CISO

1 Month ago • 10 Years + • Cyber Security

Job Summary

Job Description

The Chief Information Security Officer (CISO) at PAPAYA is responsible for protecting the company's digital infrastructure, data, and internal systems from cyber threats. Key responsibilities include developing and overseeing security frameworks, monitoring for anomalies, leading risk assessments, ensuring compliance with data protection laws (GDPR, CCPA), implementing application security best practices (OWASP Top 10), managing security operations (SOC, SIEM), leading incident response, and educating employees on cybersecurity best practices. The role requires expertise in cloud security, real-time threat detection, and regulatory compliance. The CISO will collaborate with legal, compliance, and risk teams, manage third-party vendors, and develop and maintain security policies aligned with ISO 27001, NIST, GDPR, and industry standards.
Must have:
  • Develop and oversee security frameworks
  • Monitor real-time traffic and system logs
  • Ensure compliance with data protection laws
  • Implement application security best practices
  • Manage security operations (SOC, SIEM)
  • Lead incident response
  • Educate employees on cybersecurity
Good to have:
  • Experience in fraud detection and prevention
  • Strong knowledge of payment security

Job Details

Description

Chief Information Security Officer (CISO)

As the Chief Information Security Officer (CISO) at PAPAYA, you will be responsible for protecting the company’s digital infrastructure, data, and internal systems from cyber threats. You will develop and implement security strategies to ensure compliance, safeguard intellectual property, and mitigate cybersecurity risks. This role requires expertise in cloud security, real-time threat detection, and regulatory compliance to support a seamless and secure operational environment.


Responsibilities

Key Responsibilities:

Security & Risk Management

  • Develop and oversee security frameworks for enterprise infrastructure, including cloud environments and critical systems.
  • Monitor real-time traffic and system logs to detect anomalies and mitigate security risks.
  • Lead risk assessment initiatives to identify vulnerabilities and implement mitigation strategies.

Data Protection & Compliance

  • Ensure compliance with global data protection laws (e.g., GDPR, CCPA) and industry regulations.
  • Lead security and privacy initiatives to protect user accounts, payment information, and sensitive data.
  • Oversee identity and access management (IAM) solutions to prevent unauthorized access to critical systems and applications.

Application Security & Secure Development

  • Implement and enforce application security best practices, focusing on OWASP Top 10 vulnerabilities and secure coding.
  • Ensure secure mobile application development by integrating security controls into mobile app lifecycles.
  • Oversee Web Application Firewall (WAF) solutions to protect against web-based threats.
  • Work with engineering teams to implement DevSecOps and security automation across development pipelines.
  • Oversee penetration testing, bug bounty programs, and vulnerability management for applications and APIs.

Cyber Threat Intelligence & Incident Response

  • Establish and manage security operations (SOC), SIEM, and threat detection for real-time response to cyber threats.
  • Lead forensic investigations and incident response for cyberattacks affecting enterprise infrastructure.
  • Stay ahead of emerging threats, including hacking techniques, ransomware, and credential stuffing attacks.

Security Awareness & Collaboration

  • Educate employees and stakeholders on cybersecurity best practices.
  • Work closely with legal, compliance, and risk teams to align security policies with business goals.
  • Manage relationships with third-party security vendors and technology partners.

Policies & Compliance

  • Develop & Maintain Security Policies – Create and enforce cybersecurity policies aligned with ISO 27001, NIST, GDPR, and industry standards.
  • Ensure Regulatory Compliance – Oversee adherence to compliance frameworks (SOC 2, PCI-DSS, ISO27001, and ISO27701) and conduct security audits.
  • Risk & Incident Management – Implement risk assessment strategies and incident response plans to mitigate security threats.
  • Governance & Reporting – Provide security insights to leadership, track KPIs, and ensure business alignment with security objectives.

Nice to Have:

  • Experience in fraud detection and prevention, including unauthorized access mitigation and financial fraud protection.
  • Strong knowledge of payment security, identity verification, and fraud analytics.


Requirements


Qualifications & Experience:

  • B.Sc. degree in Computer Science, Software Engineering, or a related field.
  • 10+ years of experience in cybersecurity, with at least 5 years in a leadership role.
  • Expertise in application security, including OWASP Top 10, secure mobile application development, and WAF implementation.
  • Strong knowledge of identity security, cloud security, and enterprise risk management.
  • Experience securing cloud-based services and large-scale enterprise environments.
  • Familiarity with SOC 2, ISO 27001, GDPR, and industry compliance standards.
  • Familiarity with working with the following security tools:
  • CSPM (Cloud Security Posture Management)
  • VPNs
  • Firewalls
  • XDR (Extended Detection & Response)
  • Mail protection tools
  • Other security solutions for endpoint protection, threat intelligence, and monitoring.
  • Industry certifications preferred (CISSP, CISM, OSCP, GIAC, AWS Security).


