CISO

3 Weeks ago • 10 Years + • Cyber Security

Job Summary

Job Description

The Chief Information Security Officer (CISO) at PAPAYA is responsible for protecting the company's digital infrastructure, data, and internal systems from cyber threats. Key responsibilities include developing and overseeing security frameworks, monitoring for anomalies, leading risk assessments, ensuring compliance with data protection laws (GDPR, CCPA), implementing application security best practices (OWASP Top 10), managing security operations (SOC, SIEM), leading incident response, and educating employees on cybersecurity best practices. The role requires expertise in cloud security, real-time threat detection, and regulatory compliance. The CISO will collaborate with legal, compliance, and risk teams, manage third-party vendors, and develop and maintain security policies aligned with ISO 27001, NIST, GDPR, and industry standards.
Must have:
  • Develop and oversee security frameworks
  • Monitor real-time traffic and system logs
  • Ensure compliance with data protection laws
  • Implement application security best practices
  • Manage security operations (SOC, SIEM)
  • Lead incident response
  • Educate employees on cybersecurity
Good to have:
  • Experience in fraud detection and prevention
  • Strong knowledge of payment security

Job Details

Description

Chief Information Security Officer (CISO)

As the Chief Information Security Officer (CISO) at PAPAYA, you will be responsible for protecting the company’s digital infrastructure, data, and internal systems from cyber threats. You will develop and implement security strategies to ensure compliance, safeguard intellectual property, and mitigate cybersecurity risks. This role requires expertise in cloud security, real-time threat detection, and regulatory compliance to support a seamless and secure operational environment.


Responsibilities

Key Responsibilities:

Security & Risk Management

  • Develop and oversee security frameworks for enterprise infrastructure, including cloud environments and critical systems.
  • Monitor real-time traffic and system logs to detect anomalies and mitigate security risks.
  • Lead risk assessment initiatives to identify vulnerabilities and implement mitigation strategies.

Data Protection & Compliance

  • Ensure compliance with global data protection laws (e.g., GDPR, CCPA) and industry regulations.
  • Lead security and privacy initiatives to protect user accounts, payment information, and sensitive data.
  • Oversee identity and access management (IAM) solutions to prevent unauthorized access to critical systems and applications.

Application Security & Secure Development

  • Implement and enforce application security best practices, focusing on OWASP Top 10 vulnerabilities and secure coding.
  • Ensure secure mobile application development by integrating security controls into mobile app lifecycles.
  • Oversee Web Application Firewall (WAF) solutions to protect against web-based threats.
  • Work with engineering teams to implement DevSecOps and security automation across development pipelines.
  • Oversee penetration testing, bug bounty programs, and vulnerability management for applications and APIs.

Cyber Threat Intelligence & Incident Response

  • Establish and manage security operations (SOC), SIEM, and threat detection for real-time response to cyber threats.
  • Lead forensic investigations and incident response for cyberattacks affecting enterprise infrastructure.
  • Stay ahead of emerging threats, including hacking techniques, ransomware, and credential stuffing attacks.

Security Awareness & Collaboration

  • Educate employees and stakeholders on cybersecurity best practices.
  • Work closely with legal, compliance, and risk teams to align security policies with business goals.
  • Manage relationships with third-party security vendors and technology partners.

Policies & Compliance

  • Develop & Maintain Security Policies – Create and enforce cybersecurity policies aligned with ISO 27001, NIST, GDPR, and industry standards.
  • Ensure Regulatory Compliance – Oversee adherence to compliance frameworks (SOC 2, PCI-DSS, ISO27001, and ISO27701) and conduct security audits.
  • Risk & Incident Management – Implement risk assessment strategies and incident response plans to mitigate security threats.
  • Governance & Reporting – Provide security insights to leadership, track KPIs, and ensure business alignment with security objectives.

Nice to Have:

  • Experience in fraud detection and prevention, including unauthorized access mitigation and financial fraud protection.
  • Strong knowledge of payment security, identity verification, and fraud analytics.


Requirements


Qualifications & Experience:

  • B.Sc. degree in Computer Science, Software Engineering, or a related field.
  • 10+ years of experience in cybersecurity, with at least 5 years in a leadership role.
  • Expertise in application security, including OWASP Top 10, secure mobile application development, and WAF implementation.
  • Strong knowledge of identity security, cloud security, and enterprise risk management.
  • Experience securing cloud-based services and large-scale enterprise environments.
  • Familiarity with SOC 2, ISO 27001, GDPR, and industry compliance standards.
  • Familiarity with working with the following security tools:
  • CSPM (Cloud Security Posture Management)
  • VPNs
  • Firewalls
  • XDR (Extended Detection & Response)
  • Mail protection tools
  • Other security solutions for endpoint protection, threat intelligence, and monitoring.
  • Industry certifications preferred (CISSP, CISM, OSCP, GIAC, AWS Security).


