Cybersecurity / IT GRC Specialist

Seargin Ltd

Województwo pomorskie

Hybrid

PLN 120,000 - 180,000

Full time

23 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

International environment
Modern office in Gdańsk
MyBenefit platform
Private medical care and home visits
Group insurance options
Language classes (English & German)

Job summary

Seargin Ltd is seeking a Security & Compliance Specialist to monitor and improve cybersecurity controls across the organization. You will support ISMS maintenance, alignment with NIS2, ISO 27001, and other regulations, and participate in audits to strengthen security posture.

The role involves working with internal IT teams and external providers, assessing risks, and helping implement remediation actions in a dynamic, international environment in Poland.

Qualifications

  • 2–3 years of cybersecurity, information security, IT risk management, audits, or governance-focused roles.
  • Experience assessing control effectiveness and managing remediation activities.
  • Familiarity with SOC, SIEM, EDR reports and external provider collaboration.
  • Knowledge of ISO 27001 and NIS2 is a plus.

Responsibilities

  • Monitor compliance with cybersecurity and information security requirements and track remediation activities.
  • Support ISMS development and alignment with regulatory frameworks (NIS2, ISO 27001, DORA).
  • Conduct compliance assessments, audits, and support continuous improvement of security controls.
  • Oversee vulnerability management and review security configurations (Microsoft 365, Entra ID).
  • Assist in SOC/MDR provider management and SLA reviews.
  • Contribute to risk assessments and incident classification.
  • Conduct security reviews and verify corrective actions with clients.

Skills

Cybersecurity & GRC
Risk & Compliance
SOC, SIEM & EDR
ISO 27001
Regulatory Frameworks
Security Standards
Microsoft Security
Security Operations
Communication & Analysis

