CrawlJobs Logo

Head of Information Security

Czechia, Prague Employment contract 115000.00 - 130000.00 CZK / Month · Job Posted June 01, 2026
Apply Position
Job Link Share

Job Description

We’re looking for a Head of Information Security who can help turn that foundation into a living, scalable security operating model. Our product development organization consists of approximately 200 people, including more than 100 engineers building products used by millions of people every month across 10 countries. Security and trust are core pillars in our company strategy — and we believe their importance will only grow in the AI-driven future ahead of us. This role sits right at the centre of that transformation. You will work closely with our product development organization because the outputs of engineering are the most visible — and most exposed — part of our security landscape. We are already piloting ISMS implementation with one of our most critical product teams, and we want to expand practical, engineering-focused security capabilities across the organization in a pragmatic and scalable way.

Job Responsibility

  • Drive collaboration between security, product development, business, and compliance stakeholders
  • Lead the implementation and continuous improvement of our ISMS across the organization
  • Turn strategic goals into clear, actionable security plans
  • Build clear, usable security documentation and support customer security and compliance inquiries
  • Improve practical security capabilities across engineering and product development
  • Champion a "security by design" mindset
  • Translate regulatory and compliance requirements into practical operational controls
  • Lead and support our Information Security team while helping shape security capabilities across the organization
  • Report directly to the Technology Director and contribute as a member of the Technology Management Team

Requirements

  • Experience implementing and operating ISO 27001-based security practices (or similar frameworks) in real-world product or technology organizations
  • Strong understanding of modern product and engineering environments, including secure development practices, vulnerability management, and cloud-based services
  • Hands-on experience working with development teams on topics like dependency management, application security, penetration testing, and security tooling
  • Understanding of regulatory and compliance frameworks such as GDPR, NIS2, DORA, and how to translate them into practical operational controls
  • Experience building or improving ISMS and security governance models that support everyday development work — not just audits
  • Ability to create documentation that is clear, usable, and grounded in operational reality
  • Interest or experience in AI-assisted tooling, automation, and the security implications of AI-driven product development
  • Excellent communication skills — you can explain technical and security concepts clearly to both engineers and business stakeholders
  • Fluent English

Nice to have

Interest or experience in AI-assisted tooling, automation, and the security implications of AI-driven product development

What we offer

  • Salary range: 115 000 Kč - 130 000 CZK/month
  • Access to internal and external courses and conferences
  • Free access to Seduo
  • 5 weeks of vacation
  • Unlimited "Happy Days" — extra days off
  • Flexible working hours and home office
  • Mobile tariff with 100 GB of data
  • Mental health support through Hedepy
  • Multisport card contribution (250 CZK)
  • Support during long-term illness
  • Cafeteria credit and meal vouchers
  • Afternoon snacks twice a week and a fresh vitamin boost every Wednesday
  • A Freshpoint fridge with a 20% company contribution
  • A tea room with some of the best teas from across Asia
  • Various partner discounts
  • Children-friendly office
  • Corporate events
  • Dog-friendly office
  • Flexible start/end of working hours
  • Individual budget for personal growth
  • Notebook
  • Refreshments on workplace
  • Self-organization of the job
  • Work mostly from home

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Head of Information Security

8 matching positions

Head of Cyber Security Culture and Architecture

Grade 6 vacancy in the Information and Cyber Security Department. Responsible fo...
Location
Location
United Kingdom , Hanslope Park (Milton Keynes) or East Kilbride
Salary
Salary:
69500.00 - 90600.00 GBP / Year
allenlane.co.uk Logo
Allen Lane
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Enterprise Security Architecture: Leading the design and assurance of enterprise security architecture, applying recognised frameworks and principles
  • Technical Security Architecture: Applying security architectural principles to complex IT and operational technology (OT) systems
  • Policy and Standards: Providing subject matter expertise in developing and interpreting cyber and information security policies and standards
  • Information Security Culture: Baselining the future vision for the FCDO’s information and cyber security culture, defining and assuring delivery of change levers
  • Third Party Management: Leading the definition and assurance of cyber and information security requirements for third-party relationships
  • Management, Leadership and Influence: Embedding a security first culture and influencing behaviours at all levels
  • Must hold or be willing to obtain security clearance to DV level
  • Must have been resident in the UK for five out of the last ten years immediately prior to application
Job Responsibility
Job Responsibility
  • Define, lead and deliver, through their team, the FCDO’s secure architecture and its internal cyber security culture
  • Ensure secure design is embedded across systems and services while fostering a workforce that understands, values and upholds security principles
  • Lead a team of security architects who will influence technology delivery, organisational behaviours and leadership decision making
  • Ensure architecture, awareness and cultural resilience are delivered in a coordinated way
  • Work in partnership with business, digital and security stakeholders
  • Lead engagement and reporting for their workstreams
  • Represent the CISO at various HMG and external events where necessary
What we offer
What we offer
  • Civil Service pension scheme (employer contribution of 28.97%)
  • Annual leave starting at 25 days leave per annum
  • Location allowance of £1,750 (if based in Milton Keynes)
  • Specialist allowance of up to £10,800 per annum (subject to review)
  • Fulltime
Read More
Arrow Right

