This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We’re looking for a Head of Information Security who can help turn that foundation into a living, scalable security operating model. Our product development organization consists of approximately 200 people, including more than 100 engineers building products used by millions of people every month across 10 countries. Security and trust are core pillars in our company strategy — and we believe their importance will only grow in the AI-driven future ahead of us. This role sits right at the centre of that transformation. You will work closely with our product development organization because the outputs of engineering are the most visible — and most exposed — part of our security landscape. We are already piloting ISMS implementation with one of our most critical product teams, and we want to expand practical, engineering-focused security capabilities across the organization in a pragmatic and scalable way.
Job Responsibility
Drive collaboration between security, product development, business, and compliance stakeholders
Lead the implementation and continuous improvement of our ISMS across the organization
Turn strategic goals into clear, actionable security plans
Build clear, usable security documentation and support customer security and compliance inquiries
Improve practical security capabilities across engineering and product development
Champion a "security by design" mindset
Translate regulatory and compliance requirements into practical operational controls
Lead and support our Information Security team while helping shape security capabilities across the organization
Report directly to the Technology Director and contribute as a member of the Technology Management Team
Requirements
Experience implementing and operating ISO 27001-based security practices (or similar frameworks) in real-world product or technology organizations
Strong understanding of modern product and engineering environments, including secure development practices, vulnerability management, and cloud-based services
Hands-on experience working with development teams on topics like dependency management, application security, penetration testing, and security tooling
Understanding of regulatory and compliance frameworks such as GDPR, NIS2, DORA, and how to translate them into practical operational controls
Experience building or improving ISMS and security governance models that support everyday development work — not just audits
Ability to create documentation that is clear, usable, and grounded in operational reality
Interest or experience in AI-assisted tooling, automation, and the security implications of AI-driven product development
Excellent communication skills — you can explain technical and security concepts clearly to both engineers and business stakeholders
Fluent English
Nice to have
Interest or experience in AI-assisted tooling, automation, and the security implications of AI-driven product development
What we offer
Salary range: 115 000 Kč - 130 000 CZK/month
Access to internal and external courses and conferences
Free access to Seduo
5 weeks of vacation
Unlimited "Happy Days" — extra days off
Flexible working hours and home office
Mobile tariff with 100 GB of data
Mental health support through Hedepy
Multisport card contribution (250 CZK)
Support during long-term illness
Cafeteria credit and meal vouchers
Afternoon snacks twice a week and a fresh vitamin boost every Wednesday
A Freshpoint fridge with a 20% company contribution
A tea room with some of the best teas from across Asia