Information Security Manager
Summary
Lead security strategy, policies, and incident response for a global product engineering firm, focusing on AWS cloud security, risk reduction, and compliance with ISO/NIST frameworks.
Ciklum is looking for an Information Security Manager to join our team full-time in Bulgaria.
We are a custom product engineering company that supports both multinational organizations and scaling startups to solve their most complex business challenges. With a global team of over 4,000 highly skilled developers, consultants, analysts and product owners, we engineer technology that redefines industries and shapes the way people live.
About the role:
Client is seeking a talented and dedicated Information Security Manager to join the Product and Engagement Domain within their technology organization. In this role, you will perform a crucial function in protecting IT organization, driving a security-first culture, and ensuring customer-facing search capabilities and critical digital assets remain secure and resilient.
Responsibilities:
- Build and maintain a security-first culture
- Drive the adoption of and compliance with security policies, standards, and controls
- Contribute to the overall information security strategy
- Ensure effective security operations (such as vulnerability scanning and patching) and rigorous testing
- Manage local security incidents
- Oversee remediation actions based on external audit findings
- Protect the integrity, availability, authenticity, non-repudiation, and confidentiality of data at rest and in transit
- Identify and manage security risks
- Report on security programs using defined KPIs and drive continuous improvement
Requirements:
- Strong experience implementing an Information Security Management System (ISMS) in a large organization
- Good understanding of international regulations, particularly data privacy laws
- Solid knowledge of security standards and frameworks, such as ISO, NIST, PCI-DSS, OWASP, and ITIL
- Good understanding of security within AWS cloud environments
- Technical background with previous experience in a hands-on technical role (such as penetration testing, security analysis, or vulnerability scanning)
- Strong understanding of security operations and incident management across cloud and on-premises environments
- Excellent communication skills
Desirable:
- AWS Cloud Fundamental or Practitioner certification
- Professional security certifications such as ISO 27001 Lead Implementer, CompTIA Security+, CISMP, CISSP, CISM, or CISA
What’s in it for you?
- Regular salary reviews based on performance
- Corporate events: webinars, offline parties, and meetups
- Internal Mobility Program
- Tailored education path (including full access to Udemy, certifications, etc.)
- 25 paid days off: 20 business days of vacation per calendar year + 5 undocumented sick leave days
- Additional health insurance
- 100% company-covered Multisport card, with discounts available for family members
About us:
At Ciklum, we are always exploring innovations, empowering each other to achieve more, and engineering solutions that matter. With us, you’ll work with cutting-edge technologies, contribute to impactful projects, and be part of a One Team culture that values collaboration and progress.
Since expanding to Bulgaria in 2022, we’ve been building a fast-growing team that thrives on learning, collaboration, and innovation. Join us on this exciting journey and help shape the future of our delivery center.
Explore, empower, engineer with Ciklum!
Interested already? We would love to get to know you! Submit your application. We can’t wait to see you at Ciklum.
#LI-MH1