
51 - 200 employees
đł Fintech
đ¤ B2B
đ¸ Finance
Fintech ⢠B2B ⢠Finance
payabl. is a fintech company that offers game-changing financial solutions designed to help businesses expand globally. Specializing in a wide range of payment products, payabl. provides services such as card acquiring, banking services, local payment methods, and POS terminals. Their easy-to-integrate payment technology includes features like smart fraud prevention and dedicated customer support, allowing businesses to process local and international payments with ease. Supported by industry experts, payabl. offers over 300 payment methods and cutting-edge fraud protection using AI and machine learning. The company is renowned for its commitment to transparency, real-time bespoke reporting, and personalized customer relationships.
đĽ 0 minutes ago
đ Portugal, Poland, +1 more countries â Remote
â° Full Time
đ Senior
đ Compliance
đť Ghost score 12%
Improve your chances of getting an interview by checking your resume score before you apply.

51 - 200 employees
đł Fintech
đ¤ B2B
đ¸ Finance
Fintech ⢠B2B ⢠Finance
payabl. is a fintech company that offers game-changing financial solutions designed to help businesses expand globally. Specializing in a wide range of payment products, payabl. provides services such as card acquiring, banking services, local payment methods, and POS terminals. Their easy-to-integrate payment technology includes features like smart fraud prevention and dedicated customer support, allowing businesses to process local and international payments with ease. Supported by industry experts, payabl. offers over 300 payment methods and cutting-edge fraud protection using AI and machine learning. The company is renowned for its commitment to transparency, real-time bespoke reporting, and personalized customer relationships.
⢠Develop, maintain and continuously improve information security policies, standards and procedures aligned with ISO 27001 and applicable regulatory requirements ⢠Manage the full policy lifecycle, including approval workflows, periodic reviews, ownership and version control ⢠Maintain the information security risk register, including risk identification, assessment, treatment tracking and formal risk acceptance ⢠Prepare risk reporting for management and governance committees and track remediation actions through closure ⢠Support compliance activities under DORA, including the Register of Information, PSD2/EBA ICT guidelines, GDPR and PCI DSS across licensed entities ⢠Contribute to operational resilience activities for the UK entity in line with FCA requirements ⢠Manage the third-party risk management lifecycle, including due diligence, security questionnaires, risk rating, onboarding gates and periodic reassessments ⢠Maintain the vendor register and contractual security requirements with the Legal team ⢠Coordinate internal and external audits, including Big Four ICT audits, regulator requests and PCI QSA cycles, and manage the audit calendar ⢠Own evidence collection and maintain an evidence library for audits, certifications and client questionnaires ⢠Administer and develop the GRC platform, including control monitoring, automated evidence collection, framework mapping and reporting ⢠Apply AI tools to GRC activities such as policy drafting, gap analysis, evidence assembly and questionnaire responses, and automate recurring processes ⢠Contribute to the AI governance programme, including AI vendor assessment, support of the AI system register and alignment with emerging requirements such as the EU AI Act ⢠Report to the Head of Information Security
⢠3+ years of similar experience in GRC, information security governance, IT audit or IT risk management ⢠Working knowledge of ISO/IEC 27001 ⢠Exposure to DORA, GDPR or PCI DSS ⢠Experience in regulated financial services (payments, e-money, banking, fintech) or advisory work for such companies ⢠Hands-on experience with audits, including coordinating audits, preparing evidence and remediating findings ⢠Familiarity with GRC platforms or a strong interest in compliance automation ⢠Strong written English ⢠Ability to manage multiple workstreams against fixed deadlines ⢠Certifications such as CISA, CRISC, CISM, CIPP/E or ISO 27001 Lead Auditor / Lead Implementer are nice to have ⢠Direct experience with DORA implementation, EBA outsourcing guidelines or FCA operational resilience is nice to have ⢠Experience implementing or administering a GRC platform such as Vanta, ServiceNow GRC, OneTrust or similar is nice to have ⢠Familiarity with ISO 42001, the EU AI Act or AI risk management is nice to have ⢠Light scripting or workflow automation skills using low-code tools are nice to have
⢠Annual Learning Budget for professional development (eligible after probation) ⢠Company celebrations bringing colleagues from all offices together ⢠Opportunities to participate in international company events and initiatives ⢠Global collaboration with colleagues from all regions
Apply Nowđ September 8
Compliance Officer building AML/KYC operations and EU benchmark licensing readiness for Pyth Networkâs institutional data solutions. Managing financial controls, audits, policies, and counterparty risk.