Cybersecurity Specialist

ipracujzdalnie.pl

Katowice

Hybrid

PLN 120,000 - 170,000

Full time

11 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Attractive remuneration
Hybrid work
Advanced technology stack
Career development

Job summary

ipracujzdalnie.pl seeks a Cybersecurity Specialist to manage SIEM/SOC, detect threats, respond to incidents, and lead vulnerability remediation in Katowice. You will handle IAM, cryptographic posture, backups, and network segmentation within a hybrid work setup.

Ideal candidates bring Linux hardening, CIS/ISO27001 knowledge, and experience with Docker/LXC containers. The role offers growth in a regulated healthcare environment with strong tooling support.

Qualifications

  • Minimum 2 years in IT cybersecurity with hands-on Linux administration and hardening.
  • Proven experience with SIEM and agent-based XDR, from onboarding to dashboards.
  • Experience in vulnerability management, CVE/CVSS/KEV triage, remediation coordination.
  • Knowledge of network topics for security: TCP/IP, VLAN, VPN, iptables/nftables, SNMP.
  • Experience maintaining cryptographic posture: TLS/SSL, PKI, key management.
  • Knowledge of IAM, MFA/2FA, PAM in a least-privilege model and password vaults.
  • Experience with backup strategies (3-2-1) and ransomware protection.
  • Familiarity with CIS guidelines and ISO 27001 / NIS2 documentation.
  • Willingness to respond to incidents outside standard hours as needed.

Responsibilities

  • SIEM/SOC maintenance: connect log sources, create detection rules, tune responses.
  • Detection and incident response: analyze alerts and execute IR procedures.
  • Vulnerability management: run scans, triage results, coordinate remediation.
  • Identity, access and secrets: MFA/2FA, PAM, password vault governance.
  • Server and container security: harden Linux servers, secure SSH, manage containers.
  • Backups: design, monitor, test restores, ensure encryption and retention.
  • Network: segmentation, iptables/nftables rules, SNMP-based monitoring.
  • Cryptographic posture: manage TLS/PKI lifecycle and secure cipher suites.
  • Mail and phishing: secure mail, run campaigns and simulations for awareness.
  • Compliance: document IR procedures, playbooks, ISMS aligned with NIS2/ISO 27001.

Skills

Linux administration
SIEM & XDR
Incident response
Vulnerability management
Network segmentation
IAM / PAM
PKI / TLS
Backups & DR
Docker security
CIS ISO27001 knowledge
Phishing campaigns

