Security Governance & Compliance Specialist

Location: 

Sofia, BG, 1766

Work Model:  Hybrid

Amusnet is a leading provider recognized for offering the best-performing products and innovative solutions in gaming globally. With a portfolio of 300+ casino games, our company collaborates with 800+ operators on 2000+ websites in 35+ markets to enrich online entertainment. Our dedication to innovation and technology also extends to producing premium slot cabinets where our games fuse seamlessly with cutting-edge hardware solutions. Our team consists of 750+ industry professionals, and we continue to broaden our network of offices as we grow. Our team is growing and we are looking for Security Governance & Compliance Specialist!

We are growing our Information Security - Governance, Risk & Compliance (GRC) team and are looking for a Security Governance & Compliance professional to own ISMS governance documentation, lead audit engagements end-to-end and drive remediation governance with clear accountability.

 

 

THE PERFECT TEAM MEMBER IS INSPIRED TO:

 

  • Own, maintain and continuously improve ISMS governance documentation (policies, standards, procedures, guidelines)
  • Lead external audits and assessments end-to-end (ISO/IEC 27001, ISO/IEC 27017 and market-specific requirements): planning, evidence coordination, logistics and auditor communication
  • Plan and execute internal audits (scope, control testing, findings, follow-up), ensuring sustainable year-round audit readiness
  • Coordinate and maintain audit-defensible evidence and control assurance practices (ownership, traceability, refresh cadence)
  • Advise control owners across IT/Engineering, Product and business teams on security controls and evidence expectations
  • Manage third-party security assessments and due diligence questionnaires from clients/partners, ensuring accurate and timely responses
  • Drive remediation and CAPAs to closure with accountable owners, deadlines and agreed SLAs; report progress and risks to the CISO
  • Contribute to standards expansion readiness via gap analysis and practical roadmaps

 

 

THE SKILLS THAT WILL GRAB OUR ATTENTION:

 

  • 4+ years in Information Security / IT Audit / GRC, with 3+ years focused on ISO/IEC 27001 management
  • Relevant Bachelor’s degree (Computer Science, Information Security, Business Administration) or equivalent experience
  • Practical expertise in ISO/IEC 27001 and ISO/IEC 27017; strong audit and evidence management capability
  • Proven experience coordinating external audits and performing internal control testing / assurance activities
  • Strong stakeholder management and ability to translate requirements into actionable tasks for control owners
  • Professional English (C1/C2) for policy writing and audit/assurance communication
  • Exposure to SOC 2 and/or PCI DSS readiness; iGaming/regulated industry background is considered as an advantage

 

 

THE REASONS TO JOIN OUR TEAM:

 

  • Excellent remuneration package
  • Performance-based bonuses
  • Private health insurance
  • Card for Public Transportation
  • Multisport card
  • Corporate discounts
  • Parking – early bird option
  • 25 days of annual paid leave
  • Performance review process
  • Internal & external training programs
  • Team buildings & local company events
  • Work-life balance
  • Inspiring & supportive colleagues
  • Culture that encourages creativity & talent

 

If you are interested, please send us your CV.

All applications will be treated strictly confidential. 
Only short-listed candidates will be contacted.

Thank you for applying!