Data Security Manager
SisalAbout the role
Location: Milano
About us
Flutter, the world’s largest online sports betting and iGaming group listed on the London and New York stock exchanges, is home to the Southern Europe & Africa (SEA) region, featuring iconic brands like Sisal, Snai and PokerStars, a globally loved brand that embodies innovation and ambition, with significant growth potential in a dynamic market.
What you’ll do:
Join the team of Legal & Risk and in particular in the Information Security (CISO) reporting directly to Head of Information Protection & Cyber Resilience;
Have the opportunity to be involved in leading the development and implementation of robust security measures that safeguard our organization’s sensitive data. This role is pivotal in ensuring compliance, minimizing risk, and upholding the integrity and confidentiality of data across the company’s digital infrastructure. Main responsibilities:
Data Classification & Inventory: tag and catalog sensitive and confidential data by type (e.g., PII, gaming sensitive information, financial records, etc.).
Data Loss Prevention (DLP): deploy tools and policies to prevent unauthorized data exfiltration;
Encryption Standards & Key Management: define and enforce encryption in transit and at rest (including KMS/HSM);
Data Access Controls: govern who can access which data — and monitor that access;
Data Retention & Destruction Policies: define lifecycle rules to retain, archive, or delete data securely;
Secure Data Sharing & Third-Party Transfers: ensure data leaving the org is protected (contracts, encryption, restrictions);
Monitoring & Alerting for Sensitive Data: track data movement and anomalies defining use cases through SIEM/DLP;
Support for Privacy Regulations (e.g., GDPR, CCPA): implement controls to support subject rights and lawful processing.
What you’ll bring:
Proven experience (at least 5 years) in data security management, data classification, data governance, information security, data loss prevention, encryption, anonymization, data masking;
A degree in Computer Science, Cybersecurity, Information Technology, or a related field;
Previous experience in data security, information security management, or cybersecurity, preferably in a leadership or managerial capacity. Proven track record in managing security frameworks such as ISO 27001, NIST;
Excellent knowledge of data protection regulations, information security standards (CIS, NIST, etc.), security technologies (e.g., DLP, HSM, encryption, secret management, etc.), and risk management frameworks. Familiarity with cloud security (e.g., Oracle, Azure), network protocols, and security architecture;
Ability to design and implement effective security policies, manage security projects, and lead cross-functional teams;
Strong analytical and problem-solving skills with attention to detail. Excellent communication and interpersonal skills, with the ability to convey technical concepts to non-technical stakeholders;
Professional certifications such as CISSP, CISM, CEH, or CompTIA Security+ is a plus;
Fluency in english is required, with strong written and verbal communication skills.
Why choose us:
Permanent contract with Hybrid Work.
Meal Allowance.
Supplemental Health Insurance.
The option to join our company share saving scheme.
Choose us also for:
An inclusive work environment and participate in all our initiatives focused on Diversity & I
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s