Operations & Service Delivery
·
Fully Remote
Security Expert - Fully Remote
👨🏽💻What you’ll be doing (i.e., job duties):
As Security Consultant,
- you are defining the EPI IS security requirements, policies, and controls.
- You recommend, and may even take, decisions of all kinds relating to acting on information and telecom systems within your scope in the event of potential or actual attacks.
- You are involved with the various teams, including Product and Engineering team, in order to act as sparing partner when the teams are making decisions having a security impact/dimension.
- You are expected to help defining the appropriate balance between security, efficiency, and flexibility, keeping in mind that our organization aims at delivering high velocity IT, in a highly regulated environment.
- You will suggest how to adjust our security objectives to the evolving maturity of the organization, and to the evolving importance of the EPI payment system.
- You will present and defend the various aspects of the EPI Information Security management system to the oversight, to relevant authorities, or to the shareholders…
- Your tasks may include, depending on your exact profile:
- Designing and setting up the EPI information security management system.
- Defining internal security policies,
- Defining security requirements and security controls for EPI’s internal developments
- Defining security requirements and security controls for the Member of the EPI Scheme.
- Informing general management and raising awareness
- Defining security objectives and requirements regarding the company's operations, taking in account our specific risk model, the applicable regulations, and the expectations of the oversight
- Preparing the company to move to the next maturity level in terms of security
- Collaborating to the definition of various internal processes, including incident management, crisis management, and secret compromise resolution.
- Assessing risks, threats, and their consequences
- Researching security resources and best practices for their use
- Cryptographic key management tasks:
- defining procedure, and key ceremony processes
- acting as key custodian or as Information Security officer during key ceremonies
- auditing proper execution of key ceremonies
- Acting as Registration Authority officer
- Defining access control management
- You will provide advice, assistance, information, training, and warnings, especially to business unit managers, the CEO, and/or executive committee members where applicable.
😻You care about:
- Ownership: you easily communicate ideas, implement them, and take responsibility for your actions
- Agile mindset: you love adapting to different situations, and you know how and when to iterate fast and with high quality
- Our product: you believe in EPI’s vision and are willing to give your best to build the future of European payments
🕵🏻♀️What we look for in you (i.e., job requirements):
- >5 years of experience in security-related positions or in the technology/financial service environment
- Sound knowledge and understanding of business and technology with special regard to public cloud operations, Agile and (Sec)DevOps methodologies, continuous integration / delivery, microservices / containers, infrastructure as code, continuous monitoring…
- Experience with SIEM tools
- Experience with IAM tools
- Experience with Key management, HSM, and key ceremonies
- Higher degree in engineering, and computer science, with a focus on cyber security
- Security certification is a plus (e.g., CISSP, CISM…)
- Payment knowledge is a plus
- Ability to rework and tune security requirements inherited from old payment world to digitally native organization aiming at high velocity IT
- Strong communication skills in English
- Comfortable with working in an international environment
- 🤷🏻♂️What you’ll need to work with comfortably:
- Agile working environment
- Our office tool stack: Windows or Mac, Office 365, Slack, Atlassian Jira & Confluence, Miro, …
- English as our primary work language (written/verbal) - additional European language is a plus
- Your co-workers distributed across Europe in a remote work set-up
- Department
- Operations & Service Delivery
- Remote status
- Fully Remote
Operations & Service Delivery
·
Fully Remote
Security Expert - Fully Remote
Loading application form
Already working at Epi Company?
Let’s recruit together and find your next colleague.