Local Information Security Officer
Vilnius, LT
Description
Nayax Lithuania EMI is now looking for an experienced Local Information Security Officer (m/f/d) to strengthen its team, full-time.
IN THIS POSITION YOU WILL BE TASKED TO:
- ISO 27001: Lead the implementation and ongoing maintenance of the Information Security Management System (ISMS), conduct risk assessments, manage internal audits, and ensure compliance with ISO 27001 controls and policies.
- SOC 2: Oversee the design, implementation, and management of SOC 2 Type I and Type II controls for security, availability, confidentiality, processing integrity, and privacy. Coordinate audit readiness and drive remediation of identified gaps.
- PCI DSS: Ensure compliance with PCI DSS v4.0, overseeing the implementation of security controls, regular vulnerability assessments, and system scans. Work closely with the IT and infrastructure teams to secure payment systems and sensitive cardholder data.
- DORA: Ensure compliance with Digital Operational Resilience Act (DORA), including the development and implementation of operational resilience programs, incident response plans, business continuity testing, and third-party risk management.
- Risk Management: Conduct regular risk assessments and vulnerability management across infrastructure, applications, and processes. Develop and implement security controls to mitigate identified risks. Create and maintain risk registers and provide actionable recommendations to senior leadership.
- Incident Response: Develop, maintain, and test Incident Response Plans (IRPs). Lead investigations of security incidents, ensuring prompt identification, containment, and remediation. Manage communication with legal, regulatory bodies, and stakeholders during incidents.
- Security Awareness & Training: Design and implement security training programs focused on regulatory compliance and technical security practices. Conduct phishing simulations, secure coding workshops, and awareness campaigns.
Requirements
WE ARE LOOKING FOR SOMEONE WITH:
Education: Bachelor’s degree in Cybersecurity, Information Security, or related technical field (Master’s preferred).
Certifications:
- ISO 27001 Lead Implementer / Lead Auditor
- SOC 2, PCI DSS, and DORA-related certifications highly preferred.
- CISSP, CISM, CISA, or similar certifications are a plus.
Experience:
- Minimum 5 years in information security management or compliance roles, with a focus on ISO 27001, SOC 2, PCI DSS, and DORA regulations.
- Strong technical background with hands-on experience in network security, application security, and cloud security.
- Proven experience managing security audits, compliance assessments, and vulnerability management.
Technical Skills:
- Expertise in security frameworks and control implementation (NIST, ISO, SOC 2, PCI DSS, DORA).
- Strong knowledge of network security tools, SIEM solutions, and incident response technologies.
- Experience with cloud security (AWS, Azure, GCP), identity and access management (IAM), and data protection techniques.
Soft Skills:
- Excellent communication and stakeholder management skills, capable of translating complex security concepts to non-technical stakeholders.
- Strong problem-solving abilities and a detail-oriented mindset
WHAT WE OFFER:
- We offer you a full-time, permanent employment contract in a flat hierarchy within a small, motivated team
- Salary Range: 5500 - 7000 EU per month, gross
- Competitive salary package, commensurate with your experience
- Team spirit is very important to us, sales success is based on interaction with tech support, accounting and product management
- Our industry offers you enormous growth potential
Who we are
WHO WE ARE:
Nayax is an internationally active FinTech company specializing in cashless payments at self-service machines (www.nayax.com).
With 11 local Nayax branches and 1.2 million active payment terminals, Nayax serves customers worldwide and processed around 609 million transactions in the last quarter. Local partners provide service and support in over 120 countries. We are a constantly growing company and are therefore looking for active support to meet the increasing demands of our customers.
Nayax is a global commerce enablement and payment platform designed to help merchants scale their business. Our mission is to improve our customers’ revenue potential and operational efficiency.
Join our growing team and make an impact! Nayax is constantly growing and we are always on the lookout for enthusiastic, innovative and eager individuals to join us in our growth!
YOU WILL HAVE THE OPPORTUNITY TO:
- Be a part of a global group, interacting with various team members around the world
- Be a part of a growing company, a fast-paced energetic, and innovative work environment
- Join a great team, emphasizing a culture of cooperation, growth, and innovation
- Work in a multinational environment for a global market group of companies
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Application security Audits AWS Azure CISA CISM CISSP Cloud Compliance FinTech GCP IAM Incident response ISMS ISO 27001 Network security NIST PCI DSS Privacy Risk assessment Risk management SIEM SOC SOC 2 Vulnerability management
Perks/benefits: Competitive pay Flat hierarchy
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.