The opportunity
As a Supervising Associate in the Information Security Portfolio Compliance Enablement function, you will play a key role in supporting EY's digital services by ensuring adherence to Information Security policies. This position involves working directly on projects to enhance risk posture, collaborating with business teams, and contributing to the maintenance of the technology compliance posture through effective governance. You will also assist in ensuring data protection, privacy, and software development practices are compliant with legal and regulatory standards.
Your key responsibilities
Actively contribute to projects aimed at improving EY's risk posture.
Manage delivery of one or more processes and / or solutions with a focus on quality and effective risk management.
Assist in the development of compliance strategies and remediation plans.
Help translate technical vulnerabilities into business risk terms for stakeholders.
Contribute to the maintenance and enhancement of compliance assessment toolkits.
Participate in security assessments for technology infrastructure and application risks and vulnerabilities, and third-party dependencies.
Contribute to continuous improvement, the identification of innovative solutions through research, analysis, and the application of best practices.
Support a team of compliance specialists, providing guidance and expertise on specific projects and initiatives.
Skills and attributes for success
Solid experience in compliance management within Information Security.
Ability to understand and balance security needs with business impact.
Strong organizational skills and a proactive approach to problem-solving.
Effective communication skills, technical writing, capable of building relationships and facilitating compliance with security policies and documenting processes.
Experience in conducting risk assessments and recommending remediation strategies.
Knowledgeable in technical infrastructure, applications, and compliance frameworks.
Capable of evaluating security policies and systems to ensure compliance with standards.
To qualify for the role, you must have
A minimum of 5 years of experience in Cyber Security, Information Security, or a related field.
A degree in Cyber Security, Information Security, Computer Science, or a related discipline.
Relevant certifications such as CRISC, CISSP, CISM, CISA, or equivalent.
Familiarity with common information security standards like ISO 27001 / 27002, NIST, PCI DSS.
Understanding of regulatory requirements such as PCI, SOX, HIPAA, GDPR.
Strong communication skills and the ability to collaborate effectively with teams.
Ideally, you’ll also have
Excellent problem-solving and decision-making abilities.
Adaptability to changing priorities and project scopes.
Strong interpersonal and communication skills and ability to present information with purpose and clarity.
Experience with GRC platforms like RSA Archer or IBM Open Pages is a plus.
What we look for
We are looking for individuals with a passion for information security and demonstrated ability to apply their knowledge to new and emerging technologies that are supporting the growth strategy of a global professional services firm.
What we offer
EY Global Delivery Services (GDS) is a dynamic and truly global delivery network. We work across ten locations – Argentina, China, Hungary, India, the Philippines, Poland, Sri Lanka, Mexico, Spain and the United Kingdom – and with teams from all EY service lines, geographies and sectors, playing a vital role in the delivery of the EY growth strategy. From accountants to coders to advisory consultants, we offer a wide variety of fulfilling career opportunities that span all business disciplines. In GDS, you will collaborate with EY teams on exciting projects and work with well-known brands from across the globe. We’ll introduce you to an ever-expanding ecosystem of people, learning, skills and insights that will stay with you throughout your career.
About EY
EY | Building a better working world
Compliance Specialist • Wrocław, DS, PL