Information Systems Security Manager
__jobinformationwidget.freetext.LocationText__
Katowice
- Sopra Steria
- Engineering, Development, Applications
- Standard
- No
Sopra Steria is one of the largest players in the tech industry in Europe, known for its consulting, digital services and software development. We operate in nearly 30 countries in the world, hiring more than 55,000 employees.
The Polish branch, as the Global Delivery Center, operates in Katowice since 2007 and has been growing ever since. Currently, our team consists of around 1,000 specialists.
Within the Digital Platform Services department, our teams specialize in areas such as cloud, operating systems, virtualization, databases, backup or storage, as well as networking and security. We also have 1st line support consultants who speak French and English, but also Italian, Spanish, Portuguese and German.
The Application Services department is responsible for areas such as software development, data engineering, testing services, CRM, ITSM and ERP platform integrations, as well as application management for customers in Scandinavia, Benelux, France, Germany, Switzerland and the UK.
We are looking for Information Systems Security Manager to join Sopra Steria Polska and one of our innovative international squads located in Luxembourg and Poland. You will be responsible for providing leadership and direction to our security team within the consortium matrixial organization. Your primary focus will be on ensuring the security and integrity of our IT infrastructure, systems, and data. You will lead the Security Office, driving the development, standardization and implementation of securi-ty policies, practices, and controls aligned with industry standards and regulatory requirements. Collabo-rating closely with cross-functional teams across squads, you will integrate security into all aspects of our operations and development lifecycle
Note that we can only offer cooperation to people who are located in Poland and have EU citizenship.
Responsibilities:
- Develop and maintain the security strategy and roadmap for the consortium organization, in alignment with business objectives, regulatory requirements, and industry best practices.
- Use your mandatory Project Management skills to organize the Security Office team to ensure smooth delivery and process-based relationship with technical squads.
- Establish and enforce security policies, standards, and procedures across squads and chapters, ensuring compliance with relevant laws, regulations, and contractual obligations.
- Provide strategic guidance and recommendations to senior leadership and the Security Office on the organization's security posture and risk management.
- Define and maintain the security architecture and design principles for IT systems, applications, and infrastructure, incorporating security-by-design principles into development processes.
- Collaborate with architecture and engineering teams to evaluate, select, and implement security technologies, tools, and solutions to mitigate risks and enhance security posture.
- Conduct security architecture reviews, assessments, and audits of systems and applications, identifying vulnerabilities and recommending remediation measures.
- Develop and deliver security awareness and training programs for employees, contractors, and stakeholders, promoting a culture of security awareness and compliance.
- Provide guidance and support to squads and chapters on security best practices, secure coding principles, and threat mitigation techniques.
- Monitor and measure the effectiveness of security awareness and training initiatives, adjusting strategies as needed to address evolving threats and risks.
- Collaborate with internal audit, compliance, and legal teams to ensure adherence to security requirements and contractual obligations.
- Maintain security documentation, evidence, and artifacts to demonstrate compliance with security standards and regulations.
- Lead the Security Incident Response Team (SIRT), coordinating efforts to investigate and mitigate security incidents in a timely and effective manner.
- Develop and maintain incident response plans, playbooks, and procedures, conduct regular tabletop exercises and simulations to test and improve response capabilities
Security Domains & Focus Areas:
- Security Governance, Risk Management, Security Architecture, SIEM/SOAR, Vulnerability Management, Incident Response, Secure SDLC, Security-by-Design, Threat Modeling, Security Awareness Programs.
Must have requirements:
- Bachelor's degree in Information Security, Computer Science, or a related field; advanced degree or relevant certifications (e.g., CISSP, CISM, CISA) are a plus.
- Proven experience (min 5 years) in information security, with a focus on security strategy, governance, operations, and compliance.
- Strong understanding of security frameworks, standards, and best practices (e.g., NIST Cybersecurity Framework, CIS Controls, OWASP Top 10).
- Experience in leading and managing cross-functional security teams in a dynamic and fast-paced environment
- EU citizenship.
- Fluent English: B2/C1.
- Being open to occasional business trips abroad and visits in our office in Katowice
Nice to have requirements:
- Clerance
What we offer:
• BENEFITS (UoP): Luxmed, Medicover Sport, Worksmile, educational platforms, languages learning platform, referral bonus, life insurance, workation
• DEVELOPMENT OPPORTUNITIES (UoP and B2B): certifications (paid by the company), conferences, Tech Lunches, possibility to join our Communities (Project Management, Architecture, Security, Process Management, Leadership, AI and Cloud)
The recruitment process in our company consists of 4 stages:
•a short phone call with a recruiter (30 min max)
•one-hour long interview on Teams (with both general and technical questions)
•1st client interview (30 min)
•2nd client technical interview
Salary range:
UoP: 18 000- 22 000 PLN gross/month
B2B: 135-180/190 PLN net/h
All information about salary range and its additional components will be provided during the 1st stage of recruitment process.
At our organization, we are committed to fighting against all forms of discrimination. We foster a work environment that is inclusive and respectful of all differences.
Discover our stories
Curious about our culture and careers? Meet the colleagues you might soon work with through our podcast. Explore real stories of growth, ambition, and impact from Sopra Steria professionals around the world.
