Security Governance & Compliance Specialist
Sofia, BG, 1766
Amusnet is a leading provider recognized for offering the best-performing products and innovative solutions in gaming globally. With a portfolio of 300+ casino games, our company collaborates with 800+ operators on 2000+ websites in 35+ markets to enrich online entertainment. Our dedication to innovation and technology also extends to producing premium slot cabinets where our games fuse seamlessly with cutting-edge hardware solutions. Our team consists of 750+ industry professionals, and we continue to broaden our network of offices as we grow. Our team is growing and we are looking for Security Governance & Compliance Specialist!
We are growing our Information Security - Governance, Risk & Compliance (GRC) team and are looking for a Security Governance & Compliance professional to own ISMS governance documentation, lead audit engagements end-to-end and drive remediation governance with clear accountability.
THE PERFECT TEAM MEMBER IS INSPIRED TO:
- Own, maintain and continuously improve ISMS governance documentation (policies, standards, procedures, guidelines)
- Lead external audits and assessments end-to-end (ISO/IEC 27001, ISO/IEC 27017 and market-specific requirements): planning, evidence coordination, logistics and auditor communication
- Plan and execute internal audits (scope, control testing, findings, follow-up), ensuring sustainable year-round audit readiness
- Coordinate and maintain audit-defensible evidence and control assurance practices (ownership, traceability, refresh cadence)
- Advise control owners across IT/Engineering, Product and business teams on security controls and evidence expectations
- Manage third-party security assessments and due diligence questionnaires from clients/partners, ensuring accurate and timely responses
- Drive remediation and CAPAs to closure with accountable owners, deadlines and agreed SLAs; report progress and risks to the CISO
- Contribute to standards expansion readiness via gap analysis and practical roadmaps
THE SKILLS THAT WILL GRAB OUR ATTENTION:
- 4+ years in Information Security / IT Audit / GRC, with 3+ years focused on ISO/IEC 27001 management
- Relevant Bachelor’s degree (Computer Science, Information Security, Business Administration) or equivalent experience
- Practical expertise in ISO/IEC 27001 and ISO/IEC 27017; strong audit and evidence management capability
- Proven experience coordinating external audits and performing internal control testing / assurance activities
- Strong stakeholder management and ability to translate requirements into actionable tasks for control owners
- Professional English (C1/C2) for policy writing and audit/assurance communication
- Exposure to SOC 2 and/or PCI DSS readiness; iGaming/regulated industry background is considered as an advantage
THE REASONS TO JOIN OUR TEAM:
- Excellent remuneration package
- Performance-based bonuses
- Private health insurance
- Card for Public Transportation
- Multisport card
- Corporate discounts
- Parking – early bird option
- 25 days of annual paid leave
- Performance review process
- Internal & external training programs
- Team buildings & local company events
- Work-life balance
- Inspiring & supportive colleagues
- Culture that encourages creativity & talent
If you are interested, please send us your CV.
All applications will be treated strictly confidential.
Only short-listed candidates will be contacted.
Thank you for applying!