Job Search and Career Advice Platform

Enable job alerts via email!

Senior Cybersecurity Risk and Compliance Consultant

Ernst & Young Advisory Services Sdn Bhd

Katowice

Hybrid

PLN 90,000 - 120,000

Full time

Today
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A global advisory firm in Katowice is seeking a Senior Cybersecurity Risk and Compliance Consultant. You will help clients assess cybersecurity effectiveness and lead risk management strategies. The ideal candidate should have at least 5 years in cybersecurity risk management and strong stakeholder management skills. You'll work in a hybrid model, leveraging your expertise to enhance organizational resilience and ensure compliance with regulations. Join a dynamic team and contribute to meaningful risk management initiatives.

Benefits

Continuous learning opportunities
Flexible working arrangement
Diverse and inclusive culture

Qualifications

  • Proven expertise in executing complex risk assessments.
  • Ability to effectively communicate complex cybersecurity risks.
  • Strong ability to evaluate emerging cybersecurity risks.

Responsibilities

  • Help clients evaluate the maturity of cybersecurity programs.
  • Lead risk management strategies and threat modeling.
  • Support delivery of IT Security Plans.

Skills

Cybersecurity risk management
Threat modeling
Stakeholder management
Analytical skills
Project management

Education

Minimum 5 years of experience in cybersecurity
Excellent command of the English language
Job description
Senior Cybersecurity Risk and Compliance Consultant

Location: Katowice - 2 days office / 3 days remote

Let us introduce you the job offer by EY GDS Poland – a member of the global integrated service delivery center network by EY.

The opportunity

As a Senior Consultant within our Cybersecurity, Risk, Compliance & Resilience (CRCR) competency, you will help EY Clients evaluate the effectiveness and maturity of their cybersecurity and resiliency programs in alignment with regulatory expectations, strategic priorities, and operational demands. In addition to governance, compliance, and control evaluations, you will lead the implementation of risk management strategies and threat modelling activities, ensuring that the organization maintains acceptable risk levels while enabling digital transformation. You will support the delivery of IT Security Plans and contribute to complex risk analysis and mitigation initiatives across hybrid IT environments.

Your key responsibilities
  • Help EY Clients evaluate the effectiveness and maturity of their cybersecurity and resiliency programs in alignment with regulatory expectations, strategic priorities, and operational demands.
  • Lead the implementation of risk management strategies and threat modeling activities, ensuring that the organization maintains acceptable risk levels while enabling digital transformation.
  • Support the delivery of IT Security Plans and contribute to complex risk analysis and mitigation initiatives across hybrid IT environments.
Skills and attributes for success
  • Minimum 5 years of experience in cybersecurity risk management, with proven expertise in executing complex risk assessments, threat modeling, and strategic mitigation planning.
  • Assuring conformity to regulations, norms, and standards such as ISO27001, NIST, or any other ISMS governance systems.
  • Implementation of risk treatment plans and running business continuity program assessments.
  • Practical knowledge of Third Party Risk Management (TPRM).
  • Deep understanding of cybersecurity risk trends, control frameworks, and legal/regulatory drivers.
  • Exceptional stakeholder management and leadership skills, including guiding junior risk analysts and engaging with senior client stakeholders.
  • Strong ability to evaluate emerging cybersecurity risks and recommend effective control solutions.
  • Excellent interpersonal skills, inspiring teamwork and responsibility among engagement team members.
To qualify for the role, you must have
  • Excellent command of the English language; other European languages would be an asset.
  • Analytical and problem-solving ability, with the capacity to work effectively as a team member or individual contributor, and an eye for detail.
  • Ability to critically develop and review Information Security SOPs to identify controls gaps and weaknesses.
  • Strong project management skills and the ability to liaise with stakeholders.
  • Effectively communicate complex cybersecurity risks and technical information to management, enabling informed decision-making and strategic guidance.
Ideally, you’ll also have
  • Excellent command of the English language; other European languages would be an asset.
  • Analytical and problem-solving ability, with the capacity to work effectively as a team member or individual contributor, and an eye for detail.
  • Ability to critically develop and review Information Security SOPs to identify controls gaps and weaknesses.
  • Strong project management skills and the ability to liaise with stakeholders.
  • Effectively communicate complex cybersecurity risks and technical information to management, enabling informed decision-making and strategic guidance.
What we look for

We are looking for individuals who are passionate about cybersecurity and possess a strong analytical mindset. You should be able to navigate complex regulatory environments and provide strategic insights that drive effective risk management. A collaborative spirit and the ability to communicate effectively with diverse stakeholders are essential for success in this role. If you are committed to enhancing organizational resilience and are eager to contribute to a dynamic team, we encourage you to apply. Your proactive approach and dedication to continuous improvement will be key in helping our clients achieve their cybersecurity goals.

What we offer

EY Global Delivery Services (GDS) is a dynamic and truly global delivery network. We work across nine locations – Argentina, Hungary, India, the Philippines, Poland, Sri Lanka, Mexico, Spain and the United Kingdom – and with teams from all EY service lines, geographies and sectors, playing a vital role in the delivery of the EY growth strategy. From accountants to coders to advisory consultants, we offer a wide variety of fulfilling career opportunities that span all business disciplines. In GDS, you will collaborate with EY teams on exciting projects and work with well-known brands from across the globe. We’ll introduce you to an ever-expanding ecosystem of people, learning, skills and insights that will stay with you throughout your career.

  • Continuous learning: You’ll develop the mindset and skills to navigate whatever comes next.
  • Success as defined by you: We’ll provide the tools and flexibility, so you can make a meaningful impact, your way.
  • Transformative leadership: We’ll give you the insights, coaching and confidence to be the leader the world needs.
  • Diverse and inclusive culture:You’ll be embraced for who you are and empowered to use your voice to help others find theirs.
About EY

EY | Building a better working world

EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.

Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate.

Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.

If you can demonstrate that you meet the criteria above, please contact us as soon as possible.

The exceptional EY experience. It’s yours to build.

In compliance with the requirements of the Whistleblower Protection Act, our company has established the Procedure for reporting breaches of law and undertaking appropriate follow-up actions. Any misconduct should be reported through the EY Ethics Hotline.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.