Similar Jobs

Google - Software Engineer III, Google Cloud Security and Privacy

Google

Sunnyvale, California, United States (On-Site)
6 Months ago
Google - Deal Pursuit Team Manager, Google Cloud

Google

Mexico City, Mexico City, Mexico (On-Site)
1 Month ago
Axinous - Product Account Executive (Avalor) - Benelux

Axinous

Netherlands (Remote)
6 Months ago
Microsoft - Senior Sales Specialist - Security

Microsoft

Singapore (On-Site)
1 Month ago
Google - Staff Software Engineer, PSE Virtualization Security, Cloud CISO

Google

Seattle, Washington, United States (On-Site)
1 Month ago
Google - Senior Validation Security Consultant

Google

Reston, Virginia, United States (On-Site)
1 Month ago
ByteDance - Security Governance Engineer

ByteDance

San Jose, California, United States (On-Site)
1 Month ago
Google - Senior Hardware Security Engineer, Cloud, Product Security Engineering

Google

Kirkland, Washington, United States (On-Site)
1 Month ago
PwC - Workday specialist in benefits & compensations

PwC

Buenos Aires, Buenos Aires, Argentina (On-Site)
7 Months ago
Rackspace Technology - SOC Analyst L2

Rackspace Technology

Gurugram, Haryana, India (Remote)
1 Month ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Google - Technical Program Manager III, Security and Compliance

Google

Reston, Virginia, United States (On-Site)
1 Month ago
Fortis Games - Senior DevOps Engineer

Fortis Games

Canada (On-Site)
4 Months ago
Axinous - Sales Engineer

Axinous

Tokyo, Japan (On-Site)
5 Months ago
Axinous - Senior Manager - Indirect Tax

Axinous

Hyderabad, Telangana, India (Remote)
2 Months ago
Fortis Games - Senior Cloud Security Engineer

Fortis Games

Hungary (On-Site)
2 Months ago
Netflix - Software Engineer (L4), Cloud Security

Netflix

United States (Remote)
1 Month ago
NVIDIA - Senior Product Security Engineer

NVIDIA

Pune, Maharashtra, India (On-Site)
1 Month ago
Microsoft - Security Specialist

Microsoft

(On-Site)
1 Month ago
Saviynt - Sr. Solutions Engineer, New York

Saviynt

New York, New York, United States (Remote)
7 Months ago
Saviynt - Sr. Engineer, Solutions Engineering

Saviynt

United States (Remote)
7 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Tel Aviv-Yafo, Tel Aviv District, Israel

Google - Design Engineer, Google Cloud

Google

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
1 Month ago
Overwolf - Monetization Manager

Overwolf

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
1 Month ago
PAPAYA - Facebook Community Manager

PAPAYA

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
4 Weeks ago
Google - SoC and IP Design Engineer

Google

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
1 Month ago
Booming games - Business Development Manager

Booming games

Tel Aviv-Yafo, Tel Aviv District, Israel (Remote)
3 Months ago
NVIDIA - Senior Software Engineer - Backend

NVIDIA

Ra'anana, Center District, Israel (On-Site)
4 Months ago
Google - Senior Software Engineer, Embedded Systems/Firmware, Google Cloud

Google

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
1 Month ago
NVIDIA - Senior Firmware Engineer

NVIDIA

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
2 Months ago
NVIDIA - Senior High-Performance System Architect

NVIDIA

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
2 Months ago
NVIDIA - Senior Physical Design Backend Engineer

NVIDIA

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Microsoft - Principal Software Engineer

Microsoft

Noida, Uttar Pradesh, India (On-Site)
1 Month ago
Google - Security Engineer, Android Malware

Google

Bengaluru, Karnataka, India (On-Site)
1 Month ago
Google - Senior Software Developer, Infrastructure, Google Cloud Security and Privacy

Google

Waterloo, Ontario, Canada (On-Site)
1 Month ago
Google - Senior Cyber Security Consultant

Google

Sydney, New South Wales, Australia (On-Site)
1 Month ago
Google - Red Teaming and Threat Emulation Consultant

Google

New South Wales, Australia (On-Site)
1 Month ago
Google - Technical Security Advisor, Cloud Security

Google

São Paulo, State Of São Paulo, Brazil (On-Site)
1 Month ago
PwC - Risk & Quality - Information Security Analyst- Associate - KSA

PwC

Riyadh, Riyadh Province, Saudi Arabia (On-Site)
6 Months ago
PwC - Penetration Tester

PwC

Rome, Lazio, Italy (On-Site)
7 Months ago
ION - Cyber Security Analyst, Italy

ION

Turin, Piedmont, Italy (On-Site)
7 Months ago
Tesla - Security Operations Center (SOC) Operator

Tesla

Milton Keynes, England, United Kingdom (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Since 2019, Papaya has been committed to shaping the future of gaming through an innovative and forward-thinking approach to game development. We believe that gaming should be about more than just luck, which is why our games are designed to reward skill, strategy, and perseverance. 


Ranked by Dun’s 100 as one of the top 50 hi-tech companies in Israel to work for.

Get notified when new jobs are added by PAPAYA

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug