Senior Information Security Specialist (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Information Security Specialist (Cybersecurity): Building and improving automated compliance delivery across ISO 27001, SOC 2, GDPR, TISAX, and other security frameworks with an accent on GRC implementation, audit quality, and compliance content. Focus on leading complex certification projects, translating framework gaps into product improvements, and mentoring compliance specialists while supporting customers and auditors.
Location: Remote within EU time zones, working approximately within ±2 hours of Germany GMT+1; fully asynchronous work is not supported. The company operates remotely with hubs in Munich, Berlin, and London.
Company
is a European compliance automation SaaS company helping businesses achieve and maintain ISO 27001, GDPR, TISAX, SOC 2, and other security certifications.
What you will do
- Own the compliance roadmap and the quality and breadth of compliance content in the platform.
- Implement ISO 27001 and related frameworks end-to-end for customers.
- Conduct internal audits for strategic customers and review audits completed by junior specialists.
- Mentor and upskill the compliance team while improving consistency across audits and customer deliverables.
- Support customer success and sales teams with complex compliance questions and customer calls.
- Partner with product, engineering, customer success, founders, and certification partners to convert compliance gaps into platform improvements.
Requirements
- Fluent English at C1 or C2 level is required.
- 7+ years of hands-on information security and GRC experience in B2B SaaS.
- Experience leading at least five successful ISO 27001 certification projects as an implementer or auditor.
- Hands-on experience with or a similar GRC platform.
- Cloud infrastructure readiness experience across AWS, Azure, and GCP, including posture analysis and remediation planning.
- Strong project management, written communication, ownership, and senior individual contributor skills.
Nice to have
- Experience implementing additional frameworks such as SOC 2, GDPR, or NIS 2.
- Experience mentoring or coaching colleagues in compliance, audit, or GRC.
- Startup experience.
Culture & Benefits
- 100% remote work with a virtual office in Gather and collaboration aligned to EU time zones.
- Local salaries at or above market rates, plus an equity package.
- €1,000 annual personal development budget and a home office budget.
- 26 days of holiday plus local public holidays and comprehensive health coverage.
- Annual retreat, company events, coworking access, and modern technical equipment.
Hiring process
- 20–30-minute introductory call with the Talent team.
- Take-home assessment followed by a 1.5-hour assessment review and interview with the CS Lead and CEO.
- 45-minute final founder interview with the CTO and CISO.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →