Senior Security Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Security Engineer (Cybersecurity): Lead security governance, compliance, and assurance in fully cloud-native AWS environment for EMI-licensed fintech using AI heavily. Focus on running security reviews and approvals for new initiatives, designing vulnerability and incident response frameworks, and driving PCI DSS, DORA, CSSF audits.
Location: Remote, Almaty, Barcelona, Limassol, Serbia. Hybrid model in Limassol office or fully remote outside office locations. Relocation to Cyprus supported (visa, package).
Company
EMI-licensed fintech building multi-IBAN accounts, high-yield savings, business cashback, team cards, and AI-native tools for businesses and individuals across Europe.
What you will do
- Review new products, features, architectural changes, vendors, and AI systems early in design and provide clear verdicts on safety.
- Own access recertification end-to-end including automation, joiner/mover/leaver controls across AWS, Kubernetes, SaaS, and internal tools.
- Run vulnerability remediation process with severity model, SLAs, dashboards, and leadership reporting from various scanners.
- Design incident response and containment framework, logging standards for security team and auditors.
- Plan and manage external pentests, TLPT, ASV scans, bug bounty across apps, AWS, Kubernetes, and AI systems.
- Lead security workstreams for PCI DSS, DORA, CSSF audits including scoping, evidence, and remediation tracking.
Requirements
- 5+ years in security engineering or GRC in regulated environment.
- Track record running security reviews, explaining to engineers/execs/auditors, and driving programs like vulnerability management or pentesting.
- Hands-on support for at least two of PCI DSS, DORA, CSSF, ISO 27001, SOC 2 with external auditors.
- Working knowledge of AWS and Kubernetes to validate findings.
- Comfortable scripting and automating GRC work.
- Strong written and spoken English.
Nice to have
- Experience building security automation or internal tooling for vulnerability management, access reviews, or incident response.
- Experience in fintech, payments, or EMI-licensed company.
Culture & Benefits
- Hybrid model in Limassol or fully remote outside office locations.
- Competitive senior-level compensation depending on location.
- Learning & development budget.
- Fully paid vacation and sick leave.
- Sports compensation.
- Real growth prospects and immediate impact.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →