SlipstreamJobsFresh Startup & VC-Backed Jobs

Information Security Specialist (Crypto)

Revolut - Nicosia, Cyprus - In-office

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Revolut is seeking a highly technical Information Security Manager to lead second-line-of-defence practices for IT and information security operations. This role is critical to protecting Revolut's systems, data, and 75+ million customers as the company continues rapid growth in the fintech and crypto space. Key responsibilities include conducting ICT security risk assessments and control evaluations with specific focus on cybersecurity risks for custodian and self-custody crypto wallets, and responses to wallet attacks. You will review new crypto initiatives and monitor crypto service providers to ensure compliance with evolving regulations like DORA, MICA, and PSD2. The role involves overseeing third-party security and outsourcing chains, reviewing penetration testing and vulnerability scans, and assessing security incidents with attention to regulatory reporting obligations. You will coordinate audits and assurance activities with group and external stakeholders, ensure adoption of group InfoSec policies locally while fostering a security culture, and contribute to digital operational resilience testing aligned with regulatory frameworks. Regular reporting on security resilience to management and regulators is a core expectation. Required qualifications include senior or lead-level expertise in InfoSec and IT operations, preferably with experience in crypto asset service providers or financial institutions handling digital assets. Advanced technical security discipline knowledge tailored to crypto environments is essential. You must have a track record delivering localized group IT/InfoSec policies compliant with DORA, MICA, and PSD2, plus in-depth understanding of crypto-asset service compliance requirements. Relevant certifications such as CISSP and/or CISM are required. Experience managing intra-group outsourcing of InfoSec and IT services in regulated settings is highly valued.

Similar roles