Security and Compliance Specialist
Summary
Leads ISO/IEC 27001/SOC 2/GDPR compliance, designs security policies, audits infrastructure, and automates compliance workflows with AI tools to ensure data protection and regulatory adherence.
You will be the dedicated information-security and compliance specialist, serving as the point of reference for security systems and compliance matters. You will implement ISO/IEC 27001, SOC 2, and privacy regulations such as GDPR; perform gap analysis; design policies and controls; coordinate with technical and business areas; prepare certification audits; configure and audit security infrastructure; manage access and hardening; coordinate code-security reviews; administer MDM solutions; operate security-monitoring tools; automate compliance processes with AI agents; and support customer audits and evidence requests.
Responsibilities
- Lead the end-to-end implementation of ISO/IEC 27001
- Perform the initial gap analysis
- Define information-security policies, controls, and documentation
- Manage compliance with GDPR and equivalent privacy regulations
- Configure and audit security infrastructure
- Manage access policies and hardening
- Execute or coordinate security audits and code-security reviews
- Implement and administer MDM solutions
- Select, implement, and operate security-checking and monitoring tools
- Design and automate compliance and security processes with AI agents
- Act as the security and compliance contact for customer audits and evidence requests
Requirements
- ISO/IEC 27001
- ISO/IEC 27000
- GDPR
- Privacy compliance
- Security monitoring
- MDM
- Startup experience
- Cloud security infrastructure
- Code-security audits
- Fraud prevention
- AI agents
- Compliance automation
Benefits
- Monthly health and wellness allowance
- Monthly allowance for remote work expenses
- Proportional 13th honorarium based on tenure
- 15 business days of vacation per year
- One birthday day off during the birthday month
- Flexible schedule
- 100% remote work