IT Security & Risk Officer
Wroclaw, PL, 51-502
Transport is at the core of modern society. Imagine using your expertise to shape sustainable transport and infrastructure solutions for the future. If you seek to make a difference on a global scale, working with next-gen technologies and the sharpest collaborative teams, then we could be a perfect match.
Your Future Role
Governance Intelligence & Reporting Officer (Reporting to: Head of Cybersecurity Standards & Procedures Office)
As a Governance Intelligence & Reporting Officer, you will play an important role in strengthening cybersecurity governance through data-driven insights, performance monitoring, and management reporting. You will support the development and operation of governance intelligence capabilities across Volvo Group Digital Technology & Operations (DTO), transforming governance, risk, compliance, and cybersecurity data into actionable insights that support decision-making and continuous improvement.
Working within DTO, you will collaborate with cybersecurity, risk, compliance, audit, and business stakeholders to provide transparent governance reporting, monitor organizational maturity, assess governance performance, and support regulatory readiness activities across the cybersecurity landscape.
Governance Intelligence & Reporting
• Develop, maintain, and enhance governance metrics, KPIs, and reporting frameworks to monitor cybersecurity governance performance.
• Create and maintain governance and compliance dashboards that provide visibility into governance activities, compliance status, and key performance indicators.
• Prepare management reporting packages and governance insights for leadership teams, governance forums, and decision-making bodies.
• Support the preparation of regulatory readiness and compliance reports related to applicable cybersecurity regulations and standards.
• Ensure governance reporting is accurate, timely, and aligned with organizational objectives.
Risk & Compliance Analysis
• Support governance, risk, and compliance analyses to identify trends, gaps, emerging risks, and opportunities for improvement.
• Perform trend analysis and reporting to monitor governance performance and compliance maturity over time.
• Assist in monitoring and reporting on the effectiveness of cybersecurity governance controls and processes.
• Contribute to governance maturity assessments and improvement initiatives across the organization.
• Support internal and external audit activities through evidence gathering, reporting, and follow-up monitoring.
Decision Support & Performance Analytics
• Develop and maintain governance performance analytics to measure progress against cybersecurity governance objectives.
• Deliver analytical reporting and insights that support informed decision-making by management and governance stakeholders.
• Monitor developments in cybersecurity regulations and standards and support impact assessments on governance processes.
• Identify opportunities to improve reporting methodologies, data quality, and governance intelligence capabilities.
• Provide recommendations based on data analysis to support continuous improvement initiatives.
Stakeholder Collaboration & Governance Enablement
• Collaborate with cybersecurity, risk, compliance, audit, and business teams to ensure consistent collection, validation, and reporting of governance data.
• Support governance forums, management reviews, and reporting cycles through preparation of dashboards, presentations, and governance materials.
• Promote a data-driven governance culture through effective reporting, visualization, and performance measurement practices.
• Support stakeholders by providing governance insights, performance metrics, and reporting guidance.
• Contribute to improving governance processes, reporting standards, and operational effectiveness within the Cybersecurity Standards & Procedures Office.
Who Are You?
You are an analytical and detail-oriented professional with a passion for transforming complex governance and compliance information into meaningful insights. You are comfortable working with data, reporting frameworks, and governance processes, and enjoy turning information into actionable recommendations.
Qualifications & Experience
• 3-5 years of professional experience in Cybersecurity Governance, Risk & Compliance (GRC), Cybersecurity Operations, Risk Management, Compliance, Data Analytics, or related disciplines.
• Experience developing management reports, dashboards, KPIs, and performance measurements.
• Strong analytical skills with the ability to identify trends, risks, gaps, and opportunities from complex datasets.
• Experience collecting, validating, analyzing, and presenting data from multiple sources using reporting and visualization tools.
• Familiarity with cybersecurity and governance frameworks such as ISO 27001, NIST CSF, NIS2, DORA, or equivalent standards.
• Experience supporting governance reviews, compliance monitoring, audits, assessments, or continuous improvement initiatives.
• Ability to communicate technical, risk, and governance topics clearly to both technical and non-technical audiences.
• Strong collaboration and stakeholder management skills.
• Excellent written communication, reporting, and presentation capabilities.
Preferred Qualifications
• Experience working within large international organizations.
• Experience with reporting and visualization tools such as Power BI, Tableau, or similar platforms.
• Understanding of cybersecurity governance, risk management, and compliance processes.
• ISO 27001 Lead Implementer, ISO 27001 Lead Auditor, or other relevant cybersecurity/GRC certifications, or willingness to pursue professional certification.
What You'll Gain
• A strategic role driving data-driven cybersecurity governance across a global organization.
• Exposure to executive leadership, governance forums, and regulatory initiatives.
• Opportunities to shape governance intelligence, reporting capabilities, and performance measurement practices.
• Professional development opportunities within one of the organization's key cybersecurity and governance functions.
Dear Candidate, we would like to kindly inform you that the Volvo Group companies in Poland have in place the "Internal Reporting Procedure". If you need more information, please contact us at the email address recruitment.poland@volvo.com.
We believe great results come from working together. At Volvo Group, our teams collaborate mainly from our sites, where innovation, learning, and teamwork thrive. Flexibility is possible and discussed with the manager based on business and role needs.
We value your data privacy and therefore do not accept applications via mail.
Volvo Group Digital Technology & Operations (DTO) is a new division established to integrate the capabilities of VG Digital & IT and VG Connected Solutions to accelerate the digital transformation in Volvo Group. The organizational set up is structured around domains, digital products with functions for digital excellence to deliver outstanding customer experience.
Joining the new DTO division means being part of a fast-moving digital product-oriented organization where teams truly own what they build from idea to delivery. In DTO, we work in agile, cross-functional teams, mastering the latest technology, and creating outstanding digital experiences that make a real difference for our colleagues and Volvo Group customers around the world. We put people first and build our culture on trust, passion, customer success, change, and performance. If you want to grow, collaborate across functions and entities, and help shape the future of digital products within Volvo Group, DTO is a great place to be.