CYBER RISK AND ASSURANCE MANAGER v Praha –… - Jobeax
Popis nabídky
CYBER RISK AND ASSURANCE MANAGER v Praha – Vršovice, Česko
Tesco Stores ČR a.s. - Centrála
HybridníKombinace kanceláře a práce na dálku
Plný úvazekStandardní týdenní pracovní doba
SmlouvaNa dobu určitou nebo freelance
20 / year
Czech Republic
CYBER RISK AND ASSURANCE MANAGER v Praha – Vršovice, Česko is listed on Jobeax. Browse 80,000+ vacancies available.
About the role
This is a fantastic opportunity to join Tesco's Cyber Assurance team, part of the wider Cyber Risk function. The Cyber Assurance team is our second line in Technology working with stakeholders to ensure the implementation of proportionate controls to mitigate Tesco's cyber risk exposure. We also support Tesco in meeting (cyber) regulatory obligations across our operating countries.
You will be accountable for:
In this job, I am accountable for following our Business Code of Conduct and always acting with integrity and due diligence and have these specific risk responsibilities:
Carry out cyber assurance and compliance initiatives independently, ensuring quality and timely delivery.
Perform risk-based controls testing across security domains utilising our internal security framework which is aligned with industry-recognised security frameworks (e.g., ISO 27001, NIST CSF, CIS) to determine control effectiveness and provide implementable recommendations.
Review and validate evidence provided by Cyber Security/Technology teams as part of control assurance activities, ensuring completeness and compliance with regulatory and industry standards.
Collaborate with Cyber Security and Technology teams to drive remediation of identified control gaps and ensure implementation of cyber security safeguards to improve security posture across the organisation.
Maintain up-to-date knowledge of information/cyber security and resilience related laws and regulatory requirements, and how they apply to Tesco's operating countries
support compliance programs such as NIS2, GDPR, and PCI DSS etc., including performing gap assessments, evidence reviews, and reporting.
Support reporting across different Cyber Assurance initiatives, including reporting to Cyber Security Leadership and Cyber/Technology governance committees.
Identify, drive, and implement opportunities for process improvement across various initiatives within the Cyber Assurance team.
Build strong relationships with the stakeholders and lead meetings with Technology and Business Process teams.
Stay updated on evolving regulatory requirements and industry best practices and provide insights to management to continuously enhance the organisation's assurance posture.
This role requires written and verbal fluency in Czech/Slovak and English.
This role is based in Prague, Czechia, operating in a hybrid model (3 days per week in the office).
What you bring?
Operational skills
Critical thinking with strong attention to detail and good organisational skills
Strong written, verbal communication and presentation skills, working with all levels of seniority and disciplines within the organisation
Able to build solid working relationships with peers as well as internal and external stakeholders
At least one professional qualification such as CISA, CISM, CISSP or equivalent
Fluent in Czech/Slovak and English (verbal and written)
Experience relevant for this job
IT audit and/or IT risk management, with examples of delivering and managing cyber risk and IT compliance activities within an organisation (e.g. regulatory audits, PCI assessments, ISO audits)
Experience of assessing of security controls across a variety of technologies and products, recommending improvements where necessary
Experience and knowledge of information security related laws and regulations such as NIS/NIS2 and GDPR
Experience conducting security assessments utilising different security frameworks and standards such as ISO 27001, NIST CSF, CIS
Additional information
Benefits
Tesco is a diverse and exciting employer, dedicated to being #aplacetogeton, providing career-defining opportunities to all of our colleagues. If you choose to join our business, we will provide you with (for all):
Up to 20% yearly salary bonus - based on both individual and business performance
Sick leave Compensation
1 extra week of annual leave above your legal entitlement of 4 weeks of annual leave of paid leave to support our well-being and family life
Pension insurance contribution
Cafeteria benefit system & Multisport card
Training and Development Plan, supported by certified training and learning platforms like Udemy, Udemy Pro and LinkedIn
Referral Bonus
Flexible work time
Join our team and be a part of building one of the biggest brands in the retail industry!
Let us know you are interested by pushing the APPLY button!
Job offer 1. Main duties and responsibilities: a) Manage market risk and liquidity risk, include identifying, measuring, monitoring, controlling and reporting market risk and liquidity risk, communicate with relevant departments of the Branch, and reporting to the head of Risk Management Department. b) Calculate and monitor ...
GRM-ICT Risk & Resilience Management (GRM-ICT RRM) is responsible for the group-wide management of cyber and information security risks and ensures an appropriate (cyber) security level at Commerzbank by clearly defining roles and responsibilities within the security organization. The department ICT Risk Management as part ...
