1,174,835open jobs
13,798companies
228,726added this week
Browse all
Salary
$71k – $175k per year (Estimated)
Location
Remote/Hybrid (Vilnius, Lithuania)
Employment
Full-Time
Overview
Company
Impact
Profile match
Finoa is a Berlin digital asset company founded in 2018 that provides regulated custody and staking to institutions. Its platform holds cryptocurrencies for funds, corporates and foundations under German financial supervision. The company also offers settlement and reporting services around the assets it safeguards.

About us:

At Finoa, we are on a mission to enable institutions and individuals globally to migrate their capital into the onchain economy. We are actively engineering the platform that makes this possible.

We believe great products are built by people who are eager to leave their mark on the world. We are looking for ambitious, curious, and hard-working individuals who want to learn quickly, take ownership, and help us grow in a fast-moving market.

If you are excited by fintech, digital assets, AI, and the future of institutional finance, we would love to hear from you.

Your mission:

We are looking for a VP Information Security to lead security for the Group - someone equally comfortable setting security strategy and reporting to a regulated Board as they are running the SOC day to day.

This is a hybrid role by design: for one of our regulated entities, you'll act as the appointed CISO, owning the cybersecurity framework and the regulatory relationship. Across the wider Group, you'll build and run operational security day to day - the SIEM, detection, and incident response.

In this role, you will:

Security leadership & regulatory ownership

  • Own the cybersecurity frameworkContinuously improve strategy, policies, risk register and controls, reviewing and updating them at least annually against the evolving threat landscape.

  • Run the cyber risk-management lifecycleMaintain the asset inventory, run risk assessments, monitor on an ongoing basis, and report regularly to the Board on the risks that matter, working closely with Risk Controlling on second-line risk oversight.

  • Lead regulatory incident notificationNotify our regulator when required, keep affected parties informed, and work closely with our Data Protection Officer whenever personal data is involved.

  • Set security standardsMaintain baseline security-configuration and access-control standards, and commission independent vulnerability scans and penetration tests at least annually and after major changes.

  • Own vendor and outsourcing security due diligenceIncluding for cloud providers.

  • Build our security cultureRun a group-wide security awareness programme, and make sure the security function is properly resourced.

  • Support independent assuranceHelp the Board approve the security audit plan and enable independent reviews of our cyber resilience.

  • Be the voice of securityAct as the primary point of contact for the Board and all internal functions on cyber risk, and act as CISO in representing the relevant regulated entity to our regulator on IT security matters.

What you need to be successful:

  • Ideally 5+ years in information security or similar roles, with a genuine mix of hands-on SOC / detection-engineering work and governance or senior-management-level accountability. We need both, not one alone.

  • A track record owning a cybersecurity framework in a regulated environment that requires senior-level reporting and regulatory incident notification (financial services, VASP, e-money or comparable).

  • Real, practical experience owning a SIEM (design, tuning, operation) and leading incident response, not just overseeing a vendor who does this.

  • You're comfortable being a named, accountable CISO to a regulator, subject to fit and proper assessment, and presenting directly to a Board.

  • Some major parts of fit-and-proper assessment are: a clean regulatory and criminal record (probity checks cover criminal history, sanctions and disciplinary action), no disqualification from a director or senior-management role, and sound personal finances; experiences in security roles, ideally in regulated environments, must be demonstrable.

  • We expect you to be in our office in Vilnius for 2-3 days per week, as we are growing a local team incl. an in-office culture

Nice to have

  • CISSP, CISM or equivalent.

  • SANS/GIAC or other operational security certifications.

  • Prior exposure to regulatory regimes.

What’s in it for you:

  • Build on a mature foundationInherit an established security setup and develop it further as our product and customer base grow.

  • Shape a founding LT cultureBe one of the early members of Finoa's LT Team, with real influence over how security collaborates with our groups engineering, compliance and risk teams.

  • Grow with the roleAs the business scales, the scope grows with you rather than staying fixed.

  • Move fast, stay rigorousWork in a fast-paced environment while holding the line on regulatory and security requirements.

  • Direct exposure to the BoardUnfiltered reporting lines give you real visibility and feedback at the highest level.

  • A broad set of stakeholdersWork daily across engineering, compliance, legal and risk, and across our different jurisdictions and entities.

The salary band for this role is €5,500 - €6,600 a month (before tax deduction).

The final offer will depend on the experience and competencies of the selected candidate. The overall remuneration package consists of the salary together with other benefits.

Diversity & Inclusion:

Finoa is an equal opportunity employer devoted to diversity and inclusion in the workplace. We genuinely welcome and encourage applications from people of all backgrounds, cultures, genders, sexual orientations, abilities, neurodiversities, and ages.

Data Privacy:

Finoa processes candidate data in accordance with GDPR.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,174,835 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Vilnius
$81k – $193k per year (Estimated) • Remote/Hybrid • Master's Degree • London
Java
Python
AI/ML
AI Agents
Explainable AI
NLP
RAG
Cybersecurity
GDPR
Apply
Remote/Hybrid • 5+ years exp • Bachelor's Degree • Bucharest
DevOps
GitHub
Cybersecurity
GDPR
Marketing
LinkedIn
Apply
Remote/Hybrid • 5+ years exp • Bachelor's Degree • São Paulo
DevOps
GitHub
Cybersecurity
GDPR
Marketing
LinkedIn
Apply
In office • 1+ year exp
C++
SQL
Databases
PostgreSQL
DevOps
Red Hat
Cybersecurity
GDPR
Apply
HRIT Analyst (m/f/d) 2 hours ago
In office • 3+ years exp • Bachelor's Degree
Cybersecurity
GDPR
Apply
$50k – $114k per year (Estimated) • Remote/Hybrid • Full-Time • Vilnius
Python
DevOps
AWS
Kubernetes
Cybersecurity
GDPR
Apply
In office • Internship • Berlin
Web3
Staking
Apply
In office • Internship • Berlin
Cybersecurity
GDPR
Management
n8n
Apply
In office • Full-Time • 2+ years exp • Vilnius
AI/ML
ChatGPT
Management
WhatsApp
Marketing
LinkedIn
Apply
AI ENGINEER (F/M/D) 2 days ago
$36k – $107k per year (Estimated) • Remote/Hybrid • Full-Time • 1+ year exp • Vilnius
Python
AI/ML
Fine-tuning
RAG
Apply
$30k – $87k per year (Estimated) • Remote/Hybrid • Full-Time • 2+ years exp • Vilnius
Python
SQL
Databases
Microsoft Fabric
DevOps
Azure
Analytics
ETL/ELT
Apply
Compliance Analyst 3 days ago
In office • Full-Time • 1+ year exp • Bachelor's Degree • Vilnius • Kaunas
Apply
Creative Strategist 3 days ago
$39k – $86k per year (Estimated) • Remote/Hybrid • 4+ years exp • Vilnius
Management
Confluence
Google Workspace
Jira
Apply
See all jobs
This is one of many
1,174,835 more open roles from verified company boards, updated every day.