
  • Document findings and risk decisions clearly for audiences.

Skills

Cybersecurity
5+ years exp
Vendor risk
Cloud security
IAM
Data protection
GRC tools
SOC reports

Education

Cybersecurity degree
Equivalent experience

Tools

GRC tools
SOC tooling

Job description

At Aristocrat, we are driven by our mission to bring happiness to life through the power of play. We are a world-class team united by our passion for gaming and innovation, continually striving for excellence. As a Cyber Specialist, you'll be at the forefront of our cybersecurity efforts, ensuring our system, products, and processes are secure. This role is pivotal in maintaining our flawless security standards, and you'll have the chance to create a significant impact on our organization. Join us in our am bitious journey and be part of a team that values collaboration, inclusion, and continuous improvement!

This is a hybrid position based in Krakow, in the Unity Tower office. Team members are required to be in the office three days per week, with flexibility to select their in-office days based on personal preference and business needs.

What You'll Do
  • Perform technical security assessments of web apps, mobile apps, APIs, applications, systems, cloud services, technology platforms, business processes, and third-party solutions.
  • Evaluate application security controls, including authentication, authorization, session management, encryption, secrets management, logging, and secure configuration practices to detect potential risks, control gaps, and areas for improvement.
  • Develop practical, risk-based recommendations that balance security, operational requirements, and business objectives.
  • Document findings, conclusions, and risk decisions in a clear and professional manner.
  • Review evidence supporting security controls and evaluate control efficiency.
  • Produce executive-ready assessment summaries, threat analysis, and remediation recommendations.
  • Present findings to both technical and non-technical audiences.
  • Support reporting on assessment activity, emerging risks, remediation efforts, and security trends.
  • Review vendor security questionnaires, SOC reports, certifications, penetration testing reports, and supporting security documentation.
  • Evaluate the security measures of potential and current vendors, SaaS providers, cloud service providers, and technology partners.
  • Partner with Procurement, Legal, business teams, and vendors to resolve security concerns and detail residual risk.
  • Assist with internal audits, external audits, client assurance requests, and regulatory examinations.
  • Have a current, working awareness of ISO 27001, NIST CSF, NIST 800-53 and CIS Controls, PCI DSS, NIS2, OWASP, GLI and applicable regulatory requirements.
  • Contribute to the ongoing improvement of security assessment processes, templates, standards, and reporting practices.
What We're Looking For
  • Bachelor's degree in Cybersecurity, Information Security, Information Systems, Risk Management, Audit, Computer Science, or a related field, or equivalent experience.
  • Minimum of 5+ years of experience in cybersecurity, IT risk, IT audit, compliance, third-party risk management, security assessments, or related field.
  • Proven experience conducting independent security assessments and detailing risk-based findings.
  • Experience reviewing architecture and infrastructure security controls, vendor documentation, SOC reports, audit artifacts, remediation plans, and compliance evidence.
  • Experience collaborating within enterprise technology settings, cloud platforms, and third-party service vendors.
  • At least one of the following certifications: CISSP, CISA, CRISC, GIAC certifications (others are strongly preferred).
  • Experience performing vendor risk assessments or third-party security reviews.
  • Experience supporting audits, examinations, or client assurance activities.
  • Familiarity with cloud security, application security, identity and access management, or data protection controls.
  • Experience using GRC, workflow, ticketing, or evidence management platforms.

This job description may have been reviewed and enhanced using AI-assisted tools to improve clarity, consistency, and inclusivity. All final content, role requirements and hiring decisions remain subject to human review and approval by Aristocrat.

Compensation Philosophy

We offer a comprehensive pay and benefits package designed to stay competitive in the market, support your wellbeing, and recognise your contribution to our success. Our approach is underpinned by a pay-for-performance belief in rewarding individual impact. Your specific compensation package will be determined by factors such as your skills, experience, qualifications, and location.

Depending on your role and location, you may be eligible for annual bonuses and incentives, health and wellbeing benefits, paid time off, retirement plans, insurance coverage, and other local or statutory benefits.

Specific details about compensation and benefits for this position will be discussed during the recruitment process.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Risk Analyst
Cybersecurity Risk Analyst

Aristocrat • Kraków

On-site
PLN 180,000 - 260,000
Cybersecurity Risk Analyst
Cybersecurity Risk Analyst

GamblingCareers.com • Kraków

On-site
PLN 140,000 - 210,000
Robust benefits package
Global career opportunities
Senior Detection & Response Engineer
Senior Detection & Response Engineer

Aristocrat • Kraków

Hybrid
PLN 180,000 - 260,000
Robust benefits package
Global career opportunities
Technical Product Owner
Technical Product Owner

Aristocrat Interactive • Kraków

Hybrid
PLN 180,000 - 260,000
Security Architect
Security Architect

Aristocrat • Kraków

On-site
PLN 296,735 - 381,517
Robust benefits package
Global career opportunities
Senior Detection & Response Engineer
Senior Detection & Response Engineer

Aristocrat Leisure • Kraków

Hybrid
PLN 240,000 - 360,000
Security Architect
Security Architect

Aristocrat Technologies, Inc. • Poland

On-site
PLN 360,000 - 509,000
Robust benefits package
Global career opportunities
IT Onsite Support Engineer
IT Onsite Support Engineer

Aristocrat • Kraków

On-site
PLN 120,000 - 190,000
Technical Product Owner
Technical Product Owner

GamblingCareers.com • Kraków

On-site
PLN 160,000 - 230,000
Senior .NET Developer
Senior .NET Developer

Aristocrat Leisure • Warszawa

Hybrid
PLN 180,000 - 260,000