
Cybersecurity Analyst, GRC
Optiveum
contract
Posted on:
Location Type: Remote
Location: Poland
Visit company websiteExplore more
Salary
💰 $5,100 per month
Tech Stack
About the role
- Support the implementation and maintenance of global GRC policies and standards based on NIST CSF and ISO 27001.
- Conduct risk assessments for IT systems and third-party vendors (Supply Chain Risk), identifying gaps and recommending corrective actions.
- Monitor adherence to global data privacy regulations (e.g., GDPR) and internal governance requirements.
- Assist in coordinating external audits (ISO certification, ITGC, financial audits) and track remediation of audit findings.
- Collaborate with IT Security, Industrial/OT Security, and business units to collect data for risk analysis.
- Support the development and rollout of cybersecurity awareness programs for corporate and manufacturing staff.
- Prepare compliance and risk status reports for management and global stakeholders.
Requirements
- Bachelor’s degree in Information Technology, Cybersecurity, Industrial Engineering, or a related field.
- Minimum 3 years of experience in cybersecurity or GRC, ideally in a global or industrial/manufacturing environment.
- Knowledge of industry standards such as NIST, ISO 27001, and ideally IEC 62443 (OT security).
- Understanding of GDPR, data privacy principles, and IT General Controls (ITGC).
- Strong analytical mindset and ability to work collaboratively across cross-functional international teams.
- Certifications such as CISA, CRISC, or CISM would be an advantage.
Benefits
- B2B contract with Optiveum Poland
- Monthly compensation up to 5,100 USD (approx. 18,500 PLN)
- Opportunity to work on global GRC initiatives with modern frameworks and technologies
- Long-term cooperation with a stable international organisation
- Fully remote work with international exposure
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
NIST CSFISO 27001risk assessmentsdata privacy regulationsIT General ControlscybersecuritySupply Chain Riskaudit remediationcybersecurity awareness programsIEC 62443
Soft Skills
analytical mindsetcollaborative workcross-functional teamwork
Certifications
CISACRISCCISM