Head of IT Security

Head of IT Security

Full-Time 80000 - 100000 € / year (est.) No home office possible
O

At a Glance

  • Tasks: Lead and build a comprehensive security strategy for Omaze as we scale.
  • Company: Join a dynamic tech company focused on innovation and growth.
  • Benefits: Generous stock options, 25 days leave, private health insurance, and a personal development budget.
  • Other info: Collaborative culture with a focus on diversity and inclusion.
  • Why this job: Shape the future of security in a fast-growing environment and make a real impact.
  • Qualifications: Senior security leadership experience and expertise in building security programmes.

The predicted salary is between 80000 - 100000 € per year.

We’re looking for a Head of Security to take ownership of Omaze’s end-to-end security posture at a pivotal moment in our growth. As we scale, expand into new territories, and mature our operational foundations, security is moving from a shared responsibility to a critical, business-wide priority. Right now, it sits across Engineering and IT — but we need a dedicated leader to bring it together into a clear, structured, and scalable programme. This is a rare opportunity to build a security function from the ground up. You’ll define our strategy, implement the right controls, and establish the frameworks we need to support our next stage — from ISO 27001 certification to investor scrutiny. You’ll be just as comfortable operating at board level as you are rolling up your sleeves to get things done. At Omaze, everyone is hands-on — including our exec team — and this role is no exception.

What You’ll Be Doing

  • Owning Omaze’s security posture end-to-end across AWS, SaaS platforms, and employee devices
  • Building and delivering a company-wide security strategy aligned to our growth, IPO readiness, and regulatory landscape
  • Leading our ISO 27001 certification journey, including gap analysis, roadmap creation, and delivery
  • Establishing and embedding a robust Information Security Management System (ISMS)
  • Designing and implementing a formal GDPR and data protection programme
  • Defining and owning our incident response plan — and leading response during security events
  • Working with IT in MDM processes and strengthening endpoint security across the business
  • Conducting security reviews across our infrastructure and tooling (AWS, Google Workspace, Slack, Shopify, Stripe, etc.)
  • Owning relationships with external partners (e.g. auditors, pen testers, security vendors)
  • Bringing clarity and visibility to risk through regular board-level reporting
  • Building a strong security culture through awareness, education, and practical guidance
  • Laying the foundations for a future security team

About You

  • You’ve operated in a senior security leadership role (Head of, Director, or similar), ideally in a high-growth or scaling tech environment
  • You’re experienced in building security programmes from scratch — not just maintaining them
  • You’ve successfully led or been deeply involved in ISO 27001 certification
  • You’re comfortable balancing strategic thinking with hands‑on execution
  • You understand the realities of GDPR and data protection in a consumer-focused business
  • You’ve worked in environments preparing for major milestones like IPO, enterprise expansion, or regulatory scrutiny
  • You can confidently communicate with senior stakeholders, including execs, investors, and auditors
  • You’re pragmatic — you know how to prioritise and deliver impact without overcomplicating things
  • You’re naturally collaborative and can influence across Engineering, Product, Legal, and beyond
  • You care about building something meaningful and want to have a real impact on how we scale

What’s In It For You

  • Generous stock options scheme
  • 25 days annual leave PLUS Bank Holidays
  • Private medical and dental insurance
  • 9% employer pension contributions, when you contribute at least 2%
  • A generous personal learning and development budget each year to use on training courses, conferences and professional memberships
  • Personal equipment budget to work from home
  • Enhanced family leave policies
  • Life assurance of 4x your salary

DEI Statement

We actively seek out diversity of thought and experience to drive innovation. We welcome all backgrounds, identities, and perspectives and work hard to ensure that every Omaze employee can bring their authentic self to work at all times.

Head of IT Security employer: Omaze, Inc.

Omaze is an exceptional employer, offering a unique opportunity for the Head of IT Security to shape and lead our security strategy during a pivotal growth phase. With a hands-on work culture, generous benefits including stock options, private medical insurance, and a strong commitment to employee development, we empower our team to make a meaningful impact while fostering a diverse and inclusive environment.

O

Contact Detail:

Omaze, Inc. Recruiting Team

StudySmarter Expert Advice🤫

We think this is how you could land Head of IT Security

Tip Number 1

Network like a pro! Reach out to your connections in the industry, attend relevant events, and engage with professionals on platforms like LinkedIn. We all know that sometimes it’s not just what you know, but who you know that can help you land that dream job.

Tip Number 2

Prepare for interviews by researching the company inside out. Understand their security posture, recent news, and challenges they might be facing. This will not only impress the interviewers but also help us tailor your responses to show how you can add value.

Tip Number 3

Practice your pitch! Be ready to articulate your vision for building a security function from scratch. We want to hear how you’d approach the role and what strategies you’d implement. Confidence is key, so rehearse until it feels natural.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who are proactive about their job search. Let’s get you in the door!

We think you need these skills to ace Head of IT Security

Security Strategy Development
ISO 27001 Certification
Information Security Management System (ISMS)
GDPR Compliance
Incident Response Planning
Endpoint Security Management
Risk Assessment and Reporting

Some tips for your application 🫡

Tailor Your CV:Make sure your CV speaks directly to the job description. Highlight your experience in security leadership and any relevant certifications like ISO 27001. We want to see how your background aligns with our needs!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you’re passionate about building security programmes from scratch and how you can contribute to our growth. Keep it engaging and personal, so we get a sense of who you are.

Showcase Your Hands-On Experience:We love candidates who can roll up their sleeves! Share specific examples of how you've implemented security strategies or led teams in previous roles. This will show us that you’re not just a thinker but also a doer.

Apply Through Our Website:Don’t forget to apply through our website! It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team at Omaze!

How to prepare for a job interview at Omaze, Inc.

Know Your Security Fundamentals

Make sure you brush up on the key principles of IT security, especially around ISO 27001 and GDPR. Be ready to discuss how you've implemented these frameworks in previous roles, as this will show your hands-on experience and strategic thinking.

Showcase Your Leadership Skills

Prepare examples that highlight your ability to lead a security programme from scratch. Think about times when you’ve successfully built teams or processes, and be ready to explain how you can bring that expertise to Omaze.

Understand the Business Context

Familiarise yourself with Omaze’s business model and growth plans. Be prepared to discuss how security aligns with their goals, especially regarding IPO readiness and regulatory compliance. This shows you’re not just a techie but also a strategic partner.

Engage with Stakeholders

Practice articulating your ideas clearly and confidently, as you'll need to communicate with various stakeholders, including execs and investors. Think of ways to demonstrate your collaborative approach and how you can influence across different departments.