Unlock Full Resume Report

New offer - be the first one to apply!

September 9, 2026

Junior Information Security Specialist

Junior • On-site

Poznań, Pl-30, Poland

Quick Facts

Junior role supporting Information Security with a focus on GRC (governance, risk, compliance).

Description

Supports the Information Security Team in protecting confidential data through threat monitoring, basic risk analysis, implementing security measures, and monitoring policy compliance. Helps maintain compliance with internal policies and regulations by ensuring daily security standards are met, with growth opportunities in cybersecurity and a specific emphasis on GRC.

Responsibilities

  • Security Policy: Assist with developing its provisions and monitoring the compliance level across Group Companies.

  • Data Policy: Monitor compliance with its provisions and help define rules for sharing data outside the Group.

  • Non-Disclosure Agreements (NDAs) & third parties: Conduct basic security risk reviews for NDAs and third-party data-sharing requests, advising Group Companies accordingly.

  • Security awareness: Support mandatory and non-mandatory training delivery to ensure appropriate data security awareness among employees and contractors.

  • Regulatory compliance: Assist with verifying security measures used by Group Companies to ensure compliance with applicable policies and regulations (DORA, NIS2, MAR, AI Act, GDPR, etc.) and information security principles, frameworks, and policies.

  • Risk management: Provide basic support to employees in identifying and evaluating information security risks.

  • Physical security: Assist in defining physical security requirements for offices and supervise their implementation.

  • Incident management: Support development of incident response procedures and participate in administrative and operational handling of incidents.

  • Corrective actions: Recommend basic corrective and improvement actions and monitor implementation.

Requirements

  • Experience: 0.5–2 years of experience (including internships or work placements) in information security, data protection, compliance, IT audit, or technical/legal consulting.

  • Education: Degree (completed or in progress) in Law, Administration, Cybersecurity, Computer Science, IT Management, or a related field is preferred.

  • GRC foundations: Basic understanding of information security management principles, risk assessment methodologies, and regulatory compliance.

  • Regulatory awareness: Familiarity with major regulations (e.g., DORA, NIS2, AI Act, MAR, GDPR) and standard security frameworks (e.g., ISO/IEC 27001, NIST).

  • Agreement review: Ability to review security and privacy contractual provisions (e.g., NDAs and data-sharing agreements) to identify organizational risk and ensure appropriate security for internal and external collaboration scenarios.

  • Languages: Very good spoken and written English.

  • Soft skills: Strong communication skills and diplomacy; analytical thinking and attention to detail.

Benefits

  • Flexible working hours in a hybrid model (4/1) with occasional remote work (30 days).

  • Long-term discretionary incentive plan based on Allegro.eu shares (restricted stock units).

  • Annual bonus based on annual performance and company results.

  • Well-located offices and excellent work tools.

  • Cafeteria plan fringe benefits (medical, sports, lunch packages, insurance, purchase vouchers, etc.).

  • English classes paid for related to the nature of the job.

  • Training budget, inter-team tourism, and internal learning platform with multiple trainings.

  • Additional day off for volunteering.

  • Social events and other group activities.

Similar jobs you might like