远程工作雷达

高级信息安全GRC分析师

Senior InfoSec GRC Analyst

其他全球可投
公司Camunda
薪资未公开
工作地点不限地点
地域资格全球可投
时区要求无特别要求
用工类型未标注
发布时间14 天前
数据来源Real Work From Anywhere
前往 Real Work From Anywhere 查看并投递 →
全球可投:该职位未限制候选人所在地区。仍需注意薪资可能按地区折算,以及实际签约方式(正式雇佣 / 独立合同)。

注册在这里!Camunda 是面向代理编排的企业级平台,使组织能够协调 AI 代理、人员和系统,贯穿复杂的端到端业务流程。内置治理、可审计性和人工监督,Camunda 为企业提供了将 AI 从试点项目安全地扩展到生产环境所需的控制能力。全球超过 700 家组织信赖 Camunda,包括美国 top 10 银行中的 9 家。Camunda 帮助企业提升运营效率,加快价值实现速度,并提供更好的客户体验。

我们是完全远程且全球化的团队,正处于更大的变革之中:转型为以 AI 为核心的组织,基于我们自己的平台。我们使用代理式 AI 自动化、编排智能流程,并在每个团队中提升人类的贡献。

被列为 GP Bullhound 的 Top 100 Next Unicorn 名单,2025 年获得 Great Place to Work 认证。在 2025 年 Gartner® Magic Quadrant™ 业务编排与自动化技术领域被评为愿景者。在 Flexa 2026 最具灵活性公司中排名第三。我们发展迅速,正在寻找顶尖人才加入我们的团队。如果你希望从事有意义的工作,产生可见的影响,并在你的简历上添加真正稀有的经历,请继续阅读。

关于职位:在 Camunda,数百家企业在其最关键的业务流程中信任我们,而这种信任是我们每天努力赢得的。作为我们的高级信息安全管理分析师,你将加入一个小型、资深且高度协作的信息安全团队,日常工作中践行我们的 FAITH 价值观(专注、雄心、诚信、人才和幽默)。你将负责我们安全实践中的治理、风险和合规方面:保持我们的 ISMS 健康运行,推动我们的 ISO 27001 和 SOC 2 审计周期,审查客户向我们提出的安全需求,并在我们能做的地方用自动化替代手动合规工作。这是一项拥有真正所有权并有大量跨职能合作的职位,从法律和采购到 IT 以及我们的售前和售后团队,你的工作将直接体现在客户对 Camunda 的信心上。

你将负责:
负责并持续改进 Camunda 的信息安全管理系统 (ISMS),发现差距,填补它们,并做出可衡量的改进,而不仅仅是更新文档。
在最少监督的情况下,推动我们的 ISO 27001、SOC 2 和未来框架的安全审计周期,直接与外部审计师和内部控制负责人合作,保存证据,…

