Information Security Officer

CoinsPaid·Удалённо·Удалённо·вчера

Responsibilities:

  • Act as Information Security Officer for FinTech.
  • Support the implementation and ongoing maintenance of information security standards, including ISO 27001, SOCv2, DORA.
  • Coordinate security activities at the company level and ensure alignment with cyber security strategy.
  • Serve as a link between the Security team, company management, and technical teams.
  • Support security governance processes, including policies, procedures, risk assessments, control implementation, and audit evidence collection.
  • Coordinate internal stakeholders during security audits, assessments, remediation activities, and certification projects.
  • Track security risks, gaps, action items, and remediation progress.
  • Ensure proper communication of security requirements to business, product, IT, engineering, and infrastructure teams.
  • Support incident, vulnerability, access management, and compliance-related processes where company-level coordination is required.
  • Working with GRC-tool to collect evidence, automate risk assessment process, assess the controls and 3rd party vendors etc.
  • Prepare regular status updates, reports, and escalations for security leadership.

Requirements:

  • 3+ years of experience in Information Security, IT Security, GRC, Compliance, Risk Management, or a similar role.
  • Practical experience with implementation, maintenance, or audit support for information security standards and frameworks, including ISO 27001, SOCv2, DORA.
  • Understanding of information security governance, risk management, policies, procedures, controls, and audit evidence collection.
  • Ability to coordinate security activities across technical and business teams.
  • Experience working with internal stakeholders, auditors, IT, engineering, infrastructure, product, and compliance teams.
  • Strong communication skills and ability to translate security requirements into clear business and technical actions.
  • Experience working with such GRC-tools as: Vanta, Drata etc.
  • English level sufficient for written communication, documentation, and audit-related activities.
  • Certification CISSP, CISM, ISO27001 Lead Implementer

Похожие вакансии

Другие вакансии CoinsPaid