374,200open jobs
9,699companies
47,772added this week
Browse all
Salary
$72k – $132k per year (Estimated)
Location
Remote/Hybrid (Warsaw, Poland)
Seniority
Architect · 8+ years exp
Overview
Company
Impact
Profile match
Capital.com is a global fintech company and online trading platform headquartered in Limassol, Cyprus, and founded in 2016. The company provides access to over 5,500 financial instruments including contracts for difference (CFDs) on stocks, indices, commodities, forex, and cryptocurrencies. It operates internationally with offices in London, Melbourne, Warsaw, and Dubai, serving over three million registered accounts through its proprietary AI-powered web and mobile platforms.

Capital.com is a global fintech company with over 1,000,000 clients worldwide. Our platform offers CFD trading across 5,000+ markets, powered by proprietary AI technology that helps traders make better decisions. Our top-rated products have won prestigious industry awards for their cutting-edge technology and seamless client experience. We deliver only the best, so we are always in search of the best people to join our ever-growing talented team.

As part of our continued investment in security and regulatory resilience, we are seeking a Security Architect to own the design of our enterprise security governance, risk, and compliance (GRC) framework. This is a senior, high-visibility role that sits at the intersection of security architecture, multi-jurisdiction regulatory compliance, and organizational risk - shaping how a global fintech company regulated across five jurisdictions thinks about, measures, and reduces security risk.

Responsibilities:

  • Own the enterprise security GRC framework - policy hierarchy, risk register methodology, control ownership, and audit evidence structure.
  • Map controls to DORA, NIS2, ISO 27001, and PCI-DSS, identify gaps, and set remediation priority.
  • Act as the final authority on regulatory interpretation affecting security, including written positions for audits and regulatory submissions.
  • Own the compliance and obligation management framework across all five regulated jurisdictions (FCA, CySEC, ASIC, SCB, SCA), including regulatory horizon scanning.
  • Represent the company in regulatory discussions alongside the CISO and General Counsel where required.
  • Define the company's human-risk philosophy and shape the security awareness architecture - segmentation, interventions, and measurement.
  • Advise the CISO, CHRO, Risk, and Compliance teams on security risk, regulatory obligations, and investment trade-offs.
  • Set the architectural standards the Corporate Security team executes against, and sign off on significant framework changes.
  • Support Third-Party Risk Management and Business Continuity & Crisis Management from a security and technical perspective.

Requirements:

  • 8+ years in security with a significant focus on GRC, regulatory compliance, riskmanagement, or a combination - with a track record of owning these programs at enterpriselevel, not just familiarity with them.
  • Proven experience designing enterprise-level security architectures or frameworks;experience in a regulated financial services environment (brokerage, payments, banking, orequivalent) is preferred but not required.
  • Deep command of ISO 27001 and PCI-DSS (working knowledge of DORA and NIS2preferred), with the ability to translate regulatory text into specific controls, identify gaps, anddetermine what is mandatory versus discretionary.
  • Multi-jurisdiction compliance experience; direct exposure to FCA or CySEC is a strongadvantage.
  • Demonstrated ability to advise and influence C-suite stakeholders on complex security andregulatory matters.
  • A structured, analytical thinking style - able to hold multiple regulatory regimessimultaneously without losing precision on any of them.
  • Fluent English, written and spoken.

Nice to have:

