Senior Security Specialist IAMCANPACK Group • Kraków, Lesser Poland, Poland
Senior Security Specialist IAM
CANPACK Group • Kraków, Lesser Poland, Poland
23 days ago
Job description
technologies-expected :
Google Cloud Platform
Dockers
Kubernetes
AWS
about-project :
The security architect provides expert guidance for addressing current security issues but has the foresight to see where the industry is headed and proactively deliver optimal secure solutions. The architect is expected to think like an adversary and identify how solutions should evolve as the threat landscape changes. A senior tech-level role, the architect possesses strong communication and organizational skills, and the ability to guide less experienced coworkers. The architect provides technical leadership to delivery and solution design team members and advises executive leadership regarding matters of significant importance to the organization.
responsibilities :
Remain current with new security threats and assess systems to ensure they can defend the business.
Conduct threat modelling and architectural assessments of applications to encompass all aspects of information security, ensuring security by design.
Document identified threats and provide corresponding mitigation strategies.
Evaluate technologies and solutions to enhance security capabilities.
Identify security gaps and communicate associated business risks to relevant stakeholders.
Provide solutions aligned with business needs, considering security and compliance requirements.
Verify the effectiveness of security controls in mitigating identified risks.
Assist engineering projects throughout the Secure Software Development Life Cycle (SSDLC) and collaborate to effectively prioritize product security elements.
requirements-expected :
5-10 years of experience in IT or IT Security.
Strong knowledge of information security principles, security architectures, frameworks, standards, and emerging threats, with the ability to implement effective mitigation strategies.
Deep understanding of network protocols, operating systems, databases, applied cryptography, least privilege, zero trust principles, identity & access management, and other core information security concepts.
Familiarity with regulatory requirements and compliance standards (NIST, ISO 27001, GDPR, SOC2).
Expertise in cloud computing and its associated best security practices, covering applications, infrastructure, storage, platforms, and data security.
Hands-on experience in performing threat modelling for applications, identifying threats, and suggesting optimal mitigation strategies.
Strong understanding of threat modelling methodologies (e.g., STRIDE, DREAD, PASTA).
Proficiency in using threat modelling tools (e.g., Microsoft Threat Modelling Tool, Threat Modeler, OWASP Threat Dragon).
In-depth knowledge of common security vulnerabilities (e.g., OWASP Top Ten, CVEs) and attack vectors.
Must have experience in architecting and securing Cloud Computing Platforms such as Azure or AWS.
Demonstrate a deep understanding of Google Cloud Platform(GCP) concepts and architectures, with a focus for how security controls are applied to cloud-based technologies. Architecture & Networking , Identity & Access Management, Securing the CI / CD Pipeline, Secrets and Data Protection, logging and monitoring and Security controls for Containers(e.g., Dockers, Kubernetes).
Excellent communication and interpersonal skills, with the ability to interact with stakeholders at all levels and explain complex security concepts in an easily understandable manner.
Constantly research capabilities of current and new disruptive solutions on the market and make recommendations to security leadership.
Drive security efficiencies, enabling security team members to work on more advanced tasks.
Perform engineering performance testing to stress the limitations of security solutions while at the same time ensuring business innovation and day-to-day processes are not negatively impacted.
Experience in cloud computing technologies, including software-, infrastructure and platform-as-a-service, as well as public, private and hybrid environments.
Extensive knowledge of traditional security controls and technologies, such as Security Information and Event Management (SIEM) systems, intrusion detection / prevention systems (IDS / IPS), public key infrastructure (PKI), identity and access management (IDAM) systems, antivirus and firewalls, in addition to newer offerings such as endpoint detection and response (EDR), threat intelligence platforms, security automation and orchestration, deception technologies and application controls.
Analytical and problem-solving skills.
Ability to work in cross functional teams, including remote and external resources.
Ability to effectively communicate with technical resources.
Works with minimal guidance and recognitions when guidance needed.
Ability to understand and develop enterprise policy and technical standards with specific regard to data loss protection and secure configuration.
Ability and willingness to learn new things about data loss protection management, exploits, hacker techniques, and overall security operations.
offered :
Being part of a fast-growing, dynamic company, recognized as one of the foremost global packaging manufacturers.
Great professional growth opportunities.
Annual bonus.
Private medical care & insurance plan for you to keep an eye on your health.
MyBenefit program.
Flexible and hybrid work arrangement : We offer a flexible hybrid work model – 2 days a week in the Krakow office, or fully remote if you're located elsewhere.
Parking space for all employees.
Comfortable working environment (library, relaxation area with a view of the Wawel castle and city center, casual dress code).
benefits :
sharing the costs of sports activities
private medical care
sharing the costs of foreign language classes
sharing the costs of professional training & courses
At ABB, we help industries outrun - leaner and cleaner.Here, progress is an expectation - for you, your team, and the world.
As a global market leader, we’ll give you what you need to make it happen...Show more
Last updated: 22 days ago • Promoted
Senior Security Specialist IAM
canpack • Kraków, Województwo małopolskie, Polska
Senior Security Specialist IAM.The security architect provides expert guidance for addressing current security issues but has the foresight to see where the industry is headed and proactively deliv...Show more
Last updated: 22 days ago • Promoted
Principal SME – Proxy and Remote Access Security @ HSBC Technology Poland
HSBC Technology Poland • Kraków, Poland
Some careers shine brighter than others.If you’re looking for a career that will help you stand out, join HSBC, and fulfil your potential.
