Next Ventures
Information Technology Security Specialist
Next VenturesPoland7 hours ago
Full-timeRemote FriendlyConsulting

Job Title: GRC/Compliance Professional

Summary Description:

We are currently seeking a GRC/Compliance Professional to support our Cyber Risk Management function within a leading organization, with long-term cooperation planned through 30.09.2026 and potential for extension. The candidate will play a key role in building and leading a Risk Intelligence Hub aligned with current regulatory frameworks and enterprise risk strategies.

Role Type:

Contract

Start Date:

Immediate

Salary:

Day Rate

  • Expenses (if applicable)

Location / Language:

  • Poland / Remote possible
  • English (Fluent)

Requirements Description:

  • Minimum 8–12+ years in cybersecurity, enterprise risk, or threat intelligence
  • Strong leadership in building risk/intelligence functions
  • Experience with ISO/IEC 27001, NIS2, DORA
  • Familiarity with risk quantification, threat modeling, GRC platforms
  • Relevant degree (Cybersecurity, Risk Management, InfoSec, etc.)
  • Certifications (CISSP, CRISC, CISM, CGEIT, ISO Lead Implementer) preferred

Tasks Description:

  • Define and implement the Risk Intelligence Hub vision and roadmap
  • Design a federated risk model across corporate/business units
  • Lead a high-performing team of risk managers and analysts
  • Align governance with regulatory frameworks
  • Develop dashboards, reports, and risk heatmaps
  • Enable board-level reporting and risk planning
  • Collaborate with IT, legal, compliance, and business stakeholders
  • Represent the risk function in executive/governance settings

Essential Skills / Experience Description:

  • Strategic risk leadership in a complex/enterprise environment
  • Stakeholder management across all levels
  • Data-driven mindset and strong reporting/visualization skills
  • Ability to influence without formal authority
  • Excellent communication and mentoring skills

Desirable Skills / Additional Information Description:

  • Automotive industry experience
  • Hands-on experience in real-time threat intelligence integration
  • Strong familiarity with GRC tooling (e.g., ServiceNow, Archer)
  • Comfortable operating in cross-functional teams and regulatory forums

Team Contact:

[email protected]

Key Skills

Ranked by relevance