JustJoin.IT Hybrydowo Mid New

Mid-Level Cybersecurity SDLC Control Analyst

ITDS

⚲ Krakow

21 000 - 24 150 PLN netto (B2B)

Wymagania

  • Business Analysis
  • Agile Development
  • Microsoft Excel
  • Test Analysis
  • Cybersecurity
  • DevOps
  • SDLC (Software Development Life Cycle)
  • QA Tools (QTest, Tricentis, Zephyr)
  • Application Security Testing (SAST, DAST)
  • Governance Risk & Compliance (GRC)

Opis stanowiska

Empower cybersecurity resilience — ensure compliance, integrity, and excellence in digital delivery! Krakow-based opportunity with hybrid work model (up to 3 remote days per week). As a Mid-Level Cybersecurity SDLC Control Analyst, you will be working for our client, a leading global bank, within the Innovation and Security-driven environment of a renowned FinTech arm of a major bank. Your work will focus on strengthening cybersecurity governance by ensuring software delivery compliance through meticulous control management, fostering a secure and compliant digital banking landscape. This role offers an excellent platform for career growth in a dynamic, international setting dedicated to cutting-edge financial technology solutions. Your main responsibilities: • Define and promote best practices for SDLC and Deployment Controls within cyber delivery teams to elevate compliance standards. • Manage control-related spot-checking processes for cyber applications and changes, ensuring adherence to SDLC requirements. • Support the adoption of software delivery and deployment processes, including compliance reporting to facilitate regulatory and control requirements. • Develop and deliver training sessions for cyber teams to improve understanding and implementation of software delivery controls. • Monitor DevOps metrics, analyze data trends, and produce regular compliance reports aimed at key stakeholders. • Facilitate stakeholder engagement through workshops, meetings, and clear communication to enhance collaboration and control adherence. • Drive continuous process improvements by designing workflows, managing inquiries, and resolving conflicts efficiently. You're ideal for this role if you have: • 4+ years of experience as a Business Analyst or Test Analyst within an agile development environment. • Proven expertise in implementing and documenting compliant test evidence. • Practical experience working with QA tools such as QTest, Tricentis, Zephyr. • Knowledge of delivering and deploying software changes within complex systems. • Familiarity with Governance, Risk & Compliance (GRC) frameworks. • Excellent communication skills and the ability to lead workshops independently. • Strong proficiency in Microsoft Excel, Visio, and PowerPoint for data analysis and visual reporting. • Fluent in English, with strong verbal and written communication skills. • Ability to thrive in a fast-paced, multi-tasking team environment with a focus on results. • Willingness to continuously learn and share knowledge with colleagues. It is a strong plus if you have: • Experience creating process flow diagrams and optimizing complex system workflows. • Knowledge of Vulnerability Scanning tools and application security testing (SAST, MAST, DAST). • Familiarity with Agile methodologies and SAFe Scrum frameworks. • IIBA certifications (ECBA, CBAP, CCBA). • Knowledge of Gherkin syntax and experience with Microsoft SQL. • Experience working with Cloud environments such as GCP, AWS, or Azure. Language Required for the role: • Fluent in English (spoken and written). Eligibility for the role: • Only candidates with an existing legal right to work in the European Union will be considered for this role. #MAKEYourCareerBETTER Interested? Apply now and include your CV (preferably in English) along with a statement confirming your consent to the processing and storage of your personal data.

🔍 Dekoder Ogłoszenia

🟡
Empower cybersecurity resilience — ensure compliance, integrity, and excellence in digital delivery!
To hasło marketingowe, które nie precyzuje konkretnych obowiązków, ale sugeruje nacisk na bezpieczeństwo i zgodność.
🔴
leading global bank, within the Innovation and Security-driven environment of a renowned FinTech arm of a major bank.
Praca w dużej, prawdopodobnie biurokratycznej instytucji finansowej, pomimo określenia 'FinTech arm'.
🟡
excellent platform for career growth
Może oznaczać zarówno realne możliwości rozwoju, jak i po prostu standardową ścieżkę kariery w korporacji.
🔴
Manage control-related spot-checking processes for cyber applications and changes, ensuring adherence to SDLC requirements.
Oznacza to częste i drobiazgowe sprawdzanie zgodności, co może być czasochłonne i powtarzalne.
🔴
Facilitate stakeholder engagement through workshops, meetings, and clear co
Ostatnie zdanie jest niedokończone, co może sugerować pośpiech w tworzeniu ogłoszenia lub brak dopracowania.