CISO (Chief Information Security Officer)
2 giorni fa
Milano, Provincia di Milano; Lombardia, Italia
Jobsora
Tempo pieno
Gratuito con email o Google
Salva questo lavoro e mantieni la tua ricerca organizzata
Crea un account gratuito per salvare lavori, creare avvisi e tornare a questa inserzione dalla tua dashboard.
Gratuito con email o Google
Continuando accetti i nostri Termini & Informativa sulla privacy.
Chief Information Security Officer Satispay
About us
Traditional banking has never really given people control over their financial life. Satispay exists to change that: to empower people through finance. That means making financial services easy and accessible for millions of users. We started with payments, then benefits, investing, cards... and we're not done. Same logic every time: find a real problem, solve it properly, then look for the next one. To build the most loved financial platform in the world. Getting there takes leaders who own outcomes across teams, not just tasks, and set the tone for refusing the "someone else will fix this" culture. Information Security Strategy & Governance
- Develop, implement, and oversee the enterprise-wide information security strategy, including security architecture and least-privilege access control for a cloud-native (AWS/GCP) environment, to protect infrastructure, customer data, and the overall payment ecosystem. Regulatory & Compliance Management
- Ensure full compliance with international standards and financial/payment industry regulations (ISO/IEC 27001, PSD2, GDPR, DORA) under CSSF oversight, and drive the ISMS and certification programme. Risk Management & Mitigation
- Identify, evaluate, and manage information security risks while balancing protection, continuous delivery, and business agility. Incident Response & Business Continuity
- Mature security operations (SOC, threat detection and monitoring) and lead the incident response framework, alongside robust business continuity and cyber resilience plans. Security Culture & Team Empowerment
- Lead, mentor, and grow an established multidisciplinary security team spanning offensive (penetration testing, vulnerability management, red teaming) and defensive (SOC, threat detection, incident response) operations and secure development lifecycle (SDLC) practices, while fostering a company-wide culture of security awareness through training and phishing simulations. You will lead and mentor high-performing teams, collaborate closely with peers with structured communication and transparency, demonstrating a commitment to integrity and ownership. You'll take on one of the hardest challenges at our scale: setting and executing an overarching information security strategy that balances high-standard protection with rapid innovation across our cloud-native ecosystem. We're not looking for a caretaker of an existing setup. We're looking for someone who has built or transformed a function, made hard calls under pressure, and can say "here's the decision, here's why, here's what happened." Executive & Technical Background
- Extensive experience (8+ years) in senior information security leadership roles (CISO, VP of Security..), Regulatory & Compliance Expertise
- Deep understanding of cybersecurity frameworks (ISO/IEC 27001) and financial service regulations relevant to e-money and digital payments, in particular DORA and PSD2, ideally in a CSSF-regulated context. Strategic & Risk-Based Approach
- Proven capability to balance high-standard security requirements with business growth, speed, and innovation. Industry Certifications
- Relevant professional certifications such as CISSP, CISM, CISA, or equivalent. Executive Communication & Stakeholder Management
- Outstanding communication skills to engage with the Board, executive peers, and regulatory bodies, translating complex security challenges into strategic business priorities. Language Proficiency
- Fluency in English (Italian is a strong plus). Why this is your place This is a unique opportunity to leverage your experience and leadership to make a profound impact on a company poised for significant future growth. Own outcomes that reach millions. Lead functions where the results show up directly in the experience of 6.5 M+ people and the businesses they pay every day. You'll make high-stakes calls without waiting for perfect information, in an environment that changes fast as we launch and scale new products. Significant equity participation. Lead exceptional teams. Build, mentor, and collaborate with high-performing teams in a culture of ownership, collective success, and continuous improvement fueled by feedback. Health: private insurance for you and your family, psychological support with Serenis, mental health workshops. Stock Option Plan, meal vouchers, relocation support if you're moving countries. Growth and development: professional development programs, internal mobility, language courses with Preply. Flexibility: unlimited PTO, hybrid working policy, flexible
working hours
