Summary
Overview
Work History
Education
Skills
Websites
Certification
Languages
Timeline
Generic

Sylwia Latkowska

Wroclaw,02

Summary

Cybersecurity and ICT risk specialist with broad experience in financial institutions. Skilled in regulatory compliance (DORA, NIS2), MI reporting, risk assessments, and governance. Strong background in working across 1LoD and 2LoD to ensure effective cyber risk management.

Overview

15
15
years of professional experience
1
1
Certification

Work History

Cybersecurity Compliance and Regulation Expert

Bank Gospodarstwa Krajowego (BGK)
08.2024 - Current
  • Develop and validate internal cybersecurity and ICT risk management standards.
  • Lead the implementation of DORA and NIS2 regulatory frameworks.
  • Coordinate development and implementation of the cybersecurity strategy, including executive reporting.
  • Supervise regulatory reporting in cybersecurity, especially under DORA.
  • Coordinate ICT risk assessments, update threat landscape, conduct AFI surveys, and perform vertical/horizontal ICT risk testing.
  • Define and monitor Key Control Indicators (KCI), particularly for vulnerability management, incident response, DLP, and cybersecurity awareness programs.
  • Collaborated with 1LoD and 2LoD, providing oversight and challenge in cyber and technology risk.
  • Worked with Audit, Risk, and Compliance teams to validate control frameworks and ensure regulatory readiness.
  • Supported integration of cybersecurity risks into Risk Appetite Statements and RCSAs.

Head of Cybersecurity Risk and MI Reporting

HSBC
04.2021 - 07.2024
  • Designed and implemented Key Control Indicators and cybersecurity metrics across the Group aligned with NIST, ISO, and DORA frameworks.
  • Delivered global MI reports covering vulnerability management, SOC performance, and cybersecurity posture.
  • Collaborated with 1LoD and 2LoD, providing oversight and challenge in cyber and technology risk.
  • Worked with Audit, Risk, and Compliance teams to validate control frameworks and ensure regulatory readiness.
  • Led a team performing thematic reviews, controls testing, and risk deep-dives.
  • Supported integration of cybersecurity risks into Risk Appetite Statements and RCSAs.

IT Infrastructure Delivery Senior Business and Finance Manager

HSBC
01.2020 - 06.2021
  • Oversaw IT transformation programs ensuring alignment with cybersecurity, business, and compliance goals.
  • Provided senior management with risk exposure and control effectiveness reporting.
  • Built delivery governance and compliance frameworks.

CTO Transformation Programme Advisor

UBS via Luxoft
03.2019 - 05.2019
  • Delivered final review of risk, performance, and budget outcomes for major transformation initiatives.
  • Provided non-financial risk insights and reporting to senior executive stakeholders.

Financial and Business Controller/Chief Accountant

AbbVie
06.2018 - 02.2019
  • Ensuring the delivery of all compliance and reporting processes in scope.

Chief Accountant

Lundbeck Business Service Center Sp.zo.o.
02.2018 - 05.2018


  • Served as a strategic business partner to senior leadership by providing valuable financial insights, recommendations for improvement and accurate financial information necessary for decision-making processes.

IT Transformation Program Senior Controller

UBS Via Luxoft
04.2017 - 01.2018

Providing a business review for a key service transformation program. Creating AOP and use cases. Providing business performance summary for the Senior Management. Implementation of Target Operating Model.

RTR Senior Accountant / Service Delivery Leader

Volvo Financial Services
07.2015 - 03.2017
  • Led financial reporting, consolidation, and internal control projects across international environments in line with IFRS and compliance standards.


Consolidation Specialist

AmRest Spzo.o.
03.2010 - 06.2015
  • Managed multiple projects simultaneously, prioritizing tasks according to deadlines while maintaining high-quality results.
  • Assisted in the preparation of financial statements under local reporting requirements for foreign subsidiaries, ensuring accurate representation of consolidated results.

Education

Postgraduate Degree - Tax Law and Taxation

WSB University
Wroclaw
01.2012

Master's Degree - Accounting and Finance

WSB University
Wroclaw
01.2012

Bachelor's Degree - International Business

WSB University
Wroclaw
01.2009

Skills

  • Cybersecurity Governance
  • ICT Risk Oversight
  • Regulatory Compliance
  • Risk and Control Self-Assessments
  • MI Reporting
  • KCI Development
  • Thematic Reviews
  • Incident Analysis
  • ICT Risk Testing
  • Cybersecurity Strategy
  • Risk Appetite
  • Stakeholder Engagement
  • Threat Landscape Assessment
  • Risk Analysis

Certification

CompTIA Security+, 06/01/24

Languages

Polish
English

Timeline

Cybersecurity Compliance and Regulation Expert

Bank Gospodarstwa Krajowego (BGK)
08.2024 - Current

Head of Cybersecurity Risk and MI Reporting

HSBC
04.2021 - 07.2024

IT Infrastructure Delivery Senior Business and Finance Manager

HSBC
01.2020 - 06.2021

CTO Transformation Programme Advisor

UBS via Luxoft
03.2019 - 05.2019

Financial and Business Controller/Chief Accountant

AbbVie
06.2018 - 02.2019

Chief Accountant

Lundbeck Business Service Center Sp.zo.o.
02.2018 - 05.2018

IT Transformation Program Senior Controller

UBS Via Luxoft
04.2017 - 01.2018

RTR Senior Accountant / Service Delivery Leader

Volvo Financial Services
07.2015 - 03.2017

Consolidation Specialist

AmRest Spzo.o.
03.2010 - 06.2015

Postgraduate Degree - Tax Law and Taxation

WSB University

Master's Degree - Accounting and Finance

WSB University

Bachelor's Degree - International Business

WSB University
Sylwia Latkowska