Senior InfoSec GRC Analyst

New
C
CamundaSaaS Information Security
Fully remote and globalFull-TimeSenior
SalaryUnited States: $127,200.00 to $205,100.00; United Kingdom: £79,900.00 to £131,400.00; Singapore: S$158,000.00 to S$237,000.00
Apply NowOpens the employer's application page

Job Details

Required Skills
Project ManagementSaaSRisk Management

Requirements

  • Hands-on experience implementing and maintaining ISO 27001 and/or SOC 2 certifications.
  • Substantial experience across information security, risk management, and GRC, ideally in a SaaS or cloud software company.
  • Practical experience reviewing information security requirements in customer contracts.
  • Experience leading responses to customer security questionnaires.
  • Proficiency with GRC tools, compliance automation, and continuous monitoring.
  • Strong project management and cross-functional collaboration skills.
  • Ability to explain security topics clearly to both technical and non-technical colleagues.
  • Willingness and ability to use the Camunda product.
  • Familiarity with regulatory frameworks such as the Cyber Resilience Act, the AI Act, or NIS2 (preferred).
  • Software development or scripting ability, including AI-assisted coding (preferred).
  • Experience running business continuity or disaster recovery testing (preferred).
  • Experience working in a fully remote, async-first organization (preferred).

Responsibilities

  • Own and continuously improve Camunda's Information Security Management System (ISMS) by closing gaps and making measurable improvements.
  • Drive security audit cycles for ISO 27001, SOC 2, and future frameworks by working directly with external auditors and internal control owners.
  • Review information security requirements in customer contracts and provide recommendations for negotiators.
  • Lead responses to complex customer security questionnaires and serve as a point of contact for internal stakeholders.
  • Run and improve GRC tooling to automate compliance evidence collection and monitoring.
  • Perform gap analysis for emerging regulatory topics like the Cyber Resilience Act and the AI Act and partner with cross-functional teams to implement controls.
View Full Description & ApplyYou'll be redirected to the employer's site
United States: $127,200.00 to $205,100.00; United Kingdom: £79,900.00 to £131,400.00; Singapore: S$158,000.00 to S$237,000.00
Apply Now