We are seeking a Head of Infrastructure & Cloud Security to lead and develop our security operations across cloud, network, identity, endpoint, and data domains. In this role, you will design and enforce security protocols in a hybrid environment, lead a team of security engineers, promote a cloud-first approach, and report on enterprise security metrics
Responsibilities * Shape and oversee the infrastructure and cloud security strategy, reporting directly to the CISO * Hire, lead, mentor, and develop security engineers and team leads * Define and enforce enterprise security guardrails, approving low/medium-risk platform exceptions * Manage and lead CSPM/CNAPP/CWPP, WAF, DNS security, and IaC scanning across cloud environments * Collaborate with Platform and SRE teams to manage cloud IAM and security-group guardrails * Enhance and manage endpoint security across managed devices, including hardening and telemetry health * Own data security and cryptography controls, including KMS, secrets management, PKI, and certificate lifecycle * Track, analyze, and report enterprise security metrics
Requirements * Proven experience in leading security engineers and managing teams * Hands-on experience in cybersecurity engineering * Strong experience in securing on-premises infrastructure in an enterprise environment * Experience with any major cloud provider * Proficiency in cloud and network security, including CSPM/CNAPP/CWPP tools, WAF, DNS security, and IaC scanning * Experience with EDR/XDR and MDM solutions * Understanding of identity and access management, including cloud IAM and security-group guardrails * Experience with KMS, secrets management, PKI, and certificate management * Ability to enforce security controls without hindering delivery for Platform/SRE/DevOps teams
Will be a plus * Experience in building or maturing an infrastructure/cloud security function from an early stage * Background in fintech, brokerage, trading platforms, payments, or regulated environments * Knowledge of Kubernetes/container security and cloud-native architectures * Exposure to SOC 2, ISO 27001, or DORA compliance frameworks * Familiarity with security tools such as Wiz, Panorama, Elastic Defender, Entra, or CyberArk
We offer * 20 paid vacation days off year * 10 paid sick leave per year * Public holidays as per the company’s approved Public holiday list * Medical budget * Opportunity to work remotely * Professional educational budget * Language learning budget * Wellness budget (gym membership, sport gear and related expenses)