Camunda logo
Monthly
€10,600 - €17,091
Posted August 5, 2026 · 2 days agoLast seen August 7, 2026Est. expiry September 9, 2026

InfoSec GRC Analyst

Senior InfoSec GRC Analyst
Remote - Global
Remote · Cybersecurity
Full-time · Senior
English
No People Management
5 years experience
How this salary compares
Salary Context: InfoSec GRC Analyst

Hover or tap a row for full statistics (EUR / month on this chart).

Salary analysis

Compared with the selected benchmark ("All roles in Remote - Global"), this listing's salary midpoint is about 59% higher. The offer still falls within the benchmark range (€2,174–€15,281). The listed pay band (€10,600–€17,091) is tighter than the benchmark, which suggests lower salary variability. This benchmark is based on 283 comparable listings.

Monthly salary comparison for InfoSec GRC Analyst
MarketLower bound (25th percentile)MedianUpper bound (75th percentile)
All roles in Remote - Global€2,174/per month€6,688/per month€15,281/per month
From job ad (Senior)€10,600/per month€13,846/per month€17,091/per month
About the role

Camunda is the enterprise platform for agentic orchestration, enabling organizations to coordinate AI agents, people, and systems across complex, end-to-end business processes. Fully remote and global, we are transforming into an AI-first organisation. About the role: As our Senior InfoSec GRC Analyst, you will join a small, senior, and highly collaborative InfoSec team that lives our FAITH values (Focus, Ambition, Integrity, Talent and Humor). You will own the governance, risk, and compliance side of our security practice: keeping our ISMS healthy, driving our ISO 27001 and SOC 2 audit cycles, reviewing the security requirements our customers put in front of us, and replacing manual compliance work with automation wherever we can. What You’ll Be Doing: - Own and continuously improve Camunda's Information Security Management System (ISMS). - Drive our security audit cycle for ISO 27001, SOC 2, and future frameworks. - Review the information security requirements in customer contracts and redline what we cannot realistically meet. - Lead responses to complex customer security questionnaires. - Run and improve our GRC tooling, adding automation and continuous monitoring. - Take ownership of emerging InfoSec compliance topics such as the Cyber Resilience Act and the AI Act. What You Bring: - Hands on experience implementing and maintaining ISO 27001 and/or SOC 2 certifications. - Substantial experience across information security, risk management, and compliance, ideally in a SaaS or cloud software company. - Practical experience reviewing information security requirements in customer contracts. - Experience working with GRC tools, compliance automation, and continuous monitoring. - Strong project management and collaboration skills. - Ability and/or willingness to use our product. Nice-to-haves: - Software development or scripting ability (AI assisted coding). - Experience planning and running business continuity or disaster recovery testing. - Familiarity with Cyber Resilience Act, the AI Act, or NIS2. - Experience working in a fully remote, async first organisation.

Job Details

Responsibilities

  • Own and continuously improve the Information Security Management System (ISMS)
  • Drive security audit cycles for ISO 27001, SOC 2, and future frameworks
  • Review information security requirements in customer contracts and provide recommendations for negotiators
  • Lead responses to complex customer security questionnaires
  • Run and improve GRC tooling with automation and continuous monitoring
  • Manage emerging compliance topics such as the Cyber Resilience Act and the AI Act

Requirements

  • Hands on experience implementing and maintaining ISO 27001 and/or SOC 2 certifications
  • Substantial experience in information security, risk management, and compliance (GRC), ideally in SaaS or cloud software
  • Experience reviewing information security requirements in customer contracts and leading security questionnaire responses
  • Experience with GRC tools, compliance automation, and continuous monitoring
  • Strong project management and collaboration skills
  • Ability and/or willingness to use Camunda's product

Skills & Technologies

ISO 27001SOC 2GRC ToolsCompliance AutomationContinuous MonitoringAI ActCyber Resilience Act
Seen 95 minutes agoContent Complete
Camunda logo
Camunda
View company

Help us improve JobCrawls — sign in to sync saved jobs across devices, or send feedback anytime.