Security Compliance Officer (Medtech)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Security Compliance Officer (Medtech/AI): Ensuring adherence to rigorous security and data privacy standards for a clinical-grade AI platform with an accent on ISO 27001, SOC 2, and regulatory frameworks. Focus on automating compliance workflows, managing security risk registers, and integrating governance into CI/CD pipelines.
Location: Hybrid working environment in Copenhagen, Denmark
Company
is a frontier lab for clinical-grade AI building models and infrastructure to expand access to medical expertise and reduce clinical errors.
What you will do
- Own and maintain security governance models across ISO 27001, ISO 27017, SOC 2, and other relevant frameworks.
- Translate framework requirements into concise policies, playbooks, and acceptance criteria for technical documentation and release processes.
- Manage internal and external security audits and assessments, communicating findings to leadership and technical teams.
- Drive the implementation of compliance automation tools such as Drata and monitor device compliance and policy acceptance.
- Maintain a live security risk register, coordinating mitigation plans with Product and Platform teams.
- Partner with engineers to reflect control objectives in CI/CD pipelines, Infrastructure as Code, and cloud configurations.
Requirements
- Strong understanding of security and data protection laws, regulations, and standards.
- Practical exposure to modern engineering environments, including CI/CD, Infrastructure as Code, and Azure.
- Experience using and configuring compliance tooling like Drata.
- Proven ability to partner with external auditors and manage evidence collection.
- Bachelor’s degree in Computer Science/Information Technology or solid experience in security compliance.
- Must be able to work in a hybrid setup in Copenhagen, Denmark
Nice to have
- Experience working in healthtech or medtech companies with sensitive AI data.
- Hands-on engineering experience as a developer, platform engineer, or DevOps engineer.
- Previous commercial experience in sales or marketing roles.
- Experience designing small automations to strengthen controls and reporting.
Culture & Benefits
- Mission-driven environment focused on reshaping healthcare dialogue.
- Hybrid work model balancing office presence and flexibility.
- Provision of necessary professional equipment.
- Opportunity to work at the frontier of clinical-grade AI.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →