Information Security Officer
Job Description
Coinspaid Dev is the engineering brand behind the technology, infrastructure, and R&D expertise built within Coinspaid. With more than 120 engineers and over 11 years of industry experience, Coinspaid Dev brings together software engineering, infrastructure, security and R&D teams with experience building distributed systems and blockchain infrastructure operating across more than 20 blockchain networks.
Coinspaid Dev emerges as an independent engineering brand with a straightforward mission: to advance blockchain infrastructure engineering and contribute practical expertise back to the industry. The structure is new. The experience behind it is not.
Responsibilities:
- Act as Information Security Officer for FinTech.
- Support the implementation and ongoing maintenance of information security standards, including ISO 27001, SOCv2, DORA.
- Coordinate security activities at the company level and ensure alignment with cyber security strategy.
- Serve as a link between the Security team, company management, and technical teams.
- Support security governance processes, including policies, procedures, risk assessments, control implementation, and audit evidence collection.
- Coordinate internal stakeholders during security audits, assessments, remediation activities, and certification projects.
- Track security risks, gaps, action items, and remediation progress.
- Ensure proper communication of security requirements to business, product, IT, engineering, and infrastructure teams.
- Support incident, vulnerability, access management, and compliance-related processes where company-level coordination is required.
- Working with GRC-tool to collect evidence, automate risk assessment process, assess the controls and 3rd party vendors etc.
- Prepare regular status updates, reports, and escalations for security leadership.
Requirements:
- 3+ years of experience in Information Security, IT Security, GRC, Compliance, Risk Management, or a similar role.
- Practical experience with implementation, maintenance, or audit support for information security standards and frameworks, including ISO 27001, SOCv2, DORA.
- Understanding of information security governance, risk management, policies, procedures, controls, and audit evidence collection.
- Ability to coordinate security activities across technical and business teams.
- Experience working with internal stakeholders, auditors, IT, engineering, infrastructure, product, and compliance teams.
- Strong communication skills and ability to translate security requirements into clear business and technical actions.
- Experience working with such GRC-tools as: Vanta, Drata etc.
- English level sufficient for written communication, documentation, and audit-related activities.
- Certification CISSP, CISM, ISO27001 Lead Implementer