Назад
Company hidden
3 часа назад

Security Control Engineer (Fintech)

50 000 - 75 000
Формат работы
hybrid
Тип работы
fulltime
Английский
b2
Страна
UK/Singapore/US +2 еще
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Control Engineer (Cloud Security/Fintech): Designing and implementing technical and operational security controls for cloud-based and distributed banking technology with an accent on control automation, threat modelling, and security assurance. Focus on engineering auditable controls, supporting ISO 27001, ISO 22301, PCI-DSS, and SOC 2 certifications, and translating complex security approaches for clients and auditors.

Location: Lisbon, Portugal; permanent position requiring four days a week onsite

Salary: €50K–€75K per year

Company

hirify.global builds cloud-native core banking and payments technology designed to replace legacy banking systems.

What you will do

  • Design and implement technical and operational controls that mitigate security, business continuity, and disaster recovery risks.
  • Develop tools and processes for continuous control assurance and audit evidence collection.
  • Support certification requirements including ISO 27001, ISO 22301, PCI-DSS, and SOC 2 Type 2.
  • Respond to client security queries and prepare technically accurate security materials and presentations.
  • Maintain and improve the ISMS and BCMS in response to evolving threats, standards, processes, and technology.

Requirements

  • Experience designing and implementing security controls in cloud infrastructure such as AWS or GCP.
  • Experience working with software engineering teams to develop technical solutions for product security requirements.
  • Experience automating controls through code, including Python or Go.
  • Strong technical background in distributed systems, cloud security, and related technologies.
  • Knowledge of threat modelling, security risk assessment, and evidence-based risk prioritisation.
  • Ability to communicate complex security topics to business stakeholders, clients, auditors, and other departments.

Nice to have

  • Experience in a fast-paced technology environment or fintech.
  • Knowledge of container security, Kubernetes, Kafka, and emerging technologies.
  • Experience obtaining or maintaining SOC 2, ISO 27001, or PCI-DSS certification.
  • Experience leading security risk assessments and knowledge of the FAIR framework.

Culture & Benefits

  • Voluntary pension plan with contributions matched up to 5%.
  • Private healthcare and comprehensive life insurance.
  • 25 days of holiday plus public holidays and two charity days.
  • Daily meal allowance and subsidised sports and hobby clubs.
  • Access to learning materials, courses, and the latest technology.
  • Supportive environment focused on learning and professional development.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →