Description

About the role

As Head of Information Security, you will own  our  Group-wide Information Security Management System (ISMS) and lead our information security programme across the business. This is a hands-on leadership role combining technical depth with strategic ownership, where you’ll drive security standards, regulatory compliance, and risk management while leading a team of around 20 specialists across Product Security, Internal Security, Cloud Security, and Security Compliance.

Main tasks and responsibilities

  • Own and continuously evolve Bolt’s ISO 27001-certified Information Security Management System (ISMS), ensuring it scales with the business and meets regulatory requirements.
  • Lead the development of Bolt’s security strategy, policies, risk management framework, and internal audit programme across multiple engineering locations.
  • Define and maintain technical security standards across cloud infrastructure, identity and access management, vulnerability management, endpoint security, and incident response.
  • Partner closely with Engineering, Legal, Procurement, Risk, and Product Security to embed security into product development, AI initiatives, and third-party relationships.
  • Lead Bolt’s response to external audits, certification activities, regulatory assessments, and major security incidents.
  • Build, mentor, and develop a team of approximately 20 security specialists while fostering a strong security culture across the organisation.

About you

  • You have extensive experience leading Information Security within a technology company, including ownership or significant development of an ISO 27001-certified ISMS.
  • You have a strong understanding of modern security practices across cloud environments, identity and access management, vulnerability management, encryption, and incident response.
  • You have practical experience working with European regulatory frameworks such as GDPR, NIS2, DORA, and the EU AI Act.
  • You have successfully led security governance activities, including policy development, internal audits, certification programmes, and third-party risk management.
  • You are comfortable communicating security risks and influencing stakeholders at all levels, from engineers to executive leadership.
  • You thrive in fast-paced environments, enjoy taking ownership, and know how to balance technical depth with strategic leadership.

Experience is great, but what we really look for is drive, intelligence, and integrity. So even if you don’t tick every box, please consider applying if you feel you’re the kind of person described above!

 

Why you’ll love it here

  • Accelerate your professional growth with unique career opportunities.
  • Enjoy a rewarding salary and stock options, knowing that as we  succeed, so do you.
  • Take care of your physical and mental health with our wellness perks.
  • Celebrate 5 years  with a 1-month paid sabbatical to recharge.
  • Connect with colleagues at annual company events and smaller team gatherings.
  • Balance flexibility and in-person collaboration with our hybrid model, including at least 12 monthly in-office days.
Are you interested in this position?

Apply by clicking on the “Apply Now” Button below!

#JobsHubEstonia #GlobalRecrument
#CareerOpportunities #HiringNow
#JobSeekersNetwork #EstoniaJobs
#RecruitmentServices #EmploymentPortal.