XTB is a global company from the financial industry, focusing on online trading of financial instruments. We are the largest FinTech in Poland and a leader in Central and Eastern Europe, and the range of our operations covers several countries, including Asia and South America. At XTB, we focus on the development of our employees, giving them opportunities to gain knowledge and skills in various fields, as well as offering a number of training and development programs. If you are looking for challenges and want to gain valuable experience in an international business environment, XTB is the right place for you. We are a certified Great Place to Work company. Responsibilities Monitoring compliance with the DORA Regulation (Digital Operational Resilience Act) Conducting independent ICT assessments and controls within the Second Line of Defence (2LoD), with a focus on information security, cybersecurity, and IT infrastructure/systems management Preparing post‑audit reports Identifying ICT risks and assessing their criticality from the perspective of operational resilience and regulatory requirements Developing recommendations and action points that reduce technological and process risks and support compliance with internal policies and external regulations/supervisory guidelines Monitoring the implementation of recommendations and remediation actions Requirements Experience in one of the following areas: IT audit, information security, or cybersecurity Practical knowledge of the DORA Regulation and readiness to apply it in day‑to‑day work Experience in ICT compliance Understanding of information security principles, including knowledge of ISO/IEC 27001 and ISO/IEC 27002 Knowledge of regulatory and supervisory requirements and standards related to risk management, including ISO 31000 Ability to analyse complex issues and formulate clear, precise conclusions and recommendations What we offer Stable employment in a regulated, fast‑growing financial/fintech environment Opportunity to work directly with DORA, ICT risk, and operational resilience frameworks Professional development through training, certifications, and exposure to complex ICT risk topics Real impact on the organisation’s security posture and regulatory compliance Collaborative environment with experts in cybersecurity, ICT risk, and compliance Hybrid work model (2x office + remote) Attractive compensation package, including benefits aligned with company policy Modern office location with convenient access (e.g., near metro/transport hubs, if relevant)
Senior Internal Control Specialist
Customs Support Group
Project Controlling & Reporting Specialist with German
Rollsroyce
Internal Controls & Compliance Senior Specialist (m/f/x)*
Healthcare
Business Controlling Specialist
Allegro
O2C Specialist - Credit Control UK&IE
Customs Support Group
SAP Specialist (Financial & Controlling)
Look4IT Sp. z o. o. (KRAZ: 7880)