Director, Information Security (Fintech)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Director, Information Security (Fintech): Ensuring the protection, integrity, and confidentiality of 's information assets by managing and growing the GRC function in a regulated fintech environment. Focus on leading a small team, owning the GRC operating rhythm, and ensuring continuous audit readiness while scaling responsibly.
Location: Vienna, Austria. Hybrid working model with remote work options and 25 days per year to work from a city or country of your choice.
Company
simplifies wealth creation, empowering both first-time investors and seasoned experts to invest in cryptocurrencies, stocks, precious metals, and commodities 24/7.
What you will do
- Define and maintain the multi-year information security strategy and roadmap aligned with business objectives and regulatory requirements.
- Lead, scale, and oversee security capabilities across domains, ensuring security is embedded into product and engineering delivery.
- Oversee external and internal assurance programs and lead/coordinate security-facing regulatory engagement.
- Set third-party security strategy for critical suppliers, ensuring oversight of outsourcing consistent with regulatory expectations.
- Act as an advisor at all levels, communicating security risk in business terms and driving alignment on tradeoffs.
Requirements
- Typically 10–15+ years in information security, including leadership of multiple security domains and senior stakeholder management.
- Demonstrated success building and scaling security programs in regulated environments (fintech/financial services preferred).
- Experience in implementing ICT related regulatory frameworks (e.g. DORA, BaFin)
- Strong grasp of security governance and risk management, plus practical understanding of modern cloud/security architecture and engineering practices.
- Proven experience with incident leadership and crisis management.
- Extensive experience with assurance and frameworks (e.g., ISO 27001, SOC 2, NIST), including translating requirements into operating programs.
Culture & Benefits
- Enjoy the freedom of our Hybrid working model, combining onsite collaboration and remote work, with an additional 25 days per year to work from a city or country of your choice.
- Receive a competitive total compensation package aligned with ’s pay-for-impact policy, including participation in our stock option plan.
- Access confidential coaching, counselling, and mental health resources whenever you need them through OpenUP.
- Take extra time off to rest, reset, and recharge, with 3 additional days off in 2026 to prioritise your wellbeing.
- Grow your skills and stay ahead in your career with unlimited access to Udemy’s library of online courses at your own pace.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →