Unlock Full Resume Report

New offer - be the first one to apply!

September 2, 2026

Security Transformation Consultant (regular/senior) (She/He/They)

Senior • Remote

Warsaw, MZ, Poland

The Work

  • Lead and support security maturity assessments across applications, software delivery processes, infrastructure, and enterprise environments; define pragmatic transformation roadmaps.
  • Design and improve Secure SDLC operating models, security governance frameworks, and assurance processes.
  • Advise on security-by-design and shift-left practices; translate principles into actionable requirements for development, platform, and engineering teams.
  • Conduct end-to-end security architecture reviews across legacy, hybrid, cloud-native, and modern application environments, including AWS, Azure, and GCP.
  • Facilitate threat modeling and risk assessments for complex applications, distributed architectures, and enterprise transformation programs.
  • Assess security implications of application modernization, cloud transformation, and technology migration, including on-premises and hybrid environments.
  • Define security requirements, assurance processes, and governance mechanisms using frameworks such as OWASP ASVS and MITRE ATT&CK.
  • Support software supply chain security, vulnerability management, and secure engineering practices.
  • Establish security metrics, reporting models, and continuous-improvement mechanisms.
  • Lead workshops with technical, operational, business, and senior stakeholders; translate security risks into clear recommendations.
  • Advise on secure design principles, emerging security trends, and practical risk-based decision-making.

Work Model

The work location may include a mix of remote work, client-site work, and office work, depending on project circumstances. Some in-person time is expected for collaboration, learning, and relationship building.

What’s in It for You

  • Work on international cybersecurity transformation programs involving architecture, strategy, and large-scale modernization.
  • Gain exposure to cloud security, identity, application security, network transformation, and Zero Trust challenges across banking, manufacturing, healthcare, retail, and public-sector organizations.
  • Develop from network security toward cloud security, Zero Trust architecture, AI security, or security consulting.
  • Define modern secure network architectures and lead discussions with architects, platform teams, and senior stakeholders.
  • Collaborate with a global cybersecurity team and access technical, soft-skills, language, GenAI, e-learning, and certification development opportunities.

Qualifications

  • Several years of experience in cybersecurity consulting, application security, security architecture, DevSecOps, security governance, or a related discipline.
  • Basic understanding of Secure SDLC concepts and ability to design or improve security processes, governance frameworks, and operating models across software delivery.
  • Experience leading or supporting security maturity assessments and turning findings into actionable transformation roadmaps for technical and business stakeholders.
  • Good working knowledge of application security principles and practical use of OWASP Top 10 and OWASP ASVS in assessments, architecture reviews, and secure design guidance.
  • Hands-on familiarity with at least one cloud platform—AWS, Azure, or GCP—to assess architecture decisions, identify security gaps, and advise on cloud, hybrid, and on-premises design.
  • Experience facilitating threat modeling, security architecture reviews, and risk assessments for complex applications and distributed enterprise environments.
  • Ability to define scalable security requirements, assurance processes, and governance mechanisms across development, platform, and enterprise environments.
  • Strong communication and stakeholder-management skills, including leading workshops and presenting to senior audiences.
  • Polish and English proficiency at a minimum B2 level.
  • Leadership mindset and ability to drive security initiatives and build trusted relationships with clients and cross-functional teams.

Seniority

  • Regular: approximately 3–5 years of relevant experience. Deliver defined workstreams, conduct network security assessments, support Zero Trust and cloud architecture reviews, and communicate findings to client technical teams. A solid network security foundation and active development toward cloud security, Zero Trust, and security advisory capabilities are expected.
  • Senior: approximately 5+ years of relevant experience. Lead workstreams, provide technical direction, and mentor junior colleagues. Requires depth in network security architecture, breadth across cloud security, Zero Trust, identity, or application security, and the ability to present and defend positions to senior client stakeholders up to CISO level.

Bonus Points

  • Experience in enterprise security transformation programs or security operating model design.
  • Practical knowledge of DevSecOps tooling and security integration in modern software delivery pipelines.
  • Experience with AI governance, AI risk management, or securing AI-enabled applications and services.
  • Industry-recognized cybersecurity or cloud-security certifications.
  • Experience across multiple industries or large-scale, complex enterprise environments.

What We Offer

  • Permanent employment contract.
  • Individual support from a People Lead, a defined professional-development path, and coaching sessions.
  • Training package covering soft, technical, and language learning; e-learning platforms; Gallup test; GenAI training; and course and certification co-financing.
  • Employee Assistance Program with legal, financial, and psychological consultations.
  • Employee share purchase plan and quarterly dividends for eligible share owners.
  • Paid employee referral program.
  • Private medical care and life insurance.
  • Access to the Worksmile platform, including products and services such as the Multisport card.

Similar jobs you might like