Information Security Officer
New
C
CoinspaidFinTech Blockchain
Fully remote work from almost anywhere, async-friendly environmentFull-TimeMiddle
Salary not disclosed
Apply NowOpens the employer's application page
Job Details
- Languages
- English level sufficient for written communication, documentation, and audit-related activities
- Experience
- 3+ years
- Required Skills
- Risk Management
Requirements
- 3+ years of experience in Information Security, IT Security, GRC, Compliance, Risk Management, or a similar role.
- Practical experience with implementation, maintenance, or audit support for information security standards and frameworks, including ISO 27001, SOCv2, DORA.
- Understanding of information security governance, risk management, policies, procedures, controls, and audit evidence collection.
- Ability to coordinate security activities across technical and business teams.
- Experience working with internal stakeholders, auditors, IT, engineering, infrastructure, product, and compliance teams.
- Strong communication skills and ability to translate security requirements into clear business and technical actions.
- Experience working with such GRC-tools as: Vanta, Drata etc.
- English level sufficient for written communication, documentation, and audit-related activities.
- Certification CISSP, CISM, ISO27001 Lead Implementer.
Responsibilities
- Act as Information Security Officer for FinTech.
- Support the implementation and ongoing maintenance of information security standards, including ISO 27001, SOCv2, DORA.
- Coordinate security activities at the company level and ensure alignment with cyber security strategy.
- Serve as a link between the Security team, company management, and technical teams.
- Support security governance processes, including policies, procedures, risk assessments, control implementation, and audit evidence collection.
- Coordinate internal stakeholders during security audits, assessments, remediation activities, and certification projects.
- Track security risks, gaps, action items, and remediation progress.
- Ensure proper communication of security requirements to business, product, IT, engineering, and infrastructure teams.
- Support incident, vulnerability, access management, and compliance-related processes where company-level coordination is required.
- Work with GRC-tool to collect evidence, automate risk assessment process, assess the controls and 3rd party vendors.
View Full Description & ApplyYou'll be redirected to the employer's site