Information Security Senior Analyst

The Info Sec Prof Senior Analyst is an intermediate-level position responsible f...
Location
Location
Singapore , Singapore
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5-8 years of relevant experience
  • applicable certifications or willingness to earn within 12 months of joining
  • consistently demonstrates clear and concise written and verbal communication
  • proven influencing and relationship management skills
  • proven analytical skills
  • ICND 1 Certification or equivalent knowledge in Networking
  • excellent Microsoft Excel skills
  • basic network infrastructure knowledge
  • ability to work with Big Data
  • exhibiting a high degree of flexibility and ability to multi-task, seeking guidance where necessary
Job Responsibility
Job Responsibility
  • Identify potential information security (IS) risks and make recommendations for enhancement
  • collect and analyze security risk evidence and coordinate with internal and external compliance and auditing agencies / officials
  • execute meetings and communicate complex security topics and safe IS practices with all levels of the organization
  • ensure that controls are utilized daily and that non-compliance remediation is addressed
  • provide IS consulting services, including interpreting and/or clarifying information security policy, procedures, standards or concepts
  • assist with defining and implementing IS standards to align procedures and practices in compliance with Citi standards
  • educate and advise on safe information security practices and current, changing, and/or recommended information security requirements
  • validate compliance with IS policies, practices, and procedures, and resolve a variety of IS related issues in coordination with the business
  • support the Annual Connectivity Verification process
  • validate legacy connectivity for ownership, registration, and usage
  • Fulltime
Read More
Arrow Right

Security Strategy and Risk Management Head of Department

The Security Strategy and Risk Management Head of Department is a senior leaders...
Location
Location
United States , Irvine
Salary
Salary:
181240.00 - 259160.00 USD / Year
haeaus.com Logo
Hyundai AutoEver America
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 15–20 years of progressive experience across Information Security, GRC/Risk Management, customer/vendor security management and/or strategic operations
  • Bachelor’s degree in Cybersecurity, Information Technology, Risk Management, Business Administration or a related discipline
  • Excellent stakeholder management, communication, and leadership skills
  • Demonstrated experience working across multi-disciplinary teams to achieve common objectives
  • Proficient in English for effective communication and coordination
Job Responsibility
Job Responsibility
  • Lead enterprise-wide risk assessment, risk issue management, and risk exception management
  • Maintain and enhance risk management frameworks aligned with industry best practices
  • Deliver insightful, data-driven risk reporting to senior leadership
  • Oversee the Information Security compliance and control assurance program
  • Lead coordination of internal and external audits, assessments, and certification processes
  • Lead the Third-Party Risk Management (TPRM) program
  • Oversee creation, governance, maintenance, and communication of Information Security policies, standards, and procedures
  • Direct the Information Security Training and Awareness program
  • Partner with the CISO to define and maintain the Information Security strategic roadmap
  • Lead budget planning, forecasting, tracking, and optimization for the full Information Security organization
  • Fulltime
Read More
Arrow Right

