GRC Information Security Specialist — ISO27001 & Risk Controls

DS Smith Europe

Kraków

On-site

PLN 150,000 - 210,000

Full time

13 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

DS Smith Europe seeks an information security and GRC professional to support certification and compliance efforts, collaborate with IT leadership, and manage security controls and risk processes. The role includes engaging with customers and suppliers to meet assurance requirements and may involve on-site visits.

Candidates should have strong knowledge of ISO27001, NIST CSF, and related frameworks, with fluency in English and the ability to communicate complex security concepts to non-IT

Qualifications

  • Good working knowledge of recognised information and cybersecurity domains, and standards such as the NIST CSF, ISO27001 or similar.
  • Experience delivering and working within frameworks such as ISO27001, NIST CSF or similar.
  • Experience in information security controls design, documentation, assessment or assurance.
  • Experience with information security customer questionnaires and third-party risk management.
  • Ability to communicate IT/information security concepts to non-IT stakeholders.

Responsibilities

  • Support creation of information and cybersecurity documentation in support of certification and regulatory compliance (e.g., ISO27001 and EU NIS2).
  • Own or support information security controls operated by I&T GRC, including risk process management and awareness in collaboration with the team.
  • Respond to customer security assurance requirements and supplier assurance schedules.

Skills

GRC knowledge
ISO27001/NIST CSF
English fluency
Stakeholder communication
Information security concepts
Analytical skills

Education

Relevant qualification in Computer Science or Information Security

Tools

GRC platforms
Microsoft tooling

Job description

DS Smith Europe seeks an information security and GRC professional to support certification and compliance efforts, collaborate with IT leadership, and manage security controls and risk processes. The role includes engaging with customers and suppliers to meet assurance requirements and may involve on-site visits.

Candidates should have strong knowledge of ISO27001, NIST CSF, and related frameworks, with fluency in English and the ability to communicate complex security concepts to non-IT

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC & Information Security Specialist - ISO27001/NIST CSF
GRC & Information Security Specialist - ISO27001/NIST CSF

DS Smith • Kraków

On-site
PLN 120,000 - 180,000
I&T GRC Information Security Specialist
I&T GRC Information Security Specialist

DS Smith Europe • Kraków

On-site
PLN 150,000 - 210,000
I&T GRC Information Security Specialist
I&T GRC Information Security Specialist

DS Smith • Kraków

On-site
PLN 120,000 - 180,000
IT GRC Analyst
IT GRC Analyst

KK Group • Szczecin

On-site
PLN 120,000 - 190,000
ISO 27001 InfoSec & Compliance Specialist
ISO 27001 InfoSec & Compliance Specialist

Devonshire • Warszawa

On-site
PLN 180,000 - 280,000
International team
Professional development
Real impact on projects
+2
Senior Cyber GRC & ISO 22301 Specialist
Senior Cyber GRC & ISO 22301 Specialist

Arup • Kraków

On-site
PLN 180,000 - 280,000
Security Compliance Strategist
Security Compliance Strategist

Shiji Group • Katowice

On-site
PLN 120,000 - 180,000
Private medical care
Group life insurance
Multisport card
Senior Security GRC Architect - Fintech (Hybrid)
Senior Security GRC Architect - Fintech (Hybrid)

Capital • Warszawa

Hybrid
PLN 280,000 - 420,000
Competitive Salary
Hybrid work model
Generous time off
+2
IT Security Lead — ISO27001, BCM & Risk (Hybrid Warsaw)
IT Security Lead — ISO27001, BCM & Risk (Hybrid Warsaw)

Experis ManpowerGroup Sp. z o.o. • Poland

Hybrid
Medicover healthcare package
Multisport card
Access to an e-learning platform
+1
Chief Information Security & Compliance Leader: ISO 27001 & GDPR
Chief Information Security & Compliance Leader: ISO 27001 & GDPR

PulseRise Technologies • Warszawa

Hybrid
PLN 320,000 - 520,000
Hybrid work