ING Hubs Poland
ITSecurity/DevSecOpsEngineer(Controls&Compliance)–ALMApplications
Neural analysis suggests this role is
optimal for Mid candidates.
“IT Security / DevSecOps Engineer (Controls & Compliance) – ALM Applications at ING Hubs Poland. Skills: IT Security, DevSecOps, Controls, Compliance. Translate security policies into requirements. Coordinate IT security test procedures”
What They're Looking For.
Must Have
Experience translating security policies and IT risk/control standards into actionable requirements, Implement and document security measures keeping applications compliant, Explain security requirements clearly to stakeholders, Experience coordinating, carrying out and documenting IT security test procedures, Responsible for evidencing of applied security controls, Coordinate user access management of the applications, Speak English at B2+ level
Nice to Have
Experience with ITRMP / security control evidencing templates, Control automation concepts, Familiarity with audit evidence packs, Supporting internal/external audits in regulated environments, Background in DevOps / platform engineering, Security hardening, Security champion roles within engineering teams, Experience coordinating IAM/access governance, Periodic access reviews for business-critical application
What You'll Do.
Translate security policies into requirements
Coordinate IT security test procedures
Own evidencing of applied security
Explain security requirements to stakeholders
Coordinate user access management
Promote automation for controls
How You'll Work.
Team & Collaboration
Explain security requirements clearly to stakeholders; Drive alignment with stakeholders; Work with product team
Communication Scope
Communicate confidently in an international environment
Full Job Description
**ING Hubs Poland is hiring!** **The expected salary for this position: 9000 – 19000 PLN gross** _The financial ranges specified in the announcement are adjusted and may differ from the range specified in the remuneration regulations._ **We are looking for you, if you:** * Have experience translating security policies and IT risk/control standards into actionable requirements for engineering and operations teams * Can implement and document security measures keeping applications compliant with IT Risk Policies, Minimum Standards and Process Control Standards * Can explain security requirements clearly to stakeholders (DevOps, Ops, Product/Business, Risk & Security) and drive alignment * Have experience coordinating, carrying out and documenting IT security test procedures (e.g., SOX/ITGC or other regulatory requirements where applicable) * Are responsible for evidencing of applied security controls, keeping the IT Risk Measurement Platform (ITRMP) up-to-date and supporting internal and external auditing * Can coordinate user access management of the applications (joiner/mover/leaver, access reviews, traceability and documentation) * Speak English at B2+ level and communicate confidently in an international environment **You 'll get extra points for:** * Experience with ITRMP / security control evidencing templates and control automation concepts (reducing manual effort while staying compliant) * Familiarity with audit evidence packs and supporting internal/external audits in regulated environments * Background in DevOps / platform engineering, security hardening, or security champion roles within engineering teams * Experience coordinating IAM/access governance and periodic access reviews for business-critical application **Your responsibilities:** * Translate security policies and IT risk control standards into implementable requirements for ALM applications and ensure they are implemented and documented * Coordinate, execute and document IT security test procedure
Applying for this IT Security / DevSecOps Engineer (Controls & Compliance) – ALM Applications role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Workday
- Workday has a multi-step form — save your progress after every section.
- "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
- Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
- Job requisition numbers are useful when following up with HR by email.
ANONYMOUS · UNFILTERED
What do employees actually say about ING Hubs Poland?
Real rants from real employees. Read before you apply.