.
Mid-Level Cybersecurity Controls Design Analyst – Risk & Controls
  • Kraków
Mid-Level Cybersecurity Controls Design Analyst – Risk & Controls
Kraków, Kraków, Lesser Poland Voivodeship, Polska
ITDS Polska Sp. z o.o.
23. 3. 2026
Informacje o stanowisku

Mid-Level Cybersecurity Controls Design Analyst – Risk & Controls

Miejsce pracy: Kraków

Technologies we use

Expected

  • CIS
  • Control Management
  • HSBC
  • NIST 800-53
  • Python

About the project

As a Mid-Level Cybersecurity Controls Design Analyst, you will be working for our client, a leading international bank with a focus on innovative financial services and digital security. This role is pivotal in shaping and maintaining the cybersecurity control environment, ensuring safeguarding of the bank’s operations, data, and reputation through effective risk management and industry best practices. Join us to help build a safer digital banking landscape and advance your career in a dynamic, global environment.

Unleash cybersecurity excellence — champion the future by designing resilient controls that guard digital assets!

Krakow-based opportunity with hybrid work model (up to 3 remote days per week).

Only candidates with an existing legal right to work in the European Union will be considered for this role.

Your responsibilities

  • Define, design, and oversee operational cybersecurity controls in accordance with industry standards such as NIST 800-53, ensuring alignment with bank requirements.
  • Collaborate with Control Owners, 2LoD, and CCO Technology to maintain control measurements, policies, standards, and procedures.
  • Support control assessments and ensure controls meet legal, regulatory, and compliance obligations.
  • Assist in defining control metrics (KCIs, KRIs, KPIs) to enable effective risk monitoring and reporting.
  • Engage with stakeholders across Engineering, Operations, and Security Assessment teams to deliver consistent and compliant control frameworks.
  • Contribute to continuous improvement initiatives in cybersecurity governance and control processes.
  • Maintain clear and professional documentation, including Policies, Procedures, and Standards, tailored for technical and non-technical audiences.

Our requirements

  • Minimum of 4 years of experience in risk management, controls design, or cybersecurity governance.
  • Strong subject matter expertise in control management, including implementation, assessment, and reporting.
  • Technical knowledge of cybersecurity principles, with a focus on network security domains being a plus.
  • Familiarity with metrics such as KCIs, KRIs, KPIs and their application in risk oversight.
  • Proven ability to translate technical concepts into clear, business-friendly language.
  • Excellent English communication skills, both written and verbal.
  • Recognized certifications related to cybersecurity or control frameworks are advantageous.
  • Strong stakeholder engagement skills, capable of working with diverse teams within complex international environments.
  • Self-motivated, team-oriented, with high-quality standards and the ability to work independently under tight deadlines.
  • Fluent English (spoken and written).

Optional

  • Certifications such as CISSP, CISM, or similar.
  • Experience working within financial services or large regulated industries.

This is how we organize our work

This is how we work

  • at the clients site
  • agile
  • scrum

This is how we work on a project

  • Continuous Deployment
  • Continuous Integration

What we offer

  • Stable and long-term cooperation with very good conditions.
  • Enhance your skills and develop your expertise in the financial industry.
  • Work on the most strategic projects available in the market.
  • Define your career roadmap and develop yourself in the best and fastest possible way by delivering strategic projects for different clients of ITDS over several years.
  • Participate in Social Events, training, and work in an international environment.
  • Access to attractive Medical Package.
  • Access to Multisport Program.
  • Access to Pluralsight.
  • Flexible hours & remote work.

Benefits

  • sharing the costs of sports activities
  • private medical care
  • flexible working time
  • fruits
  • integration events
  • corporate gym
  • saving & investment scheme
  • no dress code
  • coffee / tea
  • drinks
  • christmas gifts
  • birthday celebration
  • sharing the costs of a streaming platform subscription
  • access to +100 projects
  • access to Pluralsight

Recruitment stages

  • first online interview
  • second online interview

#GETREADY to meet with us!

ITDS Business Consultants is involved in many various, innovative and professional IT projects for international companies in the financial industry in Europe. We offer an environment for professional, ambitious, and driven people.

We would like to meet you. If you are interested please apply and attach your CV in English or Polish, including a statement that you agree to our processing and storing of your personal data.

ITDS’s Whistleblower Procedure

? You can report violations in accordance with ITDS’s Whistleblower Procedure available here: https://itds.pl/wp-content/uploads/2025/03/INFORMATION-ON-PROCEDURE-FOR-REPORTING-BREACHES-AND-PROTECTION-OF-WHISTLEBLOWERS-AT-ITDS-POLSKA.pdf

ITDS Polska Sp. z o.o.

ITDS supports financial service providers to take the next steps.

We identify what’s possible, every day. Opportunities in the areas of technology, organization, and digitization.

We see where banks, insurers, payment companies, or fintech can go and how they can get there.

That’s why we want to stimulate you to ramp up your ambition. Forget what you perceive as restraints and step towards the new reality.

ITDS in Poland - Pure player in new Technologies & Financial Industry

+300 IT implementation professionals

+20 clients in the Banking, Insurance, Payment & Fintech Industry

ITDS excels in digital strategy delivery and implementation of best-of-breed lending solutions. ITDS has delivered successful strategic projects throughout Europe since 1998. We combine the experience we’ve accumulated with in-depth knowledge of technologies, business processes, and EU legislation to unlock new business opportunities.

Informujemy, że administratorem danych jest ITDS z siedzibą w Warszawie, ul. Złota 59 (dalej jako "administrator"). Masz prawo do żądania dostępu do swoich danych osobowych, ich sprostowania, usunięcia lub ograniczenia przetwarzania, prawo do wniesienia sprzeciwu wobec przetwarzania, a także prawo do przenoszenia danych oraz wniesienia skargi do organu nadzorczego. Dane osobowe przetwarzane będą w celu realizacji procesu rekrutacji. Podanie danych w zakresie wynikającym z ustawy z dnia 26 czerwca 1974 r. Kodeks pracy jest obowiązkowe. W pozostałym zakresie podanie danych jest dobrowolne. Odmowa podania danych obowiązkowych może skutkować brakiem możliwości przeprowadzenia procesu rekrutacji. Administrator przetwarza dane obowiązkowe na podstawie ciążącego na nim obowiązku prawnego, zaś w zakresie danych dodatkowych podstawą przetwarzania jest zgoda. Dane osobowe będą przetwarzane do czasu zakończenia postępowania rekrutacyjnego i przez okres możliwości dochodzenia ewentualnych roszczeń, a w przypadku wyrażenia zgody na udział w przyszłych postępowaniach rekrutacyjnych - do czasu wycofania tej zgody. Zgoda na przetwarzanie danych osobowych może zostać wycofana w dowolnym momencie. Odbiorcą danych jest serwis Hello HR oraz inne podmioty, którym powierzyliśmy przetwarzanie danych w związku z rekrutacją.
Naruszenia można zgłaszać zgodnie z Procedurą zgłaszania nieprawidłowości ITDS dostępną tutaj:
https://itds.pl/wp-content/uploads/2025/03/INFORMATION-ON-PROCEDURE-FOR-REPORTING-BREACHES-AND-PROTECTION-OF-WHISTLEBLOWERS-AT-ITDS-POLSKA.pdf

  • Praca Kraków
  • Kraków - Oferty pracy w okolicznych lokalizacjach


    104 742
    15 416