About the job
Join Growe, a premier business advisory and services group specializing in iGaming and Entertainment, as a Cybersecurity Officer. We craft effective strategies and scalable solutions that empower businesses to thrive in a rapidly changing landscape. With a blend of visionary insight and practical expertise, Growe enables organizations to explore new markets, capitalize on emerging opportunities, and achieve sustainable growth.
Ideal candidates will:
Oversee comprehensive cybersecurity, information security, and IT security operations across the organization, focusing on both internal security protocols (monitoring breach attempts, internal network integrity) and product security (addressing product-related threats and vulnerabilities).
Develop, refine, and implement a company-wide cybersecurity strategy and security roadmap that aligns with business objectives and product priorities.
Establish and enforce robust security policies, standards, procedures, and controls throughout the organization.
Lead risk management initiatives, including conducting risk assessments, managing the risk register, and developing mitigation strategies.
Ensure compliance with regulatory and industry standards (such as GDPR, ISO 27001, SOC 2) and oversee internal and external audits.
Manage secure architecture across cloud infrastructures, applications, SDLC, and IAM, including evaluating critical architectural decisions.
Define and implement security standards related to encryption and key management.
Supervise security operations, including monitoring, detection, response capabilities, and incident response for high-priority events.
Promote Application Security and DevSecOps practices (SAST, DAST, SCA, CI/CD security controls, threat modeling) in collaboration with engineering teams.
Oversee IAM, endpoint, and workforce security, focusing on access control models, EDR strategy, device security, and employee lifecycle processes.
Lead initiatives on fraud prevention, vendor security, and investigations of internal/external abuse, while managing security KPIs, reporting, budget, and team expansion.
Manage a diverse cybersecurity team encompassing Cloud Security, SOC, Application Security / DevSecOps, Endpoint Security, IAM, and Information Security functions.

