Security Officer
This is the employer's own posting, not a copy on a job board.
What we know
Is it still open?
Confirmed still open
Last checked 2d ago — checked against the employer's own applicant tracking system, which is the company answering directly.
We re-read the employer's own applicant tracking system and the posting was still there. That is the company answering directly.
How old is it?
Posted 5d ago
The date the source published, not the day we noticed it (2026-10-05). Last seen at its source just now.
We have tracked this listing since 5 Oct 2026 (5 days). The employer's own board has carried it every time we have read it, most recently just now.
Is it remote?
Remote
That is the location the employer filed this posting under. Quoted as written — we do not re-word the source's own location.
Who may apply?
Not stated
The description states no restriction of its own. This is the source's own tag.
Skills named in the ad
Recognised terms only, from a fixed vocabulary — this is what CV matching compares against.
Carried by 1 source
-
Ashby employer's own board first seen 5d ago · last seen just now
The listing
Join Zeely as a Security Officer and help us strengthen and scale security across our products and infrastructure.
You'll own the development of security across the company and work closely with our Principal System Architect and the Platform, DevOps, and Backend teams as a trusted partner with real authority over technical decisions from a security perspective.
About Us:
Zeely is the agentic AI platform for creating, launching, and scaling paid ads.
Simply put: we've made the best AI solutions and marketing tools available to small and medium businesses — tools that used to be reserved for big brands with expensive marketing teams.
The next big step: a B2B solution for large marketing teams and enterprise clients — workflows, creative analytics, and full control over campaigns across the whole team. For companies where performance marketing already runs at scale and needs more efficiency and automation.
A few numbers that speak for themselves:
4 years on the market — a stable, profitable company backed by international investors;
6× growth over the past year;
2,000,000+ businesses already use Zeely;
#1 in its category in the US market;
200+ specialists on the team;
Markets: US + worldwide.
What You'll Do:
Assess our infrastructure and product from a security perspective;
Proactively identify, prevent, and help fix vulnerabilities across our product and infrastructure;
Lead incident response and help defend against attacks in real time;
Define and prioritize security initiatives and shape the security roadmap;
Work hands-on: close security tickets yourself and collaborate closely with the DevOps and Platform teams on implementation;
Integrate security into our development pipeline (SDLC / CI/CD);
Drive compliance initiatives, mainly SOC 2 (Type 1) and CASA, and implement relevant ISO 27001 controls;
Develop security policies, processes, and access management practices across our cloud infrastructure (AWS);
Review architecture decisions and code from a security perspective;
Support B2B clients with security-related questions, reviews, and due diligence.
What Do You Need to Join Us?
7+ years of engineering experience;
3+ years in a Security Officer or Security Engineer role (a combined Security/DevOps role works too);
Hands-on backend development background (Node.js / JavaScript / TypeScript, Java, or C#/.NET);
Strong practical experience in DevOps and cloud infrastructure;
Proven experience finding and fixing vulnerabilities and handling security incidents;
AWS Professional-level certification (a security-focused Associate certification may also be considered);
Hands-on experience implementing SOC 2 and/or ISO 27001 controls — owning the process end to end, not just maintaining existing policies;
Experience with external security audits (Big Four experience is a plus);
Upper-Intermediate (B2+) English or higher;
Fluent Ukrainian.
Nice to Have:
Experience with CASA assessments;
Experience implementing GDPR and/or CCPA (CPRA) requirements;
Understanding of PCI DSS (SAQ-A level);
GCP certifications.
Why It's Worth Joining Us:
A chance to shape how security evolves in a stable, profitable product company;
A role with real ownership, including veto power over technical decisions from a security perspective;
A clear growth path toward leading a security team;
Work with cutting-edge technologies and contribute to building AI-powered tools;
A strong team of A-level players who push each other to grow;
A remote-first setup with offices in Warsaw and Kyiv;
All the equipment you need for work, provided by the company;
Regular performance reviews to keep your growth transparent and rewarded.
Recruitment Process:
Intro Call → Technical Interview → Test Task → Final Interview → Reference Check → Offer.
Send us your CV — we'd love to meet you!