Head of Information Security

Job not on LinkedIn

🔥 1 minute ago

🇪🇪 Estonia – Remote

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 10%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Bondora

Bondora

51 - 200 employees

Founded 2008

💼 Consulting

🛡️ Insurance

⚖️ Legal

Consulting • Insurance • Legal

Bondora is a fast-growing financial technology company founded in 2008, dedicated to empowering individuals to enjoy life by alleviating financial stress. Serving over 1 million customers worldwide, Bondora offers intuitive online financial services to help users save, grow, and spend money confidently. The company is pursuing a bold transformation by acquiring a banking license, aiming for a valuation target of 1 billion by 2026 and expanding to 11 new countries. Bondora prides itself on a vibrant community culture and a supportive work environment for its employees, offering various perks and opportunities for personal and professional growth.

📋 Description

• Ensure Bondora’s systems, data, and customers remain protected while building toward a banking licence • Own information security hands-on, including incident response • Collaborate with product engineering, SRE, IT, and compliance teams • Conduct security reviews of architecture and significant product changes • Perform security hardening across secrets management, access control, network segmentation, logging and alerting, and CI/CD pipeline security • Design and coordinate external penetration tests, red team exercises, and DORA-mandated TLPT • Translate security findings into a realistic remediation backlog • Monitor and evaluate the DORA ICT risk management framework • Work with all lines of defence on practical policy application • Maintain documentation of quality assurance processes, audits, results, and action points • Prepare and prioritize business requirements for necessary changes

🎯 Requirements

• Proven experience working with ICT regulations such as European Central Bank requirements, DORA, and Estonian Financial Supervision Authority expectations • Strong skills in writing and reading code • Security hardening practices in a cloud environment • Ability to work fluently with industry-standard security tooling, including code analysers, network analysers, and vulnerability scanners • Experience with penetration testing practices and standards • Ability to use LLM-powered security tools in daily work and reason about their benefits, risks, and governance value in a regulated organisation

🏖️ Benefits

• Competitive salary • 5 weeks of vacation • Private healthcare compensation • Hobby grant • Mental healthcare support • Share options • Professional growth opportunities • Budget to expand skills and career

Apply Now