About the job
Join Our Mission at Solidgate
At Solidgate, our purpose is to empower exceptional entrepreneurs in building remarkable internet companies. We are dedicated to supporting the innovators of the digital economy by providing them with the financial infrastructure they need. Our ambitious goal is to establish ourselves as the leading payments orchestration platform globally.
We value team members who think big, take initiative, and possess a strong drive to excel in their roles. If you resonate with this ethos, we would love to have you on our team.
Your Role
As a vital part of our Information Security team, you will contribute to the security of our financial infrastructure that serves fast-growing internet businesses around the world. Our platform handles millions of transactions daily, operating within a highly regulated fintech landscape where security is paramount.
We are looking for an Information Security Engineer who will bolster our corporate and operational security practices. Your mission will involve minimizing the risk of breaches to corporate accounts, devices, and SaaS applications by:
Ensuring compliance with international security standards.
Facilitating controlled and auditable access.
Enhancing security awareness throughout the organization.
Supporting a robust incident response framework.
This position will focus on corporate security, access management, vulnerability management, and compliance, collaborating closely with engineering, IT, and business teams to ensure Solidgate remains secure, resilient, and prepared for audits.
Your Responsibilities
In your role as an Information Security Engineer, you will be responsible for overseeing corporate and operational security controls, which include:
Maintaining and supporting ISMS, PIMS, and BCMS frameworks.
Participating in external certifications and audits (PCI DSS, ISO 27001, ISO 27701, ISO 22301, GDPR, DORA).
Managing access control protocols: IAM / SSO / MFA, Joiner–Mover–Leaver processes, and conducting regular access reviews and privilege management.
Operating and fine-tuning information security tools, including vulnerability scanners, IAM and access control systems, anti-phishing tools, and security awareness programs.
Analyzing alerts and responding to security threats.

