Security Lead
Would you be open to leading the Platform & Cloud Security direction in a top-tier iGaming product? Weβre looking for a Security Lead to work on a high-load system. Youβll collaborate closely with the CTO, have full ownership of decisions, remote, and top-of-the-market terms.
This role combines technical expertise, investigative focus, and process leadership β ensuring that our systems, data, and people remain secure, compliant, and resilient.
Main Responsibilities
Information Security & Compliance
β Maintain and continuously improve the ISO/IEC 27001:2022 Information Security Management System (ISMS)
β Foster a strong Security-First mindset across the organization
β Work closely with the CTO, Head of IT, and DevOps to enhance internal security controls
β Conduct internal audits, risk assessments, and coordinate certification renewals
β Update security policies and controls in line with ISO 27001, GDPR, and relevant international frameworks (e.g., NIST CSF and NIS2 principles where applicable)
β Manage integrations and alerting within Datadog SIEM, CrowdStrike, Cloudflare, and Google Workspace
β Support DLP implementation and maintain central tracking of security events
β Document risks, incidents, and corrective actions to ensure continuous compliance
Incident Response & Investigation
β Lead investigations into security incidents such as phishing, data leakage, or unauthorized access
β Collect and analyze digital evidence across systems (CrowdStrike, Cloudflare, Google, Slack)
β Maintain and enhance incident response playbooks and escalation workflows
β Collaborate with HR, Legal, and IT teams during internal investigations
β Produce post-incident reports and recommend remediation measures
Endpoint & Access Security
β Manage MDM systems (Zoho MDM, Endpoint Central) and ensure full compliance for macOS endpoints
β Maintain CrowdStrike Falcon configurations and endpoint posture enforcement
β Oversee SSO, MFA, and 2FA enforcement across services (Google SSO, DUO Mobile, 1Password)
β Implement Just-in-Time (JIT) privilege elevation and regular admin access reviews
β Perform Quarterly RAS Access Management Reviews
β Maintain a consistent audit trail for access management throughout the year
Mandatory Requirements
β 3+ years of experience in information security, IT audit, or digital investigations
β Solid understanding of ISO 27001, GDPR, and modern security frameworks (NIST CSF / NIS2)
β Hands-on experience with SIEM / EDR systems
β Proven ability to manage SSO, MFA, DLP, and MDM environments
β Strong communication skills in English (B2 or higher)
β Analytical mindset, integrity, and attention to detail
Nice to Have
β Certifications: CISSP, CISM, CEH, ISO 27001 Lead Auditor, AWS Security Specialty
β Experience with Zero Trust, PAM, DLP/CASB, or SOAR platforms
β Forensics experience
β Experience in designing awareness programs or running phishing simulations
We offer
Competitive Salary: We offer a competitive salary in EUR, subject to annual performance reviews
Quarterly Bonuses: Benefit from a transparent and systematic quarterly bonus system
Flexible Schedule: We offer a flexible work schedule to accommodate your needs
Remote Work Option: Choose to work remotely, providing greater flexibility and comfort
Medical Insurance: Receive comprehensive medical insurance for both you and a significant other
Financial Support for Life Events: We provide financial support during special life events
Unlimited Paid Vacation: Enjoy unlimited paid vacation leave
Unlimited Paid Sick Leave: Take unlimited paid sick leave whenever necessary
Professional Development: Get reimbursement for professional development courses and training
Recruitment Process
β HR interview
β Technical interview
β Final interview
Required languages
| English | B2 - Upper Intermediate |
| Ukrainian | B2 - Upper Intermediate |