Ciklum

Information Security Manager

Ciklum  •  Republic of Bulgaria (Onsite)  •  1 day ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

Ciklum is looking for an Information Security Manager to join our team full-time in Bulgaria.

We are a custom product engineering company that supports both multinational organizations and scaling startups to solve their most complex business challenges. With a global team of over 4,000 highly skilled developers, consultants, analysts and product owners, we engineer technology that redefines industries and shapes the way people live.

About the role:

As an Information Security Manager, become a part of a cross-functional development team engineering experiences of tomorrow, you will promote a security first culture at the project. You will contribute to the delivery of an information security strategy to address the evolving business risk and empower the Domain to deliver the prioritised roadmap. You will lead the collaboration with stakeholders to communicate and embed secure ways of working with regular cadence and engagement. This will include protecting the client's brand and its customers, detecting and responding to incidents, strengthening our defences, reducing the attack surface, proactively highlighting risks to the business and promoting security awareness as second nature. You will drive adoption of and adherence to security policies, standards, and controls through the provision of expert advice and guidance. Protect our most critical assets and ensure appropriate assurance and rigorous testing is in place. You will ensure local security incidents are managed effectively, and that lessons learned, and audit findings are remediated. You will have come from a technical background and having good knowledge of security in AWS Cloud environments having held a technical role. Ensure effective security operations (e.g. vulnerability scanning, patching).

Protect the integrity, availability, authenticity, non-repudiation and confidentiality of information and data in storage and in transit. Manage risk in a pragmatic and cost-effective manner to ensure stakeholder confidence. You will report on the overall effectiveness of the security programme on the Domain against defined key performance indicators and drive continuous improvement.

Our information security team works in collaboration with business and IT teams across our many businesses. You will build strong working relationships influence others to do the right thing to Protect our Smile. Security is part of everyone’s job. We practise secure behaviours first in everything we do.

Responsibilities:

  • Develop and support the implementation of the information security strategy aligned with evolving business risks and priorities
  • Promote a security-first culture and embed secure ways of working across business and IT teams
  • Advise stakeholders on information security policies, standards, controls, and best practices
  • Identify, assess, and proactively communicate security risks and recommend pragmatic, cost-effective mitigation measures
  • Protect critical business assets, customer data, and the company’s brand by strengthening security controls and reducing the attack surface
  • Lead security incident management, ensuring timely response, investigation, remediation, and implementation of lessons learned
  • Ensure effective security operations, including vulnerability scanning, patching, and ongoing security monitoring
  • Assess and strengthen security controls across AWS Cloud environments
  • Ensure appropriate security assurance, rigorous testing, and compliance with established security requirements
  • Drive adherence to security policies, standards, and controls across the organization
  • Support audit activities and ensure timely remediation of audit findings and identified security gaps
  • Protect the integrity, availability, authenticity, non-repudiation, and confidentiality of information and data both at rest and in transit
  • Build strong relationships with business and IT stakeholders and influence the adoption of secure practices
  • Report on the effectiveness of the information security program using defined KPIs and identify opportunities for continuous improvement
  • Promote security awareness and encourage secure behaviors across the organization

Requirements:

  • Demonstrable experience of leading and information security capability for a large business unit
  • Good understanding of security within agile development processes, and in Amazon Web Services
  • Adept understanding of security operations and security incident management in Cloud and OnPrem environments
  • Good experience in implementing ISMS in a large organisation
  • AWS Cloud Fundamental or Practitioner certification preferable
  • ISO27001 Lead Implementer, COMPTIA Security+, CISMP/CISSP/CISM/CISA certified preferred
  • Good understanding of the international regulatory context, particularly data privac
  • Good understanding of standards and frameworks such as ISO, NIST, PCIDSS, OWASP and ITIL
  • Excellent planning and organisation skills to determine effective course of action
  • Strong communication skills. Experienced at gaining commitment from stakeholders to reach broader goal to reduce information security risks
  • Excellent interpersonal and relationship skills to work with technical and non-technical colleagues around the world
  • Goal orientated to maintain focus on agreed Information Security objectives and deliverables
  • Problem solving skills to identify creative and elegant solutions to support Information Security GRC activities and overall objectives
  • A logical thinker, and a team player with ability to think positively in a problem situation
  • Strong commercial acumen when making proposals, taking actions or help support decision making
  • Good organisational structure awareness. Able to identify the decision makers and influencers
  • Ability to understand the needs, objectives, and constraints of those in other teams

What’s in it for you?

  • Regular salary reviews based on performance
  • Corporate events: webinars, offline parties, and meetups
  • Internal Mobility Program
  • Tailored education path (including full access to Udemy, certifications, etc.)
  • 25 paid days off: 20 business days of vacation per calendar year + 5 undocumented sick leave days
  • Additional health insurance
  • 100% company-covered Multisport card, with discounts available for family members

About us:

At Ciklum, we are always exploring innovations, empowering each other to achieve more, and engineering solutions that matter. With us, you’ll work with cutting-edge technologies, contribute to impactful projects, and be part of a One Team culture that values collaboration and progress.

Since expanding to Bulgaria in 2022, we’ve been building a fast-growing team that thrives on learning, collaboration, and innovation. Join us on this exciting journey and help shape the future of our delivery center.

Explore, empower, engineer with Ciklum!

Interested already? We would love to get to know you! Submit your application. We can’t wait to see you at Ciklum.

#LI-MH1

Ciklum

About Ciklum

Ciklum is a global Experience Engineering firm that stands at the forefront of innovation, blending next-generation product engineering, exceptional customer experiences, and cutting-edge AI. The business revolutionizes the way people live by developing technologies that reimagine, reshape, and redefine the future.

For over 20 years, Ciklum has been a trusted partner to global enterprises and digital disruptors, spearheading the creation of digital solutions that tackle complex corporate challenges while propelling businesses toward accelerated growth and success.

Its global team of over 4,000 highly skilled engineers, experience design specialists and consultants joins forces to engineer technology that paves the way for the future of your business.

Ciklum builds tailored digital solutions that leverage emerging technologies for such clients as Just Eat, Metro Markets, EFG International, Zurich Insurance and others.

For more information about us visit www.ciklum.com

Industry
IT & Software
Company Size
1,001-5,000 employees
Headquarters
London, GB
Year Founded
2002
Social Media