Apply now »

Senior Cybersecurity Risk and Compliance Consultant

Location:  Katowice
Other locations:  Primary Location Only
Salary: Competitive
Date:  4 Dec 2025

Job description

Requisition ID:  1665154

Senior Cybersecurity Risk and Compliance Consultant

 

Location: Katowice - 2 days office / 3 days remote

 

Let us introduce you the job offer by EY GDS Poland – a member of the global integrated service delivery center network by EY.

 

The opportunity

 

As a Senior Consultant within our Cybersecurity, Risk, Compliance & Resilience (CRCR) competency, you will help EY Clients evaluate the effectiveness and maturity of their cybersecurity and resiliency programs in alignment with regulatory expectations, strategic priorities, and operational demands. In addition to governance, compliance, and control evaluations, you will lead the implementation of risk management strategies and threat modelling activities, ensuring that the organization maintains acceptable risk levels while enabling digital transformation. You will support the delivery of IT Security Plans and contribute to complex risk analysis and mitigation initiatives across hybrid IT environments.

 

Your key responsibilities

 

  • Help EY Clients evaluate the effectiveness and maturity of their cybersecurity and resiliency programs in alignment with regulatory expectations, strategic priorities, and operational demands.
  • Lead the implementation of risk management strategies and threat modeling activities, ensuring that the organization maintains acceptable risk levels while enabling digital transformation.
  • Support the delivery of IT Security Plans and contribute to complex risk analysis and mitigation initiatives across hybrid IT environments.

 

Skills and attributes for success

 

  • Minimum 5 years of experience in cybersecurity risk management, with proven expertise in executing complex risk assessments, threat modeling, and strategic mitigation planning.
  • Assuring conformity to regulations, norms, and standards such as ISO27001, NIST, or any other ISMS governance systems.
  • Implementation of risk treatment plans and running business continuity program assessments.
  • Practical knowledge of Third Party Risk Management (TPRM).
  • Deep understanding of cybersecurity risk trends, control frameworks, and legal/regulatory drivers.
  • Exceptional stakeholder management and leadership skills, including guiding junior risk analysts and engaging with senior client stakeholders.
  • Strong ability to evaluate emerging cybersecurity risks and recommend effective control solutions.
  • Excellent interpersonal skills, inspiring teamwork and responsibility among engagement team members.

 

To qualify for the role, you must have

 

  • Excellent command of the English language; other European languages would be an asset.
  • Analytical and problem-solving ability, with the capacity to work effectively as a team member or individual contributor, and an eye for detail.
  • Ability to critically develop and review Information Security SOPs to identify controls gaps and weaknesses.
  • Strong project management skills and the ability to liaise with stakeholders.
  • Effectively communicate complex cybersecurity risks and technical information to management, enabling informed decision-making and strategic guidance.

 

Ideally, you’ll also have

 

  • Excellent command of the English language; other European languages would be an asset.
  • Analytical and problem-solving ability, with the capacity to work effectively as a team member or individual contributor, and an eye for detail.
  • Ability to critically develop and review Information Security SOPs to identify controls gaps and weaknesses.
  • Strong project management skills and the ability to liaise with stakeholders.
  • Effectively communicate complex cybersecurity risks and technical information to management, enabling informed decision-making and strategic guidance.

 

What we look for

 

We are looking for individuals who are passionate about cybersecurity and possess a strong analytical mindset. You should be able to navigate complex regulatory environments and provide strategic insights that drive effective risk management. A collaborative spirit and the ability to communicate effectively with diverse stakeholders are essential for success in this role. If you are committed to enhancing organizational resilience and are eager to contribute to a dynamic team, we encourage you to apply. Your proactive approach and dedication to continuous improvement will be key in helping our clients achieve their cybersecurity goals.

 

What we offer

 

EY Global Delivery Services (GDS) is a dynamic and truly global delivery network. We work across nine locations –  Argentina, Hungary, India, the Philippines, Poland, Sri Lanka, Mexico, Spain and the United Kingdom – and with teams from all EY service lines, geographies and sectors, playing a vital role in the delivery of the EY growth strategy. From accountants to coders to advisory consultants, we offer a wide variety of fulfilling career opportunities that span all business disciplines. In GDS, you will collaborate with EY teams on exciting projects and work with well-known brands from across the globe. We’ll introduce you to an ever-expanding ecosystem of people, learning, skills and insights that will stay with you throughout your career.

 

  • Continuous learning: You’ll develop the mindset and skills to navigate whatever comes next.
  • Success as defined by you: We’ll provide the tools and flexibility, so you can make a meaningful impact, your way.
  • Transformative leadership: We’ll give you the insights, coaching and confidence to be the leader the world needs.
  • Diverse and inclusive culture: You’ll be embraced for who you are and empowered to use your voice to help others find theirs.

 

About EY

EY | Building a better working world

 

EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.

Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate.

Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.

 

If you can demonstrate that you meet the criteria above, please contact us as soon as possible.

The exceptional EY experience. It’s yours to build.

 

In compliance with the requirements of the Whistleblower Protection Act, our company has established the Procedure for reporting breaches of law and undertaking appropriate follow-up actions. Any misconduct should be reported through the EY Ethics Hotline.

Apply now »