Similar Jobs

Activision - Expert Cloud Security Engineer

Activision

United States (On-Site)
2 Weeks ago
Google - Staff Software Engineer, Product Security Engineering, Cloud CISO

Google

Kirkland, Washington, United States (On-Site)
3 Days ago
Google - Software Engineering Manager II, Infrastructure, Google Cloud Security and Privacy

Google

Sunnyvale, California, United States (On-Site)
4 Days ago
Google - Software Engineer III, Infrastructure, Google Cloud Security and Privacy

Google

Sunnyvale, California, United States (On-Site)
5 Months ago
Microsoft - Site Reliability Engineer

Microsoft

Redmond, Washington, United States (On-Site)
1 Hour ago
ION - Senior Security Architect

ION

Milan, Lombardy, Italy (On-Site)
6 Months ago
The Walt Disney Company - Sr Security Specialist - Governance

The Walt Disney Company

Orlando, Florida, United States (On-Site)
1 Week ago
Google - Senior Security Engineer, Enterprise Infrastructure Protection

Google

Sydney, New South Wales, Australia (On-Site)
4 Days ago
Google - Technical Program Manager III, Security Compliance, Google Cloud

Google

Reston, Virginia, United States (On-Site)
4 Days ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Google - Strategic Security Consultant

Google

Toronto, Ontario, Canada (On-Site)
3 Days ago
ByteDance - Product Manager - Edge Computing Platform

ByteDance

Singapore (On-Site)
5 Months ago
Google - Staff Network Security Engineer

Google

Austin, Texas, United States (On-Site)
3 Days ago
Saviynt - Consultant, Professional Services, IAM/IGA

Saviynt

Bengaluru, Karnataka, India (Hybrid)
6 Months ago
PwC - Data Protection Expert

PwC

Prague, Prague, Czechia (Hybrid)
5 Months ago
Google - Technical Program Manager, Site Reliability Engineering

Google

Warsaw, Masovian Voivodeship, Poland (On-Site)
1 Day ago
Google - Customer Engineer, Security, Google Cloud

Google

Bengaluru, Karnataka, India (On-Site)
4 Days ago
Axinous - Account Executive - Majors

Axinous

South Korea (Remote)
2 Months ago
ION - Junior Cyber Security Analyst

ION

Pisa, Tuscany, Italy (Hybrid)
6 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Tel Aviv-Yafo, Tel Aviv District, Israel

NVIDIA - Senior Manager, NPI System Product Engineering

NVIDIA

Yokne'am Illit, North District, Israel (On-Site)
2 Months ago
Google - Software Engineer III, Control Plane, Google Cloud

Google

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
3 Days ago
Booming games - Business Development Manager

Booming games

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
2 Months ago
Playtika - Product Manager

Playtika

Israel (On-Site)
5 Months ago
NVIDIA - Software Verification Manager

NVIDIA

Kiryat Ata, Haifa District, Israel (On-Site)
1 Month ago
NVIDIA - Senior Chip Architect

NVIDIA

Ra'anana, Center District, Israel (On-Site)
1 Month ago
NVIDIA - Manager, Chip Design Verification

NVIDIA

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
1 Month ago
Ludeo - Frontend Architect

Ludeo

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
2 Weeks ago
NVIDIA - Senior Firmware Design Engineer, Optics

NVIDIA

Yokne'am Illit, North District, Israel (Hybrid)
3 Months ago
NVIDIA - Senior Board Design Engineer

NVIDIA

Yokne'am Illit, North District, Israel (Hybrid)
1 Week ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

NVIDIA - Senior AI System Security Architect - Networking

NVIDIA

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
1 Month ago
ByteDance - Application Security Engineer - Global Monetization

ByteDance

Singapore (On-Site)
1 Week ago
Easygo - IT Manager

Easygo

Bogotá, Bogota, Colombia (On-Site)
1 Week ago
Google - Security Engineer, Detection

Google

Sydney, New South Wales, Australia (On-Site)
4 Days ago
PwC - Consultant Expérimenté / Manager Cybersécurité | CDI | H/F

PwC

Toulouse, Occitanie, France (On-Site)
6 Months ago
PwC - Assurance Technology Risk & Quality Manager

PwC

Dublin, County Dublin, Ireland (On-Site)
6 Months ago
Google - Systems Security Architect, Silicon

Google

San Diego, California, United States (On-Site)
3 Days ago
ION - Senior Security Architect

ION

Collecchio, Emilia-Romagna, Italy (On-Site)
6 Months ago
Google - Security Analyst, Product Security Engineering, Cloud CISO

Google

Sunnyvale, California, United States (On-Site)
4 Days ago
Don't Nod - Cybersecurity Internship

Don't Nod

Paris, Île-de-France, France (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

About The Company

Since 2019, Papaya has been committed to shaping the future of gaming through an innovative and forward-thinking approach to game development. We believe that gaming should be about more than just luck, which is why our games are designed to reward skill, strategy, and perseverance. 


Ranked by Dun’s 100 as one of the top 50 hi-tech companies in Israel to work for.

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)

Warsaw, Masovian Voivodeship, Poland (On-Site)

Warsaw, Masovian Voivodeship, Poland (Hybrid)

Warsaw, Masovian Voivodeship, Poland (On-Site)

Warsaw, Masovian Voivodeship, Poland (On-Site)

Warsaw, Masovian Voivodeship, Poland (On-Site)

Warsaw, Masovian Voivodeship, Poland (Hybrid)

View All Jobs

Get notified when new jobs are added by PAPAYA

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug