Sr. Information Security Manager
Job Description
<div class="content-intro"><p><strong>It's a new day with a new opportunity at 8am! </strong></p></div><p><strong>About the role:</strong></p> <p>As we evolve our security posture to meet growth and regulatory expectations, we are seeking a transformational Senior Information Security Manager to lead our technical security team and operationalize security capabilities that are measurable, effective, and aligned with business priorities. This is a hands-on leadership role: you will lead the day-to-day execution of the security program and directly manage the security engineering and analyst team, while partnering closely with the U.S.-based VP of Information Security and the compliance and privacy operations team.</p> <p>Location: Czech Republic (Remote). Working hours for this role are aligned to U.S. Central Time (Austin) core business hours to ensure real-time collaboration with the U.S.-based security leadership and compliance team.</p> <p><em>This role is hired through an Employer of Record (EOR) partner in the Czech Republic.</em></p> <p><strong>About us:</strong></p> <p>8am builds software that helps professionals run stronger businesses. Our platform powers payments, client experience, and operational workflows for legal, accounting, and other service-based businesses. U.S. based professionals count on our purpose-built solutions to simplify operations, ensure compliance, and fuel profitable growth, so they can focus on their clients and do more of the work that matters.</p> <p><strong>More than 250,000 professionals across the U.S. rely on our products every day. As we continue to grow, we’re investing in the next generation of our platform and are looking for experienced engineers who want to help shape its future.</strong></p> <p><strong>What you'll do:</strong></p> <ul> <li><strong>Team leadership</strong>: Lead and develop the security engineering/analyst team — delivery, prioritization, coaching, performance</li> <li><strong>Security operations</strong>: Own security platforms (EDR, SIEM, compliance automation, vulnerability management, CSPM) and detection/response workflows</li> <li><strong>Metrics & reporting</strong>: Own security metrics pipeline (remediation velocity, control assurance, coverage) for quarterly business reviews</li> <li><strong>AI security</strong>: Drive AI adoption in tooling for better detection, and define/enforce security standards for AI/agentic systems (LLM integrations, orchestration, governance)</li> <li><strong>Incident & compliance leadership</strong>: Lead incident response (EU hours, US coordination), post-incident reviews, and partner on compliance audits (SOC 2, PCI DSS, EU regs)</li> <li><strong>Security design reviews</strong>: Lead design reviews across product lines with risk ratings, SLAs, and documented standards</li> <li><strong>Threat intel & detection engineering</strong>: Monitor relevant threat intel and convert into actionable detections</li> <li><strong>Fraud/attack investigation</strong>: Partner cross-functionally to investigate attacks (card testing, fraud, abuse), turning findings into detections and hardening recommendations</li> </ul> <p><strong>About you:</strong></p> <ul> <li><span style="font-weight: 400;">7+ years in information security, including 2+ years leading technical security staff.</span></li> <li><span style="font-weight: 400;">Hands-on depth in cloud security operations (AWS preferred), SIEM/log analytics, EDR platforms, and vulnerability management programs.</sp