|
|
|
ISX Financial is a leading financial technology company that provides secure and efficient payment solutions. We are looking for talented individuals to join our team and hel...
ISX Financial is a leading financial technology company that provides secure and efficient payment solutions. We are looking for talented individuals to join our team and help us continue to innovate in the fintech industry.
As an Electronic Money Institution licensed by the Central Bank of Cyprus, we offer a wide range of financial services, including payments, e-money issuance, and identity verification. Our advanced anti-fraud and anti-money laundering systems ensure the highest level of security for our customers.
Headquartered in Cyprus, ISX Financial is part of the Xryma Plc Group, which operates as a broader financial technology and infrastructure provider across multiple markets and service lines.
Join us and be part of a team that is committed to delivering exceptional customer service and innovative solutions shaping the future of finance.
The role:
As a Cyber Security Engineer, you will be responsible for designing, implementing, and maintaining the organisation’s cyber security infrastructure. This includes safeguarding company assets, such as intellectual propert, sensitive customer data and other classified information, from cyber threats and breaches. The individual in this role will be a subject matter expert in cyber security, with a deep understanding of security best practices, industry standards, and current threats.
This role offers broad development opportunities within ISX Financial. You will be provided training opportunities to nurture a continued successful career with a growing company in the Fintech/Regtech space where you can imprint your ideas and enthusiasm on the Cyber Security team. You will gain invaluable experience working with EU and globally recognised security standards and frameworks, such as PCI-DSS, ISO 27001, NIST, CIS, Swift CSCF, DORA, and PSD2.
Key Responsibilities:
· Review and respond daily to security events, alerts, and investigations, requiring you to problem solve and remediate using security tools and knowledge of incident response process.
· Plan and provide for a secure operating environment for the business and its people.
· Take responsibility for threat modeling current/new application features and product launches.
· Being a security consultant on security design best practices, identify security gaps and raise risks when discovered.
· Collaborate with our ITSM, DevOps, Developers, Technology & Infrastructure team to support the delivery of projects and product improvements, as required.
Skills & Requirements:
- An experienced cyber security engineer with minimum 5 years experience across several cyber security domains, with a thorough understanding of cyber security analysis and knowledge of IT security best practices, solutions, and infrastructure.
- Possessing information security certifications, such as CISSP, ISSAP, CEH, CASP, GSEC, GCIH, etc.
- Good knowledge of standards, controls, and frameworks, such as CIS Controls, CSA Cloud Controls Matrix, ISO27001, NIST Standards (800-53, CSF), OWASP Top 10. You need to be able to demonstrate working with at least one of these but have a deeper understanding of PCI DSS compliance requirements.
- Proficient in supporting cyber incident response processes and maintaining an effective continuous threat and vulnerability monitoring program.
- Able to demonstrate 2 years experience securing cloud workloads and infrastructure, and operating cloud-native security tools and services to provide automation, preventive and detective controls.
- Have an in-depth knowledge on Cyber Kill Chain or MITRE ATT&CK framework.
- Developed a technical capability in Identity and Access Management to implement and manage appropriate privileged access controls across disparate systems and networks, both on-prem and cloud, and have previously deployed SSO solutions with multiple IdPs.
- Comfortable implementing, operating, and optimising cyber security tools and able to quickly understand and adapt to new security solutions to provide optimised operation.
- Experienced in leading a team by example, and confident to take the initiative following consultation.
- Ability to work independently and prioritise work to manage conflicting deadlines.
- Follow industry trends, able to understand the latest developments, and identify opportunities to address control gaps and known risks.
- Professional work ethics and strong communication skills.
The nice to have:
- Experience working with fast-paced, cloud-first, innovative fintech companies that have challenged you to think creatively to meet complex objectives.
- An understanding of securing the operating environment of high-risk user groups, such as developers and regulated risk and finance teams, providing security-hardened devices and strong access controls.
- Perform application penetration testing and conduct security risk assessments of infrastructure changes.
- Comfortable providing guidance and training to team members and other departments.
Benefits:
- Private health & life insurance plan fully sponsored by the company from day one
- 21 days of Annual Leave (reaching up to 30 days)
- Birthday leave
- Happy hour with drinks and snacks every Friday
- Employee Training plans
- Benefits card with exclusive discounts to shops, restaurants, etc
- Sports Benefit participation scheme ( Platinum Package)
- Employee Referral bonus
- Internal cafeteria with barista, unlimited snacks, fruits, coffee
- Performance Bonus
- Employee wellness application ( mental, financial, nutritional)
- Gaming Corner
All applications will be treated with the strictest confidence. Personal information provided by applicants will be used solely for recruitment and selection purposes and will be handled in accordance with applicable data protection and privacy laws.
Due to the high volume of applications received, only shortlisted candidates will be contacted.
To find out more about how we process your data, please read our privacy policy (Privacy Notice & Disclosure section) at
https://www.isx.financial/legalprivacyeu#:~:text=Privacy%20Notice%20%26%20Disclosure
***
Please note that our company works with recruitment agencies on a pre-approved basis only. A recruitment agency that wishes to submit candidate profiles or resumes for consideration must obtain prior written consent from our HR team.
