Information Security Manager
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Join Colibrix One - Innovating the Future of PaymentsAt Colibrix One, we’re building advanced, AI-powered payment technologies that support Payment Service Providers (PSPs), Electronic Money Institutions (EMIs), and neobanks across the EU and the UK. As a fully licensed EMI (FCA reference number **) and a Principal Member of Mastercard, we offer real-world financial solutions that include:Global card processingDigital wallet infrastructureCross-border merchant accountsAlternative payment methods (APMs)Corporate accounts for legal entitiesWe’re a fast-growing team with a passion for innovation, security, and scalability. Our culture values curiosity, collaboration, and impact - and we’re looking for talented professionals who are ready to shape the future of fintech.We’re looking for an experienced Information Security Manager to lead security policy development, manage risks and incidents, and ensure compliance with standards like PCI DSS, ISO, and GDPR.ResponsibilitiesDevelop and enforce security policies: company-wide rules, standards, and proceduresDefine acceptable use rules: corporate devices, data, communication toolsImplement asset management practices: classification, inventory, ownershipOversee access management: RBAC, periodic reviews, approval workflowsSafeguard data confidentiality: enforce handling rules, prevent leakage, monitor misuseDrive governance and awareness: security culture, training, phishing campaignsPrevent insider risks: education, monitoring, process enforcementManage security incidents: coordination, escalation, root cause, executive reportingAssess and manage business risks: finance, HR, sales, operationsStrengthen supply chain security: vendor risk assessments, third-party dependencies, assuranceMaintain and test continuity plans: BCP, DRP, resilience validationServe as an interface for PCI DSS, DORA, SWIFT, ISO, GDPR compliance needsRequirementsExperience in managing asset and access management systemsExperience in incident management and security governanceKnowledge of business domains, ability to identify security risks and mitigate themSolid understanding of infrastructure and cloud security (AWS, Kubernetes, CI/CD pipelines)Practical experience in Information Security Awareness: education, simulationsBackground in risk management, business continuity, and disaster recovery planningExperience working with vendors, regulators, and external partnersProficiency in Security standards: PCI DSS, DORA, SWIFT, ISO, GDPRNice to haveExperience in fintech, banking, or other regulated industriesParticipation in certification projects (PCI DSS, ISO, SOC 2)Certifications: CISSP, CISM, CISA, AWS Security SpecialtyExperience with FinOps and security cost optimizationBackground in building and scaling Security Awareness programsWhat We OfferOpportunity to shape the future of fintech solutions within a growing companyCollaborative, horizontal team structure that values your expertise and ideasContinuous learning and development opportunities to enhance your skills and career growthCompetitive salary and benefits packageFlexible work arrangements to support work-life balanceWe are an equal opportunities employer and welcome applications from all qualified candidates.#J-*****-Ljbffr
Requirements
We’re looking for an experienced Information Security Manager to lead security policy development, manage risks and incidents, and ensure compliance with standards like PCI DSS, ISO, and GDPR., Experience in managing asset and access management systems Experience in incident management and security governance Knowledge of business domains, ability to identify security risks and mitigate them Solid understanding of infrastructure and cloud security (AWS, Kubernetes, CI/CD pipelines) Practical experience in Information Security Awareness: education, simulations Background in risk management, business continuity, and disaster recovery planning Experience working with vendors, regulators, and external partners Proficiency in Security standards: PCI DSS, DORA, SWIFT, ISO, GDPR Nice to have Experience in fintech, banking, or other regulated industries Participation in certification projects (PCI DSS, ISO, SOC 2) Certifications: CISSP, CISM, CISA, AWS Security Specialty Experience with FinOps and security cost optimization Background in building and scaling Security Awareness programs
Benefits & conditions
Opportunity to shape the future of fintech solutions within a growing company Collaborative, horizontal team structure that values your expertise and ideas Continuous learning and development opportunities to enhance your skills and career growth Competitive salary and benefits package Flexible work arrangements to support work-life balance We are an equal opportunities employer and welcome applications from all qualified candidates. #J-*****-Ljbffr
About the company
Barcelona, España
Join Colibrix One - Innovating the Future of Payments At Colibrix One, we’re building advanced, AI-powered payment technologies that support Payment Service Providers (PSPs), Electronic Money Institutions (EMIs), and neobanks across the EU and the UK. As a fully licensed EMI (FCA reference number **) and a Principal Member of Mastercard, we offer real-world financial solutions that include: Global card processing Digital wallet infrastructure Cross-border merchant accounts Alternative payment methods (APMs) Corporate accounts for legal entities We’re a fast-growing team with a passion for innovation, security, and scalability. Our culture values curiosity, collaboration, and impact - and we’re looking for talented professionals who are ready to shape the future of fintech.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 138 - Are you secure about this?
Dev Digest 121 - AI goes offline
Dev Digest 134 - Where pixels sing?
Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents