Company Overview:
Busbud is a leading global mobility group focused on intercity ground travel, with a mission to transform the way people connect across the globe. The group operates a B2C marketplace focused on booking intercity ground travel (bus, train & more), used by over 100 million travelers on over 3 million routes in 80+ countries. The company also offers vertical B2B SaaS software that powers the business of hundreds of ground travel operators worldwide. We empower travelers to discover new destinations, build connections, and experience the world — all while making environmentally conscious choices by fostering a more sustainable and accessible mode of transportation.
Role Overview
We are seeking a Global Head of Cybersecurity who will oversee the safeguarding of our digital assets and technology infrastructure across all regions. This individual will collaborate closely with our leadership team to set the global cybersecurity strategy, oversee proactive protection of networks, systems, and data, and lead incident response. This role will ensure consistent security standards across our team, manage threat detection and prevention, and partner with business leaders to balance security with operational needs. You will lead efforts to comply with recognized security standards such as PCI DSS, ISO 27001 and others across the entire group. In this role, you will also guide regional teams, align with regulatory requirements, and report on global risk posture to senior leadership, while enabling teams to innovate safely in a fast paced, remote first environment.
Note
We are seeking someone with a proven track record in leading cybersecurity programs in a remote-first and highly distributed environment. You will have oversight over a limited, dedicated budget and will determine how to invest it judiciously.
Key Responsibilities
- Cybersecurity Strategy & Governance: Design and implement company-wide cybersecurity policies, standards, and procedures. Ensure alignment with relevant regional requirements and best practices across our global operations.
- Threat Detection & Incident Response: Monitor, assess, and respond to security threats, vulnerabilities, and incidents. Lead incident response planning and post-event analysis.
- Compliance & Risk Management: Conduct risk assessments, audits, and testing to proactively protect Busbud group’s digital assets. Ensure adherence to recognized security standards relevant to our operations.
- Collaboration & Security Enablement: Partner with engineering, product, and operations teams to embed security into all aspects of Busbud’s platform. Provide guidance and training to employees on security best practices, particularly for remote work environments.
- Continuous Improvement: Stay ahead of emerging threats, technologies, and industry trends. Continuously evolve security programs to ensure scalability, efficiency, and resilience. Invest in prevention.
- Spend Allocation: Determine where to invest (with tools, training, new hires, etc), managing to a budget while maximizing risk reduction.
What We’re Looking For
- Global Cybersecurity Experience: Proven experience securing digital platforms or marketplaces in multi-country environments.
- Regulatory Awareness: Understanding of security and compliance requirements relevant to the regions in which a global company operates.
- Hands-On Security Expertise: Practical experience with threat detection, incident response, vulnerability management, and secure software development practices.
- Strategic & Collaborative Mindset: Ability to work cross-functionally with technical and non-technical stakeholders. Excellent communication and problem-solving skills.
- Remote & Distributed Team Experience: Comfortable leading security initiatives in a remote-first, globally distributed team.
Qualifications Required
- Education & Certifications: Bachelor’s degree in Computer Science, Information Security, or a related field (or equivalent experience). Security certifications are highly desirable.
- Global Platform Security: Minimum of 5 years of proven experience securing SaaS platforms, marketplaces, or other multi-country digital platforms. Hands-on experience with cloud (Google, AWS, Kubernetes) and network security technologies.
- Regulatory & Risk Expertise: Understanding of international cybersecurity frameworks and regional requirements. Experience with risk management, compliance audits, and incident response planning.
- Secure Development Practices: Familiarity with DevSecOps practices and secure software development lifecycle.
- Analytical & Strategic Skills: Strong problem-solving, decision-making, and analytical abilities.
- Leadership & Communication: Experience leading security initiatives in a remote-first, globally distributed team. Excellent communication skills, able to explain complex security concepts to non-technical stakeholders.
- Policy & Training Development: Ability to develop security policies, procedures, and training programs for a multi-country organization.
What We Offer
- Impact: Tackle meaningful, high-impact challenges daily, with a great group of peers, from scaling systems & teams and launching new products to solving complex problems that shape the future of our organization & industry.
- Influence at Scale: Play a key leadership role at a company undergoing rapid growth and global expansion.
- Equity Upside: A chance to share in the value you help create through our stock option plan.
- Remote-First Culture: A collaborative, inclusive culture built for distributed teams.
- Health Benefits: Comprehensive medical, dental, and vision coverage.
- Wellness Fund: Annual allowance to support your physical, mental, and emotional well-being.
- Learning & Development: Ongoing opportunities for coaching, training, and professional growth.
Hiring Compliance & Accessibility
Busbud does not accept resumes from recruitment agencies unless there is a prior written mutual agreement for a specific job opening.
Employment equity and accessibility (Québec): Busbud is dedicated to fostering an inclusive, barrier-free workplace and ensuring equal access to employment opportunities, in accordance with Québec’s Charter of Human Rights and Freedoms. We encourage applications from all qualified candidates, including individuals with disabilities. We are committed to provide accommodations upon request at any stage of the recruitment process. Please confidentially inform our Talent team if you require an accommodation to facilitate appropriate arrangements.