Whether you want a career that could take you to the top, o...Show more
Last updated: 30+ days ago • Promoted
Starszy Specjalista ds. systemu ERP – IFS Cloud
Smay Sp. z o.o. • Bochnia, Bochnia, Polska
Czy masz pasję do zarządzania systemami ERP i chcesz mieć wpływ na rozwój w dynamicznie rozwijającej się firmie?.W SMAY zespół IT liczy obecnie 7 osób, a Ty możesz dołączyć do tej grupy jako Starsz...Show more
Last updated: 5 days ago • Promoted
Specjalista / Specjalistka ds. CRM
Mitsubishi Electric Europe • Balice (pow. krakowski), małopolskie, Polska
Rozwój i administracja systemu CRM Microsoft Dynamics 365 zgodnie z rozpoznanymi potrzebami biznesowymi przy współpracy z zewnętrznymi dostawcami.
Planowanie i koordynowanie realizacji prac w ramach...Show more
Last updated: 7 days ago • Promoted
Global IT Security Expert - IAM
CANPACK Group • Kraków, Województwo małopolskie, Polska
Global IT Security Expert - IAM page is loaded## Global IT Security Expert - IAMlocations : Krakowposted on : Publicado hojejob requisition id : R3015 • •Global IT Security Expert - IAM • •Position ...Show more
Last updated: 5 days ago • Promoted
Senior Security Engineer
Zendesk • Kraków, Województwo małopolskie, Polska
Threat Prevention Engineering, a core pillar of the Cyber Defence Fusion Center at Zendesk, is a globally distributed team of passionate, motivated, and innovative security engineers.We understand ...Show more
Last updated: 30+ days ago • Promoted
Cyber Security Specialist
ABB Business Services • Kraków, Lesser Poland, Poland
In this role, you will have the opportunity to manage or coordinate cybersecurity aspects in development projects and activities.
Each day, you will support strategic cybersecurity direction and fut...Show more
Last updated: 22 days ago • Promoted
Senior Security Engineer @ Zendesk
Zendesk • Kraków, Poland
Join Zendesk and Shape the Future of IT Asset Management.Zendesk is expanding its Employee Service offerings, and IT Asset Management (ITAM) is a key pillar of this vision.We are building the next ...Show more
Last updated: 13 days ago • Promoted
SAP Specialist Procurement
MAN Trucks Sp. z o.o. • Niepołomice, Lesser Poland, Poland
You coordinate and / or accompany process optimization projects in MAN Procurement; this includes technical, systemic and organizational development with a focus on SAP solutions.Together with your c...Show more
Last updated: 30+ days ago • Promoted
Global IAM Security Expert - Hybrid / Remote Ready
CANPACK Group • Kraków, Województwo małopolskie, Polska
A leading global packaging manufacturer is seeking a Global IT Security Expert specializing in Identity and Access Management (IAM).
This role is responsible for advancing strategic security operati...Show more
Last updated: 5 days ago • Promoted
Security Awareness Specialist
ABB • Kraków, Województwo małopolskie, Polska
In this role, you will have the opportunity to successfully develop and implement security measures for ABB in your area of responsibility.
Each day, you will protect ABB from rapidly escalating thr...Show more
Last updated: 12 days ago • Promoted
Senior Security Engineer @ LotusFlare
LotusFlare • Kraków, Poland
As Security Engineer on the Infrastructure Team at LotusFlare you will be responsible to drive the overall IT security standards across our cloud native Digital Network Operator stack.This incorpor...Show more
Last updated: 27 days ago • Promoted
Senior Security Researcher
HSBC Service Delivery (Polska) Sp. z o.o. • Kraków, Lesser Poland, Poland
The Cybersecurity Research and Offensive Security (CROS) function is building up its capabilities to form a global team of highly skilled security researchers.
The Security Research team, within the...Show more
The Senior Engineer, Incident Response is responsible for helping protect Danaher’s assets and data through cybersecurity event investigation and response.
This role is part of a high performing tea...Show more
Last updated: 30+ days ago • Promoted
Data Analyst for Supply Chain Compliance
MAN Trucks Sp. z o.o. • Niepołomice, Lesser Poland, Poland
You coordinate and / or accompany reporting and planning projects in MAN Procurement; this includes professional, systemic and organizational development.
Manage scoping activities for strategic risk ...Show more
Last updated: 30+ days ago • Promoted
Principal SME – Proxy and Remote Access Security
HSBC Service Delivery (Polska) Sp. z o.o. • Kraków, Lesser Poland, Poland
This role is part of the Proxy and Remote Access Security function within the Cyber Technology and Engineering (CTE) organisation, providing a Cybersecurity security technology expertise and engine...Show more
Last updated: 30+ days ago • Promoted
Security Solution Architect @ Mindbox Sp.z.o.o.
Mindbox Sp.z.o.o. • Kraków, Poland
Creating an inspiring place to thrive for the talented, we use their expertise and courage to introduce the technology of the future into your business.
We operate and develop in four areas : .Busines...Show more