Security Architect, GRC & Regulatory Strategy

Capital.com

Warszawa

On-site

PLN 240,000 - 420,000

Full time

12 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Competitive Salary
Work-Life Harmony
Generous Time Off
Employee Referral Program
Comprehensive Health & PensionBenefits
Workation
Volunteer Days

Job summary

Capital.com is a global fintech company with over 1,000,000 clients worldwide. We are seeking a Security Architect to own the enterprise GRC framework across five regulated jurisdictions, shaping how we measure and reduce security risk and ensuring regulatory readiness.

This senior role combines security architecture, regulatory compliance, and executive risk advisory. Fluent English is essential, and a proven track record in regulated financial services will help you thrive in our fast‑paced,

Qualifications

  • 8+ years in security with focus on GRC, regulatory compliance, risk management.
  • Experience designing enterprise security architectures in regulated financial services.
  • Deep command of ISO 27001 and PCI-DSS; working knowledge of DORA and NIS2.
  • Multi-jurisdiction compliance experience; FCA or CySEC exposure a strong advantage.
  • Fluent English, written and spoken.

Responsibilities

  • Own the enterprise security GRC framework — policy hierarchy, risk register methodology, control ownership, and audit evidence structure.
  • Map controls to DORA, NIS2, ISO 27001, and PCI-DSS, identify gaps, and set remediation priority.
  • Act as the final authority on regulatory interpretation affecting security, including written positions for audits and regulatory submissions.
  • Own the compliance and obligation management framework across all five regulated jurisdictions (FCA, CySEC, ASIC, SCB, SCA), including regulatory horizon scanning.
  • Represent the company in regulatory discussions alongside the CISO and General Counsel where required.
  • Define the company's human-risk philosophy and shape the security awareness architecture— segmentation, interventions, and measurement.
  • Advise the CISO, CHRO, Risk, and Compliance teams on security risk, regulatory obligations, and investment trade-offs.
  • Set the architectural standards the Corporate Security team executes against, and sign off on significant framework changes.
  • Support Third-Party Risk Management and Business Continuity & Crisis Management from a security and technical perspective.

Skills

GRC
Regulatory compliance
Security architecture
ISO 27001
PCI-DSS
DORA
NIS2
Regulatory submissions
C-suite influence
English proficiency

Education

CISSP
CISM
CRISC

Job description

Capital.com is a global fintech company with over 1,000,000 clients worldwide. We are seeking a Security Architect to own the enterprise GRC framework across five regulated jurisdictions, shaping how we measure and reduce security risk and ensuring regulatory readiness.

This senior role combines security architecture, regulatory compliance, and executive risk advisory. Fluent English is essential, and a proven track record in regulated financial services will help you thrive in our fast‑paced,

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security GRC Architect - Fintech (Hybrid)
Senior Security GRC Architect - Fintech (Hybrid)

Capital • Warszawa

Hybrid
PLN 280,000 - 420,000
Competitive Salary
Hybrid work model
Generous time off
+2
FinTech Security Architect: GRC & Regulatory Leader (Hybrid)
FinTech Security Architect: GRC & Regulatory Leader (Hybrid)

Capital.Com • Warszawa

On-site
PLN 300,000 - 480,000
Generous annual leave
Health & pension benefits
Workation opportunities
+2
Security Architect
Security Architect

Capital • Warszawa

Hybrid
PLN 280,000 - 420,000
Competitive Salary
Hybrid work model
Generous time off
+2
Security Architect
Security Architect

Capital.com • Warszawa

On-site
PLN 240,000 - 420,000
Competitive Salary
Work-Life Harmony
Generous Time Off
+4
Security Architect at Capital.Com
Security Architect at Capital.Com

Capital.Com • Warszawa

On-site
PLN 300,000 - 480,000
Generous annual leave
Health & pension benefits
Workation opportunities
+2
Global IT GRC Architect - Remote/Hybrid
Global IT GRC Architect - Remote/Hybrid

Roche • Poznań

Hybrid
PLN 212,000 - 395,000
Annual bonus
Training budget
Recharge Fridays
+8
Senior GRC Analyst: FinTech Security & Compliance Architect
Senior GRC Analyst: FinTech Security & Compliance Architect

OANDA Poland sp. z o.o. • Kraków

On-site
PLN 180,000 - 270,000
Senior GRC Engineer — AI-Driven Compliance & Risk (Remote)
Senior GRC Engineer — AI-Driven Compliance & Risk (Remote)

payabl. • Warszawa

On-site
PLN 120,000 - 180,000
Provident Fund
Annual Learning Budget
€150 Wolt allowance
+7
Senior Cybersecurity Architect: Secure Architecture Lead
Senior Cybersecurity Architect: Secure Architecture Lead

RMM Consulting Group • Warszawa

On-site
AI Security Engineer — Remote, Governance & Risk
AI Security Engineer — Remote, Governance & Risk

Capital.com • Warszawa

On-site
PLN 180,000 - 260,000
Competitive Salary
Work-Life Harmony
Generous Time Off
+4