Chief Information Security Officer (CISO)

1 Month ago • 10 Years + • $110,000 PA - $300,000 PA

Job Summary

Job Description

As Chief Information Security Officer (CISO) at Xsolla, you will lead and scale the global information security and compliance strategy. You will be responsible for safeguarding products, platforms, infrastructure, and customer data across all regions. This strategic leadership role involves maintaining partner and user trust while innovating in the gaming ecosystem. Reporting to the CTO, you'll collaborate with various teams to align security and compliance with business objectives, ensuring world-class protection and operational agility. Responsibilities include defining the security strategy, managing risks, building a security organization, and overseeing compliance programs such as PCI DSS, SOC 1/2, GDPR, and CCPA.
Must have:
  • 10+ years of leadership experience in cybersecurity and compliance.
  • Expertise in cloud-native security (AWS/GCP) and data protection.
  • Experience managing compliance programs across multiple frameworks.
  • Proven ability to scale security programs globally.
  • Strong communication and executive reporting skills.
  • Experience leading secure development and DevSecOps practices.
Good to have:
  • Experience in the gaming industry, fintech, or B2B platforms.
  • Familiarity with security tools like Palo Alto Networks.
  • Professional certifications like CISSP, CISM, CCSP, CISA.
  • Understanding of global data privacy regulations.

Job Details

ABOUT US


At Xsolla, we believe that great games begin as ideas, driven by the curiosity, dedication, and grit of creators around the world. Our mission is to empower these visionaries by providing the support and resources they need to bring their games to life. We are committed to leveling the playing field, ensuring that every creator has the opportunity to share their passion with the world. 


Headquartered in Los Angeles, with offices in Berlin, Seoul, and beyond, we partner with industry leaders like Valve, Twitch, and Ubisoft to clear the paths for innovation in gaming. Our global reach spans over 200 geographies, offering more than 700 payment methods in 130+ currencies.


Longevity Opportunity Vision Enjoy the game!


ABOUT YOU


Xsolla is seeking an experienced and visionary Chief Information Security Officer (CISO) to lead and scale our global information security and compliance strategy. As CISO, you will be responsible for safeguarding our products, platforms, infrastructure, and customer data across all regions. This is a strategic leadership role, essential to maintaining the trust of our partners and users as we grow and innovate in the global gaming ecosystem.


You will report directly to the CTO and work cross-functionally with executive leadership, engineering, legal, compliance, and product teams. Your mission is to align Xsolla’s security and compliance posture with its business objectives, ensuring world-class protection while enabling innovation and operational agility.


RESPONSIBILITES

    • Define, drive, and continuously evolve Xsolla’s enterprise-wide information security and compliance strategy.
    • Serve as the primary executive owner of cybersecurity risk management and cybersecurity incident response.
    • Advise the executive team on security risks, priorities, and investment decisions.
    • Align security initiatives with company objectives, regulatory requirements, and customer trust commitments.
    • Build, lead, and mentor a world-class security organization, including security operations, application security, and GRC (governance, risk & compliance).
    • Promote a culture of security-first thinking across all levels of the organization.
    • Oversee security for private and public cloud infrastructure (AWS/GCP), SaaS applications, corporate IT, and development environments.
    • Embed secure development practices into SDLC, CI/CD pipelines, DevSecOps, and infrastructure-as-code.
    • Lead proactive threat modeling, secure code reviews, vulnerability management, and threat detection initiatives.
    • Ensure a robust and tested incident response and disaster recovery framework.
    • Own Xsolla’s compliance programs, including PCI DSS, SOC 1, SOC 2, GDPR, CCPA, and other applicable frameworks and regulations.
    • Lead regular audits, risk assessments, and gap analyses to ensure ongoing compliance.
    • Collaborate with Legal, IT, and external auditors to ensure policies and procedures align with evolving regulatory and industry requirements.
    • Establish a company-wide risk management framework to identify, assess, mitigate, and monitor cybersecurity and compliance risks.
    • Evaluate, implement, and manage security and compliance tooling across infrastructure, endpoints, and applications.
    • Engage and manage third-party vendors for audits, penetration testing, threat intelligence, and managed services.
    • Standardize scalable processes for vulnerability remediation and compliance monitoring.
    • Translate security and compliance risks into business terms and effectively communicate them to executive leadership and stakeholders.
    • Deliver regular reports, metrics, and board-level updates on security posture, risk, and compliance.


