12 часов назад
Senior Manager Information Security (Fintech)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Manager Information Security (Fintech): Leading Tabby’s information security function across cloud security, security architecture, application security, vulnerability management, threat detection, and incident response with an accent on GCP/AWS controls, DevSecOps, and defensive security. Focus on designing security programmes, investigating complex incidents, automating security tooling, and managing a team of security engineers and analysts.
Location: Serbia; workplace type: onsite
Company
is a fintech company providing flexible payment solutions that allow shoppers to split purchases online and in stores.
What you will do
- Lead security architecture and technical security reviews across cloud, infrastructure, and product initiatives.
- Design and implement security controls across GCP and AWS, including IAM, CSPM, and cloud-native security.
- Drive Secure SDLC and DevSecOps initiatives, including SAST, DAST, SCA, and container security.
- Lead vulnerability management, penetration testing, VAPT, red team, and purple team activities.
- Design threat detection and SIEM use cases, lead incident investigations, and improve security monitoring.
- Manage, mentor, and develop security engineers and analysts while collaborating with Engineering, Infrastructure, Product, IT, Legal, and Compliance.
Requirements
- 5+ years of experience in information security or cybersecurity, including at least 2 years in technical leadership or a senior individual contributor role.
- Deep expertise in cloud security, security architecture, VAPT, application security, DevSecOps, and defensive security.
- Strong knowledge of GCP, AWS, IAM, CSPM, SIEM, EDR/XDR, vulnerability management, penetration testing, threat hunting, and incident response.
- Experience with SAST, DAST, SCA, container security, threat modelling, and enterprise security controls.
- Experience in a regulated fintech or banking environment and knowledge of CBUAE, UAE PDPL, PCI-DSS, ISO 27001, and SOC 2.
- Proven people leadership, stakeholder management, and strategic decision-making skills.
Nice to have
- CISSP, CISM, OSCP, or equivalent certifications.
- Prior people management or team leadership experience.
Culture & Benefits
- Full-time employment in an onsite workplace.
- Cross-functional collaboration across security, engineering, infrastructure, product, IT, legal, and compliance.
- Opportunity to shape security programmes for a high-growth fintech platform operating across the GCC region.
Hiring process
- Application review followed by an HR call.
- Technical interview with .
- Final interview followed by the hiring decision.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →