Tech Stack
Tag name is followed by "@" symbol and proficiency level value.
About proficiency levels:
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
AI @ 4
Azure @ 4
Compliance @ 6
GCP @ 4
Hiring @ 7
Machine Learning
Security @ 7
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
Details
ING Hubs Poland is hiring for an Enterprise Security Architect with a strong focus on security monitoring, threat detection, and incident response. The role is responsible for designing and developing security detection and response capabilities in complex enterprise environments, shaping and improving the technical architecture of SOC capabilities, and ensuring high detection quality, effective response mechanisms, and alignment with regulatory and business requirements.
The team is a multidisciplinary, international security architecture center of expertise focused on developing and maturing security capabilities to better protect the bank and its customers. In the global ING job architecture, the role is named “Architect IV” or “Architect V”.
Responsibilities
- Translate business strategy into architecture designs.
- Provide short-term and long-term architectures.
- Align roadmaps with architecture designs.
- Actively monitor market trends and mature architecture designs based on industry best practices.
- Act as a bridge between security operations, enterprise architecture, and senior stakeholders.
- Design and develop security detection and response capabilities.
- Shape and improve the technical architecture of SOC capabilities.
- Ensure high detection quality, effective response mechanisms, and alignment with regulatory and business requirements.
Requirements
- Strong analytical mindset combined with pragmatism.
- At least 7 years of work experience in IT security, including a minimum of 3 years in a security architecture role.
- Previous experience in the financial services sector or another highly regulated environment.
- Strong understanding of the security monitoring technology landscape, including SIEM, SOAR, UEBA, NDR, and EDR/XDR, with hands-on design and implementation experience.
- Good understanding of artificial intelligence concepts and practical applications of AI/ML in a modern SOC.
- Ability to interpret regulatory and compliance requirements.
- Good understanding of risk management principles and experience conducting and supporting risk assessments.
- Ability to integrate security tooling across network, endpoint, cloud, and identity layers.
- An end-to-end security architecture perspective covering prevention, detection, response, and recovery.
- Ability to write security architecture documentation and present to both technical and non-technical stakeholders.
- Focus on detection quality and business relevance rather than tool-driven security.
- Certification in architecture and security, such as TOGAF, ArchiMate, or SABSA together with CISSP, CISA, or CISM.
- English proficiency at C1 level.
Additional Qualifications
- Experience with cloud and SaaS monitoring, particularly Azure and GCP.
Compensation
- Expected salary: PLN 22,700–35,000 gross per month.
- The financial ranges specified in the announcement are adjusted and may differ from the range specified in the remuneration regulations.