Overview:
The IT & Information Security Officer supports the Company’s technology governance, cybersecurity, and infrastructure operations, ensuring systems are secure, resilient, and compliant with VARA requirements. The role focuses on access control, system security, incident management, and operational continuity across the Company’s technology environment.
Responsibilities:
- Support technology governance, including asset inventories, system ownership, and control standards
- Operate information security controls across access management, authentication, endpoint, and network security
- Manage user access (joiner-mover-leaver), role-based permissions, and periodic access reviews
- Support vulnerability scanning, patch management, and remediation tracking
- Maintain system logging, monitoring, and alerting for security and operational events
- Support change management processes, including approvals, testing, and controlled deployments
- Coordinate incident management, including investigation, escalation, and root cause analysis
- Support business continuity and disaster recovery planning, testing, and documentation
- Assist in oversight of third-party technology providers and cloud services
- Ensure secure handling of sensitive and confidential data
- Support audits, penetration testing, and regulatory or assurance requests
- Escalate technology risks, control weaknesses, and security incidents promptly
Qualifications:
- Bachelor’s degree in IT, Cybersecurity, Computer Science, or related field
- Professional certifications (CISM, CISSP, CISA, ISO 27001, Security+, or equivalent) preferred
- 5+ years of experience in IT operations, infrastructure, information security, or technology risk
- Experience in financial services, fintech, cloud, or virtual assets preferred
- Strong understanding of access control, vulnerability management, incident response, and IT governance