BHFT logoBHFT logo

Lead Information Security Engineer

BHFTTbilisi
On-site Full-time

Clicking Apply Now takes you to AutoApply where you can tailor your resume and apply.


Experience Level

Mid to Senior

Qualifications

Bachelor's degree in Information Security, Computer Science, or a related field.5-7 years of experience in information security or related roles, with a focus on scaling security processes in rapidly growing organizations. Proven leadership and mentoring abilities, with a history of driving strategic security initiatives. Deep understanding of security frameworks and best practices, including IAM, RBAC, and compliance standards such as GDPR and ISO 27001.Strong expertise in application and infrastructure security, including DevSecOps, network security, cloud security, and endpoint protection. Hands-on experience with SIEM systems and incident response protocols, including SOC setup and management. Demonstrated capability to collaborate with cross-functional teams effectively.

About the job

Join our team as a Senior Information Security and Systems Management Engineer. In this pivotal role, you will be instrumental in shaping our security and systems strategy, ensuring our infrastructure evolves as we grow, and that our global team's work environments adhere to the highest security standards.

Your responsibilities will include addressing challenges related to expanding systems and processes, implementing best practices, and unifying all information security domains. With strong organizational backing, resources, and an experienced team, you will serve as the primary decision-maker for security matters. Collaboration with leaders across the organization, including HR, the CEO, and the Managing Director, will be essential in building integrated processes and promoting the adoption of security initiatives company-wide.

Key Responsibilities:

  • Identity & Access Management (IAM): Oversee centralized access management, develop and maintain a robust RBAC model, manage access granting and revocation, and conduct periodic reviews. Ensure proper configuration of SSO, MFA, and least-privilege policies while auditing accounts for privilege misuse or anomalies.
  • Application Security: Integrate security into the software development lifecycle, collaborating with the Head of Development to secure application architecture. Implement DevSecOps practices, safeguard secrets and intellectual property, utilize SAST/DAST, perform threat modeling, and regularly review third-party libraries and services to mitigate vulnerabilities and ensure secure deployments.
  • Infrastructure Security: Safeguard the company's IT infrastructure through secure network architecture, segregation, server and endpoint hardening, and patching policies. Collaborate closely with the Head of Infrastructure and Networks, focusing on cloud security to prevent vulnerabilities and secure operations across all infrastructure components.
  • Incidents Monitoring & Response: Establish a Security Information and Event Management (SIEM) system for real-time monitoring, build a Security Operations Center (SOC), and create response processes for proactive detection and efficient resolution of security incidents, continuously enhancing incident management capabilities.

About BHFT

BHFT is a leading proprietary algorithmic trading firm, expertly managing the entire trading cycle—from software development to strategizing and coding algorithms. Our trading operations span key exchanges and a wide range of asset classes, including equities, equity derivatives, options, commodity futures, and rates futures. We leverage an array of algorithmic trading strategies, employing both High-Frequency Trading (HFT) and Medium-Frequency Trading (MFT) approaches. As we look to the future, we are expanding into new markets and products. Our dynamic company culture encourages experimentation with innovative markets, tools, and technologies. With a diverse team of over 200 professionals, we prioritize technology, with 70% being technical specialists in development, infrastructure, testing, and analytics, while the remainder supports essential business operations such as Risk, Compliance, Legal, and Operations.

Similar jobs

Browse all companies, explore by city & role, or SEO search pages. View directory listings: all jobs, search results, location & role pages.

Tailoring 0 resumes

We'll move completed jobs to Ready to Apply automatically.