  • Direct experience managing regulatory submissions or engaging with supervisory authorities(FCA, CySEC, ASIC, SCB, or SCA).
  • TPRM program design experience, including DORA ICT third-party risk requirements andsupply chain risk.
  • Business Continuity Management background, with experience meeting operational resilienceobligations and presenting at Board level.
  • Security awareness program design with measurable behaviour-change outcomes.
  • Experience building or scaling a Corporate Security function from an early stage.
  • Relevant professional certifications (CISSP, CISM, CRISC, or equivalent).
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
374,200 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Warsaw
API Security Engineer 9 hours ago
$110k – $186k per year • Equity • In office • Full-Time • 5+ years exp • Bachelor's Degree • Alpharetta
DevOps
CI/CD
Git
Cybersecurity
ISO 27001
PCI DSS
Threat Modeling
Least Privilege
Apply
$30k – $79k per year (Estimated) • In office • Full-Time • 8+ years exp • Bengaluru
JavaScript
PHP
PHP
Magento
Databases
ElasticSearch
OpenSearch
Redis
Frontend
GraphQL
Next.js
React.js
Vue.js
Mobile
Dependency Injection
DevOps
AWS
Azure
CI/CD
Cloudflare
Docker
Fastly
Git
Incident Management
Kubernetes
Cybersecurity
PCI DSS
Management
ServiceNow
Apply
$130k – $270k per year (Estimated) • Equity • In office • 7+ years exp
C#
Java
Node JS
Python
Assembly
JavaScript
Python
Django
Flask
Assembly
Binary Ninja
dnSpy
AI/ML
AI Agents
DevOps
CI/CD
Git
Cybersecurity
FedRAMP
Ghidra
IDA Pro
ISO 27001
OWASP ASVS
OWASP Top 10
SentinelOne
SOC 2
Threat Modeling
Apply
$133k – $276k per year (Estimated) • Equity • In office • 7+ years exp
C++
Java
Node JS
Python
Rust
Assembly
JavaScript
Python
Django
Flask
Assembly
Binary Ninja
AI/ML
AI Agents
DevOps
CI/CD
Git
Cybersecurity
FedRAMP
Ghidra
IDA Pro
ISO 27001
OWASP ASVS
OWASP Top 10
SentinelOne
SOC 2
Threat Modeling
Apply
$27k – $61k per year (Estimated) • Remote • Full-Time • 5+ years exp • Bachelor's Degree • India
PowerShell
Python
DevOps
Azure
Azure DevOps
GitLab
Grafana
Rest API
Cybersecurity
ISO 27001
OWASP SAMM
Threat Modeling
Analytics
Power BI
Tableau
Management
Jira
ServiceNow
Apply
Junior AI Engineer 2 months ago
Remote/Hybrid • Limassol
JavaScript
Python
SQL
AI/ML
LLM
DevOps
Rest API
Management
n8n
Zapier
Apply
$62k – $111k per year (Estimated) • Remote/Hybrid • 5+ years exp • Warsaw
Python
AI/ML
AI Agents
LLM
RAG
EU AI Act
Function Calling
LLM Guardrails
Cybersecurity
GDPR
Apply
Remote/Hybrid • 6+ years exp • Bachelor's Degree • Dubai
Python
DevOps
AWS
Azure
CI/CD
GCP
Kubernetes
IAM
Cybersecurity
GDPR
ISO 27001
NIST CSF
SOC 2
Web3
Smart Contracts
Staking
Apply
$39k – $84k per year (Estimated) • Remote/Hybrid • Warsaw
Python
SQL
AI/ML
AI Agents
dbt
Prompt Engineering
Management
Slack
n8n
Apply
Applied AI Engineer 2 months ago
$27k – $112k per year (Estimated) • In office • Mumbai
Python
SQL
Databases
Chroma
FAISS
Pinecone
Weaviate
AI/ML
AI Agents
Claude
Gemini
LLM
Prompt Engineering
RAG
OpenAI
Apply
C++ Software Engineer 7 hours ago
$60k – $109k per year (Estimated) • Equity • Remote/Hybrid • Full-Time • Warsaw • Szczecin
C++
C++
CMake
LLVM
AI/ML
CUDA
CUDA Toolkit
OpenCL
DevOps
Git
GitHub
Cybersecurity
GDPR
Apply
$68k – $99k per year (Estimated) • Remote • Full-Time • 5+ years exp • Warsaw
SQL
Databases
Snowflake
Apply
QA Engineer II 10 hours ago
$27k – $49k per year (Estimated) • In office • 2+ years exp • Bachelor's Degree • Warsaw
AI/ML
Claude
Cursor
OpenAI
Management
Jira
Marketing
Salesforce
Apply
Applied AI Engineer 11 hours ago
$57k – $160k per year (Estimated) • In office • Full-Time • Berlin • Warsaw • London
Java
Python
SQL
Databases
Apache Kafka
Google BigQuery
PostgreSQL
AI/ML
AI Agents
Flink
LangChain
Llama
LlamaIndex
Prompt Engineering
RAG
Vertex AI
Anthropic
OpenAI
Context Engineering
Function Calling
Gemini
Google ADK
Human-in-the-Loop
Knowledge Graph
LangGraph
LLM
LLM Guardrails
Mistral
Model Context Protocol
DevOps
Rest API
GCP
Vector
Apply
$61k – $106k per year (Estimated) • Remote/Hybrid • 3+ years exp • Warsaw
C#
PowerShell
C#
.NET
DevOps
AWS
Azure
Azure DevOps
GCP
Git
GitLab
Jenkins
TeamCity
QA
Selenium
TestRail
Apply
See all jobs
This is one of many
374,200 more open roles from verified company boards, updated every day.