Назад
Company hidden
1 день назад

Information Security Officer (FinTech)

Формат работы
remote (только Europe)/hybrid
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
Europe
Вакансия из списка Hirify.GlobalВакансия из Hirify RU Global, списка компаний с восточно-европейскими корнями
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Information Security Officer (FinTech): Coordinating company-wide information security governance, risk management, compliance frameworks, and audit activities with an accent on ISO 27001, SOC 2, DORA, and GRC tooling. Focus on assessing controls and third-party vendors, automating risk assessment, collecting audit evidence, and coordinating remediation across business and technical teams.

Location: Remote within the European Region; hybrid workplace with optional offices and relocation support

Company

Engineering organization developing blockchain infrastructure, distributed systems, security, infrastructure, and R&D capabilities across more than 20 blockchain networks.

What you will do

  • Act as the Information Security Officer for a FinTech organization.
  • Support the implementation and maintenance of ISO 27001, SOC 2, and DORA requirements.
  • Coordinate security governance, risk assessments, controls, policies, procedures, and audit evidence collection.
  • Coordinate internal stakeholders, auditors, and technical teams during audits, assessments, remediation, and certification projects.
  • Track security risks, gaps, action items, and remediation progress across business, product, IT, engineering, and infrastructure.
  • Use GRC tools to collect evidence, automate risk assessments, evaluate controls, and assess third-party vendors.

Requirements

  • 3+ years of experience in information security, IT security, GRC, compliance, risk management, or a similar field.
  • Practical experience implementing, maintaining, or supporting audits for ISO 27001, SOC 2, and DORA.
  • Understanding of information security governance, risk management, policies, procedures, controls, and audit evidence.
  • Experience coordinating security activities across business and technical teams, including IT, engineering, infrastructure, product, compliance, and auditors.
  • Experience with GRC tools such as Vanta or Drata.
  • English sufficient for written communication, documentation, and audit-related activities. CISSP, CISM, or ISO 27001 Lead Implementer certification.

Culture & Benefits

  • Fully remote work from almost anywhere, with a European-region role location and optional offices.
  • Flexible, asynchronous-friendly working environment.
  • Monthly Benefit Bar budget of up to €230 for sports, mental health, coworking, home office, or medical expenses.
  • Budgets for courses, certifications, professional development, and language learning.
  • Medical insurance or reimbursement depending on location, plus mental health support.
  • Financial support for important life events, team offsites, and company events.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →