Ensure security controls are correctly implemented and coordinate assurance activities such as vulnerability assessments, penetration tests, and audits
Oversee ongoing compliance with DORA, PCI DSS, and related standards
Integrate application security practices (SAST, DAST, IAST, SCA) into CI/CD pipelines and define security quality gates
Build strong cross-team relationships to drive pragmatic, consistent security outcomes
Requirements
Experience in security architecture, risk assessment, and secure systems engineering—ideally within financial services or other highly regulated environments
Strong practical and technical knowledge of PCI DSS or similar, including scoping, segmentation, encryption, access control, secure data handling, and logging
Hands-on experience with application security tooling and integrating security controls into modern CI/CD workflows
Ability to communicate complex security topics clearly to both technical and nontechnical stakeholders
A proactive, collaborative mindset with a passion for building secure, resilient solutions
Fluent English is required in spoken and written communication
Benefits
Flexible working hours
Hybrid work
The possibility to work from anywhere in the EU, Iceland, Switzerland, and the UK (90 days per year)
Additional weeks of vacation after 1 year of employment
Volunteer time off for community service
30 paid calendar days for military training every year
Competitive health benefits, including health insurance after 3 months and health days for illness without a doctor's note
Access to wellness tools and resources
Internal and external training programs, workshops, and conferences