Information Security Officer
Summary
The Information Security Officer will manage security governance, risk assessments, and compliance frameworks like ISO 27001 and SOCv2 for a fintech and blockchain infrastructure company. This role involves coordinating security activities across teams and utilizing GRC tools to maintain security standards.
Coinspaid Dev emerges as an independent engineering brand with a straightforward mission: to advance blockchain infrastructure engineering and contribute practical expertise back to the industry. The structure is new. The experience behind it is not.
Responsibilities:
-
Act as Information Security Officer for FinTech.
-
Support the implementation and ongoing maintenance of information security standards, including ISO 27001, SOCv2, DORA.
-
Coordinate security activities at the company level and ensure alignment with cyber security strategy.
-
Serve as a link between the Security team, company management, and technical teams.
-
Support security governance processes, including policies, procedures, risk assessments, control implementation, and audit evidence collection.
-
Coordinate internal stakeholders during security audits, assessments, remediation activities, and certification projects.
-
Track security risks, gaps, action items, and remediation progress.
-
Ensure proper communication of security requirements to business, product, IT, engineering, and infrastructure teams.
-
Support incident, vulnerability, access management, and compliance-related processes where company-level coordination is required.
-
Working with GRC-tool to collect evidence, automate risk assessment process, assess the controls and 3rd party vendors etc.
-
Prepare regular status updates, reports, and escalations for security leadership.
Requirements:
-
3+ years of experience in Information Security, IT Security, GRC, Compliance, Risk Management, or a similar role.
-
Practical experience with implementation, maintenance, or audit support for information security standards and frameworks, including ISO 27001, SOCv2, DORA.
-
Understanding of information security governance, risk management, policies, procedures, controls, and audit evidence collection.
-
Ability to coordinate security activities across technical and business teams.
-
Experience working with internal stakeholders, auditors, IT, engineering, infrastructure, product, and compliance teams.
-
Strong communication skills and ability to translate security requirements into clear business and technical actions.
-
Experience working with such GRC-tools as: Vanta, Drata etc.
-
English level sufficient for written communication, documentation, and audit-related activities.
-
Certification CISSP, CISM, ISO27001 Lead Implementer
Why join CryptoProcessing by Coinspaid
You’ll be joining a company that is actively shaping its space – with enough scale to matter and enough room to make an impact.
At Coinspaid, people are expected to think, contribute, and take ownership – and are supported in doing so.
We focus on flexibility, wellbeing, and long-term growth – without overcomplicating how benefits work.
Flexible Benefits
Benefit Bar – up to €230/month
A flexible monthly budget you can use for what matters most to you – from sports and mental health to coworking, home office, or medical-related expenses.
Work & Flexibility
-
Fully remote work from almost anywhere
-
Optional offices and relocation support
-
Flexible, async-friendly environment
Growth & Learning
-
Budget for courses, certifications, and professional development
-
Language learning support
-
Cross-team learning and knowledge sharing
Wellbeing & Support
-
Medical insurance or reimbursement depending on location
-
Access to mental health support
-
Financial support for important life events
Extras
-
Merch shop with rewards system
-
Team offsites and company events
As published by lever
Resume/CV, Full name, Email, Phone, Current location, Current company, LinkedIn URL, GitHub URL, Portfolio URL, Other website
- Current Location: Where are you currently based?
- Work Location: From which country do you plan to work?
- Time Zone: We operate in the CET time zone. While we offer a flexible schedule, our core working hours are aligned with CET. Would this work for you? choose one
- Availability: If you receive an offer from us, when would you be ready to start?
- What is your level of English? choose one · optional
- What is your level of Russian? choose one · optional
- What are your salary expectations? (Please provide a range in gross EUR)