We do not accept unsolicited resumes from recruitment agencies, and we will not be responsible for any fees related to unsolicited CVs.
|
|
|
ISX Financial is a leading financial technology company that provides secure and efficient payment solutions. We are looking for talented individuals to join our team and help us continue to innovate in the fintech industry.
As an Electronic Money Institution licensed by the Central Bank of Cyprus, we offer a wide range of financial services, including payments, e-money issuance, and identity verification. Our advanced anti-fraud and anti-money laundering systems ensure the highest level of security for our customers.
Headquartered in Cyprus, ISX Financial is part of the Xryma Plc Group, which operates as a broader financial technology and infrastructure provider across multiple markets and service lines.
Join us and be part of a team that is committed to delivering exceptional customer service and innovative solutions shaping the future of finance.
The role:
As a Cyber Security Engineer, you will be responsible for designing, implementing, and maintaining the organisation’s cyber security infrastructure. This includes safeguarding company assets, such as intellectual propert, sensitive customer data and other classified information, from cyber threats and breaches. The individual in this role will be a subject matter expert in cyber security, with a deep understanding of security best practices, industry standards, and current threats.
This role offers broad development opportunities within ISX Financial. You will be provided training opportunities to nurture a continued successful career with a growing company in the Fintech/Regtech space where you can imprint your ideas and enthusiasm on the Cyber Security team. You will gain invaluable experience working with EU and globally recognised security standards and frameworks, such as PCI-DSS, ISO 27001, NIST, CIS, Swift CSCF, DORA, and PSD2.
Key Responsibilities:
· Review and respond daily to security events, alerts, and investigations, requiring you to problem solve and remediate using security tools and knowledge of incident response process.
· Plan and provide for a secure operating environment for the business and its people.
· Take responsibility for threat modeling current/new application features and product launches.
· Being a security consultant on security design best practices, identify security gaps and raise risks when discovered.
· Collaborate with our ITSM, DevOps, Developers, Technology & Infrastructure team to support the delivery of projects and product improvements, as required.
Skills & Requirements:
- An experienced cyber security engineer with minimum 5 years experience across several cyber security domains, with a thorough understanding of cyber security analysis and knowledge of IT security best practices, solutions, and infrastructure.
- Possessing information security certifications, such as CISSP, ISSAP, CEH, CASP, GSEC, GCIH, etc.
- Good knowledge of standards, controls, and frameworks, such as CIS Controls, CSA Cloud Controls Matrix, ISO27001, NIST Standards (800-53, CSF), OWASP Top 10. You need to be able to demonstrate working with at least one of these but have a deeper understanding of PCI DSS compliance requirements.
- Proficient in supporting cyber incident response processes and maintaining an effective continuous threat and vulnerability monitoring program.
- Able to demonstrate 2 years experience securing cloud workloads and infrastructure, and operating cloud-native security tools and services to provide automation, preventive and detective controls.
- Have an in-depth knowledge on Cyber Kill Chain or MITRE ATT&CK framework.
- Developed a technical capability in Identity and Access Management to implement and manage appropriate privileged access controls across disparate systems and networks, both on-prem and cloud, and have previously deployed SSO solutions with multiple IdPs.
- Comfortable implementing, operating, and optimising cyber security tools and able to quickly understand and adapt to new security solutions to provide optimised operation.
- Experienced in leading a team by example, and confident to take the initiative following consultation.
- Ability to work independently and prioritise work to manage conflicting deadlines.
- Follow industry trends, able to understand the latest developments, and identify opportunities to address control gaps and known risks.
- Professional work ethics and strong communication skills.
The nice to have:
- Experience working with fast-paced, cloud-first, innovative fintech companies that have challenged you to think creatively to meet complex objectives.
- An understanding of securing the operating environment of high-risk user groups, such as developers and regulated risk and finance teams, providing security-hardened devices and strong access controls.
- Perform application penetration testing and conduct security risk assessments of infrastructure changes.
- Comfortable providing guidance and training to team members and other departments.
Benefits:
- Private health & life insurance plan fully sponsored by the company from day one
- 21 days of Annual Leave (reaching up to 30 days)
- Birthday leave
- Happy hour with drinks and snacks every Friday
- Employee Training plans
- Benefits card with exclusive discounts to shops, restaurants, etc
- Sports Benefit participation scheme ( Platinum Package)
- Employee Referral bonus
- Internal cafeteria with barista, unlimited snacks, fruits, coffee
- Performance Bonus
- Employee wellness application ( mental, financial, nutritional)
- Gaming Corner
All applications will be treated with the strictest confidence. Personal information provided by applicants will be used solely for recruitment and selection purposes and will be handled in accordance with applicable data protection and privacy laws.
Due to the high volume of applications received, only shortlisted candidates will be contacted.
To find out more about how we process your data, please read our privacy policy (Privacy Notice & Disclosure section) at
https://www.isx.financial/legalprivacyeu#:~:text=Privacy%20Notice%20%26%20Disclosure
***
Please note that our company works with recruitment agencies on a pre-approved basis only. A recruitment agency that wishes to submit candidate profiles or resumes for consideration must obtain prior written consent from our HR team.
We do not accept unsolicited resumes from recruitment agencies, and we will not be responsible for any fees related to unsolicited CVs.
|
|
|