查看英文原文

Register Here!Camunda is the enterprise platform for agentic orchestration, enabling organizations to coordinate AI agents, people, and systems across complex, end-to-end business processes. With built-in governance, auditability, and human oversight, Camunda gives enterprises the control they need to move AI from pilots to production — safely and at scale. Trusted by over 700 organizations worldwide, including 9 of top 10 US banks, Camunda helps enterprises boost operational efficiency, accelerate time-to-value, and deliver better customer experiences.Fully remote and global, we are in the middle of something bigger: transforming into an AI-first organisation, built on our own platform. We use Agentic AI to automate, orchestrate intelligent processes, and elevate human contribution across every team.Named GP Bullhound’s Top 100 Next Unicorn list, 2025 Great Place to Work certified. Visionary in 2025 Gartner® Magic Quadrant™ for Business Orchestration and Automation Technologies. ranked 3rd in Flexa's 2026 Most Flexible Companies, We’re growing fast and looking for top talent to join our team. If you want meaningful work, visible impact and put something genuinely rare on your CV, keep reading.About the role:At Camunda, hundreds of enterprises trust us to orchestrate their most critical business processes, and that trust is something we earn every single day. As our Senior InfoSec GRC Analyst, you will join a small, senior, and highly collaborative InfoSec team that lives our FAITH values (Focus, Ambition, Integrity, Talent and Humor) in everyday work. You will own the governance, risk, and compliance side of our security practice: keeping our ISMS healthy, driving our ISO 27001 and SOC 2 audit cycles, reviewing the security requirements our customers put in front of us, and replacing manual compliance work with automation wherever we can. It is a role with real ownership and plenty of cross functional contact, from Legal and Procurement to IT and our PreSales and PostSales teams, and your work will show up directly in how confidently customers adopt Camunda.What You’ll Be Doing: Own and continuously improve Camunda's Information Security Management System (ISMS), spotting gaps, closing them, and making measurable improvements rather than just keeping documents current.Drive our security audit cycle for ISO 27001, SOC 2, and future frameworks with minimal supervision, working directly with external auditors and internal control owners to keep evidence, findings, and timelines on track.Review the information security requirements in customer contracts, redline what we cannot realistically meet, and give our negotiators clear, practical recommendations they can act on.Lead responses to complex customer security questionnaires and act as a trusted point of contact for InfoSec topics coming from PreSales, PostSales, and customer security teams.Run and improve our GRC tooling, adding automation and continuous monitoring so compliance evidence is collected once and reused, not rebuilt every audit season.Take ownership of emerging InfoSec compliance topics such as the Cyber Resilience Act and the AI Act: perform gap analysis, translate requirements into concrete work, and partner with Legal, IT, Procurement, and Engineering to get them implemented.What You Bring:Hands on experience implementing and maintaining ISO 27001 and/or SOC 2 certifications, including managing external audits from evidence gathering through to closing findings.Substantial experience across information security, risk management, and compliance, with a clear focus on Governance, Risk, and Compliance (GRC), ideally gained in a SaaS or cloud software company.Practical experience reviewing information security requirements in customer contracts and leading responses to security questionnaires, with the judgement to tell a real risk apart from a negotiable clause.Experience working with GRC tools, compliance automation, and continuous monitoring, and a genuine preference for automating repetitive work instead of absorbing it.Strong project management and collaboration skills, so you can move several workstreams forward at once across InfoSec, Legal and Compliance, IT, Procurement, and the field teams, and explain security topics clearly to technical and non technical colleagues alike. Ability and/or willingness to use our product Nice-to-haves:Some software development or scripting ability, including comfort building small tools or automations with AI assisted coding.Experience planning and running business continuity or disaster recovery testing.Familiarity with newer regulatory frameworks such as the Cyber Resilience Act, the AI Act, or NIS2.Experience working in a fully remote, async first organisation.This role is an existing vacancy#LI-SG1 #LI-Remote #C1What We Have to Offer:CompensationWe offer competitive, fair, and transparent compensation. Salary ranges are location-based, with Standard and Major markets (global tech hubs) reflecting local competition.The Annual Total Target Cash (base salary + 100% variable target, where applicable) shown below spans from the minimum in a Standard market to the maximum in a Major market. Final offers depend on skills, experience, and location, and we typically hire in the first half of the range to allow room for growth:United States: $127,200.00 to $205,100.00 United Kingdom: £79,900.00 to £131,400.00 Singapore: S$158,000.00 to S$237,000.00If you’re based elsewhere, you’ll be hired via Remote.com (our global employer partner), and your Talent Acquisition Partner will provide a personalized Total Rewards Calculator after your first interview.Equity: We also offer equity (where applicable) through our Virtual Stock Option Plan (VSOP).Benefits & PerksWe invest in your wellbeing, growth, and ability to connect, along with perks that support you no matter where you’re based. Our benefits are globally designed and locally delivered where applicable.Remote & Flexible: Work from anywhere with the setup that suits you, home office budget, co-working space support, and flexible time off to recharge when you need it.In Person Connection: We invest in meaningful face time through our Annual Kickoff (Vienna in 2025, Madrid in 2026!), team offsites, and Camundi Connection Budgets, including contributing to meetups while travelling,, and local gatherings with fellow Camundi.Health & Wellbeing: Access locally tailored healthcare, Modern Health for global mental wellbeing, and our Live Well Lifestyle Spending Account (LSA), a flexible, global benefit that puts you in control of your whole life, not just work, from: staying active, to caring for family, exploring personal passions, meaningful experiences, and investing in your financial wellbeing. The Live Well program launches in 2026 and scales to €1,000 annually from 2027.Financial Security: Retirement and pension plans (often with company contributions), plus life and disability insurance where relevant.Professional Growth: Up to $/€/£1,000 per year for self-driven learning: courses, certifications, books, you decide!AI in our hiring process: Camunda may use AI tools to aid the screening of applications and during the interview process. You can learn more here”Everyone is welcome at Camunda” — it’s a celebrated component of our culture. We strive to create an inclusive environment that empowers our people. At Camunda, we honour diverse cultures and backgrounds and are proud to be an equal opportunity employer. All qualified applicants will receive consideration without regard to gender, race, ethnicity, religion, belief, sexual orientation, age, disability or any other protected characteristics under applicable law. We are looking forward to your application!Come join us and be part of Camunda’s incredible journey: Make an impact at a pivotal moment in our story!Please be aware that scammers may impersonate Camunda by reaching out about job opportunities. Camunda will only contact candidates from an email address ending in @camunda.com. We will never ask candidates for bank account details, checks, payment, or other sensitive financial information as part of our hiring process. If you receive a suspicious message, please do not respond, click any links, or share personal information.Note for recruiting and placement agencies: Camunda does not accept unsolicited agency resumes. Please do not forward resumes to our careers site, employees, or any other Camunda contact unless we have specifically engaged your firm for that search. Camunda will not pay fees related to unsolicited resumes.

本页面信息整理自 Real Work From Anywhere,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

← 返回全部职位