Head of Engineering - Information Protection

We are seeking an inspiring and strategic Engineering Leader to join our Informa...
Location
Location
India
Salary
Salary:
Not provided
https://www.atlassian.com Logo
Atlassian
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 12+ years of experience in building and scaling engineering teams with a focus on engineering strategy, infrastructure planning, and architecture
  • Demonstrated experience in developing influential relationships and trust with senior leaders across different functions
  • Proven experience hiring and mentoring high-caliber engineers with diverse technical strengths and backgrounds
  • Strong product sense with an understanding of product drivers and of how to drive value across customers
  • Exceptional communication skills, with the ability to translate technical concepts into easy-to-understand language for business partners
  • High-energy self-starter with a passion for data and enjoy working in a fast-paced environment
  • You will have strong empathy and a bias for action
  • A graduate degree in Computer Science or a related technical field
Job Responsibility
Job Responsibility
  • Lead and manage multiple engineering teams within our India based engineering organization, focused on building and scaling Information protection applications, delivering on ambitious multi-quarter roadmaps
  • Define and execute technical and product strategies aligned with Atlassian’s vision for enterprise security, data protection, and compliance
  • Foster an inclusive environment where diverse perspectives are welcomed and innovation is encouraged
  • Collaborate closely with product management, design, and global engineering leaders to deliver high-impact features and seamless customer experiences
  • Drive technical excellence, operational rigor, and continuous improvement across teams
  • Recruit, mentor, and develop top engineering talent
  • build strong succession pipelines and support career growth
  • Champion developer productivity, quality, and operational metrics
  • Partner with local and global leaders to strengthen Atlassian’s brand, talent acquisition, and retention in India
What we offer
What we offer
  • Health and wellbeing resources
  • Paid volunteer days
Read More
Arrow Right

Head of Information Technology (Digital Workplace)

Digital Workplace's mission is to enable PPRO colleagues to do their best work b...
Location
Location
Germany , Munich
Salary
Salary:
Not provided
ppro.com Logo
PPRO GmbH
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Track record of designing and implementing an integrated digital workplace experience in a technology leadership role with both project and operational responsibilities
  • Experience in bringing product and software engineering best practices to the digital workplace (problem understanding, solution and system design, platform as code, etc.)
  • Experience in implementing and maintaining robust security controls in a user-friendly way, ensuring compliance and security awareness without hindering productivity
  • Strong collaboration skills to work with business leaders on all levels to understand requirements and translate them into technical capabilities
  • Excellent written and verbal communication skills
  • Experience leading globally distributed team members
  • Efficient budget management by making informed investment decisions that are aligned with the overall business budget and objectives
Job Responsibility
Job Responsibility
  • Work with stakeholders and the team to design the target digital workplace experience to maximise colleague productivity
  • Define the strategy to achieve the target experience, quantify success and clearly articulate areas for investment
  • Establish operational and project cycles within the team to deliver strategic results and support our colleagues around the world
  • Driving the technology culture to simplify and automate routine tasks and increase productivity
  • Work with external vendors and partners to enhance our colleague offering and ensure a seamless experience
  • Take ownership of security and compliance within the team and beyond, enabling colleagues to do their jobs efficiently and safely
What we offer
What we offer
  • Hybrid working with a 3 days / week on site expectation
  • 30-day holiday allowance
  • Work from abroad policy, enabling employees to work remotely for up to another 30 days per year
  • €1,000 annual learning and development budget
  • Leadership cafés, on-the-job training
  • Accident insurance, disability insurance, direct insurance (bAV) and travel insurance
  • Enhanced family leave
  • Gym membership contribution
  • Mental Health Platform access
  • Pet-friendly office
  • Fulltime
Read More
Arrow Right

Specialist – Governance, Risk & Control

To manage and lead the Technology Security Governance, Risk, Compliance and Assu...
Location
Location
Lesotho
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Degree or equivalent in IT/Engineering or relevant tertiary qualification
  • Knowledge of legal, regulatory and privacy requirements, such as Personally Identifiable Information (PII), GDPR, etc.
  • Proven experience managing and operating multiple security programs, projects, and initiatives
  • Ability to write reports for different security stakeholders
  • Proficient in preparation of reports, dashboards and documentation
  • Knowledge of and experience with GDPR
  • Web Application security and best practises
  • Business Analysis skills
  • High competence in Programming skills
  • Risk assessment skills
Job Responsibility
Job Responsibility
  • Direct, develop, implement and maintain a comprehensive Vodacom-wide information security governance, risk and compliance strategy
  • Ensure security is embedded in IT System and Network Infrastructure (Mobile, IS and Enterprise) across the Vodacom
  • Ensure timely delivery of technology security assurance and support for projects
  • Provide accurate and timely reporting of technology security risks identified during project engagement and propose remediation and mitigation options
  • Monitor information security governance, risk, and compliance by Vodacom BIT, Mobile and Enterprise Business domains
  • Ensure alignment of information security governance with the Vodacom’s business objectives, the information security strategy, plans and controls
  • Ensure compliance with the applicable legislative and regulatory interpretation and corporate risk appetite
  • With the assistance of Head: Technology Governance, Lead, develop, manage and maintain the Vodacom-wide information security governance deliverables lifecycle including compliance measurement, deviations and exemptions
  • Engage with the stakeholders on compliance to control effectiveness and deficiencies in the design and operating effectiveness of information security controls, design and recommend opportunities for continuous improvement
  • Develop, manage and implement the Vodacom information security audit and assurance plans and schedules, including any specific business needs and requirements (including PCI, ISO27001, GDPR, Data Protection Act of Lesotho, Cyber Crime Bill)
Read More
Arrow Right

