Security Lead

This listing is synced directly from the company ATS.

Role Overview

This senior-level Security Lead role involves maintaining and improving the ISO/IEC 27001 Information Security Management System, conducting internal audits and risk assessments, and managing security tools like Datadog SIEM and CrowdStrike. Day-to-day responsibilities include leading incident response investigations, overseeing endpoint and access security with MDM and SSO systems, and collaborating with IT and leadership to enhance security controls. The hire will drive a security-first culture, ensure compliance with frameworks like GDPR and NIST, and strengthen the company's overall security posture across remote operations.

Perks & Benefits

The role offers a competitive compensation package with performance-based bonuses up to 50%, unlimited paid vacation and sick leave under a B2B model, and premium health insurance for you and one family member. It is remote-first with flexible working arrangements across Europe or Ukraine, includes learning and development support for courses and certifications, and provides international exposure through industry expos and team gatherings. The company values innovation and autonomy, fostering a tech-driven culture with opportunities for growth and mentorship.

⚠️ This job was posted over 6 months ago and may no longer be open. We recommend checking the company's site for the latest status.

Full Job Description

About the Role

We are looking for a Security Lead to strengthen Playson’s information security framework and drive continuous improvement of our security culture.

This role combines technical expertise, investigative focus, and process leadership - ensuring that our systems, data, and people remain secure, compliant, and resilient.

Key Responsibilities

Information Security & Compliance

  • Maintain and continuously improve the ISO/IEC 27001:2022 Information Security Management System (ISMS).

  • Foster a strong Security-First mindset across the organization.

  • Work closely with the CTO, Head of IT, and DevOps to enhance internal security controls.

  • Conduct internal audits, risk assessments, and coordinate certification renewals.

  • Update security policies and controls in line with ISO 27001, GDPR, and relevant international frameworks (e.g., NIST CSF and NIS2 principles where applicable).
    Manage integrations and alerting within Datadog SIEM, CrowdStrike, Cloudflare, and Google Workspace.

  • Support DLP implementation and maintain central tracking of security events.

  • Document risks, incidents, and corrective actions to ensure continuous compliance.

Incident Response & Investigation

  • Lead investigations into security incidents such as phishing, data leakage, or unauthorized access.

  • Collect and analyze digital evidence across systems (CrowdStrike, Cloudflare, Google, Slack).

  • Maintain and enhance incident response playbooks and escalation workflows.

  • Collaborate with HR, Legal, and IT teams during internal investigations.

  • Produce post-incident reports and recommend remediation measures.

Endpoint & Access Security

  • Manage MDM systems (Zoho MDM, Endpoint Central) and ensure full compliance for macOS endpoints.

  • Maintain CrowdStrike Falcon configurations and endpoint posture enforcement.

  • Oversee SSO, MFA, and 2FA enforcement across services (Google SSO, DUO Mobile, 1Password).

  • Implement Just-in-Time (JIT) privilege elevation and regular admin access reviews.

  • Perform Quarterly RAS Access Management Reviews.

  • Maintain a consistent audit trail for access management throughout the year.


Requirments

  • 3+ years of experience in information security, IT audit, or digital investigations.

  • Solid understanding of ISO 27001, GDPR, and modern security frameworks (NIST CSF / NIS2).

  • Hands-on experience with SIEM / EDR systems

  • Proven ability to manage SSO, MFA, DLP, and MDM environments.

  • Strong communication skills in English (B2 or higher).

  • Analytical mindset, integrity, and attention to detail.


Nice to Have

  • Certifications: CISSP, CISM, CEH, ISO 27001 Lead Auditor, AWS Security Specialty.

  • Experience with Zero Trust, PAM, DLP/CASB, or SOAR platforms.

  • Forensics experience.

  • Experience in designing awareness programs or running phishing simulations.

What We Offer:

  • Competitive Salary: We offer a competitive salary in EUR, subject to annual performance reviews;

  • Quarterly Bonuses: Benefit from a transparent and systematic quarterly bonus system;

  • Flexible Schedule: We offer a flexible work schedule to accommodate your needs;

  • Remote Work Option: Choose to work remotely, providing greater flexibility and comfort;

  • Medical Insurance: Receive comprehensive medical insurance for both you and a significant other;

  • Financial Support for Life Events: We provide financial support during special life events;

  • Unlimited Paid Vacation: Enjoy unlimited paid vacation leave;

  • Unlimited Paid Sick Leave: Take unlimited paid sick leave whenever necessary;

  • Professional Development: Get reimbursement for professional development courses and training.


Recruitment Process

  • HR interview

  • Technical interview

  • Final interview

Please take into account that sometimes the process may differ, your TA Partner will keep you updated.


Know a perfect candidate? Referral bonus - up to €5,000. Email us at recruiting@playson.com

Similar jobs

Found 6 similar jobs