Head of Security
Office, Cyprus | Full-time
Responsibilities
- Cybersecurity & Infrastructure Protection
- Develop and implement a comprehensive cybersecurity strategy to protect trading platforms, APIs, and back-office infrastructure
- Ensure secure architecture of trading systems, web applications, and cloud environments
- Oversee SOC operations, monitoring, and response strategies for cyber threats
- Establish and enforce incident response plans, including DDoS mitigation, data breaches, and insider threats
- Collaborate with IT and DevOps teams to embed security best practices into SDLC
- Fraud & Risk Management
- Design and execute anti-fraud frameworks to prevent account takeovers, money laundering, and financial fraud
- Implement AI-driven fraud detection systems to analyze trading patterns and suspicious activities
- Work closely with KYC, AML, and Compliance teams to mitigate risks related to financial crime
- Establish protocols for secure identity verification, access control, and user authentication
- Compliance & Regulatory Security
- Ensure compliance with CySEC and other regulatory security requirements
- Lead security audits, penetration testing, and vulnerability assessments to meet industry standards
- Define security policies aligning with GDPR, PSD2, and other data privacy regulations
- Coordinate with regulatory bodies to ensure continuous compliance with cybersecurity law
- Data Leak Prevention & Office Security
- Preventing data theft from office premises, including equipment, documents, and company valuables
- Supporting and maintaining security tools used in the office
- Protecting employee and corporate data from unauthorized access
- Securing company documents to prevent leaks
- Identifying and mitigating risks related to data breaches in company operations and processes
- Leadership & Strategy
- Build and lead a high-performing security team, including security engineers, analysts, and risk specialists
- Develop security awareness training for employees, fostering a strong security culture
- Oversee third-party security vendors, risk assessments, and partnerships
- Report security risks, incidents, and mitigation strategies to C-level executives and the board
Requirements
- 10+ years of experience in cybersecurity, risk management, or IT security within financial services, preferably in CFD/FX brokerage
- Proven track record in leading security teams and building cybersecurity programs
- Strong knowledge of infrastructure security (AWS, Azure, GCP, on-premise servers), DevSecOps, and application security
- Experience with SIEM, XDR, IAM, PAM, and fraud detection systems
- Deep understanding of regulatory requirements in financial markets, including AML, KYC, and PSD2 security mandates
- Experience in passing security audits for SOC 2 and PCI DSS
- Bachelor’s or Master’s degree in Cybersecurity, Computer Science, or a related field
- Relevant certifications such as CISSP, CISM, CISA, CEH, OSCP, or CCSP
- Strong analytical and problem-solving mindset
- Excellent communication skills, capable of influencing executive leadership
- Ability to thrive in a high-pressure, fast-paced trading environment
We offer
- Work in a transparent, client-focused environment where every trading decision fosters long-term trust and exceptional service
- Opportunity to tackle the thrilling challenges of a rapidly expanding environment
- Lead the charge in implementing cutting-edge technologies and strategies to drive the company’s success
- 10 medical leave days per year
- 21 annual leave days per year
- Public holiday in accordance with the Cyprus Public Holiday list
- Medical insurance
- Compensation for professional education, learning English
- Compensation for a sports subscription or sports equipment
- Extensive relocation package for you and your family