Product Security Manager
12 ore fa
Pavia PV, Provincia di Pavia; Lombardia, Italia
Klarna
Tempo pieno
Gratuito con email o Google
Salva questo lavoro e mantieni la tua ricerca organizzata
Crea un account gratuito per salvare lavori, creare avvisi e tornare a questa inserzione dalla tua dashboard.
Gratuito con email o Google
Overview In this role you will act as the Domain Security Lead and BISO for Klarna's business domains, ensuring security is embedded in day-to-day operations and major decisions. You advise senior stakeholders, manage risk posture, and align security with business roadmaps to enable fast, safe development. You collaborate with first-line and second-line security functions to drive improvement programs and cultivate a security-conscious culture. This role offers broad ownership across payments, fraud prevention, banking, and engineering platforms in a leading fintech environment.
Retribuzione / Benefits
pivotal role
diverse senior team
broad ownership across payments and banking
opportunity to work on AI and large-scale platforms
fintech industry exposure
collaborative security culture
Responsabilità
Own and communicate the security posture of assigned domains to senior management
Identify and assess risk for new products and ongoing initiatives
Define security requirements, data classifications, and dependencies early in design
Lead security improvement programs and track remediation and metrics
Establish domain security routines that fit team needs
Coordinate audit management with internal and external auditors
Provide security and compliance guidance to vendors and outsourcing arrangements
Review incidents and coordinate post-incident reviews
Grow the security culture through Security Champions programs
Advocate for domain needs in security planning and initiatives
Requisiti fondamentali
Several years of information security experience (BISO/security lead/architect/GRC/consulting)
Strong risk management, threat modeling, secure design/engineering, and incident response
Knowledge of ISO 27001, DORA, NIS2, PCI DSS, SOX; experience with audits
Ability to translate business language to technical security detail across stakeholders
Pragmatic enabling mindset to help teams ship securely
Experience building security culture or communities (nice to have)
Technical background in software engineering, cloud, or security engineering (valued)
communication with senior stakeholders
cross-functional collaboration
problem-solving and pragmatism
risk assessment
threat modeling
security governance and controls