5 дней назад
Information Security Lead (AWS)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Information Security Lead (AWS): Designing and operating information security across a cloud-native, DevOps-driven payment environment with an accent on AWS security, secure software delivery, microservices, and compliance controls. Focus on leading incident response, vulnerability management, AI/LLM application security, and building a small security team.
Location: Sofia, Bulgaria; fully distributed and remote work stated in the benefits
Company
Global payment service provider and acquirer offering online, mobile, in-store, and telephone payment solutions with acquiring, payment methods, fraud management, and performance optimization.
What you will do
- Define and execute the information security strategy, standards, roadmap, and security posture reporting.
- Design secure-by-default architecture for AWS, microservices, APIs, shared platform services, and corporate infrastructure.
- Establish secure SDLC practices and automated security controls across CI/CD pipelines.
- Build monitoring, logging, threat detection, vulnerability management, penetration testing, and incident response capabilities.
- Govern identity and access management, encryption, key management, data classification, loss prevention, and cardholder-data protection.
- Build, lead, and mentor a small security team while partnering with Engineering, DevOps, and GRC.
Requirements
- Bachelor’s or master’s degree in computer science, information security, or a related field, or equivalent practical experience.
- At least 10 years of information or cybersecurity experience, including 2–3 years in a leadership role.
- Hands-on public-cloud security experience, with AWS strongly preferred, covering identity, networking, encryption, logging, and configuration management.
- Experience securing DevOps and CI/CD pipelines, containers, APIs, infrastructure as code, microservices, and secure SDLC practices.
- Experience with security operations, incident response, vulnerability management, ISO 27001, PCI DSS, SOC 2, and NIST CSF.
- Working AI security literacy, including AI-assisted security tooling, Amazon Bedrock, securing AI/LLM and agentic applications, and OWASP Top 10 risks for LLMs.
Nice to have
- CISSP, CCSP, OSCP, AWS Security Specialty, CISM, or another professional security certification.
- Experience in payments, fintech, banking, or another regulated environment.
- Experience with operational resilience requirements or establishing a security function.
Culture & Benefits
- Fully distributed and remote work environment.
- Casual atmosphere and state-of-the-art hardware.
- Professional development through books, training, and certification support.
- 25 days of paid holiday, increasing by one day for every two years with the company.
- Team-building activities and a constantly evolving payments business.
Hiring process
- Submit a CV in English.
- Only shortlisted candidates will be contacted.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
20 часов назад
DevSecOps Engineer (AI Security)
5 дней назад
DevSecOps Engineer / Security Solutions Lead (AI Security)
20 часов назад
DevSecOps Engineer (AWS, Kubernetes, AI)
4 дня назад
Senior/Lead Cyber Security - Incident Response Engineer
136 500 - 214 500$
4 дня назад
Cloud Security Engineer (AWS)
4 дня назад