Назад
Company hidden
5 дней назад

Information Security Lead (AWS)

Формат работы
remote (только Bulgaria)
Тип работы
fulltime
Грейд
lead
Английский
c1
Страна
Bulgaria
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Information Security Lead (AWS): Designing and operating information security across a cloud-native, DevOps-driven payment environment with an accent on AWS security, secure software delivery, microservices, and compliance controls. Focus on leading incident response, vulnerability management, AI/LLM application security, and building a small security team.

Location: Sofia, Bulgaria; fully distributed and remote work stated in the benefits

Company

Global payment service provider and acquirer offering online, mobile, in-store, and telephone payment solutions with acquiring, payment methods, fraud management, and performance optimization.

What you will do

  • Define and execute the information security strategy, standards, roadmap, and security posture reporting.
  • Design secure-by-default architecture for AWS, microservices, APIs, shared platform services, and corporate infrastructure.
  • Establish secure SDLC practices and automated security controls across CI/CD pipelines.
  • Build monitoring, logging, threat detection, vulnerability management, penetration testing, and incident response capabilities.
  • Govern identity and access management, encryption, key management, data classification, loss prevention, and cardholder-data protection.
  • Build, lead, and mentor a small security team while partnering with Engineering, DevOps, and GRC.

Requirements

  • Bachelor’s or master’s degree in computer science, information security, or a related field, or equivalent practical experience.
  • At least 10 years of information or cybersecurity experience, including 2–3 years in a leadership role.
  • Hands-on public-cloud security experience, with AWS strongly preferred, covering identity, networking, encryption, logging, and configuration management.
  • Experience securing DevOps and CI/CD pipelines, containers, APIs, infrastructure as code, microservices, and secure SDLC practices.
  • Experience with security operations, incident response, vulnerability management, ISO 27001, PCI DSS, SOC 2, and NIST CSF.
  • Working AI security literacy, including AI-assisted security tooling, Amazon Bedrock, securing AI/LLM and agentic applications, and OWASP Top 10 risks for LLMs.

Nice to have

  • CISSP, CCSP, OSCP, AWS Security Specialty, CISM, or another professional security certification.
  • Experience in payments, fintech, banking, or another regulated environment.
  • Experience with operational resilience requirements or establishing a security function.

Culture & Benefits

  • Fully distributed and remote work environment.
  • Casual atmosphere and state-of-the-art hardware.
  • Professional development through books, training, and certification support.
  • 25 days of paid holiday, increasing by one day for every two years with the company.
  • Team-building activities and a constantly evolving payments business.

Hiring process

  • Submit a CV in English.
  • Only shortlisted candidates will be contacted.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →