The IT Compliance team is responsible for the compliance of the organisations IT systems, networks and infrastructure in accordance with the IT industry best practices and standards. The Senior IT Compliance Specialist will play a key role in identifying IT risks, enhancing IT processes and recommending actionable improvements to close control gaps or boost efficiency. An important part of our role is to provide leaders and managers of the various departments in the organisation with guidance and knowledge on IT compliance risks and internal controls.
Daily tasks are based on strong collaboration with other members of the organisation to develop and implement policies and procedures that will help the company achieve the expected level of maturity of its internal controls programme. This is a strongly strategic and analytical role.
responsibilities :
You will participate in the development and maintenance of a continuous monitoring and internal IT controls plan, to ensure compliance with regulations (such as PCI DSS, DORA, DSA, NIS2, AI Act, GDPR), recommendations from Security teams (enhancing platform security), IT Governance teams (licensing, ITSM), Internal Audit and external auditors.
Your day-to-day responsibilities will include assessing the wide range of technologies/architectures used by Allegro to understand potential risks to the business and to support the organisations business objectives
You will participate in the design, development and improvement of internal standards, good practices, processes and controls in the Technology area.
You will work across Allegro Group organisational structure, involving people from many different departments (primarily in the Technology area).
You will be involved in advisory and consulting with those responsible for applications and infrastructure to enhance the maturity and reliability of IT controls and processes.
You will perform reviews of Allegro Group IT systems and procedures and assess their compliance with established policies.
You will participate in the handling of internal and external audits and manage the work to implement corrective actions for identified deficiencies.
requirements-expected :
Have 4+ years of experience in IT compliance, IT internal controls, IT auditing or related roles.
Possess professional knowledge of IT concepts such as logical access management, change management, DevOps, data management and cybersecurity.
Are familiar with Agile/Scrum/Kanban methodologies.
Have practical knowledge and experience in maintaining compliance and managing audit programmes.
Have a mindset, approach and soft skills allowing to build strong relations with internal partners and driving projects in cooperation with related units.
Have the ability to communicate with people at different levels of the organisation, influence and lead other teams through change with good relationships.
Are highly organized, detail-oriented, and analytical problem-solvers.
Are able to use data analysis systems (e.g. Data Studio) and produce clear and functional documentation, in such a way as to initiate the desired direction of change.
Know English on at least B2 level and Polish on at least C1 level.
offered :
Flexible working hours in an office first model (4/1) that depend on you and your team. Starting later or finishing earlier? No problem! Work hours keep pace with our lifestyles and can start between 7 a.m. and 10 a.m.
We have well-located offices (with fully equipped kitchens and bicycle parking facilities) and excellent working tools (height-adjustable desks, interactive conference rooms).
Annual bonus depending on your annual assessment and the companys results.
A wide selection of fringe benefits in a cafeteria plan - you choose what you like (e.g. medical, sports or lunch packages, insurance, purchase vouchers).
English classes that we pay for related to the specific nature of your job.
16" or 14" MacBook Pro and other gadgets that you may need.
Working in a team you can always count on - we have on board top-class specialists and experts in their areas of expertise.
A high degree of autonomy in terms of organizing your team’s work; we encourage you to develop continuously and try out new things.
Hackathons, team tourism, training budget and an internal educational platform.
benefits :
sharing the costs of sports activities
private medical care
sharing the costs of foreign language classes
sharing the costs of professional training & courses