Czech Republic
Zobrazit nabídku
Radio Free Europe/Radio Liberty - Rádio Svobodná Evropa, Inc.
... successful candidate will establish a clear security architecture roadmap, strengthen security operations and engineering capabilities, improve visibility of cyber risks, and help ensure RFE/RL remains secure, resilient, and aligned with its mission. IT Security Manager (Architecture, Engineering, OPS) Employer Radio Free ...
... suitable candidates for the position of Risk Analyst – Junior/Senior . Responsibilities: * Monitor and analyze risks affecting the global supply chain using internal and external data sources * Identify, assess, and support the mitigation of potential supply chain risks and disruptions * Prepare regular reports and present risk ...
... - 2+ years of experience in cyber security, information security, IT risk, IT operations or a related field. - Understanding information security management, risk management and relevant industry standards. - Knowledge of security technologies, IT infrastructure and key security concepts. - Technical curiosity and willingness ...
... suitable candidates for the position of Risk Analyst – Junior/Senior . Responsibilities: - Monitor and analyze risks affecting the global supply chain using internal and external data sources - Identify, assess, and support the mitigation of potential supply chain risks and disruptions - Prepare regular reports and present risk ...
Czech Republic
Zobrazit nabídku
Deutsche Telekom Services Europe Czech Republic s.r.o.
... Help develop practical, risk-based approaches for testing AI-specific risks and controls. - Assess relevant AI architectures, system behavior, evaluation methods and limitations. - Translate emerging AI technologies and risks into practical implications for controls and assurance. - Build AI capability within CTT through methodology ...
... risk or compliance. - Knowledge of security trends and their application to address cyber security issues. - Experience with ServiceNow is a must - An understanding of security, risk, and privacy standards and frameworks such as ISO2700x family, NIST CSF, DORA, NIS2, GDPR, and others. - Analytical mindset and a can-do ...
... established international investment and asset management group with a significant real estate portfolio in the Czech Republic. The business manages office properties and hospitality assets and is seeking an experienced Finance Manager to lead the finance function, partner with senior business leaders, and support strategic decision-making ...
... required data, validation of availability and quality, and alignment with privacy, security, and governance requirements. - Ensure AI projects align with Ingersoll Rand AI governance policy, including responsible AI practices, required approvals, risk controls, auditability, and ongoing compliance expectations. WHAT IS IMPORTANT ...
... Strong English communication and presentation skills. Nice to have: - Experience with cybersecurity products - Knowledge of IAM, compliance frameworks, identity risk analysis, attack path modeling and threat detection. - Experience with technical systems integration Senior Product Manager - Identity Security Employer ESET ...
... to key credit risk and regulatory reporting processes. Our team develops and maintains applications supporting AnaCredits, Loan Data Tape, Credits ICM, CRIMS and ESG. These tools process a wide range of credit‑related information—such as counterparties, risk figures, credits, loans, and collaterals—and deliver essential ...
... installation systems. Since 1980 We have been designing and manufacturing electrical and electronic equipments dedicated to emergency lighting. All respecting the authentic Made In Italy. Reliability, skill and innovation are the reasons why our Company is the ideal partner for anyone willing efficient and competitive products.
... insight projects, combining research, analytics and market data - Shape how work gets done by defining priorities, resourcing and delivery models across teams and partners - Continuously evolve our ways of working and tools to deliver faster, smarter and more actionable insights - Owning the Insight agency and data ecosystem ...
... each campaign, with the Marketing Campaign Manager holding sign-off, acting as the main point of contact for the design team. Review and validate campaign assets and localisation before launch to ensure quality and consistency across formats and markets. - Quality assurance - Run multi-market quality assurance across homepages ...
... schedule, budget, and quality objectives. - Manage, mentor, and develop a team of project managers and coordinators, fostering accountability, continuous learning, and high performance. - Serve as the project management subject matter expert, driving best practices in project planning, risk management, stakeholder engagement, ...
... policy . We want you to join us full-time as a Senior Quality Assurance Engineer in our Personify team. And if you are interested in who will be your engineering manager, check out Petr's LinkedIn profile . In this role, you will: - be first QA on the team - join a highly collaborative and agile team that enjoys working and ...
... not mandatory. What will you do? - Conduct cyber audits across Europe. - Prepare audit plans and create comprehensive audit reports. - Ensure compliance with cybersecurity standards and regulations. - Collaborate with site personnel to gather necessary documentation and evidence. - Analyse audit findings and provide actionable ...