IT GRC Analyst

KK Group

Szczecin

On-site

PLN 100,000 - 160,000

Full time

2 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

KK Group in Szczecin is seeking an IT GRC Analyst to manage governance, risk and compliance initiatives. The role focuses on maintaining the ISMS, assessing risks across IT and OT environments, and ensuring alignment with regulatory and internal requirements.

You will support secure operations, regulatory compliance, and ongoing improvements of the organization’s security governance framework. The candidate will work with stakeholders across IT and business units to embed security controls,

Qualifications

  • Experience with IT governance, risk management, and compliance activities.
  • Knowledge of IT and OT environments, networks, servers, and services.
  • Familiarity with ISMS frameworks and internal audit practices.
  • Understanding of regulatory and compliance requirements affecting information security.
  • Strong documentation, coordination, and stakeholder communication skills.
  • Familiarity with ISO2700X standard.

Responsibilities

  • Provide governance, risk and compliance support across KK Group initiatives.
  • Coordinate cross-functional stakeholders to deliver GRC-related projects on time.
  • Identify, assess and manage risks across IT and OT networks, servers and services.
  • Maintain risk assessments and risk treatment plans with technical and business teams.
  • Support continuous risk monitoring and reporting.
  • Contribute to development and improvement of systems from a GRC perspective.
  • Ensure security, risk and compliance considerations are embedded in project lifecycles.
  • Maintain ISMS, update policies and align with standards and regulations.
  • Perform and support internal audits; document findings and remediation actions.

Skills

IT governance
Risk management
Compliance
ISMS
Regulatory requirements
Stakeholder communication
Documentation

Job description

In our factory in Szczecin, we are looking for an IT GRC Analyst (Governance, Risk and Compliance). This role focuses on managing security-related projects, maintaining the Information Security Management System (ISMS), assessing risks across networks, servers, and services, and ensuring alignment with regulatory and internal requirements. The position plays a key role in supporting secure operations, regulatory compliance, and the continuous improvement of the organisation’s security governance framework.

Responsibilities
Governance & Project Management
  • Provide project management support across KK for security, risk, and compliance initiatives.
  • Coordinate cross-functional stakeholders to ensure timely delivery of GRC-related projects. Support integration of governance and risk requirements into ongoing and new initiatives.
  • Identify, assess, and manage risks related to networks, servers, and services across both IT and OT environments.
  • Maintain risk assessments and risk treatment plans in collaboration with technical and business stakeholders.
  • Support continuous risk monitoring and reporting.
Systems Development & Change Support
  • Contribute to development and improvement of existing systems from a GRC perspective.
  • Support governance and risk requirements in new projects and system implementations.
  • Ensure security, risk, and compliance considerations are embedded throughout project lifecycles.
Information Security Management System (ISMS)
  • Act as a key contributor and responsible party for maintaining the Information Security Management System (ISMS).
  • Support definition, maintenance, and improvement of security policies, standards, and procedures.
  • Ensure alignment of the ISMS with applicable standards and regulatory requirements.
Internal Audit & Compliance Assurance Plan
  • Perform, and support internal audits related to information security and compliance.
  • Document audit findings and track remediation actions.
Our Requirements:
  • Experience with IT governance, risk management, and compliance activities.
  • Knowledge of IT and OT environments, including networks, servers, and services.
  • Familiarity with ISMS frameworks and internal audit practices.
  • Understanding of regulatory and compliance requirements affecting information security.
  • Strong documentation, coordination, and stakeholder communication skills.
  • Familiarity with the ISO2700X standard
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

IT GRC & ISMS Analyst - Risk & Compliance
IT GRC & ISMS Analyst - Risk & Compliance

KK Group • Szczecin

On-site
PLN 100,000 - 160,000
GRC Consultant
GRC Consultant

Webellian • Poland

On-site
PLN 180,000 - 240,000
Hybrid work model
On-site presence occasionally
Private medical care
+2
I&T GRC Information Security Specialist
I&T GRC Information Security Specialist

DS Smith Plc • Kraków

On-site
PLN 180,000 - 240,000
Manager - Cyber Security
Manager - Cyber Security

KK Group • Szczecin

Hybrid
PLN 180,000 - 300,000
GRC Information Security Specialist - ISO27001/NIS2 Focus
GRC Information Security Specialist - ISO27001/NIS2 Focus

DS Smith Plc • Kraków

On-site
PLN 180,000 - 240,000
Cybersecurity GRC Lead: Governance, Risk & Compliance
Cybersecurity GRC Lead: Governance, Risk & Compliance

INNERGO Systems Spółka z o.o. • Wrocław

On-site
PLN 110,000 - 160,000
Prywatna opieka medyczna
Ubezpieczenie na życie
Spotkania integracyjne
+1
IT Cyber GRC Analyst (zdalnie)
IT Cyber GRC Analyst (zdalnie)

Traffit • Wrocław

Hybrid
PLN 180,000 - 240,000
Prywatna opieka medyczna
Karty sportowe
Ubezpieczenie na życie
+1
IT Cyber GRC Analyst
IT Cyber GRC Analyst

Be in IT to butikowa firma rekrutacyjna IT. • Wrocław

On-site
PLN 180,000 - 240,000
Senior Cyber GRC Specialist
Senior Cyber GRC Specialist

INNERGO Systems Spółka z o.o. • Poznań

On-site
PLN 120,000 - 180,000
Dofinansowanie prywatnej opieki medycz
Ubezpieczenie na życie
Karta sportowa
Senior IT Risk & Audit Compliance Analyst Oracle, DB2, MSSQL, Python, SharePoint Łódź, Warsaw, Gdańsk, Gdynia
Senior IT Risk & Audit Compliance Analyst Oracle, DB2, MSSQL, Python, SharePoint Łódź, Warsaw, Gdańsk, Gdynia

Diverse CG Sp. z o.o. Sp.k. • Poland

On-site
PLN 180,000 - 240,000
Private medical care
Co-financing for the sports card
Dedicated consultant support