Information Security Officer


Applications have closed


From PSPs to tech companies, our partners depend on us to build their digital payments offering so they can free up their time and resources.

View company page

We're driven by a mission to make digital payments accessible to everyone, everywhere. With our innovative payment solutions, we empower businesses of all sizes to access new markets and connect with more customers. Our clients include some of the world's most innovative companies, such as Ant Group, PayPal, and Stripe, who depend on PPRO to accelerate their growth.

Our strength lies in our diverse and global team, spanning various nationalities and international locations. We’re all united by a shared a passion for building – whether that’s trusted relationships with our customers, or next generation products that make payments simpler, faster, and more secure for everyone

At PPRO, we believe that everyone can make a difference. We encourage our team members to seize opportunities to maximize their impact, adopt a growth mindset, build trust with each other and our customers, and drive change across the industry. We’re just at the start of our journey to become the leading payments technology provider globally – and that’s where you come in.

The Purpose:

You understand that Information Security is critical to the success of any organisation, in particular a FinTech! You know that when Information Security is well designed and implemented it supports and enables business objectives. You’ll join a growing GRC team responsible for keeping the company secure and compliant. As an Information Security Officer, you will play a critical role in safeguarding our organisation's information assets and ensuring compliance with industry standards and regulations.

PPRO is a cloud-native FinTech, operating payment services hosted across several AWS accounts and GCP. The GRC team within PPRO acts as a second line of defence, ensuring the management of Information Security Policies, Risks and Compliance with regulatory requirements. We provide innovative technology solutions, which means you will work in an exciting environment which innovates the way we manage security.

We operate payment services across the world, as well as card payments, meaning our regulatory requirements are wide and varied including ISO 27001, PCI DSS, PSD2-3/EBA, FCA, ... The role is highly collaborative, involving frequent interaction with various members of the technology, legal, enterprise risk, ... teams.

What you will be doing

  • Ensuring the identification and proper management of InfoSec Risks
  • Contribute to the creation and implementation of InfoSec Policies in alignment with business goals and industry best practices
  • Design and perform oversight to ensure we remain compliant with Law, Regulation and Standards
  • Foster a culture of security awareness and provide training to employees on security best practices and ownership of their security activities
  • Interact with our suppliers and customers to build PPRO’s reputation as a best-in-class secure services provider

You will need to have:

  • A proactive, results-oriented mindset with the ability to work independently and as part of a team
  • Proven experience in information security management, risk assessment, and compliance
  • Excellent knowledge of at least one industry standard (PCI DSS, ISO 27001, SOC2)
  • And/or excellent knowledge of regulatory frameworks (CSSF/EBA, FCA, GDPR)
  • Excellent communication skills
  • Excellent English skills in written & spoken
  • Commitment to diversity and inclusion and the ability to foster an inclusive culture


  • Experience with InfoSec risks in a cloud-native environment
  • Professional certifications such as CISSP, CISM, or CISA preferred
  • Experience managing security in Cloud hosting such as AWS, GCP, Azure
  • Solid understanding of Kubernetes, Networking, Operating Systems
  • Solid understanding of DevSecOps practices and CI/CD security requirements
What's in it for you ? :

Hybrid working - We offer flexible working, so you can strike the right balance between office and home working. In addition to our 30-day holiday allowance, we also provide a work from abroad policy, enabling employees to work remotely for up to another 30 days per year

Insurance - Because better safe than sorry - we want our employees to benefit from various insurances including accident insurance, disability insurance, direct insurance (bAV) and travel insurance. 

Free gym membership - We’ll cover the cost of your gym, so you can look after your physical fitness (and your wallet too)

Professional and personal development - We provide leadership cafes, on-the-job training, and access to LinkedIn learning to help you gain knowledge beyond your role. We also offer German language courses to our non native speakers employees.

Mental Health Platform - We’ve teamed up with a top well-being platform to provide one-on-one therapy, chat therapy, therapist-led courses, guided meditations, and more.

Our office - located on St.-Martin-Straße, one stop from Ostbahnhof on the 3 and 7 S-lines. It takes two stories in a new building, very modern and spacious with fully multimedia-equipped meeting rooms for up to 30 people. On the 5th floor we have a 200mq canteen with well-stocked fridges, an open-view kitchen, and a sunny terrace which doubles as an additional beer fridge for winter parties.

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: AWS Azure CI/CD CISA CISM CISSP Cloud Compliance DevSecOps FinTech GCP GDPR ISO 27001 Kubernetes PCI DSS PSD2 Risk assessment SOC 2

Perks/benefits: Career development Fitness / gym Flex hours Home office stipend Insurance Snacks / Drinks Startup environment Team events

Region: Europe
Country: Germany
Job stats:  14  0  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.