Information Security Manager

2 weeks ago


Tallinn, Harjumaa, Estonia Striga Full time €60,000 - €120,000 per year

The Company

Striga is a YCombinator backed financial technology company with its place of operations and office in Tallinn, Estonia. As the first entity to secure a Virtual Asset Service Provider's license from the Estonian Financial Intelligence Unit under the new licensing regime of 2022, Striga is a payments platform for businesses to build applications on without doing any of the heavy lifting related to regulatory compliance and building compliant software to blend crypto services and traditional financial services.

We are seeking an experienced Information Security Manager to lead the company's information security function and ensure adherence to applicable legal and regulatory requirements. This role is critical in developing and implementing a comprehensive information security framework within the company, with heavy involvement in ensuring compliance with the DORA (Digital Operational Resilience Act) regulatory framework. You will set the strategic direction for our information security strategy, implement relevant policies, deploy hands-on technical solutions and internal controls, and promote a healthy culture of ICT risk management and cyber hygiene across the organization.

The ideal candidate has
a strong technical background combined with strategic thinking and excellent leadership skills

. You will report to the Director of Risk and work cross-functionally to support sound, sustainable decision-making in line with the company's business objectives. This opportunity is ideal for someone with a proactive attitude, capability of proposing initiatives and developing new ideas autonomously, and strong communication skills to ensure effective collaboration and positive results. This position is based onsite at our offices in Tallinn, Estonia.

What you'll do:

  • Develop, implement and monitor a strategic, comprehensive enterprise information security and ICT risk management program, aligning technical controls with regulatory and business requirements.
  • Develop, maintain and enhance an information security management framework and all related policies and processes, including procedures and operational processes aligned to DORA, ISO27001, and other relevant frameworks.
  • Implement, monitor, and harden technical security controls across cloud, on-prem, and software systems; lead vulnerability management, penetration testing, and incident response.
  • Collaborate with global technical teams to ensure consistent application of security policies and standards across projects, services, and systems.
  • Ensure the identification, assessment, monitoring, analysis, and management of ICT risks across various business units and processes within the company.
  • Assist with overall technology and information security strategy planning, providing current knowledge and future vision of technology and systems.
  • Report to the Management Board and, where applicable, the Supervisory Board on information security and ICT risk management related matters, as required by law or internal policy.
  • Act as the main point of contact or in co-operation with control functions for regulators, auditors, and other external parties relevant to information security, unless otherwise required by law.
  • Conduct and oversee internal reviews to test the effectiveness of implemented information security and ICT risk management systems.
  • Ensure awareness of relevant information security and ICT risk management obligations and that appropriate training and guidance are in place for employees.
  • Support the company's business objectives by ensuring that information security and ICT risk management measures enable sustainable growth.

What we're looking for:

  • 5+ years of experience in information security operations and/or management.
  • Higher education with a preference for STEM or Business related fields.
  • Solid understanding of information security related regulations (e.g. DORA), standards (e.g. ISO27001, SOC2) and guidelines, both EU and local.
  • Meaningful experience in implementation and oversight of information security related functions and/or teams.
  • Practical experience with cloud hosting platforms (AWS, Azure, GCP), secure system configuration, vulnerability management, and implementation of security frameworks (such as OWASP Top 10).
  • Solid project management skills and a structured way of working.
  • Strong communication and leadership ability to ensure effective collaboration and positive results.
  • Full working proficiency in Estonian and English.
  • Familiarity with shell scripting, provisioning linux machines, firewalls, networks and logging/monitoring systems is a plus.
  • Experience working with ISO27001 requirements, audits and pentesters is a bonus.

We encourage you to apply even if you may feel like your knowledge and experience do not precisely meet every point of this job description. At Striga, we support our team's growth and development over time.

We process the personal data of job applicants in accordance with our Privacy Policy, found on the website Your application confirms your consent to our data practices.



