Source Job

Europe 5w PTO

  • Own and drive the compliance roadmap across multiple frameworks like ISO 27001, TISAX, SOC 2, and GDPR.
  • Implement ISO 27001 and adjacent frameworks end-to-end for customers, ensuring successful audits.
  • Mentor the compliance team, conduct internal audits, and act as the senior compliance voice for customers, auditors, and product.

Information Security GRC ISO 27001 Cloud Infrastructure Project Management

15 jobs similar to Senior Information Security Specialist

Jobs ranked by similarity.

Hungary

  • Operate and continuously improve the information security risk management framework and methodologies.
  • Support and enable local risk managers through consultation, training, and professional use of GRC tools.
  • Prepare and maintain risk reports, KPIs, and provide management with insights on risk trends.

Deutsche Telekom IT Solutions is a subsidiary of Deutsche Telekom providing IT and telecommunications services. With over 5300 employees and recognition as Hungary's most attractive employer, the company emphasizes innovation and professional development.

Global

  • Translate group security frameworks into practical policies, controls, and procedures.
  • Build and strengthen a Security-by-Design culture across projects, platforms, and teams.
  • Support teams in identifying risks, defining actions, and tracking real progress.

Q8 is a well-respected, reliable, and trustworthy energy supplier that has been operating since 1983, with nearly 5,000 service stations in Europe. They are committed to developing a wide range of innovative and sustainable products and services. Their culture is focused on growing together in a digital and inspiring environment of trust, focused on continuous learning.

$4,750–$6,250/mo
Poland

  • Lead and maintain the IT Compliance Program, ensuring alignment with industry best practices and regulatory requirements.
  • Stay abreast of relevant laws, regulations, and industry standards (e.g. GDPR, ISO 27001, NIS2, SOC 2,...).
  • Serve as a main point of contact for senior management and stakeholders on regulatory and IT compliance matters.

EcoVadis is the leading provider of business sustainability ratings, offering solutions backed by experts and technology. They analyze data to provide companies with insights into their environmental, social, and ethical risks, fostering a culture of global sustainability change.

Canada Europe Unlimited PTO

  • Support active and upcoming audits including ISO 27001, SOC 2, PCI DSS, and HIPAA by coordinating evidence and working with control owners.
  • Conduct risk assessments, update risk registers, track remediation, and perform third-party risk management reviews.
  • Respond to customer and prospect security/compliance questions and improve repeatable processes and evidence quality.

Upsun is the cloud application platform for hybrid teams, enabling developers to build, ship, and scale confidently without managing backend infrastructure. The company has a remote, global workforce and fosters a multicultural, open, and inclusive culture with a focus on open source and innovation.

US Unlimited PTO

  • Serve as a senior security and compliance advisor for clients in finance, VC, PE, and biotech, translating complex requirements into practical action plans.
  • Lead consultative conversations on governance, risk, controls, AI adoption, and audit readiness, delivering clear executive-level recommendations.
  • Build and refine Outpost's service delivery playbooks, templates, and documentation to scale the offering and improve client experience.

Pliancy is fundamentally changing how businesses value technology, specializing in IT support for life sciences, capital management, and startups. With a people-first culture, the company prioritizes curiosity and empathy, investing in long-term employee success.

US Canada

  • You'll partner directly with the Senior Manager of GRC to lead our commercial audit programs, from evidence collection and control testing to deep technical walkthroughs with external auditors and internal SMEs.
  • You'll own the question of what "good evidence" looks like across SOC 2 Type II, ISO 27001/27017/27018, and ISO 27701, and you'll know where to find it in the systems that generate it.
  • Help build the AI-assisted workflows and automation that make our audit programs more efficient and our compliance posture more continuous.

1Password is building the foundation for a safe, productive digital future. They ensure every identity is authentic, every application sign-in is secure, and every device is trusted. Over 180,000 businesses trust 1Password. We prioritize collaboration, clear and transparent communication, receptiveness to feedback.

India Unlimited PTO

  • Build the function by creating delivery operating model and reusable IP.
  • Deliver and scale service lines, including framework digitization and packaged services.
  • Own commercial outcomes by defining service packaging and pricing models.

Sprinto is an AI-native GRC platform that helps organizations manage risks, audits, vendor oversight, and continuous monitoring from a single connected platform. With a team of 350+ employees serving 3,000+ customers across 75+ countries, they combine scale with expertise to deliver trust and compliance.

US Unlimited PTO

  • Deliver world-class cyber security assessment and advisory services while ensuring customer satisfaction.
  • Work effectively as a team member on large engagements and remain current on technical knowledge.
  • Demonstrate GuidePoint’s Core Values at all times: Take Charge and Complete Our Mission.

GuidePoint Security provides trusted cybersecurity expertise, solutions, and services to help organizations make better decisions and minimize risk. They have over 1,200 employees and focus on core values to establish an enjoyable workplace atmosphere.

GRC Manager

Runway
US

  • Design and implement a comprehensive GRC framework addressing both traditional security controls and novel AI safety considerations.
  • Lead engagements with external auditors to obtain critical security certifications like SOC 2, ISO 27001/27701/42001, and FedRAMP.
  • Partner with AI research teams to develop and implement appropriate safeguards and controls for machine learning systems.

Runway builds AI to simulate the world through merging art and science, focusing on world models for progress in artificial intelligence. Our team consists of creative, open-minded, caring, and ambitious people determined to change the world, striving to continuously build impossible things.

US 4w PTO

  • Collaborate with cross-functional teams to apply cybersecurity best practices across systems, applications, and cloud environments.
  • Lead portions of cybersecurity assessments across the technology stack, identifying vulnerabilities and recommending remediation strategies.
  • Assist in shaping cybersecurity risk management activities, helping prioritize and guide security initiatives to protect critical assets.

Rise8 builds custom, secure software for government organizations, measuring success by impact: lives saved, time returned, and missions advanced. Certified as a Great Place to Work® with 100% of employees saying they love working here, Rise8 offers a culture rooted in kindness, candor, and continuous learning.

US

  • Manage security compliance programs against frameworks like PCI-DSS, NIST, and SOC 1/2, leveraging automation tools for continuous assessment.
  • Oversee identity and access management, including automated provisioning audits and anomaly detection.
  • Collaborate with engineering, DevOps, and product teams to integrate compliance into CI/CD and cloud infrastructure.

Prosper is a FinTech company focused on improving financial well-being. It is a growing company with a collaborative culture and offers resources for professional growth and holistic well-being.

$140,000–$175,000/yr
US 2w PTO

  • Lead security strategy across infrastructure, cloud systems, and enterprise applications.
  • Drive SOC 2, ISO 27001, and ISO 42001 readiness/certifications.
  • Own vulnerability management, threat monitoring, and incident response workflows.

SaaS Talent is a recruiting company, and a hiring, business development and growth partner with 20+ years of experience in SaaS and Hi-Tech that helps you scale and transform your business. They've worked with 100+ companies and helped them achieve their goals.

US

  • Partner with clients to assess, design, and enhance privacy programs aligned with regulatory and industry requirements.
  • Interpret and advise on European data protection and privacy laws, including the GDPR, ePrivacy requirements, and applicable EU regulatory obligations.
  • Conduct privacy assessments, risk evaluations, and audits to identify gaps and create remediation strategies.

Zaviant is a boutique consulting firm specializing in Data Security, Privacy, and Third-Party Risk Management. They partner with organizations to build effective and sustainable solutions that safeguard sensitive data and support compliance with complex, evolving regulatory requirements.

US

  • Provide quality customer service and monitor compliance mailbox for client requests.
  • Prepare written responses to security inquiries and handle due diligence questionnaires.
  • Support audit activities and coordinate with departments on policy development and remediation.

TierPoint provides information security and compliance solutions. The company fosters a collaborative, team-oriented culture with a focus on confidentiality and accuracy.

US

  • Lead secure Google Cloud architecture design and reviews across IAM, networking, workload protection, and compliance.
  • Advise enterprise customers on GCP security strategy aligned to business risk and regulatory requirements.
  • Develop executive-ready findings, prioritized remediation roadmaps, and maturity-based security improvement plans.

Coalfire helps clients solve cybersecurity challenges through advisory, assessment, automation, and cloud security services. With offices across the US and UK, the company employs a team of thought leaders and consultants who are passionate problem-solvers.