Information Security Engineer (Fintech)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Information Security Engineer (Fintech): Reducing risk of compromise for corporate accounts, devices, and SaaS systems in a payments orchestration platform with an accent on compliance with security standards, access management, and vulnerability controls. Focus on maintaining ISMS frameworks, operating security tools, supporting audits, and driving incident response.
Location: Remote or onsite in Kyiv/Lviv (Ukraine), Warsaw (Poland), Nicosia (Cyprus)
Company
Payments orchestration platform processing millions of transactions daily for internet businesses worldwide.
What you will do
- Support and maintain ISMS, PIMS, and BCMS frameworks.
- Participate in external certifications and audits (PCI DSS, ISO 27001, ISO 27701, ISO 22301, GDPR, DORA).
- Manage access control processes including IAM/SSO/MFA, Joiner-Mover-Leaver, and privilege reviews.
- Operate and tune security tools like vulnerability scanners, IAM systems, anti-phishing platforms.
- Analyze alerts, drive remediation, and maintain risk registers.
- Support incident response, post-incident analysis, and DRP/BCP tests.
Requirements
- 3+ years in Information Security.
- Knowledge of at least one security standard: ISO/IEC 27001, SOC 2, or PCI DSS.
- Hands-on experience building and operating ISMS frameworks, including policies, risk management, incident response.
- Strong experience with IAM: least privilege, RBAC/ABAC, MFA/SSO, Joiner-Mover-Leaver processes, access reviews.
- Experience configuring security tools: IAM, vulnerability scanners, XDR/endpoint protection, anti-phishing platforms.
- Ability to communicate with engineers, IT teams, external auditors.
Nice to have
- Experience in external security audits.
- Hands-on with ISO 22301, ISO 27701, GDPR, DORA.
- Automating security or compliance processes.
- Background in security operations/engineering in regulated environments.
Culture & Benefits
- Autonomy to improve security processes and tooling.
- Collaborative environment with security pros, engineers, stakeholders.
- 30+ days off, unlimited sick leave, health coverage, Apple gear.
- Free office meals, courses, conferences, sports, wellness benefits.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →