Lead Analyst - Cybersecurity (SITRM)

Reposted Yesterday
Be an Early Applicant
Hiring Remotely in Poland
Remote
Senior level
Food • Logistics
The Role
Lead execution and support of the global Supplier IT Risk Management program: perform third-party cybersecurity assessments, advise on contract security terms, drive program enhancements and training, report metrics, and collaborate with vendor management, technology, and business stakeholders to reduce supplier cyber risk.
Summary Generated by Built In
JOB DESCRIPTION

Lead Analyst - Cybersecurity (SITRM)  

Location: Krakow, Poland (Hybrid)  

Type: Full-time employment  

Shift: 9 am to 5.00 PM local Poland time 

 

Job Summary 

This role is responsible for executing and supporting Sysco’s global Cybersecurity Supplier IT Risk Management (SITRM) Program 

Responsibilities 

  • Execute security risk assessment and analysis of suppliers across all stages of the supplier lifecycle and act as the primary point of contact for international supplier assessments and partner with global vendor management teams, technology, and business functions to educate and communicate cyber risk. 

  • Collaborate with stakeholders to review Cybersecurity terms in supplier agreements 

  • Support implementation and operation of program enhancement efforts including assessment process and technical requirements. Train team members and stakeholders on updated program and processes changes. 

  • Prepare and communicate monthly program metrics and reporting to appropriate stakeholders.   

  • Provide input on third party security controls, exceptions, and remediation plans to continuously improve assessment process to reduce cyber risk.  

  • Support implementation and operation of program enhancement efforts including assessment process and technical requirements. Train team members and stakeholders on updated program and processes changes. 

 

Qualifications 

  • Bachelors Degree in Information Technology, Information Systems, Computer Science or a related technical field of study. Related experience may be considered in lieu of required education. 

  • 6 or more years of experience in IT audit, supplier IT risk, vendor, or third-party security risk management. 

  • Solid experience in process improvement and re-engineering, business requirements capturing, and process flowcharts. 

  • Solid experience in application, network, and cloud security domains and assessments. 

  • Working experience third party security risk assessment methodologies and industry frameworks. 

  • Working experience with third party security assessment and management tools (Archer preferred) 

  • Knowledge of Shared Assessment Third-Party Risk Management practices and questionnaires.  

  • Strong critical thinking and planning skills. 

  • Experience in large enterprise environments. 

  • Excellent oral and written communication and ability to engage with stakeholders across the enterprise. 

Licenses/Certifications Required: 

Certified Information on Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Shared Assessments Certified Third Party Risk Professional (CTPRP) or Certified Third Party Risk Assessor (CTPRA), Information Systems Security Architecture Professional (ISSAP), or Information Systems Security Engineering Professional (ISSEP) 

Technical Skills and Abilities 

 

  • Strong verbal and written communication, negotiation, analytical, time management, organizational, and relationship management skills. 

  • Comfortable dealing with ambiguity, making decisions with sub-optimal/incomplete information. 

  • Ability to analyze and challenge current working methods to create improvements in processes and result. 

  • Experience working with cross functional teams. 

  • Ability to work independently within a geographically dispersed team. 

  • Understand and comply with all applicable company policies. 

 

Why Join Us 

  • Be part of a global cybersecurity team protecting a dynamic enterprise environment.  

  • Opportunity to work with modern security technologies and drive tool innovation.  

  • Collaborative culture with professional development opportunities.  

  • Hybrid work model with our Kraków office as the primary location.   

Skills Required

  • Bachelor's degree in IT, Information Systems, Computer Science or related (or equivalent experience)
  • 6+ years experience in IT audit, supplier IT risk, vendor, or third-party security risk management
  • Experience with process improvement, re-engineering, business requirements capture, and process flowcharts
  • Experience in application, network, and cloud security domains and assessments
  • Working experience with third-party security risk assessment methodologies and industry frameworks
  • Experience with third-party security assessment and management tools (Archer preferred)
  • Knowledge of Shared Assessment Third-Party Risk Management practices and questionnaires
  • Strong critical thinking, planning, communication, negotiation, and relationship management skills
  • Experience working in large enterprise environments and with cross-functional teams
  • Certifications: CISSP, CISM, CISA, CTPRP or CTPRA, ISSAP, or ISSEP

Sysco Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Sysco and has not been reviewed or approved by Sysco.

  • Healthcare Strength Multiple national medical plan options with telehealth, behavioral health resources, and targeted programs indicate broad coverage and support. Preventive care access and ancillary offerings (dental, vision, Rx advocacy) further reinforce the package.
  • Retirement Support A 401(k) with automatic company contributions plus a match, alongside an employee stock purchase plan, underscores solid retirement support. At union locations, enhanced pension terms add to perceived long‑term value.
  • Pay Growth & Progression Recent collective bargaining outcomes with substantial wage increases demonstrate meaningful pay progression where contracts apply. In high‑volume markets, incentive structures can amplify earnings beyond base rates.

Sysco Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Houston, TX
24,120 Employees

What We Do

Sysco is the global leader in selling, marketing and distributing food and related products to customers who prepare meals away from home. This includes restaurants, healthcare and educational facilities, lodging establishments, entertainment venues, and more. Sysco operates almost 340 distribution centers, in over 10 countries, with 76,000 colleagues serving approximately 730,000 customer locations. The company generated sales of more than $81 billion in fiscal year 2025 that ended June 28, 2025. As the world’s largest food-away-from-home distributor, Sysco offers customized supply chain solutions, bespoke specialty product offerings, and culinary support to drive customers to innovate and optimize their operations. We act as a trusted business partner to our customers, helping them grow through our industry-leading portfolio that includes fresh produce, premium proteins, specialty products, sustainably focused items, equipment and supplies, and innovative culinary solutions. For more information, visit www.sysco.com. For important news and key information for Sysco investors, visit the Investor Relations section of the company’s website at investors.sysco.com.

Similar Jobs

Capco Logo Capco

Data Analyst

Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Remote or Hybrid
Poland
6000 Employees

Affirm Logo Affirm

Senior Software Engineer

Big Data • Fintech • Mobile • Payments • Financial Services
Easy Apply
Remote
Poland
2200 Employees
308K-428K Annually

Tulip Logo Tulip

Marketing Manager

Enterprise Web • Hardware • Internet of Things • Software
Easy Apply
Remote or Hybrid
27 Locations
310 Employees

Tulip Logo Tulip

DACH Regional Sales Lead – Enterprise Manufacturing

Enterprise Web • Hardware • Internet of Things • Software
Easy Apply
Remote or Hybrid
27 Locations
310 Employees

Similar Companies Hiring

HERE Technologies Thumbnail
Artificial Intelligence • Automotive • Computer Vision • Information Technology • Internet of Things • Logistics • Software
Amsterdam, NL
6000 Employees
Axle Health Thumbnail
Artificial Intelligence • Healthtech • Information Technology • Logistics
Santa Monica, CA
25 Employees
Amalgamated Sugar Thumbnail
Food • Greentech • Agriculture • Industrial • Manufacturing
Boise, Idaho
768 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account