REQUIREMENTS

    • 10+ years of progressive leadership experience in cybersecurity and compliance, ideally in SaaS or enterprise technology environments.
    • Deep expertise in cloud-native security (AWS/GCP), application security, data protection, and risk management.
    • Direct experience managing compliance programs across multiple frameworks (PCI DSS, SOC 1/2, GDPR, ISO 27001, etc.).
    • Proven ability to scale security programs globally while aligning with business and product objectives.
    • Strong communication and executive reporting skills.
    • Experience leading secure development and DevSecOps practices in high-growth environments.


NICE TO HAVE

    • Experience in the gaming industry, fintech, or B2B platform services.
    • Familiarity with tools such as Palo Alto Networks, Google Cloud Security Command Center (SCC), AWS Security Hub / AWS GuardDuty, or other cloud and code security platforms.
    • Professional certifications: CISSP, CISM, CCSP, CISA, or similar.
    • Deep understanding of global data privacy regulations and cross-border data handling.


Similar Jobs

NCR Voyix - Software Engineer III

NCR Voyix

Hyderabad, Telangana, India (On-Site)
3 Weeks ago
OKX - Data Engineer

OKX

Hong Kong (On-Site)
8 Months ago
Diligent Corporation - Audit, Risk and Compliance - Senior Advisory Specialist

Diligent Corporation

Guadalajara, Jalisco, Mexico (On-Site)
2 Months ago
Sonar Source - Enterprise Account Executive - India (BFSI)

Sonar Source

India (On-Site)
9 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

fluence - Product Security Architect

fluence

Bengaluru, Karnataka, India (Hybrid)
1 Month ago
Ion - License Key Analyst

Ion

Dublin, County Dublin, Ireland (On-Site)
3 Years ago
bytedance - Innovation Tech Solution Sales - BytePlus - Ho Chi Minh

bytedance

Ho Chi Minh City, Ho Chi Minh City, Vietnam (On-Site)
8 Months ago
Temporal Technologies - Senior Software Engineer - Open-Source Server

Temporal Technologies

(Remote)
1 Month ago
Toast - Director of Engineering, Fintech

Toast

Dublin, County Dublin, Ireland (Hybrid)
2 Weeks ago
clevertap - Account Executive, Enterprise

clevertap

State Of São Paulo, Brazil (Hybrid)
5 Months ago
A-Team - Enterprise Account Executive

A-Team

New York, United States (Hybrid)
1 Month ago
USE Insider - Senior Software Engineer (Golang)

USE Insider

Istanbul, İstanbul, Türkiye (Remote)
8 Months ago
CyberArk - Product Operations Program Manager

CyberArk

Israel (Hybrid)
1 Month ago
Lytx,  Inc  - Senior Security Engineer

Lytx, Inc

Bengaluru, Karnataka, India (On-Site)
3 Days ago

Get notifed when new similar jobs are uploaded

Jobs in Canada

PwC - U.S. Tax, Senior Manager

PwC

Calgary, Alberta, Canada (Hybrid)
2 Weeks ago
ShyftLabs - Technical Product Manager

ShyftLabs

Toronto, Ontario, Canada (Hybrid)
1 Month ago
Canonical - MAAS Systems Engineer - Python

Canonical

Toronto, Ontario, Canada (Hybrid)
1 Month ago
virtual machine - ACT: Advanced Coxswain Training Program (Lifeboat)

virtual machine

Paradise, Newfoundland And Labrador, Canada (On-Site)
3 Days ago
Behaviour Interactive - Principal Generalist Programmer - Dead by Daylight

Behaviour Interactive

Ontario, Canada (Hybrid)
3 Months ago
luxsoft - MUREX CEM

luxsoft

Toronto, Ontario, Canada (On-Site)
3 Weeks ago
Image Engine - Animator - Lead

Image Engine

Vancouver, British Columbia, Canada (Hybrid)
3 Months ago
2K - Gameplay Animator

2K

Burnaby, British Columbia, Canada (Hybrid)
1 Month ago
Tactic studios - Lead Gameplay Programmer

Tactic studios

Canada (Remote)
2 Months ago
Epic Games - Senior QA Programmer

Epic Games

Montreal, Quebec, Canada (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Similar Category Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

About The Company

Baku, Azerbaijan (Hybrid)

Baku, Azerbaijan (Hybrid)

Kuala Lumpur, Federal Territory Of Kuala Lumpur, Malaysia (Hybrid)

Montreal, Quebec, Canada (Hybrid)

Los Angeles, California, United States (Hybrid)

Los Angeles, California, United States (On-Site)

London, England, United Kingdom (Hybrid)

Berlin, Berlin, Germany (Hybrid)

Raleigh, North Carolina, United States (Hybrid)

View All Jobs

Get notified when new jobs are added by Xsolla

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug