Overview
Job Summary : We are seeking a highly skilled Chief Information Security Officer to lead our organization's cybersecurity efforts.
About the Role
- Embed security into the software development lifecycle, automating controls and ensuring applications, pipelines, and platforms remain secure and compliant with best practices and regulatory standards.
Responsibilities
- Define and implement Secure SDLC (sSDLC) and DevSecOps models.
- Establish security policies and controls at each phase of the SDLC (requirements, design, implementation, verification, deployment, and maintenance).
- Align processes with industry standards such as OWASP, NIST SSDF, or Microsoft SDL.
- Identify security requirements for applications.
- Review and update threat models and risk assessments.
- Perform both manual and automated code reviews (SAST, DAST, IAST, SCA) and implement automated scans in CI / CD pipelines.
- Integrate security tools within DevSecOps environments, ensuring early detection and remediation.
- Support technical audits, vulnerability assessments, and remediation plans.
- Design and deliver security awareness and training plans for developers.
- Act as a liaison between technical teams, security teams, and management, effectively communicating risks and results to stakeholders.
- Monitor KPIs and drive continuous improvement initiatives across the process.
Requirements
- Fluency in English and EU nationality.
- Bachelor's or Master's degree in Computer Science, Telecommunications, or a related field, with cybersecurity specialization.
- At least 3 years of experience in Application Security, Secure SDLC, or secure development.
- Strong knowledge of OWASP ASVS, OWASP SAMM, threat modeling, and security frameworks.
- Experience in code review, vulnerability scanning, and leadership in CI / CD pipelines.
- Proficiency with SAST, DAST, and IAST tools, as well as DevOps technologies.
- Valuable certifications : CISSP, CSSLP, CEH, OSCP, CISM.
- Excellent communication skills and ability to work with multidisciplinary teams.
- Strong analytical mindset and detail-oriented approach.
- Proactive and self-driven in critical environments.
- Strategic vision with strong cross-functional collaboration skills.