Cybersecurity Risk Manager (EU Security Environment)

Aricoma

Warszawa

On-site

PLN 180,000 - 320,000

Full time

8 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Aricoma is seeking an experienced Cybersecurity Risk Manager to strengthen governance, risk management, and resilience across critical ICT services in Europe. You will assess threats, shape policy, and guide secure development and supplier risk programs.

In a specialised security environment, you will mentor ICT teams, advise on cloud and AI security controls, and ensure compliance with EU information handling standards.

Qualifications

  • Experience with systems handling EU Classified Information (EUCI).
  • Active and valid CONFIDENTIEL UE / EU CONFIDENTIAL clearance.

Responsibilities

  • analyse cybersecurity threats and attacker profiles
  • conduct ICT security risk assessments using ITSRM2, EBIOS, MAGERIT, PILAR, FENCE, and similar tools
  • develop and maintain security policies, procedures, and guidance
  • advise on Secure SDLC, security-by-design, and security-by-default
  • support threat modelling and define technical security requirements
  • provide cybersecurity guidance and training to ICT teams
  • assess and manage third-party and supplier security risks
  • contribute to business continuity, governance, compliance, reporting, and stakeholder engagement

Skills

Threat modelling
Security governance
Risk assessment
Compliance awareness
Stakeholder communication
Security assessment

Tools

ITSRM2
EBIOS
MAGERIT
PILAR
FENCE

Job description

Are you an experienced Cybersecurity Risk Manager with a strong background in ICT security risk assessment, governance, and compliance?

This role offers a unique opportunity to contribute to the protection of critical ICT systems, including environments processing sensitive and classified information.

You will be joining a highly specialised security environment where your expertise will directly contribute to strengthening cybersecurity resilience, governance, and risk management across critical European ICT services.

  • analyse cybersecurity threats and attacker profiles
  • conduct ICT security risk assessments using ITSRM2, EBIOS, MAGERIT, PILAR, FENCE, and similar tools
  • develop and maintain security policies, procedures, and guidance
  • assess and improve cybersecurity processes, standards, tools, and organisational maturity
  • provide cybersecurity guidance and training to ICT teams
  • advise on Secure SDLC, security-by-design, and security-by-default
  • support threat modelling and define technical security requirements
  • perform or support code reviews and application security assessments
  • advise on cloud and AI security controls
  • support risk identification, mitigation, treatment, and monitoring
  • contribute to business continuity, governance, compliance, reporting, and stakeholder engagement
  • assess and manage third-party and supplier security risks
  • experience in cybersecurity risk management or a similar role
  • strong expertise in ICT risk management, governance, and security assurance
  • experience with ITSRM2, EBIOS, MAGERIT, or similar risk methodologies
  • experience developing cybersecurity policies, standards, and procedures
  • ability to advise both technical and non-technical stakeholders
  • experience with sensitive or classified information is an advantage
Technical knowledge ("must have"):
  • cybersecurity risk assessment methodologies (ITSRM2, EBIOS, MAGERIT)
  • security risk assessment tools such as PILAR, FENCE, or equivalent solutions
  • information security and personal data protection principles
  • security governance, risk management, and compliance frameworks
  • secure SDLC and security-by-design principles
  • threat modelling methodologies
  • technical security requirements definition and implementation
  • code security review practices
  • cloud security controls
  • AI security controls
Professional Certifications (at least four are mandatory):
  • Experience working with systems handling EU Classified Information (EUCI)
  • Active and valid CONFIDENTIEL UE / EU CONFIDENTIAL clearance
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Manager | EU Institutions Project
Cybersecurity Manager | EU Institutions Project

SEIDOR • Warszawa

On-site
PLN 180,000 - 240,000
Cyber Security Risk Analyst
Cyber Security Risk Analyst

Euroclear • Kraków

On-site
PLN 254,000 - 383,000
Cybersecurity Risk Manager | Warsaw
Cybersecurity Risk Manager | Warsaw

C&D Talent Advisory - Academy • Gliwice

On-site
PLN 260,000 - 390,000
Cybersecurity Risk Manager | Warsaw
Cybersecurity Risk Manager | Warsaw

C&D Talent Advisory - Academy • Łódź

On-site
PLN 258,000 - 388,000
Cybersecurity Risk Manager | Warsaw
Cybersecurity Risk Manager | Warsaw

C&D Talent Advisory - Academy • Województwo pomorskie

On-site
PLN 258,000 - 388,000
Cybersecurity Risk Manager | Warsaw
Cybersecurity Risk Manager | Warsaw

C&D Talent Advisory - Academy • Rzeszów

On-site
PLN 258,000 - 388,000
Cybersecurity Risk Manager (Warsaw, on-site) – Frontex
Cybersecurity Risk Manager (Warsaw, on-site) – Frontex

Twtspain • Warszawa

On-site
PLN 230,000 - 320,000
Cyber Security Risk Analyst
Cyber Security Risk Analyst

Euroclear • Poland

On-site
PLN 190,000 - 297,000
Cybersecurity Risk Manager
Cybersecurity Risk Manager

SEIDOR • Warszawa

On-site
PLN 180,000 - 280,000
Cybersecurity Risk Manager
Cybersecurity Risk Manager

Ayesa Digital • Warszawa

On-site
PLN 240,000 - 360,000