Tools

Docker
LXC/LXD

Job description

Cybersecurity Specialist

location: Katowice

Position Description
  • SIEM/SOC - you maintain SIEM as the core of the internal SOC and the SOC services provided to clients: you connect and normalize log sources, create your own detection and correlation rules, and tune automatic responses (Active Response).
  • Detection and incident response - you handle alerts from agent-based XDR host monitoring, analyze anomalies and conduct incident response per IR procedures (event/incident/failure classification, CIA analysis, intervention actions).
  • Vulnerability management - you run periodic scans with an authorized scanner, triage results (CVE/CVSS/KEV) and coordinate remediation with technical teams and report their status.
  • Identity, access and secrets - you maintain MFA/2FA and VPN, develop privileged account management (PAM) in a least-privilege model and maintain a password vault: policies, service password rotation, roles and access audit.
  • Server and container security - you administer Linux servers and harden them per CIS guidelines, secure SSH access (keys, protection against dictionary attacks), automate repetitive tasks (e.g., CRON/Bash/Python) and secure container environments (Docker, LXC/LXD).
  • Backups - you design and maintain backups of critical systems and their configurations in a 3-2-1 model, schedule and monitor jobs, run periodic restore tests, protect backups from ransomware effects and manage their encryption and retention per continuity policies.
  • Network - you ensure network segmentation (e.g., OT, backup/DC, corporate and medical networks, VoIP/PBX, mgmt) and iptables/nftables rules, and support device monitoring via SNMP.
  • Cryptographic posture - you manage the TLS/SSL certificate lifecycle and internal PKI/CA, enforce secure protocols and cipher suites on services (web, mail, VPN, SSH), oversee key management (rotation, secure storage, access control) and encryption at rest and in transit, and detect and eliminate weak cryptography.
  • Mail - you secure the mail system: anti-spam, enforcing password policies and tuning.
  • Security awareness - you build and run campaigns and phishing simulations (custom scenarios, test environment, data minimization), analyze effectiveness and train employees.
  • Compliance and documentation - you co-develop security policies and procedures and ISMS documentation (playbooks, registers, reports) in line with NIS2/uKSC and ISO 27001
Position Requirements
  • Minimum 2 years of experience in the field of IT cybersecurity.
  • Very good knowledge of Linux systems: administration, hardening according to CIS guidelines, secure SSH configuration and automation.
  • Practical implementation and maintenance of SIEM and agent-based XDR - from onboarding and log normalization, through detection rules and correlation, to dashboards and incident response procedures.
  • Experience in vulnerability management: scanning with an authorized scanner, triage of results, knowledge of CVE/CVSS/KEV and coordination of remediation.
  • Knowledge of networking topics needed for security and segmentation: TCP/IP, VLAN, network segmentation, routing, VPN, iptables/nftables and SNMP.
  • Management of cryptographic posture, TLS/SSL certificates and PKI (lifecycle, renewal, revocation), hardening of protocols and cipher suites, key management and encryption of data at rest and in transit.
  • Experience in identity and access management: MFA/2FA, privileged accounts (PAM) in a least-privilege model and password/secret management (password vaults, rotation, policies, audit).
  • Maintaining backup systems: 3-2-1 strategy, scheduling and monitoring jobs, recovery testing (RPO/RTO) and protection of backups against ransomware (immutable/offline backups).
  • Knowledge of containerization in the context of security (Docker, LXC/LXD).
  • Practical knowledge of NIS2/uKSC and ISO 27001 requirements and the ability to document thoroughly (IR procedures, playbooks, ISMS, registers).
  • Experience running phishing campaigns and simulations and conducting security trainings.
  • Willingness to respond to critical incidents outside standard hours (sporadically, under terms agreed within the CSIRT team).
Will Be Considered As a Major Plus
  • Knowledge of Microsoft service security topics, in particular Active Directory/LDAPS.
  • Knowledge of network monitoring / NDR, including traffic collection architecture (SPAN/TAP) and anomaly analytics.
  • Experience with OT industrial protocols
We Offer
  • Attractive remuneration
  • Stable employment in a company with an established market position.
  • Flexible forms of employment and hybrid work.
  • Advanced technology stack in the area of security.
  • Short decision-making path and a partnership approach - you have a real voice in the choice of tools and security direction.
  • Support from an experienced team of administrators and close cooperation within the CSIRT team and people responsible for compliance.
  • Room for skills development and certifications.
  • Gaining experience in a regulated, demanding healthcare sector.
  • Unlimited access to coffee, friendly atmosphere and a modern office, and most importantly - no parking problems
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cyber Security Analyst
Senior Cyber Security Analyst

Michael Page • Województwo pomorskie

Hybrid
PLN 80,000 - 110,000
Competitive salary
Annual bonus
Life insurance
+2
Specjalista ds cyberbezpieczeństwa
Specjalista ds cyberbezpieczeństwa

ipracujzdalnie.pl • Katowice

Hybrid
PLN 180,000 - 280,000
Atrakcyjne wynagrodzenie
Elastyczne formy zatrudnienia i praca
Wsparcie zespołu CSIRT i rozwój kompet
CyberSecurity Specialist
CyberSecurity Specialist

SEIDOR • Warszawa

On-site
PLN 180,000 - 240,000
System Security Specialist
System Security Specialist

Totum Partners • Warszawa

Hybrid
PLN 120,000 - 180,000
Hybrid work
Competitive salary
Benefits package
+1
Senior Network Cybersecurity Engineer (f/m/x)
Senior Network Cybersecurity Engineer (f/m/x)

Sii Poland • Warszawa

On-site
PLN 180,000 - 260,000
Profit sharing
Regular events and trips
Medical care
+2
Senior Network Cybersecurity Engineer (f/m/x)
Senior Network Cybersecurity Engineer (f/m/x)

Sii Poland • Łódź

Hybrid
PLN 180,000 - 260,000
Great Place to Work
Profit sharing
Medical care
+5
Security Operations Specialist
Security Operations Specialist

Keepit • Kraków

On-site
PLN 140,000 - 210,000
Official employment – Umowa o pracę
4 vacation days extra per year
3 days sick leave per year
+8
Cybersecurity Trainer (f/m/x)
Cybersecurity Trainer (f/m/x)

Sii Poland • Bydgoszcz

Hybrid
PLN 120,000 - 180,000
Great Place to Work
Solid financial situation
Contracts with big brands
+9
Cybersecurity Specialist / Administrator
Cybersecurity Specialist / Administrator

RMM Consulting Group • Warszawa

On-site
PLN 65,000 - 100,000
Flexible hours
Initial 230 working days
Potential extensions up to 920 days
IT Engineer Cyber Security (m/k)
IT Engineer Cyber Security (m/k)

SMA Solar Technology AG • Poland

On-site
PLN 90,000 - 130,000