Hybrid Full-time

Kiln is hiring an Information Security Officer (ISO) / GRC cybersecurity Lead

About the Role

Kiln is looking for an Information Security Officer to support our VP of Security in defining and executing the company's information security program. Acting as the GRC (Governance, Risk & Compliance) lead, you will align security strategy with business goals and evolving regulatory standards in the web3 space.

What You'll Do

  • Design and run a scalable security program aligned with Kiln’s growth, web3 operations, and regulations.
  • Develop and maintain the security framework, including policies, standards, and processes.
  • Define and track KPIs/OKRs and present security posture to leadership.
  • Lead risk management activities, including enterprise, vendor, and emerging threat assessments.
  • Maintain the risk register and oversee audit readiness for SOC 2 and ISO 27001.
  • Build and manage the vendor security program, including due diligence, monitoring, and contractual controls.
  • Oversee third-party incident coordination and mitigation.
  • Promote a security-first culture through training and awareness programs.
  • Manage incident response planning and execution and lead post-incident reviews.
  • Establish compliance monitoring programs to ensure ongoing adherence to laws, regulations, and industry standards.
  • Partner with legal and compliance teams to ensure continuous adherence to standards.

What We're Looking For

  • Bachelor’s or Master’s in Computer Science or Information Security.
  • 8+ years in information security, with strong GRC experience in regulated or high-growth environments.
  • Proven record of building and scaling security programs.
  • Knowledge of ISO 27001, SOC 2, GDPR, and risk management frameworks.
  • Experience with third-party risk, cloud/infrastructure security, and compliance metrics.

Nice to Have

  • Background in blockchain, digital assets, or fintech.
  • Familiarity with web3 infrastructure, smart contracts, and DevSecOps practices.
  • Knowledge of compliance platforms (e.g., Vanta, Drata).
  • Certifications such as CRISC, CISM, CISSP, or ISO 27001 Lead Implementer.

Team & Environment

You will join a team of 100 and report directly to the VP of Security.

Benefits & Compensation

  • A fast-paced, bureaucracy-free work environment.
  • Equity share options in the business.
  • Competitive salary.
  • Flexible holiday.
  • Flexible remote working.
  • Choose your IT equipment.
  • €50/month internet connection stipend.
  • Significant personal development budget for books and training.
  • Overseas tech conferences budget.

Work Mode

This role operates on a hybrid model. Locations include Paris, or full remote from Western EU.

Kiln is an Equal Opportunity Employer. We are committed to fostering an inclusive and diverse workplace where everyone is valued and respected. We welcome applications from all backgrounds.

Required Skills
GRCRisk ManagementCompliance FrameworksSecurity AuditsIncident ResponseSecurity PoliciesVendor Risk ManagementSecurity Awareness TrainingRegulatory ComplianceSecurity Standards
Want to work from Thailand?

Join a remote network built for tech talent

Iglu gives you real employment in Southeast Asia — visa, work permit, and projects included. Pick what you work on, earn performance-based pay, and live where you want.

Legal employment in Thailand & Vietnam
Choose your own projects
Performance-based revenue sharing
Relocation support available
Join Iglu
200+ professionals worldwide
About company
Kiln

Kiln is the leading enterprise-grade rewards platform that enables institutional customers to stake assets and integrate staking & DeFi functionality into their offerings. Our API-first platform provides fully automated validators, staking & DeFi protocols access, and comprehensive data and commission management.

Visit website
Job Details
Category security
Posted 4 months ago