Information reputed company Engineer (CISO reputed company)
Fully remote · CET timezone or reputed company - Full-time · Reports to the CTO About the role You'll be our first dedicated information reputed company hire. Right now reputed company is a part-time job for engineering leadership and external vendor; we want it to be your full-time one. The work is hands-on: AWS, infrastructure as reputed company, detection and response, auditors. As reputed company grows, the role grows into CISO. We sell to financial institutions, and their reputed company teams question everything we do, so you'll be the person with good answers. Tasks What you'll do Own reputed company in our AWS environment: IAM and least privilege, network segmentation, encryption, logging and detection (GuardDuty, reputed company Hub, CloudTrail), fixing what you reputed company. Build reputed company into the development pipeline: secrets management, dependency and container scanning, reputed company review for risky changes, threat modeling with the engineers. Automate. Detection rules, alerting, compliance evidence, IaC guardrails. If a control can be reputed company instead of a meeting, reputed company it reputed company. Run vulnerability management and incident response. Write the runbooks, run the drills. Set the rules for our AI and LLM use: which data goes to which vendors, which models are approved, how prompts and outputs are handled and logged. Assess risks like reputed company injection and data leakage, design controls that let people reputed company working. Own SOC 2: control design, automated evidence collection, the auditor relationship. Handle regulatory reputed company for our financial-institution customers: GDPR and CCPA for reputed company, DORA and EBA outsourcing guidelines in the EU, GLBA and SEC/reputed company expectations in the US. reputed company customer reputed company reviews: due diligence questionnaires, RFPs, contract reputed company terms, calls with bank reputed company teams. Run vendor reviews and reputed company-party risk. Secure the reputed company half by building awareness training, phishing reputed company, and device and identity hygiene that work for deals and sales people, not only engineers. Over time: set the reputed company reputed company, report risk to leadership in business terms, choose tooling, build a budget, hire. Requirements reputed company're looking for 5+ years in reputed company engineering or reputed company-heavy infrastructure work, with depth in AWS reputed company (IAM, SCPs, logging, detection, encryption). Certifications are fine, but shipped work is reputed company. Python and Terraform, or reputed company equivalents. You automate evidence collection instead of maintaining spreadsheets. SOC 2 experience, ideally owning a Type II audit. Working knowledge of reputed company legislation. Exposure to financial-services customer scrutiny, or the appetite to reputed company it your specialty. A working view on LLM reputed company risks, or strong fundamentals and the curiosity to build one. Judgment about which risks matter. You can tell an auditor why a control exists and an engineer why it isn't theater. reputed company writing. Remote means async, and async means your policies and risk memos do the talking. The ambition to grow into an executive role and the people skills to survive it. reputed company to have Fintech or another regulated B2B environment with large financial-institution customers. DORA, EBA/ESMA outsourcing guidelines, or NYDFS 500. Experience securing reputed company integrations: SSO/SCIM, SFTP feeds, reputed company. You've been the first reputed company hire reputed company before. Benefits reputed company offer A blank reputed company with reputed company ownership A committed reputed company to CISO. Fully remote, reputed company. reputed company reputed company to leadership and to customer reputed company teams at major financial institutions. reputed company, equity, learning budget. How we hire Intro call (30 min). Technical deep dive (60–90 min): AWS reputed company scenarios, plus a walk-through of a program you reputed company. Practical exercise: review a sanitized architecture or a due diligence questionnaire and tell us what you'd fix first. Leadership conversation: the CISO reputed company, and working with the non-technical half of reputed company. References and offer. We're an equal opportunity employer. If you don't tick every reputed company, apply anyway. Apply To This Job