Join Lodgify as they are looking for a Cyber Security Manager
Overview
No salary declared 😔
Barcelona
Expires at anytime
⚡ Who we are
Lodgify is a fast-growing startup focused on building vacation rental software that enables property owners and managers to independently manage and market their business online. We are an international team of more than 200 people and 50 different nationalities in the heart of Barcelona, and we've been featured twice in Wired's 100 Hottest European startups list.
⭐ About the role
We are looking for a Cyber Security Expert to lead our Security Squad. Previous experience as a manager is a plus but not required for this position. You will work in an agile environment, and you will strongly contribute to improving the overall security of Lodgify.
We are looking for a polyglot technologist with good communication skills, coming from a Security background ready to lead our newly formed security team.
⭐ What you will be doing
Lead the Security team of Lodgify, that focuses on improving the overall security of the company following the industry standards Ensure the team is operating effectively to reach their goals, are properly supported and deliver quality solutions Develop, mentor and coach your team through their various stages of their careers to ensure growth and development Establish the security incident reporting and incident management program Own the Bug Bounty Program (Intigriti) of our Web Application by reviewing submissions, managing the budget and ensure correct resolution from the development teams Optimise our Cloudflare WAF policies against common Web Application vulnerabilities and attacks (Cloudflare) Maintain our Third Party Risk Management program and streamline current workflows (OneTrust) Implement a SIEM solution for improving access control, monitoring, application and infrastructure security Administer our Security Training program and ensure adequate training to employee workforce (Hoxhunt) Schedule and coordinate our Penetration Testing projects with our Security partners (A2Secure) Review the security policies in development with SAST tools (SonarQube or similar) Expand the scope of the vulnerability scanner for continuous automated security testing of our application and vulnerability scanner (Tenable) Constantly stay up to date with the latest reported vulnerabilities to pre-emptively seek action Perform periodic internal assessments and access controls based on the company policy Educate and share expertise and knowledge with the rest of the team, propagate security ideologies such as Zero Trust within the organisation⭐ Requirements
5+ years of experience in any of the following cybersecurity areas: Incident Response Management, SOC Operations, SIEM systems, Data Loss Prevention, Threat Intelligence Management, Penetration Testing Experience in reviewing, developing and implementing Security policies and procedures (e.g. ISO 27001, SOC 2) Experience in Third Party Risk assessments and business risk evaluation In depth understanding of Web Application attacks including vulnerability evaluating, propagation and mitigation techniques (e.g. OWASP, NIST, MITRE)Good to have:
Experience with Cloudflare administration Experience with network-level IDS and WAF (e.g. Fortigate) Certification in one of the following: CISSP, CISM, GSEC, SSCP, CCSP, OSCP Basic experience with any programming language Experience with administration of cloud infrastructure such as GCP or AWSBenefits
- Work from home flexibility.
- Permanent contract with a competitive salary.
- 25 working days of paid vacation.
- Private health insurance (that includes travel insurance, dental plan, and psychologist)
- Monthly meal stipends of 150€.
- Allowance for your home-office setup.
- Computer and gadgets for your daily work (of your choosing).
- Free Spanish classes.
- Referral program with paid compensation.
- Daily breakfast at the office: Coffee, sandwiches, cookies, fruits and much more!
- Opportunities for growth and development with a training budget.
- Great culture & working environment with an international team of over 40 different nationalities.
- Jornada Intensiva in August.
- Mental well-being.
- Regular team-building events and activities.
- Training and mentorship program.
- Yearly performance reviews.
- Sick leave fully covered.
⭐ Why you’ll love us:
You’ll be part of a growing, dynamic company with a truly international team. At Lodgify, we are full of contagious energy, hard work, and passion for what we do. Lodgify is committed to creating a workplace where everyone is heard and feels a sense of belonging.
We are proud to have an international team that acknowledges a variety of backgrounds, perspectives and skills. At Lodgify, we celebrate diversity and difference, and we are strongly committed to building an inclusive environment for all our employees.
All applications must be submitted in English. Applications in any other language will not be considered.