A pioneer of the Romanian market, eMAG was founded in 2001 in Bucharest and has well-established businesses in Bulgaria and Hungary. For almost 20 years, the company has been constantly investing in technology-based services developed in Romania that help customers save time and money. With a range of products continuously expanding through own offer as well as through its partners in the Marketplace, eMAG is the place where anybody can search and order anything, from anywhere.

Security Team Leader (Cybersecurity&Infrastructure Team) | eMAG
  • Work place: Hybrid

  • Collaboration: Employment contract

  • Work time: Full Time

  • Seniority: Team lead

  • Experience: 1-2 years

  • Updated on: 1 month ago

  • Vacant from: 17 Aug, 21

  • Expires on: 17 Oct, 21

  • Pay: Negotiable

  • Categories: Backend, Fullstack, Infrastructure, Security, Technical Leader

  • Size:> 500 employees

  • Industry:Retail

Market (net €/month)
  • Only Loginro members with a minimum completed profile that share their salary expectations for this position may access its industry median pay.

eMAG`s Cyber Security team has the mission of protecting eMAG`s data and IT assets by employing a range of technologies and processes to prevent, detect, and manage cyber threats. In order to sustain that evolving landscape, new capabilities need to be introduced or created. 
In this role, you are fully responsible for coordinating operational information security in its broadest sense, together with asset owners. Among other things, you will be involved in the development and implementation of processes and guidelines concerning the information security policy of the entire organization. This position will also act as a sole contributor at times but is primarily responsible for leading a team of analysts to accomplish the overall vulnerability management mission.

If you understand the ever-growing number of security threats, you have the right knowledge and tools to lock them out of the ecosystem, then you can join our team and find the perfect spot to prove it.


Your Activities

  • Develop and maintain security policies within the company in order to be able to proactively tackle threats;
  • Supervise and ensure smooth application of all defined security policies;
  • Provide substantiated analyses about possible security threats to the company;
  • Align business risk solutions;
  • Collaborate with legal & technical teams to ensure GDPR compliance;
  • Become primary contact for all Audit processes involving Cyber Security & IT;
  • Collaborate with NOC, Infrastructure, and Software Development teams to identify, rate and propose mitigation plan for risks associated with existing and future workflows;
  • Roadmap preparation & update based on a threat risk & impact-based approach;
  • Cyber incident management;
  • Looking for the right balance between minimizing company exposure to risks and development velocity;
  • Research technological advancements and evaluate the complex architecture of a rapidly growing infrastructure to detect potential pitfalls, recommend and implement mitigation whenever possible.


Your Profile

  • You have a strong understanding of security first principles, the security market landscape and the current technologies and approaches used to solve today’s security problems;
  • You have experience in developing, documenting, and maintaining Security architecture, security policies, processes, procedures, and standards.
  • You`re skilled in risk management, technical risk analysis and making complex business/risk trade-off recommendations and decisions;
  • You can prove technical knowledge in multiple security domain areas such as engineering, applications, system and network security, authentication or security protocols;
  • Demonstrated ability to work through ambiguity to detailed solutions;
  • Maturity, judgment, and proven ability to lead and influence others;
  • Independently driven, resourceful, and able to deliver results with minimal direction;
  • Ability to communicate clearly and effectively with engineering, product management, and senior business leaders;
  • High sense of ownership, urgency, and drive;
  • You're Service-minded, reliable, and sincere.


Diving deeper into the technical profile:

  • Experience identifying and protecting against malware, phishing and other types of cyber threats;
  • working knowledge of IDS/IPS software;
  • experience with integrating SAST/DAST tools in the application development life cycle;
  • experience with Linux systems – including but not limited to: routing, firewall, QoS, administration and hands-on programming experience of shell scripts to automate tasks;
  • thorough understanding and experience debugging security issues involving standard Internet protocols such as SMTP and HTTP(s).


You're a great fit if...:

  • You’re thrilled to join a team in which you'll take part in building a mature application security system that covers the entire Security Development Lifecycle;
  • You're a natural when it comes to communicating in a friendly and assertive manner with other teams (be it, technology teams or business teams);
  • You have excellent skills when it comes to identifying security issues, but it  also comes very naturally to you to be a mentor and an advocate on solutions;
  • You’re passionate about cybersecurity, but at the same time you understand that each process must be thought about thoroughly and in an exhaustive manner (from the point-of-view of many stakeholders).

Needed Skills

Cyber Security


Available in


Benefits included

Medical subscription

Work from home

Flex time (07:00 - 19:00)

Flexible benefit (budget offered by employer)

What else can you do

Since you scrolled down here
lets enjoy this a bit more!

Blind peek another awesome job

Share this job