Cybersecurity Risk Manager (Warsaw, on-site) – Frontex

The White TeamCapon Bridge, WV
Onsite

About The Position

This role involves developing and implementing cybersecurity risk management strategies, performing risk assessments, and ensuring compliance with regulations and standards. The Cybersecurity Risk Manager will be responsible for identifying threats, categorizing assets, rating system vulnerabilities, and implementing effective controls. This position requires enabling stakeholders to make informed risk decisions, fostering a cybersecurity risk-aware environment, and communicating effectively with relevant parties. The role also includes managing an inventory of organizational assets, assessing ICT system risks, and monitoring the effectiveness of cybersecurity controls to maintain acceptable risk levels.

Requirements

  • Minimum 9 years of IT relevant experience.
  • Minimum 6 years of experience in relevant roles.
  • Advanced knowledge of risk management frameworks, standards, methodologies, tools, guidelines and best practices.
  • Knowledge of cyber threats, threats taxonomies and vulnerabilities repositories.
  • Knowledge of risk sharing options and best practices.
  • Knowledge of state of the art technical and organisational controls that appropriately mitigate cybersecurity risks.
  • Knowledge of monitoring, implementing and testing the effectiveness of the controls.
  • Experience in making Business Impact Assessments.
  • Experience in preparing personal data protection documentation.
  • Experience in tools for graphical and programmatic threat modelling.
  • Experience in threat modelling for DevOps.
  • Experience in designing Zero Trust Architecture.
  • Experience in Securing Software Development Lifecycle.
  • Experience in designing controls for defending Directory Services.
  • Minimum English language skills: C1.
  • At least 4 certifications required among: CISSP, CISA, CISM, GSNA, GCCC, ISO 27001 Lead implementer, ISO 27001 Lead Auditor, ISO 27005 Risk Manager, CAP, CRISC, CISSP-ISSMP, GIAC Certified ISO-27000 Specialist, or equivalent certification recognized internationally.

Nice To Haves

  • Knowledge on risk assessment implementation in GRC Service Now.

Responsibilities

  • Perform risk assessments and analysis to identify threats, categorize assets, and rate system vulnerabilities so that they can implement effective controls.
  • Implement cybersecurity risk management frameworks, methodologies and guidelines and ensure compliance with regulations and standards.
  • Enable business assets owners, executives, and other stakeholders to make risk informed decisions to manage and mitigate risks.
  • Enable employees to understand, embrace and follow the controls.
  • Build a cybersecurity risk-aware environment.
  • Analyze and consolidate organization’s quality and risk management practices.
  • Communicate, present and report to relevant stakeholders.
  • Propose and manage risk sharing options.
  • Develop an organization’s cybersecurity risk management strategy.
  • Manage an inventory of organization’s assets.
  • Identify and assess cybersecurity-related threats and vulnerabilities of ICT systems.
  • Identification of threat landscape including attackers’ profiles and estimation of attacks’ potential.
  • Assess cybersecurity risks, and propose most appropriate risk treatment options, including security controls, and risk mitigation and avoidance that best address organisation’s strategy.
  • Monitor effectiveness of cybersecurity controls and risk levels.
  • Ensure that all cybersecurity risks remain at an acceptable level for the organisation’s assets.
  • Develop, maintain, report and communicate complete risk management cycle.

Benefits

  • Flexible rate offered depends on the candidate’s level, in accordance with the European public grading system.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service