Назад
Company hidden
2 часа назад

Senior Security Engineer (Cybersecurity)

Формат работы
remote (только Europe)/hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Serbia/Spain/Cyprus +1 еще
Релокация
Cyprus
Вакансия из списка Hirify.GlobalВакансия из Hirify RU Global, списка компаний с восточно-европейскими корнями
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Senior Security Engineer (Cybersecurity): Lead security governance, compliance, and assurance in fully cloud-native AWS environment for EMI-licensed fintech using AI heavily. Focus on running security reviews and approvals for new initiatives, designing vulnerability and incident response frameworks, and driving PCI DSS, DORA, CSSF audits.

Location: Remote, Almaty, Barcelona, Limassol, Serbia. Hybrid model in Limassol office or fully remote outside office locations. Relocation to Cyprus supported (visa, package).

Company

EMI-licensed fintech building multi-IBAN accounts, high-yield savings, business cashback, team cards, and AI-native tools for businesses and individuals across Europe.

What you will do

  • Review new products, features, architectural changes, vendors, and AI systems early in design and provide clear verdicts on safety.
  • Own access recertification end-to-end including automation, joiner/mover/leaver controls across AWS, Kubernetes, SaaS, and internal tools.
  • Run vulnerability remediation process with severity model, SLAs, dashboards, and leadership reporting from various scanners.
  • Design incident response and containment framework, logging standards for security team and auditors.
  • Plan and manage external pentests, TLPT, ASV scans, bug bounty across apps, AWS, Kubernetes, and AI systems.
  • Lead security workstreams for PCI DSS, DORA, CSSF audits including scoping, evidence, and remediation tracking.

Requirements

  • 5+ years in security engineering or GRC in regulated environment.
  • Track record running security reviews, explaining to engineers/execs/auditors, and driving programs like vulnerability management or pentesting.
  • Hands-on support for at least two of PCI DSS, DORA, CSSF, ISO 27001, SOC 2 with external auditors.
  • Working knowledge of AWS and Kubernetes to validate findings.
  • Comfortable scripting and automating GRC work.
  • Strong written and spoken English.

Nice to have

  • Experience building security automation or internal tooling for vulnerability management, access reviews, or incident response.
  • Experience in fintech, payments, or EMI-licensed company.

Culture & Benefits

  • Hybrid model in Limassol or fully remote outside office locations.
  • Competitive senior-level compensation depending on location.
  • Learning & development budget.
  • Fully paid vacation and sick leave.
  • Sports compensation.
  • Real growth prospects and immediate impact.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →