Information Security Compliance Manager
We are looking for an Information Security Compliance Manager to join our teams!
๐ Requirements
โ 5+ years of experience in Information Security, GRC, or Compliance roles within regulated industries (iGaming, fintech, payments, or similar)
โ Proven hands-on experience with information security frameworks and standards such as ISO/IEC 27001 and/or PCI DSS
โ Practical knowledge of GLI standards and requirements applicable to iGaming platforms and gaming systems
โ Strong understanding of regulatory-driven security and compliance environments
โ Experience leading and managing a GRC or security compliance team (2โ5 specialists), including task prioritization, performance management, and mentoring
โ Proven ability to manage security audits, certifications, and interactions with external auditors, testing laboratories, and regulators
โ Practical experience with risk management, policy development, and control governance
โ Experience working with cloud-based environments and modern technology stacks
โ Strong documentation, analytical, and stakeholder communication skills
โ Ability to operate independently, take ownership, and scale compliance processes in a fast-paced, multi-jurisdiction environment
โญ Will be a plus
โ Experience working in iGaming B2C or B2B platforms
โ Previous participation in AGCO/Ontario, MGA, UKGC licensing projects
โ Hands-on experience with GLI-19 / GLI-33 compliance
โ Experience implementing or maintaining ISO 27001 ISMS end-to-end
โ Certifications: ISO 27001 Lead Implementer / Lead Auditor, CISM, CISA, CRISC, PCI ISA / PCIP
โ Experience supporting SOC 2 Type II or PCI DSS assessments
โ Knowledge of responsible gambling controls and player protection requirements
โ Experience building documentation frameworks (Confluence, data flows, diagrams)
โ Familiarity with Jira workflows for compliance, audits, and evidence tracking
โ Understanding of DevSecOps and security testing practices
๐ญ Soft Skills
โ Strong communication skills with both technical and non-technical stakeholders
โ Ability to translate regulatory and legal requirements into clear technical tasks
โ High level of ownership, structure, and attention to detail
โ Strong analytical and documentation skills
โ Ability to manage multiple concurrent audits and compliance initiatives
โ Proactive problem-solving mindset and ability to challenge assumptions
โ Ability to work cross-functionally with Product, Engineering, DevOps, Security, and Legal
โ Resilience and ability to work in a fast-paced, high-growth environment
โ Excellent English, written and spoken
๐ Responsibilities
โ Own and manage information security compliance across the iGaming business, including ISO/IEC 27001, PCI DSS, and applicable GLI standards
โ Define, maintain, and continuously improve the GRC framework, including security policies, risk management processes, and control governance
โ Lead and coordinate information security audits, certifications, and regulatory or laboratory assessments
โ Manage and develop a small Security Compliance team, ensuring effective delivery of compliance and audit activities
โ Oversee third-party and vendor security compliance, including payment providers, game providers, and technology partners
โ Ensure security and compliance requirements are embedded into products, platforms, and operational processes
โ Oversee security incident handling from a compliance, audit, and regulatory reporting perspective
Required languages
| English | B2 - Upper Intermediate |