Information Security Officer

Hitachi, Ltd.

Wrocław

On-site

PLN 150,000 - 210,000

Full time

45 hours ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

GlobalLogic seeks an experienced Security Risk & Compliance professional to drive ISMS design and audits in a multinational environment. You will lead internal and external ISO 27001 and SOC 2 activities, develop security controls, and communicate complex risk concepts to stakeholders.

You will collaborate across teams, manage incident handling and risk mitigation, and contribute to a robust cybersecurity posture. Strong English skills and 5+ years in the field are expected.

Qualifications

  • Proven experience designing and maintaining ISMS based on ISO 27001/27002.
  • Experience with SOC 2 compliance assessments.
  • Proven ISMS audit experience including planning, execution, and reporting.
  • Leading security audits and providing actionable recommendations.
  • Excellent communication and ability to present to technical and non-technical audiences.
  • High integrity and ability to handle confidential matters.
  • Fluent English.
  • 5+ years of professional experience.

Responsibilities

  • Execute internal information security audits (ISO 27001, ITGC) to identify vulnerabilities and ensure regulatory compliance.
  • Handle external information security audits (ISO 27001, SOC2 Type II).
  • Manage the team’s participation in internal and external auditing activities.
  • Develop and document security processes and control policies based on ISO 27001.
  • Handle information security incidents.
  • Manage risk assessments and mitigation strategies across the enterprise.
  • Develop and enforce security policies and guidelines to protect assets and data integrity.
  • Oversee monitoring and analysis of security events and incident response.
  • Evaluate security technologies and provide recommendations to enhance cybersecurity posture.
  • Prepare and present security reports and compliance metrics to management.

Skills

ISMS design
ISO27001/27002
SOC 2
ISMS audits
security audits
communication skills
English proficiency
team leadership
risk management
confidential handling
5+ years experience

Job description

Job Description

Security Risk & Compliance

#LI-AM7

Requirements

Required Skills:

  • Proven experience in designing, implementing, and maintaining Information Security Management Systems (ISMS) based on ISO 27001/27002 standards is essential for this position;
  • Proven experience in SOC 2 compliance assessments;
  • Proven experience in conducting comprehensive ISMS audits, including planning, execution, and reporting, to ensure continuous compliance and identify areas for improvement;
  • Proven expert capability in leading and performing various security audits, assessing controls, and providing actionable recommendations to enhance the organization's security posture;
  • Excellent communication skills to interact with internal and external contacts required;
  • Interpersonal and collaborative skills and the ability to communicate security and risk concepts to technical and non-technical audiences required;
  • High level of personal integrity and the ability to professionally handle confidential matters with proper judgment required
  • Excellent knowledge of English;
  • 5+ years of professional experience;
Job Responsibilities

Job Responsibilities

  • Execution of internal information security audits (ISO 27001, ITGC etc.) to identify vulnerabilities and ensure compliance with regulatory requirements;
  • Handling of external information security audits (ISO 27001, SOC2 Type II etc.);
  • Managing the team’s participation in internal and external auditing activities;
  • Develop and document processes and control policies and maintain a Security Framework built around ISO 27001;
  • Handling of information security incidents;
  • Managing risk assessments and developing mitigation strategies to address identified security risks across the enterprise;
  • Develop and enforce security policies, procedures, and guidelines to protect organizational assets and data integrity;
  • Oversee the continuous monitoring and analysis of security events, responding effectively to incidents and breaches;
  • Evaluate and recommend security technologies and solutions to enhance the organization's overall cybersecurity posture;
  • Prepare and present detailed security reports and compliance metrics to management and relevant stakeholders;
What we offer

Empowering Projects: With 500+ clients spanning diverse industries and domains, we provide an exciting opportunity to contribute to groundbreaking projects that leverage cutting-edge technologies. As a team, we engineer digital products that positively impact people's lives.

Empowering Growth: We foster a culture of continuous learning and professional development. Our dedication is to provide timely and comprehensive assistance for every consultant through our dedicated Learning & Development team, ensuring their continuous growth and success.

DE&I Matters: At GlobalLogic, we deeply value and embrace diversity. We are dedicated to providing equal opportunities for all individuals, fostering an inclusive and empowering work environment.

Career Development: Our corporate culture places a strong emphasis on career development, offering abundant opportunities for growth. Regular interactions with our teams ensure their engagement, motivation, and recognition. We empower our team members to pursue their career goals with confidence and enthusiasm.

Comprehensive Benefits: In addition to equitable compensation, we provide a comprehensive benefits package that prioritizes the overall well-being of our consultants. We genuinely care about their health and strive to create a positive work environment.

Flexible Opportunities: At GlobalLogic, we prioritize work-life balance by offering flexible opportunities tailored to your lifestyle. Explore relocation and rotation options for diverse cultural and professional experiences in different countries with our company.

About GlobalLogic

GlobalLogic is a full-lifecycle product development services leader that combines chip-to-cloud software engineering expertise and vertical industry experience to help our customers design, build, and deliver their next-generation products and digital experiences. We expertly integrate design, complex engineering, and agile delivery capabilities to deliver superior business outcomes for global brands in telecom, automotive, healthcare, technology, media and entertainment, manufacturing, and semiconductor industries.

Headquartered in Silicon Valley, GlobalLogic employs over 25,000 designers and engineers across the globe. Analysts like NASSCOM and Zinnov have recognized us for being a top company in our field, and we are consistently nominated as a preferred employer by both global HR consultative firms and local job boards. By creating a work environment that is exciting and flexible, and by fostering growth through ongoing learning and development programs, we empower our employees to achieve both their professional and personal goals.

At GlobalLogic, we make amazing products — and careers.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security Officer IRC305340
Information Security Officer IRC305340

GlobalLogic Inc. • Polska

Hybrid
PLN 160,000 - 260,000
Career development
Flexible opportunities
Relocation options
+2
Information Security Officer IRC305340
Information Security Officer IRC305340

GlobalLogic Inc. • Kraków

On-site
PLN 120,000 - 180,000
Diverse projects
Learning & Development
DE&I emphasis
+3
Network Engineer
Network Engineer

Hitachi, Ltd. • Kraków

On-site
PLN 140,000 - 210,000
Security Operations Center (SOC) Lead / Manager
Security Operations Center (SOC) Lead / Manager

Hitachi, Ltd. • Kraków

Hybrid
PLN 360,000 - 480,000
Relocation options
Learning & Development
Inclusive culture
Senior Project Manager
Senior Project Manager

Hitachi, Ltd. • Kraków

Hybrid
PLN 180,000 - 300,000
DevSecOps Engineer IRC303558
DevSecOps Engineer IRC303558

GlobalLogic Inc. • Polska

On-site
PLN 180,000 - 260,000
Proxy Product Owner (Business Analyst)
Proxy Product Owner (Business Analyst)

Hitachi, Ltd. • Kraków

Hybrid
PLN 200,000 - 320,000
Hybrid work model
Senior/Principal Security Engineer IRC303167
Senior/Principal Security Engineer IRC303167

GlobalLogic • Kraków

On-site
PLN 180,000 - 240,000
Diversity
Equal opportunities
Inclusive environment
+2
QA Lead/QA Manager
QA Lead/QA Manager

Hitachi, Ltd. • Wrocław

Remote
PLN 180,000 - 240,000
Flexible opportunities
Professional development
Comprehensive benefits
+1
Cyber Security Architect IRC302828
Cyber Security Architect IRC302828

GlobalLogic • Kraków

On-site
PLN 260,000 - 420,000
Comprehensive Benefits
Flexible Opportunities
Relocation & Rotation Options