We are looking for

Security Detection Governance Specialist / Project Manager

Back to offers list
Retour

Security Detection Governance Specialist / Project Manager

  • Fixed Term Contract
  • Full time
  • Warsaw, Masovian Voivodeship, Poland
Apply
Last update 08.12.2025

BNP Paribas, the leading bank in the European Union and a leading international player, is seeking to reinforce its existing teams in the areas of IT risk management, cybersecurity, and the fight against digital fraud.

Within “IT Group” of BNP Paribas, the “Cybersecurity & Digital Fraud” Department's mission is to structure, strengthen, and harmonize IT risk management and cybersecurity for the Group (approximately 30 entities) by:

  • Defining the vision and strategy for IT risk management and cybersecurity,
  • Ensuring the implementation of this strategy within the Group’s operating entities,
  • Monitoring the security of the Group's information systems,
  • Steering the IT Continuity and Resilience strategy and methodological framework.

The evolving Cyberthreats landscape increases the security risk for the financial sector. Therefore, BNP Paribas must strengthen its Cybersecurity maturity, IT risk management and Operation Resilience.

Within the “Cybersecurity & Digital Fraud” department, you will be part of the “Fusion Center” team in Poland.

Security Detection Governance Specialist / Project Manager

We are seeking for a highly skilled and motivated person to join the team as a CyberSOC security expert. You will play a key role in the CyberSOC Detection service evolution and improvement:

  • You willanalyze andchallengenewrequestsregarding our detection capabilities,to ensuretheylead to the improvement of our cyber detection posture.
  • You will supportand challengesthe teams indefinition, categorizationand specification oftheir needs to achieve the most realistic and securedetectioncoverage for the group, based on audit documentation, andThreatlandscape knowledge.
  • You willsupportSOCteams in the implementation of thenew detection capabilities
  • You will also contribute to the reporting of our activities by participating tothedashboardsproduction, detection committees, andtheSteering committees. 
  • You will performstudy aiming at enhancing ourrules detection catalog

In this context, you will work closely with all CyberSOC stakeholders teams, including CSIRT, Data cyber scientist, Product owner, Production Security and CISO.

If you are passionate about Cyber governance activities with the will to improve the group security and have strong interpersonal skills, we encourage you to apply for this exciting opportunity to join our dynamic team.

Responsibilities:

  • Work closely with product owners and stakeholders to understandthe detectionrequirementsand ensure alignment withthe usage policy of the SOC.
  • Cultivate strong relationships withThreat Intelligence Teamto have the latest information from IT risk landscape
  • Enhance technical categorization on product owner’s request tocomply withsecurityreferentials
  • Managerequesttimelines, priorities, and deliverables to ensure successfulrequestcompletion within agreed-upon deadlines.
  • Identifyand address any issues or risks that mayimpactproject delivery and proactively seek solutions.
  • Cultivate strong relationships with stakeholdersand production teams, ensuring open communication and alignment of expectations throughout therequestlifecycle.
  • Continuouslymonitorand track project progress, providing regular updates to stakeholders and leadership.
  • Producespecificationsdocuments,meetingslidedeckand minutes.Togive special attention tothe messagesshared and how they arestated. 
  • Foster a culture of collaboration, transparency, and continuous improvement within the team.
  • Actively focus onremoving obstacles and enabling the team to achieve its goals effectively.

Requirements: 

  • At least5years of experience ingovernanceand/orcyber-security.
  • KnowledgeinCybersecurity andSOC/SIEMorganization and tooling.
  • KnowledgeofCybersecurityreferentialand processes(e.g.MITRE ATT&CK).
  • Knowledge of ITlayersinfrastructuretechnologies (e.g.IAM, SSO, AD, Zero Trust…)
  • Attention to detail and ability to act as critical thinker.
  • Ability to adapt to changing requirements and priorities.
  • Great communication skills in English (oral and writing).
  • Level of education: Master’s degree or equivalent experience.

We offer:

  •  Hybrid work mode
  •  Equivalent for remote work expenses (120 PLN per month)
  •  Stable employment in the international company
  •  Fully paid private medical care for employee
  •  Pre-paid lunch card
  •  Employee Pension Plan
  •  Co-financed Multisport Card
  •  MyBenefit Cafeteria Platform
  •  Life insurance
  •  Car parking availability in the office building
  •  Trainings and development opportunities