Logo for Ciklum

Information Security Manager

Role overview

Qualifications

  • Demonstrable experience of leading an information security capability for a large business unit
  • Good understanding of security within agile development processes, and in Amazon Web Services
  • Adept understanding of security operations and security incident management in Cloud and On-Prem environments
  • Excellent interpersonal and relationship skills to work with technical and non-technical colleagues around the world

Responsibilities

  • Develop and support the implementation of the information security strategy aligned with evolving business risks and priorities
  • Promote a security-first culture and embed secure ways of working across business and IT teams
  • Advise stakeholders on information security policies, standards, controls, and best practices
  • Identify, assess, and proactively communicate security risks and recommend pragmatic, cost-effective mitigation measures

About the company

Ciklum logo

Ciklum

Ciklum is a global Digital Solutions Company for Fortune 500 and fast-growing organisations alike around the world. The company is headquartered in London and has software development centres and branch offices in the United States, Spain, Switzerland, Denmark, Israel, Poland, Ukraine, Czech Republic, Slovakia, Romania, UAE and Pakistan.Ciklum builds tailored digital solutions that leverage emerging technologies for such clients as Just Eat, Flixbus, Metro Markets, EFG International, Zurich Insurance, Lottoland and others.For more information about us visit www.ciklum.com

Company details

Company typeStartup
Company size1001 - 5000

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Ciklum is looking for an Information Security Manager to join our team full-time in Bulgaria.

We are a custom product engineering company that supports both multinational organizations and scaling startups to solve their most complex business challenges. With a global team of over 4,000 highly skilled developers, consultants, analysts and product owners, we engineer technology that redefines industries and shapes the way people live.

About the role:

As an Information Security Manager, become a part of a cross-functional development team engineering experiences of tomorrow, you will promote a security first culture at the project. You will contribute to the delivery of an information security strategy to address the evolving business risk and empower the Domain to deliver the prioritised roadmap. You will lead the collaboration with stakeholders to communicate and embed secure ways of working with regular cadence and engagement. This will include protecting the client's brand and its customers, detecting and responding to incidents, strengthening our defences, reducing the attack surface, proactively highlighting risks to the business and promoting security awareness as second nature. You will drive adoption of and adherence to security policies, standards, and controls through the provision of expert advice and guidance. Protect our most critical assets and ensure appropriate assurance and rigorous testing is in place. You will ensure local security incidents are managed effectively, and that lessons learned, and audit findings are remediated. You will have come from a technical background and having good knowledge of security in AWS Cloud environments having held a technical role. Ensure effective security operations (e.g. vulnerability scanning, patching). 

Protect the integrity, availability, authenticity, non-repudiation and confidentiality of information and data in storage and in transit. Manage risk in a pragmatic and cost-effective manner to ensure stakeholder confidence. You will report on the overall effectiveness of the security programme on the Domain against defined key performance indicators and drive continuous improvement.

Our information security team works in collaboration with business and IT teams across our many businesses. You will build strong working relationships influence others to do the right thing to Protect our Smile. Security is part of everyone’s job. We practise secure behaviours first in everything we do. 

Responsibilities:

  • Develop and support the implementation of the information security strategy aligned with evolving business risks and priorities
  • Promote a security-first culture and embed secure ways of working across business and IT teams
  • Advise stakeholders on information security policies, standards, controls, and best practices
  • Identify, assess, and proactively communicate security risks and recommend pragmatic, cost-effective mitigation measures
  • Protect critical business assets, customer data, and the company’s brand by strengthening security controls and reducing the attack surface
  • Lead security incident management, ensuring timely response, investigation, remediation, and implementation of lessons learned
  • Ensure effective security operations, including vulnerability scanning, patching, and ongoing security monitoring
  • Assess and strengthen security controls across AWS Cloud environments
  • Ensure appropriate security assurance, rigorous testing, and compliance with established security requirements
  • Drive adherence to security policies, standards, and controls across the organization
  • Support audit activities and ensure timely remediation of audit findings and identified security gaps
  • Protect the integrity, availability, authenticity, non-repudiation, and confidentiality of information and data both at rest and in transit
  • Build strong relationships with business and IT stakeholders and influence the adoption of secure practices
  • Report on the effectiveness of the information security program using defined KPIs and identify opportunities for continuous improvement
  • Promote security awareness and encourage secure behaviors across the organization

Requirements:

  • Demonstrable experience of leading and information security capability for a large business unit
  • Good understanding of security within agile development processes, and in Amazon Web Services
  • Adept understanding of security operations and security incident management in Cloud and OnPrem environments
  • Good experience in implementing ISMS in a large organisation
  • AWS Cloud Fundamental or Practitioner certification preferable
  • ISO27001 Lead Implementer, COMPTIA Security+, CISMP/CISSP/CISM/CISA certified preferred
  • Good understanding of the international regulatory context, particularly data privac
  • Good understanding of standards and frameworks such as ISO, NIST, PCIDSS, OWASP and ITIL
  • Excellent planning and organisation skills to determine effective course of action
  • Strong communication skills. Experienced at gaining commitment from stakeholders to reach broader goal to reduce information security risks
  • Excellent interpersonal and relationship skills to work with technical and non-technical colleagues around the world
  • Goal orientated to maintain focus on agreed Information Security objectives and deliverables
  • Problem solving skills to identify creative and elegant solutions to support Information Security GRC activities and overall objectives
  • A logical thinker, and a team player with ability to think positively in a problem situation
  • Strong commercial acumen when making proposals, taking actions or help support decision making
  • Good organisational structure awareness. Able to identify the decision makers and influencers
  • Ability to understand the needs, objectives, and constraints of those in other teams

What’s in it for you?

  • Regular salary reviews based on performance
  • Corporate events: webinars, offline parties, and meetups
  • Internal Mobility Program
  • Tailored education path (including full access to Udemy, certifications, etc.)
  • 25 paid days off: 20 business days of vacation per calendar year + 5 undocumented sick leave days
  • Additional health insurance
  • 100% company-covered Multisport card, with discounts available for family members

About us:

At Ciklum, we are always exploring innovations, empowering each other to achieve more, and engineering solutions that matter. With us, you’ll work with cutting-edge technologies, contribute to impactful projects, and be part of a One Team culture that values collaboration and progress.

Since expanding to Bulgaria in 2022, we’ve been building a fast-growing team that thrives on learning, collaboration, and innovation. Join us on this exciting journey and help shape the future of our delivery center.

Explore, empower, engineer with Ciklum!

Interested already? We would love to get to know you! Submit your application. We can’t wait to see you at Ciklum.

#LI-MH1

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

IT Security Manager Related jobs

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.