. Family: enhanced parental leave, additional leave for child sickness. If you believe you have the vision, experience, and drive to help us shape the future of money, we encourage you to apply. Milan, Italy Employment Type: Full time Location Type: Hybrid Department: Tech & Product Learn more
about us
. C
About us
Traditional banking has never really given people control over their financial life. Satispay exists to change that: to empower people through finance. That means making financial services easy and accessible for millions of users. We started with payments, then benefits, investing, cards... and we're not done. Same logic every time: find a real problem, solve it properly, then look for the next one. To build the most loved financial platform in the world. Getting there takes leaders who own outcomes across teams, not just tasks, and set the tone for refusing the "someone else will fix this" culture. Information Security Strategy & Governance
- Develop, implement, and oversee the enterprise-wide information security strategy, including security architecture and least-privilege access control for a cloud-native (AWS/GCP) environment, to protect infrastructure, customer data, and the overall payment ecosystem. Regulatory & Compliance Management
- Ensure full compliance with international standards and financial/payment industry regulations (ISO/IEC 27001, PSD2, GDPR, DORA) under CSSF oversight, and drive the ISMS and certification programme. Risk Management & Mitigation
- Identify, evaluate, and manage information security risks while balancing protection, continuous delivery, and business agility. Incident Response & Business Continuity
- Mature security operations (SOC, threat detection and monitoring) and lead the incident response framework, alongside robust business continuity and cyber resilience plans. Security Culture & Team Empowerment
- Lead, mentor, and grow an established multidisciplinary security team spanning offensive (penetration testing, vulnerability management, red teaming) and defensive (SOC, threat detection, incident response) operations and secure development lifecycle (SDLC) practices, while fostering a company-wide culture of security awareness through training and phishing simulations. You will lead and mentor high-performing teams, collaborate closely with peers with structured communication and transparency, demonstrating a commitment to integrity and ownership. You'll take on one of the hardest challenges at our scale: setting and executing an overarching information security strategy that balances high-standard protection with rapid innovation across our cloud-native ecosystem. We're not looking for a caretaker of an existing setup. We're looking for someone who has built or transformed a function, made hard calls under pressure, and can say "here's the decision, here's why, here's what happened." Executive & Technical Background
- Extensive experience (8+ years) in senior information security leadership roles (CISO, VP of Security..), Regulatory & Compliance Expertise
- Deep understanding of cybersecurity frameworks (ISO/IEC 27001) and financial service regulations relevant to e-money and digital payments, in particular DORA and PSD2, ideally in a CSSF-regulated context. Strategic & Risk-Based Approach
- Proven capability to balance high-standard security requirements with business growth, speed, and innovation. Industry Certifications
- Relevant professional certifications such as CISSP, CISM, CISA, or equivalent. Executive Communication & Stakeholder Management
- Outstanding communication skills to engage with the Board, executive peers, and regulatory bodies, translating complex security challenges into strategic business priorities. Language Proficiency
- Fluency in English (Italian is a strong plus). Why this is your place This is a unique opportunity to leverage your experience and leadership to make a profound impact on a company poised for significant future growth. Own outcomes that reach millions. Lead functions where the results show up directly in the experience of 6.5 M+ people and the businesses they pay every day. You'll make high-stakes calls without waiting for perfect information, in an environment that changes fast as we launch and scale new products. Significant equity participation. Lead exceptional teams. Build, mentor, and collaborate with high-performing teams in a culture of ownership, collective success, and continuous improvement fueled by feedback. Health: private insurance for you and your family, psychological support with Serenis, mental health workshops. Stock Option Plan, meal vouchers, relocation support if you're moving countries. Growth and development: professional development programs, internal mobility, language courses with Preply. Flexibility: unlimited PTO, hybrid working policy, flexible
working hours
. Family: enhanced parental leave, additional leave for child sickness. If you believe you have the vision, experience, and drive to help us shape the future of money, we encourage you to apply. Milan, Italy Employment Type: Full time Location Type: Hybrid Department: Tech & Product Learn more
about us
. C