Job offers that might interest you
Salary
Location
Villeneuve-d'Ascq, France
Job Type
Standard
Experience Level
0 to 2 years
Department
Engineering, Development, Applications
Brand
Sopra Steria
Sector
All Sectors
Remote
No
Location
Villeneuve-D'Ascq
Description
Offre générique, utilisable à des fins de cooptation. Merci d'utiliser cette annonce uniquement si vous n'avez pas trouvé d'offre correspondante au profil que vous souhaiteriez coopter. Dans le cadre
Reference
e6e3f076-6ced-49fa-a541-cb8ab076de2b
Expiry Date
Jan 1, 0001
Salary
Location
Orléans, France
Vacancy language
French
Job Type
Standard
Experience Level
6 to 10 years
Department
Engineering, Development, Applications
Brand
Sopra Steria
Sector
Financial Services
Remote
No
Location
Orléans
Experience Level Italy
Mid-Senior Level
Description
Votre rôle et vos missions : Prendre en charge la conception, le développement et l’évolution d’applicatifs critiques (B2C, B2B, internes ou distribués) en Java (microservices) et React.js (SPA) dans
Reference
7a6823cb-dc48-40fc-a550-63ee50f87bd2
Expiry Date
Jan 1, 0001
Salary
Location
Paris, France
Vacancy language
French
Job Type
Standard
Experience Level
More than 10 years
Department
Engineering, Development, Applications
Brand
Sopra Steria
Sector
Financial Services
Remote
No
Location
Paris
Experience Level Italy
Mid-Senior Level
Description
Rejoindre une équipe d’ingénierie senior pour intervenir sur des architectures distribuées à haute volumétrie, en environnement microservices. Le rôle est focalisé sur l’expertise technique, la concep
Reference
d643d4d0-eeab-4b9d-b9b2-dc276895ea40
Expiry Date
Jan 1, 0001
Salary
Location
Paris, France
Vacancy language
French
Job Type
Standard
Experience Level
6 to 10 years
Department
Engineering, Development, Applications
Brand
Sopra Steria
Sector
Financial Services
Remote
No
Location
Paris
Description
Votre rôle et vos missions : Prendre en charge la conception, le développement et l’évolution d’applicatifs critiques (B2C, B2B, internes ou distribués) en Java (microservices) et React.js (SPA) dans
Reference
aa61391e-87ba-4067-b788-af1ecb84e87c
Expiry Date
Jan 1, 0001
Salary
Location
Nantes, France
Vacancy language
French
Job Type
Standard
Experience Level
3 to 5 years
Department
Engineering, Development, Applications
Brand
Sopra Steria
Sector
Financial Services
Remote
No
Location
Nantes
Experience Level Italy
Mid-Senior Level
Description
La division « Services Financiers » de Sopra Steria se concentre sur la banque de détail, la banque privée et les services financiers spécialisés. Nous participons à la révolution digitale grâce à not
Reference
9a2a6587-7483-49dc-a98c-25f70a3be412
Expiry Date
Jan 1, 0001
Salary
Location
Nantes, France
Vacancy language
French
Job Type
Standard
Experience Level
3 to 5 years
Department
Engineering, Development, Applications
Brand
Sopra Steria
Sector
Financial Services
Remote
No
Location
Nantes
Experience Level Italy
Mid-Senior Level
Description
Votre environnement de travail : Si vous êtes passionné(e) par la valorisation de la donnée, rejoignez notre Centre d’Expertise Data localisée à Nantes et les quelques 100 Consultants Data qui la comp
Reference
ec8afe34-ebe7-4fd3-a644-493ad6fe9564
Expiry Date
Jan 1, 0001
Salary
Location
Mérignac, France
Vacancy language
French
Job Type
Standard
Experience Level
3 to 5 years
Department
Engineering, Development, Applications
Brand
Sopra Steria
Sector
Banking Edition
Remote
No
Location
Mérignac
Description
En intégrant notre agence bordelaise, nous vous proposons de donner du sens à vos missions en impactant le quotidien des français. La majorité de nos projets sont réalisés en agilité (frameworks Scrum
Reference
06008669-6c78-4894-9fe7-c493605016b7
Expiry Date
Jan 1, 0001
Salary
Location
Guipavas, France
Vacancy language
French
Job Type
Standard
Experience Level
3 to 5 years
Department
Engineering, Development, Applications
Brand
Sopra Steria
Sector
All Sectors
Remote
No
Location
Guipavas
Experience Level Italy
Mid-Senior Level
Description
Rattaché(e) au centre de service d'un client bancaire majeur, vous intégrez une équipe projet agile dynamique, afin d' accompagner notre client dans la réalisation de projets numériques et innovants,
Reference
a25e357d-0f9c-4793-a293-7aeb39f60f80
Expiry Date
Jan 1, 0001
Salary
Location
Nantes, France
Vacancy language
French
Job Type
Standard
Experience Level
3 to 5 years
Department
Engineering, Development, Applications
Brand
Sopra Steria
Sector
Financial Services
Remote
No
Location
Nantes
Experience Level Italy
Mid-Senior Level
Description
Rejoignez la division « Services Financiers » de Sopra Steria et participez à la révolution digitale ! Nous nous spécialisons dans la banque de détail, la banque privée et les services financiers spéc
Reference
8873a2d5-17ee-4952-ab02-6109b1be1f2f
Expiry Date
Jan 1, 0001
Salary
Location
Guipavas, France
Vacancy language
French
Job Type
Standard
Experience Level
6 to 10 years
Department
Engineering, Development, Applications
Brand
Sopra Steria
Sector
Financial Services
Remote
No
Location
Guipavas
Experience Level Italy
Mid-Senior Level
Description
La division Services Financiers est développée autour des métiers de la banque de détail, de la banque privée et des services financiers spécialisés. Nous participons à la révolution digitale grâce à
Reference
0d7f8638-812d-443c-a955-144543b66056
Expiry Date
Jan 1, 0001