.
IT Security Associate
  • Warsaw
IT Security Associate
Warszawa, Warsaw, Masovian Voivodeship, Polska
EcoVadis Polska Sp. z o. o.
23. 5. 2024
Informacje o stanowisku

technologies-expected :


  • ISO 27001
  • NIST 800-53

about-project :


  • Our IT Security team is seeking an IT Security Associate to coordinate and support security operations practices in our company, and bring forth security expertise in a fast-growing team. You will be the main point of contact for the alignment and provide hands-on collaboration in all areas of IT Security, ensuring that we deliver an outstanding service to our internal and external customers and stakeholders.
  • As the IT Security Associate, you will become the main point of contact and coordinator for the remediation of any improvement areas, as well as the ‘face’ of our team towards our Sales and Customer Solutions’ teams. Also, your knowledge and willingness to learn on new security trends and technologies will be of great value to our company, while identifying efficiency and automation opportunities.

responsibilities :


  • This role, reporting directly to the IT Security Director, will include the following responsibilities:
  • Active support on security questionnaires, contract reviews and client meetings
  • Define and conduct security reviews (technical and compliance checks) of our network, systems and platforms, and track the remediation of any identified gaps
  • Coordinate and organize evidence gathering for certification testing and audits
  • Delineate and execute a control testing strategy to comply with internal IT Security framework compliance, standards, and other applicable regulations
  • Establish and collaborate in the creation and maintenance of security guidelines for multiple technologies (e.g. SASE solutions, security baselines, etc.)
  • Perform security reviews on SaaS applications used internally, and establish a formal process of application sanctioning and periodic review
  • Manage and lead improvements in the resiliency of non-cloud environments and operations (DRP, Backups, Domains, Incident Response)
  • Maintain the security posture of our external surface, and manage issue remediations as necessary
  • Ensure proper documentation, configuration and operation of our security protective measures, and ensure that necessary fixes are planned and executed
  • Develop reports, dashboards and other mechanisms to report on project tracking, remediation progress, and other domains that require continuous follow-up
  • Promote an IT Security culture, and collaborate with the team in the creation of articles, FAQs, and documentation related to security awareness and training
  • Advocate for continuous improvement and automation wherever possible
  • Assist with other organization security projects and tasks as required

requirements-expected :


  • 2+ years of experience in a similar role in a relevant software or internet service industry,
  • Minimum Bachelor of Science degree in Computer Science, Computer Engineering, or a related technical field
  • High level of independence and proactivity. The ideal candidate will be capable of taking initiative, identifying opportunities for improvement, and driving projects forward without constant supervision
  • Strong experience in designing and implementing security guidelines and mechanisms to check adherence to such standards
  • Experience in conducting manual and/or automatic security compliance reviews
  • Good knowledge of IT Security frameworks (e.g. ISO 27001, NIST 800-53, etc.)
  • Managing and prioritizing multiple tasks in accordance with high level objectives, and anticipating and addressing challenges as they arise
  • Strong foundation in information security, security engineering, network security, authentication and security protocols, access controls, etc.
  • Experience with engaging external stakeholders (e.g. clients) regarding security protection methods, and agreeing on contractual clauses
  • Educated in the creation of reports and dashboards for different technical and executive stakeholders
  • Ability to conduct research about areas unknown to him/her, and use that knowledge to deliver security guidelines and propose improvements
  • Capacity to be organized and efficient handling diverse tasks simultaneously
  • Ability to adapt and thrive in a fast-changing environment
  • Open to work in an international, multilingual environment
  • Proficient in English (oral and written)

offered :


  • Support with all the necessary office and IT equipment
  • Optional (fully covered or co-financed) health care and life insurance
  • Multisport card and wellness allowance
  • Multicafeteria
  • Lunch card
  • Annual performance bonus
  • Flexible working hours
  • Hybrid for colleagues who live near our offices (4 days per month)
  • Remote work from abroad policy (up to 3 months per year)
  • Internet and electricity bill allowance
  • CSR activities
  • Modern, pet-friendly office in the city center (next to Rondo ONZ)
  • Community service day when volunteering

benefits :


  • sharing the costs of sports activities
  • private medical care
  • sharing the costs of foreign language classes
  • sharing the costs of professional training & courses
  • life insurance
  • remote work opportunities
  • flexible working time
  • fruits
  • integration events
  • dental care
  • no dress code
  • lunch card

  • Praca Warszawa
  • Administrator IT Warszawa
  • Chief security officer Warszawa
  • Specjalista ds. bezpieczeństwa IT Warszawa
  • Warszawa - Oferty pracy w okolicznych lokalizacjach


    90 980
    16 157