
Information Security Manager
19 hours ago
Lightspark is building open payments for the Internet—always-on payment solutions powered by Bitcoin, the only open, neutral network for moving value. With enterprise tools like Connect, UMA, and Spark, businesses can send and receive money instantly, securely, and at a fraction of the cost, anytime, anywhere. Lightspark is headquartered in Los Angeles, California, but serves the world.
This role sits within Striga, a Lightspark company, based in Tallinn, Estonia. Together, we're building Lightspark's European payments platform — connecting fiat and crypto rails to enable faster, more efficient money movement across borders
We're looking for a hands-on Information Security Manager to help establish and maintain our security and compliance framework in Europe, ensuring readiness for Estonian and EU regulatory requirements (e.g., DORA, ISO This role balances technical execution, ICT risk management, and regulatory governance—partnering closely with our Director of Risk, as well as U.S. and EU-based advisors, to build a scalable and compliant security posture.
You'll be both a builder and an operator—implementing controls, hardening systems, managing risk, and ensuring the company's security measures enable growth while meeting regulatory expectations.
WHAT YOU'LL BE DOING:
-
Drive security strategy and governance: Develop, implement, and monitor a comprehensive information security and ICT risk management program aligned with DORA, ISO27001, and EU/Estonian requirements.
-
Develop and maintain frameworks: Own the company's Information Security Management System (ISMS), ensuring all policies, controls, and documentation align with regulatory and business needs.
-
Implement and operate security controls: Deploy and manage technical safeguards across cloud, on-prem, and application environments—covering vulnerability management, system hardening, and incident response.
-
Collaborate across teams: Work closely with global engineering, risk, and compliance functions to ensure consistent application of security standards and processes across systems and services.
-
Lead ICT risk management: Identify, assess, and manage ICT risks across business units, and provide actionable security insights for new technologies and initiatives.
-
Engage with regulators and auditors: Serve as the main point of contact (or in coordination with control functions) for regulators, auditors, and external security assessors.
-
Measure and report security posture: Regularly brief management and, where applicable, the Supervisory Board on key risks, compliance status, and improvement initiatives.
-
Promote a culture of security: Drive employee awareness and training programs to foster security ownership and operational hygiene across the company.
WHAT WE ARE LOOKING FOR:
-
5+ years in information security operations or management with proven implementation of security and compliance programs. Experience in ICT risk management and oversight of technical security functions.
-
Strong understanding of EU/Estonian frameworks, including DORA, ISO27001, SOC2, and GDPR. Experience supporting regulatory licensing or audit processes is a plus.
-
Hands-on experience with cloud environments (AWS, Azure, GCP), secure configuration, vulnerability management, monitoring, and incident response. Familiarity with Linux/Windows hardening, networking, and scripting (e.g., Python, Bash).
-
Higher education in a STEM or business-related field.
-
Full working proficiency in English and Estonian.
-
Proactive, structured, and detail-oriented leader with strong project management, communication, and collaboration skills.
-
Experience preparing for regulatory inspections, working with ISO27001 audits, or partnering with fractional CISO/DPO roles. Certifications such as CISSP, CISM, ISO27001 Lead Implementer, or CIPP/E are beneficial.
Lightspark is on a mission to build an open payment protocol for the Internet at scale and therefore we're committed to creating a more inclusive and diverse workplace to reflect the customers we serve. We welcome interest from individuals of all backgrounds and levels of experience who share our mission. We do not discriminate based on race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, disability status, or other applicable legally protected characteristics.
We will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of the State of California Fair Chance Initiative for Hiring.
-
Information Security Manager
3 days ago
Tallinn, Harjumaa, Estonia Striga Full time €60,000 - €120,000 per yearThe CompanyStriga is a YCombinator backed financial technology company with its place of operations and office in Tallinn, Estonia. As the first entity to secure a Virtual Asset Service Provider's license from the Estonian Financial Intelligence Unit under the new licensing regime of 2022, Striga is a payments platform for businesses to build applications...
