400 open roles · Tech & Engineering
IT Security Analyst
- Added to ZestAmigo
- Last seen on employer site
Where you can work
Locations named
- Poland
View location wording from the posting
Poland
Employer description
CAPCO POLAND
*We are looking for Poland based candidate.
Capco is a fully independent, global management and technology consultancy. For 25 years we have combined innovative thinking with deep industry knowledge to deliver business consulting, digital transformation and technology services to Finance and Energy markets. Our collaborative and efficient approach helps clients reduce costs and manage risk and regulatory change while increasing revenues. We are thinkers, innovators, and disruptors. We are small enough to care but large enough to matter.
As an IT Security Analyst, you will play a key role in supporting a large-scale Secrets & Credential Management initiative. You will analyze current-state environments, identify control gaps, and define robust, scalable security requirements. Working across technical and business teams, you will help ensure that sensitive credentials are governed, controlled, and aligned with regulatory and operational expectations.
Key Responsibilities:
- Conduct end-to-end analysis of secrets and credential management practices across applications, infrastructure, and platforms
- Identify, classify, and document secrets, including ownership, usage, storage, lifecycle stage, and associated risks
- Assess control gaps (e.g., unmanaged credentials, hardcoded secrets, weak auditability) and define remediation approaches
- Define functional and non-functional requirements for centralized secrets management solutions
- Facilitate workshops with stakeholders to gather requirements, validate findings, and support governance activities
Required Skills and Experience:
- At least 5 years of experience in a similar role.
- At least 2 years of experience in working with IAM projects.
- Experience in IT security analysis, security requirements engineering, or security governance within complex environments
- Strong understanding of IAM, PAM, least privilege, and secure access governance principles
- Knowledge of credential types (passwords, SSH keys, API keys, tokens, certificates, service accounts)
- Ability to translate security risks and control gaps into actionable requirements
- Strong communication and documentation skills, with the ability to collaborate across technical and non-technical teams
Nice to have:
- Experience with secrets management tools such as CyberArk, HashiCorp Vault, or cloud-native solutions
- Familiarity with security frameworks (ISO 27001, NIST, CIS Controls)
- Experience in transformation or migration projects involving credential centralization
- Exposure to regulated or highly controlled environments
- Experience supporting enterprise-scale security initiatives
We have been informed of several recruitment scams targeting the public. We strongly advise you to verify identities before engaging in recruitment related communication. All official Capco communication will be conducted via a Capco recruiter.
We offer a flexible collaboration model based on a B2B contract, with the opportunity to work on diverse projects.
#LI-REMOTE
Track this application
Keep your own notes. Only you can mark an application as sent.
Report a problem with this listing
Sign in to report this listing.
More at Capco
Hybrid
Vadodara, Gujarat, India
Posted 1 week ago
Source: Greenhouse
Chennai, Tamil Nadu, India
Posted 3 days ago
Source: Greenhouse
Mumbai, Maharashtra, India
Posted 1 week ago
Source: Greenhouse
Bengaluru, Karnataka, India
Posted 3 weeks ago
Source: Greenhouse
Similar roles elsewhere
Remote · Full-time · Senior
Remote eligibility: Zurich, Switzerland
Posted 2 weeks ago
Source: Workday
Remote · Full-time · Senior
Remote eligibility: Zurich, Switzerland
Posted 2 weeks ago
Source: Workday
Full-time
Niepołomice, Lesser Poland, Poland
Posted 1 week ago
Source: Workday
Hybrid · Full-time
Warsaw, Mazovia, Poland
Posted 3 weeks ago
Source: Workday