  • Tallinn, Harjumaa, Estonia Lightspark Full time €60,000 - €90,000 per year

    Lightspark is building open payments for the Internet—always-on payment solutions powered by Bitcoin, the only open, neutral network for moving value. With enterprise tools like Connect, UMA, and Spark, businesses can send and receive money instantly, securely, and at a fraction of the cost, anytime, anywhere. Lightspark is headquartered in Los Angeles,...


  • Tallinn, Harjumaa, Estonia Lightspark Full time €60,000 - €120,000 per year

    Lightspark is building open payments for the Internet—always-on payment solutions powered by Bitcoin, the only open, neutral network for moving value. With enterprise tools like Connect, UMA, and Spark, businesses can send and receive money instantly, securely, and at a fraction of the cost, anytime, anywhere. Lightspark is headquartered in Los Angeles,...


  • Tallinn, Harjumaa, Estonia Lightspark Full time €60,000 - €120,000 per year

    Lightspark is building open payments for the Internet—always-on payment solutions powered by Bitcoin, the only open, neutral network for moving value. With enterprise tools like Connect, UMA, and Spark, businesses can send and receive money instantly, securely, and at a fraction of the cost, anytime, anywhere. Lightspark is headquartered in Los Angeles,...


  • Tallinn, Harjumaa, Estonia Lightspark Full time €60,000 - €120,000 per year

    Lightspark is building open payments for the Internet—always-on payment solutions powered by Bitcoin, the only open, neutral network for moving value. With enterprise tools like Connect, UMA, and Spark, businesses can send and receive money instantly, securely, and at a fraction of the cost, anytime, anywhere. Lightspark is headquartered in Los Angeles,...


  • Tallinn, Harjumaa, Estonia Opera Software Full time €40,000 - €80,000 per year

    Opera Software is looking for an ambitious security professional to join the growing Opera Fintech Engineering Team located in Tallinn, Estonia or Gothenburg, Sweden.With a global user base of over 350 million, Opera is an international internet company that has expanded into product areas beyond our popular browsers. Our product portfolio includes web...


  • Tallinn, Harjumaa, Estonia Veriff Full time €70,000 - €90,000 per year

    Are you a person who loves to make the world a safer and more secure place? Do you have a little detective in your soul, and in-depth investigations make you excited? Then we have the ideal position as security engineer in a growing scale-up.Veriff helps companies all over the world connect with honest people. Our software verifies over 9,000...


  • Tallinn, Harjumaa, Estonia Veriff Full time €45,000 - €60,000 per year

    Are you a person who loves to make the world a safer and more secure place? Do you have a little detective in your soul, and in-depth investigations make you excited? Then we have the ideal position as security engineer in a growing scale-up.  Veriff helps companies all over the world connect with honest people. Our software verifies over 9,000...

  • IT Security Manager

    2 weeks ago


    Tallinn, Harjumaa, Estonia Riverty Full time €40,000 - €80,000 per year

    Everyone's story matters. Come shape your story with us at Riverty.But where does that take you?To one of our 30 hybrid workspaces – designed for exchanging ideas, learning from others, and shaping the way we work. An international community of over 4,000 people, representing almost 80 nationalities across 11 countries. United by one mission: Combining...

  • IT Security Engineer

    2 weeks ago


    Tallinn, Harjumaa, Estonia Riverty Full time €40,000 - €80,000 per year

    Everyone's story matters. Come shape your story with us at Riverty.But where does that take you?To one of our 30 hybrid workspaces – designed for exchanging ideas, learning from others, and shaping the way we work. An international community of over 4,000 people, representing almost 80 nationalities across 11 countries. United by one mission: Combining...


  • Tallinn, Harjumaa, Estonia Swedbank Estonia Full time

    Can you ensure security is effectively integrated and managed across our organisation?In Swedbank you have the opportunity to:Drive the systematic work of security across Swedbank, incl. information, personnel and physical securityEstablish and ensure effective execution of security Framework, incl. related internal and external regulations and rules, and...