-
Information Security Manager
19 hours ago
Tallinn, Harjumaa, Estonia Lightspark Full time €60,000 - €120,000 per yearLightspark is building open payments for the Internet—always-on payment solutions powered by Bitcoin, the only open, neutral network for moving value. With enterprise tools like Connect, UMA, and Spark, businesses can send and receive money instantly, securely, and at a fraction of the cost, anytime, anywhere. Lightspark is headquartered in Los Angeles,...
-
Information Security Consultant in GRC area
5 days ago
Tallinn, Harjumaa, Estonia SEB Eesti Full time €40,000 - €80,000 per yearSEB is a leading financial services group, and at the same time, one of the largest IT employers in the Nordics & Baltics. Banking is changing rapidly, and we are proud of our reputation for being entrepreneurial and innovative in the face of change. Our brilliant techies work hard to future proof SEB's digital architecture and customer products because it...
-
Product Manager for Cyber Security
2 weeks ago
Tallinn, Harjumaa, Estonia Cybernetica Full time €60,000 - €90,000 per yearWe're seeking a passionateProduct Managerto lead the development of our next-generation cyber security platform, designed to protect enterprises from evolving digital threats.Your main responsibilities will beLeading end-to-end product delivery, from ideation and prioritization to release and iteration.Contributing and improving vision, roadmap and the...
-
Application Security Engineer
1 week ago
Tallinn, Harjumaa, Estonia Coolbet Full time €90,000 - €120,000 per yearThe Job in a NutshellAs an Application Security Engineer, your main responsibility will be to work within our team to safeguard the organization's information assets. You will play a key role in conceptualizing, designing, implementing, and maintaining security solutions across our B2B and B2C platforms. A big part of your role will be to integrate security...
-
Application Security Engineer
3 days ago
Tallinn, Harjumaa, Estonia Coolbet Full time €50,000 - €100,000 per yearThe Job in a Nutshell As an Application Security Engineer, your main responsibility will be to work within our team to safeguard the organization's information assets. You will play a key role in conceptualizing, designing, implementing, and maintaining security solutions across our B2B and B2C platforms. A big part of your role will be to integrate security...
-
Security Operations Center Analyst
1 week ago
Tallinn, Harjumaa, Estonia NEVERHACK Estonia Full time €40,000 - €60,000 per yearNEVERHACK Estonia is a leading managed security service provider (MSSP), offering a comprehensive range of services, such as security event monitoring, incident response, and vulnerability management. Together with NEVERHACK Group, we are becoming the biggest protector in Europe. With over 100 customers, ranging from governmental agencies to start-ups to...
-
Tallinn, Harjumaa, Estonia Creditstar Full time €90,000 - €120,000 per yearCreditstar Group is a rapidly growing international consumer finance company, headquartered in Tallinn, Estonia and operating in multiple European markets.At the core, we are a financial technology company that uses automated processes, algorithms and data analysis to make financial instruments easily available to a population of more than 175 million people...
-
Product Security Engineer
3 days ago
Tallinn, Harjumaa, Estonia PEOPLEHUNT Full time €60,000 - €90,000 per yearWe're Hiring: Product Security Engineer Locations: Riga (Latvia) | Tallinn (Estonia) | Serbia (Hybrid/Remote) Full-Time | Engineering Department About the OpportunityWe're hiring on behalf of a fast-growing, international iGaming company that's reshaping the future of gaming technology. With every new venture, they're optimizing profitability, expanding...
-
Threat Intelligence Manager
1 week ago
Tallinn, Harjumaa, Estonia Rush Street Interactive Full time €90,000 - €120,000 per yearRush Street Interactive (NYSE: RSI) is a market leader in online casino and sports betting, currently operating real-money gaming with our brands: , , and We're building bridges between online, social and land-based gaming businesses to create amazing, integrated experiences that keep players in the game.We're looking for a Threat Intelligence Manager to...