Education

Bachelor's degree in IT Security or related

Tools

SIEM
EDR
Microsoft 365 & Entra ID
SOC reports

Job description

  • Monitor compliance with cybersecurity and information security requirements, perform control reviews, identify gaps, and track remediation activities across the organization.
  • ISMS & Regulatory Compliance
    • Support the development and maintenance of the Information Security Management System and ensure alignment with NIS2, ISO 27001, DORA, and other regulatory requirements.
  • Security Assessments & Audits
    • Conduct compliance assessments, prepare recommendations, participate in internal and external audits, and support continuous improvement of security controls.
  • IT Security Oversight
    • Assess security controls, review Microsoft 365 and Entra ID security configurations, analyze technical reports, and oversee vulnerability management activities.
  • SOC/MDR Provider Management
    • Support provider selection, define security requirements, monitor service quality and SLA compliance, review reports, and evaluate detection coverage and effectiveness.
  • Participate in cybersecurity risk assessments, support incident classification activities, monitor remediation actions, and contribute to root cause analysis initiatives.
  • Client Security Advisory
    • Conduct security reviews, perform gap assessments against regulatory frameworks, prepare recommendations, and verify implementation of corrective actions.
  • Cybersecurity Service Development
    • Collaborate in the development and enhancement of cybersecurity services, helping align offerings with client and regulatory requirements.
  • Security Awareness & Training
    • Support cybersecurity awareness programs, contribute to security training initiatives, and promote security best practices across the organization.
Requirements
  • Cybersecurity & GRC Experience
    • At least 2–3 years of experience in cybersecurity, information security, IT risk management, security audits, compliance, or related governance-focused roles.
  • Risk & Compliance Management
    • Experience assessing security control effectiveness, managing risks, identifying compliance gaps, and supporting remediation activities.
  • Experience working with internal IT teams, technology providers, and third-party security service organizations.
  • SOC, SIEM & EDR Knowledge
    • Practical experience analyzing SIEM or EDR outputs, reviewing SOC reports, supporting incident handling, or collaborating with external SOC providers.
  • ISO 27001 Expertise
    • Practical knowledge of ISO 27001 requirements and information security management system principles.
  • Regulatory Frameworks
    • Knowledge of NIS2 and familiarity with DORA, the Cyber Resilience Act, AI Act, and related cybersecurity compliance requirements.
  • Security Standards & Frameworks
    • Understanding of security frameworks and best practices such as NIST Cybersecurity Framework and CIS Controls.
  • Microsoft Security Technologies
    • Good understanding of Microsoft 365 and Entra ID security features, including identity protection, access controls, and configuration assessments.
  • Cybersecurity Operations Knowledge
    • Understanding of vulnerability management, incident management, backup and recovery, network segmentation, and security monitoring practices.
  • Communication & Analytical Skills
    • Strong analytical thinking, documentation skills, stakeholder communication abilities, and the capability to balance business, regulatory, and technical perspectives.
What we offer
  • International Environment
    • Daily opportunity to use foreign languages within a global team
  • Modern Office
    • Office space in one of the attractive districts of Gdańsk
  • Individual selection of benefits through the MyBenefit platform, including the Multisport card
  • Access to private medical care, including home visits
  • Group Insurance
    • Preferential terms for group life and health insurance
  • Language Classes
    • Free English and German classes
  • Psychological Support
    • Access to professional psychological support
  • Latest Technologies
    • Opportunity to work with modern technologies and contribute to AI-based solutions
  • Real Impact
    • Participation in projects shaping technology and supporting different sectors
  • Work in an organization focused on innovation and implementing new solutions
Nice to have
  • NIS2 Implementation Experience
    • Experience implementing NIS2 requirements or conducting compliance assessments against NIS2 obligations.
  • ISO 27001 Projects
    • Experience supporting ISO 27001 implementation, certification, auditing, or continuous improvement initiatives.
  • Security Provider Oversight
    • Experience selecting, evaluating, or overseeing SOC, MDR, MSSP, or other managed security service providers.
  • MITRE ATT&CK
    • Knowledge of MITRE ATT&CK and experience assessing detection coverage and security monitoring effectiveness.
  • Consulting & Client-Facing Experience
    • Experience working in IT services, outsourcing, consulting, or preparing reports for clients and executive stakeholders.
  • Security Certifications
    • Relevant certifications such as ISO 27001 Lead Auditor, ISO 27001 Lead Implementer, CISA, Microsoft SC-200, or SC-900.

Work with us

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

IT Administrator
IT Administrator

Seargin Ltd • Województwo pomorskie

Hybrid
PLN 120,000 - 180,000
International Environment
Modern Office
Cybersecurity Consultant
Cybersecurity Consultant

Atos Poland Global Services Sp. z o.o. • Województwo kujawsko-pomorskie

On-site
PLN 180,000 - 260,000
I&T GRC Information Security Specialist
I&T GRC Information Security Specialist

DS Smith Plc • Kraków

On-site
PLN 180,000 - 240,000
Cybersecurity Consultant
Cybersecurity Consultant

Atos SE • Wrocław

On-site
PLN 120,000 - 190,000
Manager - Cyber Security
Manager - Cyber Security

KK Group • Szczecin

Hybrid
PLN 180,000 - 300,000
GRC Consultant
GRC Consultant

Webellian • Poland

On-site
PLN 180,000 - 240,000
Hybrid work model
On-site presence occasionally
Private medical care
+2
Principal Consultant — IT & Cybersecurity
Principal Consultant — IT & Cybersecurity

7N Sp. z o. o. • Warszawa

On-site
PLN 320,000 - 520,000
Medical care
Multisport card
Life insurance
Junior Cybersecurity Specialist
Junior Cybersecurity Specialist

PwC International • Województwo pomorskie

Hybrid
PLN 60,000 - 90,000
Hybrid working model
Wellbeing program
Training & mentoring
+1
Information Security GRC Specialist (IT Risk & Compliance)
Information Security GRC Specialist (IT Risk & Compliance)

HireRight Poland Sp. z o.o. • Katowice

On-site
PLN 90,000 - 130,000
Private Medical Care
Edenred card
Lunch Vouchers
+7
Cybersecurity Consultant
Cybersecurity Consultant

Atos • Wrocław

On-site
PLN 180,000 - 240,000