Head of Information Security

This is a strategic leadership role which is responsible for leading the transfo...
Location
Location
United Kingdom , Milton Keynes or London
Salary
Salary:
Not provided
triarecruitment.com Logo
TRIA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Significant leadership experience in enterprise information and cyber security roles, ideally within complex or regulated environments
  • Proven success in leading strategic reviews and transformations of security toolsets, platforms, and operating models
  • Deep technical knowledge of security controls across hybrid cloud, infrastructure, endpoint, and user environments
  • Practical experience delivering cyber security best practices across network, infrastructure, BYOD, web, and cloud services
  • Strong working knowledge of governance and compliance frameworks including ISO 27001, NIST CSF, GDPR, and Cyber Essentials+
  • Demonstrable ability to communicate complex security concepts to non-technical audiences, including board-level stakeholders
Job Responsibility
Job Responsibility
  • Lead the transformation and modernisation of the cyber and information security capabilities
  • Shape and execute a security strategy that aligns with the companies' digital ambitions and evolving risk landscape
  • Lead a complete strategic review of the security landscape, including tools, processes, risk postures, and cultural readiness
  • Report to the board and advise on cyber risk, threats, and mitigation strategies
  • Translate security insights into executive-level communications, influencing investment and change roadmaps
  • Fulltime
Read More
Arrow Right

Global Head of Cyber Risk and Compliance

The Technology & Cyber Compliance and Operational Risk Office (TCCORO) at Citi i...
Location
Location
United States , Irving, Texas, United States, New York, New York, United States
Salary
Salary:
250000.00 - 500000.00 USD / Year
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 20+ years' experience in technology risk and/or cyber risk management in the banking/financial services industry, or related field, with at least 5+ years in 2nd or 3rd line senior leadership positions
  • Subject matter expert in technology risk and/or cyber risk management principles and practices across various information system architecture and engineering domains
  • Proven experience in managing complex risk portfolios and developing strategic risk management frameworks for large organizations
  • Robust understanding of operational risk management frameworks, industry standards, regulatory requirements, and risk mitigation practices
  • Experience managing and overseeing large remediation and transformation programs to achieve intended results
  • Extensive experience in effective written and verbal communication with executive audiences including Boards
  • Experienced risk challenger who balances risks vs. rewards aligned with corporate risk culture
  • Understanding of Citi products and services and downstream impacts of technology risk and/or cyber risk strategy
  • Professional certifications in either technology risk and/or cyber risk preferred, including: Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC), ERM, CET, ISO27001, COBIT, TOGAF, or CRI
  • In-depth, working knowledge of banking technologies, fraud, cybercrime detection and countermeasures, encryption, data retention, as well as information security support for segregation of duties, application development, network and systems operation, testing and vendor management
Job Responsibility
Job Responsibility
  • Oversight and challenge of the cybersecurity incident response programs
  • Oversight of the security operations center (SOC) and cybersecurity fusion center (CSFC)
  • Oversight of cybersecurity penetration testing and red-team operations
  • Oversight of the Chief Information Security Office (CISO), including the review of the effectiveness of the controls, standards and programs across the enterprise
  • Implementation of guidance for overseeing Emerging Technology and Operational Risks, in compliance with OCC Heightened Standards
  • Able to present and lead discussions with key Regulators, internal and external auditors, as well the Board of Directors and the Risk and Audit sub-committees
  • Governance and Oversight of security risks impacting the business and technology
  • Support in the development of Cyber Policy and Standards
  • Oversight of Key Operational Risks and related indicators and thresholds
  • Challenge of Cyber Risk Self Assessments
What we offer
What we offer
  • Discretionary and formulaic incentive and retention awards
  • medical, dental & vision coverage
  • 401(k)
  • life, accident, and disability insurance
  • wellness programs
  • paid time off packages, including planned time off (vacation), unplanned time off (sick leave), and paid holidays
  • Fulltime
Read More
Arrow Right