Head of Security

sunday
Paris
? About Us

At sunday , we’re transforming the dining experience with fast, seamless payments. No more waiting for the bill — with one scan, guests pay, tip, and leave. We're creating a world where time is better spent enjoying the moment.

We’re a growing team of bold thinkers, builders, and creators, working across Europe and North America to bring better hospitality to life.

? About The Role

We’re looking for a Head of Security to own and elevate security at sunday across product, infrastructure, and compliance.

Security is a foundational part of our business. We handle payments at scale, operate in a PCI DSS–regulated environment, and work closely with restaurants, partners, and payment service providers. You will be the person ensuring that trust, safety, and resilience are embedded in everything we build.

Your mission: build and lead a modern, pragmatic, high-performance security function. Security at sunday spans PCI DSS, payments, data protection, GRC, supplier risk management, cloud security, and corporate security (MDM, EDR, DLP).

You will shape and lead our security strategy, drive key audits (including PCI DSS end-to-end), and operationalize a modern Security Operations Center. This role is hands-on, business-facing, and highly cross-functional: engineering, SRE, ITSM, data, legal, RevOps, and external partners.

? Key Responsibilities

As Head of Security at sunday, you will own the company’s security and compliance strategy and execute operational initiatives to protect our payments platform, employees, and customers.

This Includes

  • Security & Compliance Strategy: Drive sunday’s global security strategy, risk management, and governance, ensuring alignment with business goals and regulatory frameworks.
  • PCI DSS & Audits: Lead PCI DSS audits end-to-end, and maintain readiness for SOC2, ISO 27001, CISA, NIST, and other certifications.
  • Security Operations Center (SOC): Build and run a modern SOC, including EDR monitoring, alert management, incident response playbooks, and post-incident reviews.
  • Corporate Security: Define and enforce device security, MDM policies (Workspace One), and Data Loss Prevention rules across the company.
  • Vendor & Supplier Security: Conduct risk assessments, audits, and contract reviews to ensure third-party compliance and reduce exposure.
  • Cross-Functional Collaboration: Partner with Legal, DPO, Engineering, SRE, RevOps, ITSM, and other teams to embed security into processes and decisions.
  • Cloud & Application Security: Collaborate with engineering teams to secure cloud infrastructure, applications, and SDLC practices; implement secure-by-design patterns.
  • Risk Management & Reporting: Maintain risk registers, track KPIs, and provide executive reporting on security posture.
  • Culture & Awareness: Foster a company-wide security mindset through training, enablement, and clear guidelines.
  • Strategic Initiatives: Lead key security programs, influence product and engineering decisions, and balance technical rigor with pragmatic business execution.

Security is not optional at sunday: it is core to our value proposition.

You Will

  • Own the security and compliance backbone of a payment company.
  • Unify distributed responsibilities into a world-class security function.
  • Enable us to scale safely across more merchants, more regions, and more payment flows.
  • Represent sunday’s security posture to auditors, merchants, and key partners.

Your impact will be immediate, visible, and foundational.

? About You

Strong mastery of GRC, PCI DSS, and cloud security : especially the ability to operate PCI DSS audits end-to-end with minimal external dependency.

Experience leading security in a product-led, cloud-native, fintech or payments environment.

Excellent Understanding Of The Followings

  • EDR / SOC processes and tooling
  • CSPM / Vulnerability tools (Wiz)
  • MDM platforms (Workspace One)
  • Google Workspace security
  • Data Loss Prevention and data governance
  • Comfort working across legal, compliance, engineering, RevOps, and external auditors.
  • Strong risk judgment: you know how to prioritize pragmatically.
  • High resilience, resourcefulness, and ability to bring order to distributed responsibilities.
  • Fluent in English (written and spoken).

⛳️ Compensation, Perks & Benefits

  • Competitive salary and equity
  • Remote-first friendly culture with flexible working hours
  • The chance to build products used by millions across the globe
  • 100% health coverage for you and your children
  • Free vacation policy
  • Opportunity for significant impact in shaping data strategies and innovative product development within a high-growth environment

Thank you for taking the time to apply, and looking forward to getting to know you!
Publié le 2026-01-09

Emplois Recommandés

Chef de rang (H/F)

Paris 16e

L'entreprise Notre client, référence dans le secteur du bâtiment et véritable pilier pour les professionnels du métier, s’investit au quotidien pour accompagner, former et valoriser les talents …

Voir les Détails
Publié le 2025-12-25

Ingénieur Sécurité IAM Cloud Azure

Paris

Lieu : Paris, France QUI SOMMES-NOUS ? Thales est un leader mondial des hautes technologies spécialisé dans trois secteurs d'activité : Défense & Sécurité, Aéronautique & Spatial, et Cybersécurit…

Voir les Détails
Publié le 2025-12-20

Human Resources Intern

Balenciaga
Paris

Balenciaga seeks a Human Resources Intern for a six-month paid internship in Paris. The role involves drafting job postings, candidate sourcing, and participating in HR projects. Ideal candidates are …

Voir les Détails
Publié le 2025-12-20

R&D Packaging Development Intern

coty
Paris 17e

R&D Packaging Development Intern 6 month internship starting January 2026   R&D Packaging Development Intern RESPONSIBILITIES Within the Packaging R&D department, you will report to a Pack…

Voir les Détails
Publié le 2026-01-03

Senior Account Manager - German speaking

Yousign
Paris

Position Overview As part of our Account Management team at Yousign, you’ll play a pivotal role in shaping the long-term success of our customers in the DACH region. Acting as their consultant, yo…

Voir les Détails
Publié le 2025-10-15

Export Control Officer - Secteur Défense, Sécurité et Espace

Forums Talents Handicap
Paris 1er

Poste ouvert aux personnes en situation de handicap. Description de l'entreprise Sopra Steria , acteur majeur de la Tech en Europe, avec 50000 collaborateurs dans près de 30 pays, est reconnu pou…

Voir les Détails
Publié le 2025-12-14

Senior Channel Account Manager Africa Market - Digital Media

Paris

Our Company Changing the world through digital experiences is what Adobe's all about. We give everyone-from emerging artists to global brands-everything they need to design and deliver exceptional…

Voir les Détails
Publié le 2025-11-24

Consultant(e) Data Analyst

Paris

Description de l'entreprise Sia est un groupe international de conseil en management de nouvelle génération, fondé en 1999. Nés à l'ère du digital, nous sommes augmentés par la data, enrichis par …

Voir les Détails
Publié le 2025-12-12

Archiviste Senior (H/F)

Van Cleef & Arpels
Paris

Correspondez-vous au profil ? Vous êtes diplômé(e) d’un Master en archives. Vous avez une expérience confirmée au sein d’un service d’archives. Vous possédez d’excellentes compétences inform…

Voir les Détails
Publié le 2025-11-12

Chef de projet IT H/F

Crystal
Paris

Au sein de la DSI Métier, nous recrutons en CDI un(e) Chef de projet IT. Vous rejoignez l'équipe "Projets & Produits". Vous avez notamment la charge de concevoir et faire évoluer les outils "In-Hous…

Voir les Détails
Publié le 2026-01-09