Senior Control Manager (Cyber)

HSBC Technology PolandKrakównofluffjobspublished 09/30/2026
Must-have:SecuritySeniorRemote

Some careers shine brighter than others. If you’re looking for a career that will help you stand out, join HSBC, and fulfil your potential. Whether you want a career that could take you to the top, or simply take you in an exciting new direction, HSBC offers opportunities, support and rewards that will take you further.

Your career opportunity

The GCIO Chief Control Office (CCO) team plays an important role in enabling the bank to operate within its risk appetite by ensuring efficient and effective risk and control management. We do this by providing operational risk and control expertise, specialist technical knowledge and a deep understanding of the businesses and functions we serve. Key activities include implementation and oversight of the Group’s Risk Management Framework, ongoing and targeted controls assessments, implementing and maintaining robust risk governance, and championing a proactive risk culture. GCIO CCO works closely with partners across all lines of defence and is responsible for maintaining positive relationships with our regulators and external partners.

What we offer

The pay range for this role is 21 259 PLN - 31 883 PLN (monthly, gross). Additional car allowance in the amount of 4786 PLN (monthly, gross). Variable pay is discretionary, but influenced by Group performance, business/function performance and individual performance. We offer a comprehensive and competitive package of benefits covering healthcare, family friendly leaves, pension and life assurance, as well as many other benefits to support your wellbeing.

Additional bonuses for recognition awards Multisport card Private medical care Life insurance One-time reimbursement of home office set-up (up to 800 PLN). Cafeteria platform Employee assistance program Additional contributions to PPK scheme Corporate parties & events CSR initiatives Nursery discounts Financial support with trainings and education Social fund Flexible working hours Free parking

Daily tasks

  • Act as a trusted advisor Cyber Security senior management and partner with them to manage Cyber controls, specifically Cryptographic Services (CRYP) control.
  • Promote accountable risk and control decision-making based on quality data and analysis, actively constructively challenging inadequate, inefficient or excessive controls, or related tasks and behaviours.
  • Provide specialist insights to improve Cyber controls, specifically CRYP controls including Cryptography & Key Management Security and Digital Identity & Certificate Management.
  • Advise and design process and controls in a commercially viable, practical and effective manner.
  • Identify trends to anticipate future developments in the risk and control environment.
  • Influence and help shape the development and implementation of future-fit risk management and regulatory frameworks.
  • Provide Senior Management with updates on any relevant changes to policy or projects related to operational risk that have an impact on their area of responsibility.
  • Build strong relationships across Cyber Security, Technology and Risk and Control functions to deliver pragmatic, well-governed outcomes.

Requirements

What you need to have to succeed in this role At least 5 years of practical experience with one or more or the Cyber control capabilities (specifically Cryptography & Key Management Security and Digital Identity & Certificate Management), either directly or as a 1/2/3 Line of Defence control management function. At least 5 years of experience and subject matter expertise in management of operational risk, non-financial risk and/or technology and information security risk. Experience across IT, Operations, Risk Management, and / or Audit roles requiring management of diverse risk types is desirable. Proven track record of process improvement and delivering as promised. Financial Services or other highly regulated industry experience/exposure is preferred. Strong communication skills to influence and constructively challenge stakeholders. Ability to work independently and collaboratively, seeking input and escalating appropriately when needed. Ability to present complex issues concisely to senior partners using non-technical language

Must have: Cryptography, Security, Communication skills

Nice to have: Audit