Назад
Company hidden
4 дня назад

Head of Information Security (Cybersecurity)

Формат работы
remote (только Slovenia)/hybrid
Тип работы
fulltime
Грейд
head
Английский
b2
Страна
Slovenia
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Head of Information Security (Cybersecurity): Building and leading security programs across application security, compliance, cloud infrastructure, and business applications with an accent on AI-assisted code reviews, ISO 27001 and SOC 2 audits, Kubernetes security, and identity controls. Focus on integrating vulnerability checks into CI/CD, securing sovereign cloud environments, managing vendor risk, and balancing technical security priorities with executive requirements.

Location: Slovenia. Remote work is available in locations without company offices; hybrid work is available in locations with offices, with 2 days in-office and 3 days remote.

Company

hirify.global develops an all-in-one digital education and research platform using machine intelligence and data science.

What you will do

  • Lead and expand the security function across application security, compliance, infrastructure and cloud security, and business application security.
  • Build the AppSec program, including AI-assisted code and pull-request reviews, CI/CD security checks, developer training, and secure coding practices.
  • Own ISO 27001 and SOC 2 certifications, audits, policies, controls, evidence, and future certification planning.
  • Secure Kubernetes infrastructure, cloud and sovereign cloud environments, infrastructure-as-code, network architecture, and access controls.
  • Protect Microsoft 365, CRM, ERP, and other business applications, including identity, access, data protection, and vendor risk controls.
  • Represent security to leadership while working hands-on with engineering, IT, DevOps, and compliance teams.

Requirements

  • 8+ years of information security experience, including 3+ years in a leadership role.
  • Experience leading application security programs with CI/CD-integrated tooling and modern AI-assisted code review.
  • Hands-on experience successfully leading ISO 27001 and/or SOC 2 audits.
  • Experience securing Microsoft 365, CRM, ERP, and other business applications, including vendor risk management.
  • Working knowledge of Kubernetes and cloud security, with the ability to communicate risks and trade-offs to engineers and executives.
  • Resume must be submitted in English.

Nice to have

  • Sovereign cloud security experience.
  • Experience in all-remote or hybrid international organizations.

Culture & Benefits

  • Choice of work equipment, including laptops and monitors.
  • English classes through iTalki, with a $130 monthly allowance.
  • Flexible schedule, usually covering 09:00/10:00 to 18:00/19:00.
  • Paid leave and a €500 newborn bonus per child.
  • Patent remuneration.
  • Remote and hybrid work options depending on the location and availability of company offices.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →