Chief Information Security Officer

2 Hours ago • 10 Years + • Cyber Security

Job Summary

Job Description

The Chief Information Security Officer (CISO) at PAPAYA is responsible for protecting the company's digital infrastructure, data, and internal systems from cyber threats. Key responsibilities include developing and overseeing security frameworks, monitoring real-time traffic for anomalies, leading risk assessments, ensuring compliance with data protection laws (GDPR, CCPA), overseeing identity and access management, implementing application security best practices (OWASP Top 10), managing security operations (SOC, SIEM), leading incident response, educating employees on cybersecurity, and collaborating with legal and compliance teams. The role requires expertise in cloud security, real-time threat detection, and regulatory compliance.
Must have:
  • Develop & oversee security frameworks
  • Monitor real-time traffic & mitigate risks
  • Lead risk assessments & implement mitigation
  • Ensure data protection & compliance (GDPR, CCPA)
  • Oversee IAM solutions
  • Implement application security best practices (OWASP Top 10)
  • Manage security operations (SOC, SIEM)
  • Lead incident response & forensic investigations
  • Develop & maintain security policies (ISO 27001, NIST)
  • Ensure regulatory compliance (SOC 2, PCI-DSS, ISO 27001)
Good to have:
  • Experience in fraud detection and prevention
  • Knowledge of payment security and fraud analytics

Job Details

Description

Chief Information Security Officer (CISO)

As the Chief Information Security Officer (CISO) at PAPAYA, you will be responsible for protecting the company’s digital infrastructure, data, and internal systems from cyber threats. You will develop and implement security strategies to ensure compliance, safeguard intellectual property, and mitigate cybersecurity risks. This role requires expertise in cloud security, real-time threat detection, and regulatory compliance to support a seamless and secure operational environment.


Responsibilities

Key Responsibilities:

Security & Risk Management

  • Develop and oversee security frameworks for enterprise infrastructure, including cloud environments and critical systems.
  • Monitor real-time traffic and system logs to detect anomalies and mitigate security risks.
  • Lead risk assessment initiatives to identify vulnerabilities and implement mitigation strategies.

Data Protection & Compliance

  • Ensure compliance with global data protection laws (e.g., GDPR, CCPA) and industry regulations.
  • Lead security and privacy initiatives to protect user accounts, payment information, and sensitive data.
  • Oversee identity and access management (IAM) solutions to prevent unauthorized access to critical systems and applications.

Application Security & Secure Development

  • Implement and enforce application security best practices, focusing on OWASP Top 10 vulnerabilities and secure coding.
  • Ensure secure mobile application development by integrating security controls into mobile app lifecycles.
  • Oversee Web Application Firewall (WAF) solutions to protect against web-based threats.
  • Work with engineering teams to implement DevSecOps and security automation across development pipelines.
  • Oversee penetration testing, bug bounty programs, and vulnerability management for applications and APIs.

Cyber Threat Intelligence & Incident Response

  • Establish and manage security operations (SOC), SIEM, and threat detection for real-time response to cyber threats.
  • Lead forensic investigations and incident response for cyberattacks affecting enterprise infrastructure.
  • Stay ahead of emerging threats, including hacking techniques, ransomware, and credential stuffing attacks.

Security Awareness & Collaboration

  • Educate employees and stakeholders on cybersecurity best practices.
  • Work closely with legal, compliance, and risk teams to align security policies with business goals.
  • Manage relationships with third-party security vendors and technology partners.

Policies & Compliance

  • Develop & Maintain Security Policies – Create and enforce cybersecurity policies aligned with ISO 27001, NIST, GDPR, and industry standards.
  • Ensure Regulatory Compliance – Oversee adherence to compliance frameworks (SOC 2, PCI-DSS, ISO27001, and ISO27701) and conduct security audits.
  • Risk & Incident Management – Implement risk assessment strategies and incident response plans to mitigate security threats.
  • Governance & Reporting – Provide security insights to leadership, track KPIs, and ensure business alignment with security objectives.

Nice to Have:

  • Experience in fraud detection and prevention, including unauthorized access mitigation and financial fraud protection.
  • Strong knowledge of payment security, identity verification, and fraud analytics.


Requirements


Qualifications & Experience:

  • B.Sc. degree in Computer Science, Software Engineering, or a related field.
  • 10+ years of experience in cybersecurity, with at least 5 years in a leadership role.
  • Expertise in application security, including OWASP Top 10, secure mobile application development, and WAF implementation.
  • Strong knowledge of identity security, cloud security, and enterprise risk management.
  • Experience securing cloud-based services and large-scale enterprise environments.
  • Familiarity with SOC 2, ISO 27001, GDPR, and industry compliance standards.
  • Familiarity with working with the following security tools:
  • CSPM (Cloud Security Posture Management)
  • VPNs
  • Firewalls
  • XDR (Extended Detection & Response)
  • Mail protection tools
  • Other security solutions for endpoint protection, threat intelligence, and monitoring.
  • Industry certifications preferred (CISSP, CISM, OSCP, GIAC, AWS Security).


Similar Jobs

Axinous - Manager - M&A and Technical Accounting

Axinous

Bengaluru, Karnataka, India (On-Site)
3 Months ago
Dream Sports - Architect - Cloud Security

Dream Sports

Mumbai, Maharashtra, India (On-Site)
6 Months ago
ION - Senior Security Architect

ION

Milan, Lombardy, Italy (On-Site)
4 Months ago
Axinous - Global Alliance Manager - Cognizant

Axinous

United States (Remote)
1 Month ago
GoMotive - Staff Software Engineer

GoMotive

India (Remote)
1 Week ago
ByteDance - Data Security - Security Governance Engineer

ByteDance

Singapore (On-Site)
3 Months ago
Axinous - Senior Professional Services Consultant- AMS

Axinous

Bengaluru, Karnataka, India (On-Site)
2 Months ago
Fortive - Cyber Security Automation Engineer

Fortive

Karnataka, India (On-Site)
3 Months ago
PwC - Senior Associate - Risk Performance, Governance and Controls (RPGC)

PwC

Kuala Lumpur, Federal Territory Of Kuala Lumpur, Malaysia (On-Site)
4 Months ago
Relax Gaming  - Security Engineer

Relax Gaming

Helsinki, Uusimaa, Finland (Hybrid)
2 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Intel Corporation - Network Security Engineer (DevSecOps)

Intel Corporation

Folsom, California, United States (On-Site)
3 Months ago
Barracuda Networks  Inc  - Senior Security Engineer

Barracuda Networks Inc

Bengaluru, Karnataka, India (On-Site)
4 Months ago
PwC - ETIC, Cloud Solution Architect (Multi-Cloud, DevOps Focus) - Senior Manager

PwC

Cairo, Cairo Governorate, Egypt (On-Site)
3 Months ago
Rackspace Technology - SOC Analyst L3 (Sentinel is mandatory) - R-19060

Rackspace Technology

Gurugram, Haryana, India (Hybrid)
4 Months ago
Varonis  - Sales Engineering Enablement Manager

Varonis

United States (Remote)
3 Months ago
Axinous - Staff Software Development Engineer - Java, Kafka, AWS

Axinous

Bengaluru, Karnataka, India (Hybrid)
1 Month ago
ION - Senior Security Architect

ION

Milan, Lombardy, Italy (On-Site)
4 Months ago
Dream Sports - Architect - Cloud Security

Dream Sports

Mumbai, Maharashtra, India (On-Site)
6 Months ago
Axinous - Senior Sales Engineer - Major Accounts UK

Axinous

United Kingdom (Remote)
6 Days ago

Get notifed when new similar jobs are uploaded

Jobs in Tel Aviv-Yafo, Tel Aviv District, Israel

NVIDIA - Senior Manager, Software Architecture

NVIDIA

Ra'anana, Center District, Israel (On-Site)
1 Month ago
Playtika - Games R&D-Monetization Operations Specialist

Playtika

Israel (On-Site)
3 Months ago
Unity - Automation Engineer

Unity

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
4 Months ago
Scopely - Senior Performance Product Manager - Monetization

Scopely

Tel Aviv-Yafo, Tel Aviv District, Israel (Hybrid)
2 Months ago
Playtika - User Acquisition Lead

Playtika

Israel (On-Site)
3 Months ago
Google - Senior Network Design Verification Engineer, Google Cloud

Google

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
1 Month ago
Playtika - Growth Ventures-Director of Marketing

Playtika

Israel (On-Site)
2 Months ago
NVIDIA - Senior ASIC Hardware Design Engineer

NVIDIA

Be'er Sheva, South District, Israel (On-Site)
1 Month ago
Intel Corporation - CPU Physical Design Engineer

Intel Corporation

Haifa, Haifa District, Israel (Hybrid)
3 Months ago
BigID - Data Engineering Team Lead

BigID

Tel Aviv-Yafo, Tel Aviv District, Israel (Hybrid)
2 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

ION - Security Architect, Italy

ION

Italy (Hybrid)
4 Months ago
Wind River Systems - Star Lab - Field Applications Engineer, System Architect

Wind River Systems

San Antonio, Texas, United States (Hybrid)
3 Months ago
Netflix - Security Engineer (L4), Cloud Security

Netflix

United States (Remote)
1 Week ago
PwC - IN-Director_Delivery and Quality Excellence_Advisory Corporate_Advisory_Kolkata

PwC

Kolkata, West Bengal, India (On-Site)
3 Months ago
Intel Corporation - Network Security Engineer (DevSecOps)

Intel Corporation

Hillsboro, Oregon, United States (On-Site)
3 Months ago
Forescout Technologies  Inc  - Professional Services Engineer

Forescout Technologies Inc

United States (Hybrid)
3 Months ago
OpenText - Software Security Research

OpenText

Bengaluru, Karnataka, India (On-Site)
5 Months ago
Rush Street Interactive - Information Security Specialist

Rush Street Interactive

Estonia (On-Site)
1 Month ago
Intel Corporation - Network Security Engineer (DevSecOps)

Intel Corporation

Santa Clara, California, United States (Hybrid)
3 Months ago
LeoVegas - Cloud Security Engineer

LeoVegas

Växjö, Kronoberg County, Sweden (Hybrid)
3 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Since 2019, Papaya has been committed to shaping the future of gaming through an innovative and forward-thinking approach to game development. We believe that gaming should be about more than just luck, which is why our games are designed to reward skill, strategy, and perseverance. 


Ranked by Dun’s 100 as one of the top 50 hi-tech companies in Israel to work for.

Tel Aviv District, Israel (On-Site)

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)

Tel Aviv-Yafo, Tel Aviv District, Israel (Hybrid)

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)

Warsaw, Masovian Voivodeship, Poland (On-Site)

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)

Warsaw, Masovian Voivodeship, Poland (On-Site)

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)

View All Jobs

Get notified when new jobs are added by PAPAYA

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug