Praca Information Security Cyber Culture Manager (m/f/d) Warszawa, mazowieckie

Praca Information Security Cyber Culture Manager (m/f/d) Warszawa, mazowieckie

JTI Polska profil

Jesteśmy wiodącą, międzynarodową firmą tytoniową, wywodzącą się z Grupy Japan Tobacco. Działamy w 130 krajach na świecie, zatrudniamy ponad 45 tys. osób i mamy w swoim portfolio jedne z najbardziej znanych marek, w tym Camel, LD, Winston oraz Logic dostępne na polskim rynku.

W Polsce zatrudniamy prawie 3 tys. pracowników i jesteśmy trzecim graczem w branży tytoniowej. Wkraczając na polski rynek w 2007 roku, postanowiliśmy, że na pierwszym miejscu zawsze będziemy stawiać naszych pracowników. Tworzymy kulturę opartą na współpracy, dzięki czemu w naszych zespołach panuje wyjątkowa atmosfera. Szerokie zakresy odpowiedzialności dają możliwość zdobycia nowej wiedzy i umiejętności, co przekłada się na świetną jakość działania oraz szybki rozwój naszej firmy. Stosujemy także najlepsze praktyki w zakresie rozwoju talentów, wdrażania nowo zatrudnionych osób czy możliwości szkoleniowych.

Nasze starania, by być najlepszym pracodawcą dla naszych pracowników, co roku zostają doceniane przez Top Employers Institute. Najlepszym dowodem na to jest przyznawany nam nieustannie od 2010 roku certyfikat Najlepszego Pracodawcy nie tylko w Polsce, a także w Europie (1. miejsce w rankingu w 2021 roku) oraz na świecie.

Firma: JTI Polska | Information Security Cyber Culture Manager (m/f/d)

Miejsce: Warszawa, mazowieckie

Nr ref. 106807

Opis stanowiska

About the position:

The CyberSecurity Culture & Capability Manager is responsible for developing and embedding a strong cybersecurity culture across the JTI by driving behavioral change, strengthening workforce capability, improving adoption of secure practices, and governing information security communications. The role partners with Change Management, People & Culture (P&C), Learning & Development (L&D), Internal Communications, and Cyber Security teams.

Responsibilities:

Cybersecurity Culture & Behaviour Change

  • Develop and execute the enterprise cybersecurity culture and capability roadmap aligned to security strategy.
  • Establish initiatives that drive measurable changes in cybersecurity awareness, behaviors, and accountability.
  • Partner with Change Management team to embed security adoption and behavioral reinforcement into business transformation initiatives.

Capability Development & Learning

  • Partner with Change Management, P&C and L&D to integrate cybersecurity learning into onboarding, leadership, and development journeys.
  • Develop role-based security capability pathways.
  • Oversee modern, measurable cyber security learning programs.

Security Communications & Engagement

  • Own and govern information security communications to ensure messaging is curated, consistent, clear,and business aligned.
  • Develop communication campaigns and editorial governance in partnership with Change Management Team.
  • Faciliate awareness initiatives, campaigns, and engagement activities.

Human Risk & Behavioral Reinforcement

  • Coordinate phishing simulation and social engineering exercises.
  • Use simulation outcomes to improve learning, communications, and engagement.
  • Partner with cyber teams to align campaigns to emerging threats.
  • Measure behavior change and security culture maturity.

Stakeholder Collaboration, Influence & Continuous Improvements

  • Build strong partnerships with Change Management, P&C, L&D, Internal Communications, and business leaders.
  • Act as a trusted advisor to security leadership on culture and adoption.
  • Define KPIs and reporting for culture, capability, communications, and human risk reduction.
  • Continuously improve programs using outcomes and insights.

Wymagania

Requirements:

  • Bachelor's degree in Cyber Security, Information Technology, Business, Communications, Organizational Development, Learning & Development, Human Resources, Psychology, or a related discipline.
  • Postgraduate qualification in Cyber Security, Organizational Change, Communications, Learning, or Business is desirable.
  • Relevant certifications are advantageous (e.g., Security awareness,Organizational Change, Learning Design, Information Security).
  • 7+ years of experience across cybersecurity, awareness, organizational change, learning, communications, or capability development.
  • Experience designing and delivering enterprise-wide security culture or awareness programs.
  • Experience deliviering phishing simulation and human risk reduction initiatives.
  • Experience partnering with Change Management, P&C, and L&D functions.
  • Experience developing executive communications and engagement strategies.
  • Experience measuring culture and behavior outcomes using data and metrics.
  • Fluent English written & spoken
  • Security Culture & Behaviour Change
  • Human Risk Management and Phishing Simulation
  • Strategic Communications and Content Governance
  • Stakeholder Engagement and Influence
  • Learning Strategy and Adult Learning Principles
  • Organizational Change Management
  • Security Awareness Program Design
  • Capability Framework Development
  • Data Analysis and KPI Reporting
  • Program and Portfolio Management
  • Executive Communication and Presentation

Informacje dodatkowe

Next Steps:

After applying, if selected, please anticipate the following within 1-3 weeks of the job posting closure: Phone screening with Talent Advisor > Assessment tests > Interviews > Offer. Each step is eliminatory and may vary by role type.

Komentarze (0)