Cybersecurity Risk Analyst

aristocrat· Aristocrat Poland LLC
Apply Now ↗
📍 Krakow, PolandFull time

About this role

At Aristocrat, we are driven by our mission to bring happiness to life through the power of play. We are a world-class team united by our passion for gaming and innovation, continually striving for excellence. As a Cyber Specialist, you'll be at the forefront of our cybersecurity efforts, ensuring our system, products, and processes are secure. This role is pivotal in maintaining our flawless security standards, and you'll have the chance to create a significant impact on our organization. Join us in our ambitious journey and be part of a team that values collaboration, inclusion, and continuous improvement! 

This is a hybrid position based in Krakow, in the Unity Tower office. Team members are required to be in the office three days per week, with flexibility to select their in-office days based on personal preference and business needs.

What You'll Do 

  • Perform technical security assessments of web apps, mobile apps, APIs, applications, systems, cloud services, technology platforms, business processes, and third-party solutions. 

  • Evaluate application security controls, including authentication, authorization, session management, encryption, secrets management, logging, and secure configuration practices to detect potential risks, control gaps, and areas for improvement. 

  • Develop practical, risk-based recommendations that balance security, operational requirements, and business objectives. 

  • Document findings, conclusions, and risk decisions in a clear and professional manner. 

  • Review evidence supporting security controls and evaluate control efficiency. 

  • Produce executive-ready assessment summaries, threat analysis, and remediation recommendations. 

  • Present findings to both technical and non-technical audiences. 

  • Support reporting on assessment activity, emerging risks, remediation efforts, and security trends. 

  • Review vendor security questionnaires, SOC reports, certifications, penetration testing reports, and supporting security documentation. 

  • Evaluate the security measures of potential and current vendors, SaaS providers, cloud service providers, and technology partners. 

  • Partner with Procurement, Legal, business teams, and vendors to resolve security concerns and detail residual risk. 

  • Assist with internal audits, external audits, client assurance requests, and regulatory examinations. 

  • Have a current, working awareness of ISO 27001, NIST CSF, NIST 800-53 and CIS Controls, PCI DSS, NIS2, OWASP, GLI and applicable regulatory requirements. 

  • Contribute to the ongoing improvement of security assessment processes, templates, standards, and reporting practices. 

What We're Looking For 

  • Bachelor's degree in Cybersecurity, Information Security, Information Systems, Risk Management, Audit, Computer Science, or a related field, or equivalent experience. 

  • Minimum of 5+ years of experience in cybersecurity, IT risk, IT audit, compliance, third-party risk management, security assessments, or related field. 

  • Proven experience conducting independent security assessments and detailing risk-based findings. 

  • Experience reviewing architecture and infrastructure security controls, vendor documentation, SOC reports, audit artifacts, remediation plans, and compliance evidence. 

  • Experience collaborating within enterprise technology settings, cloud platforms, and third-party service vendors. 

  • At least one of the following certifications: CISSP, CISA, CRISC, GIAC certifications (others are strongly preferred). 

  • Experience performing vendor risk assessments or third-party security reviews. 

  • Experience supporting audits, examinations, or client assurance activities. 

  • Familiarity with cloud security, application security, identity and access management, or data protection controls. 

  • Experience using GRC, workflow, ticketing, or evidence management platforms. 

This job description may have been reviewed and enhanced using AI-assisted tools to improve clarity, consistency, and inclusivity. All final content, role requirements and hiring decisions remain subject to human review and approval by Aristocrat.

Compensation Philosophy

We offer a comprehensive pay and benefits package designed to stay competitive in the market, support your wellbeing, and recognise your contribution to our success. Our approach is underpinned by a pay-for-performance belief in rewarding individual impact. Your specific compensation package will be determined by factors such as your skills, experience, qualifications, and location.

Depending on your role and location, you may be eligible for annual bonuses and incentives, health and wellbeing benefits, paid time off, retirement plans, insurance coverage, and other local or statutory benefits.

Specific details about compensation and benefits for this position will be discussed during the recruitment process.

Frequently Asked Questions

Is the salary disclosed for the Cybersecurity Risk Analyst position at aristocrat?
The salary for this Cybersecurity Risk Analyst role at aristocrat is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the Cybersecurity Risk Analyst position at aristocrat located?
This Cybersecurity Risk Analyst role at aristocrat is based in Krakow, Poland. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the Cybersecurity Risk Analyst role at aristocrat full-time or part-time?
This is listed as a Full time position. It is posted as a Cybersecurity Risk Analyst role in the Aristocrat Poland LLC department at aristocrat.
Which team or department does the Cybersecurity Risk Analyst at aristocrat belong to?
This Cybersecurity Risk Analyst position is part of the Aristocrat Poland LLC department at aristocrat. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Cybersecurity Risk Analyst position at aristocrat?
Click the "Apply Now" button on this page. You will be redirected to aristocrat's official application portal hosted on workday where you can submit your application directly.
When was the Cybersecurity Risk Analyst job at aristocrat posted?
This Cybersecurity Risk Analyst position at aristocrat was posted on Sep 17, 2026. Apply as soon as possible — early applications are often reviewed first.
Cybersecurity Risk Analyst
aristocrat
Apply for this role ↗

You'll be redirected to aristocrat's official application page on Workday.