Pracuj.pl Hybrydowo Senior

QA and SDLC Control Analyst

Mindbox Sp. z o.o.

⚲ Kraków

22 000–28 000 zł netto (+ VAT) / mies.

Wymagania

  • qTest
  • Tricentis
  • Zephyr
  • Google Cloud Platform
  • AWS
  • Microsoft Azure
  • SQL

Opis stanowiska

Nasze wymagania: Minimum 3+ years as a Business Analyst / Test Analyst in Agile development environments. Familiarity with SDLC best practices and test evidence compliance. Experience using QA tools (qTest, Tricentis, Zephyr). Proficiency in Microsoft Office Suite (Excel, Visio, PowerPoint) for data analysis and reporting. Good knowledge of Governance, Risk, and Compliance (GRC) processes. Strong communication skills with the ability to run workshops and stakeholder sessions independently. Mile widziane: IIBA certifications (ECBA, CCBA, CBAP). Knowledge of vulnerability scanning tools (SAST, DAST, MAST) and application security practices. Familiarity with Agile methodologies (SAFe, Scrum). SQL and cloud experience (GCP, AWS, Azure). Experience delivering process flow diagrams and improvement initiatives. O projekcie: Are you passionate about cybersecurity governance, control compliance, and enabling secure software delivery? We are looking for a Control Analyst to support SDLC and Deployment Control processes and ensure compliance across global cybersecurity engineering teams. Sounds like your kind of challenge? Zakres obowiązków: Define best practices and compliance benchmarks for SDLC and Deployment (DEPL) controls across cybersecurity projects. Manage the spot-check process and compliance reviews for cyber delivery teams to identify deficiencies. Deliver training and guidance on SDLC/Deployment controls for engineers, fostering consistent compliance. Monitor and report control compliance status and DevOps metrics to stakeholders. Drive workshops, communicate expectations, resolve issues, and manage decision-making sessions with stakeholders across delivery, control, and governance teams. Support the adoption of processes associated with agile software development and DevOps. Provide process improvement recommendations and create clear, effective workflows. Note: Detailed project information will be shared during the recruitment process. Oferujemy: Flexible cooperation model – choose the form that suits you best (B2B, employment contract, etc.) Hybrid work setup – 6 days a month from the office in Kraków Collaborative team culture – work alongside experienced professionals eager to share knowledge Continuous development – access to training platforms and growth opportunities Comprehensive benefits – including Interpolska Health Care, Multisport card, Warta Insurance, and more High quality equipment – laptop and essential software provided

🔍 Dekoder Ogłoszenia

🔴
Strong communication skills with the ability to run workshops and stakeholder sessions independently.
Oczekuje się, że będziesz samodzielnie prowadzić spotkania i szkolenia, co może oznaczać dużą odpowiedzialność i konieczność radzenia sobie z trudnymi sytuacjami.
🔴
Manage the spot-check process and compliance reviews for cyber delivery teams to identify deficiencies.
Twoim zadaniem będzie wyszukiwanie błędów i problemów w pracy innych zespołów, co może być postrzegane jako rola audytora lub kontrolera.
🔴
Deliver training and guidance on SDLC/Deployment controls for engineers, fostering consistent compliance.
Będziesz odpowiedzialny za edukowanie inżynierów w zakresie procesów, co może wymagać umiejętności przekonywania i radzenia sobie z oporem.
🟡
Familiarity with SDLC best practices and test evidence compliance.
Oczekuje się znajomości standardów i dokumentacji, co może oznaczać dużo pracy biurowej i proceduralnej.
🟢
Are you passionate about cybersecurity governance, control compliance, and enabling secure software delivery?
Pytanie retoryczne, które ma na celu przyciągnięcie kandydatów o specyficznych zainteresowaniach, ale nie precyzuje konkretnych zadań.