
Hover or tap a row for full statistics (EUR / month on this chart).
Salary analysis
Compared with the selected benchmark ("All roles in Remote - Global"), this listing's salary midpoint is about 59% higher. The offer still falls within the benchmark range (€2,174–€15,281). The listed pay band (€10,600–€17,091) is tighter than the benchmark, which suggests lower salary variability. This benchmark is based on 283 comparable listings.
| Market | Lower bound (25th percentile) | Median | Upper bound (75th percentile) |
|---|---|---|---|
| All roles in Remote - Global | €2,174/per month | €6,688/per month | €15,281/per month |
| From job ad (Senior) | €10,600/per month | €13,846/per month | €17,091/per month |
Camunda is the enterprise platform for agentic orchestration, enabling organizations to coordinate AI agents, people, and systems across complex, end-to-end business processes. Fully remote and global, we are transforming into an AI-first organisation. About the role: As our Senior InfoSec GRC Analyst, you will join a small, senior, and highly collaborative InfoSec team that lives our FAITH values (Focus, Ambition, Integrity, Talent and Humor). You will own the governance, risk, and compliance side of our security practice: keeping our ISMS healthy, driving our ISO 27001 and SOC 2 audit cycles, reviewing the security requirements our customers put in front of us, and replacing manual compliance work with automation wherever we can. What You’ll Be Doing: - Own and continuously improve Camunda's Information Security Management System (ISMS). - Drive our security audit cycle for ISO 27001, SOC 2, and future frameworks. - Review the information security requirements in customer contracts and redline what we cannot realistically meet. - Lead responses to complex customer security questionnaires. - Run and improve our GRC tooling, adding automation and continuous monitoring. - Take ownership of emerging InfoSec compliance topics such as the Cyber Resilience Act and the AI Act. What You Bring: - Hands on experience implementing and maintaining ISO 27001 and/or SOC 2 certifications. - Substantial experience across information security, risk management, and compliance, ideally in a SaaS or cloud software company. - Practical experience reviewing information security requirements in customer contracts. - Experience working with GRC tools, compliance automation, and continuous monitoring. - Strong project management and collaboration skills. - Ability and/or willingness to use our product. Nice-to-haves: - Software development or scripting ability (AI assisted coding). - Experience planning and running business continuity or disaster recovery testing. - Familiarity with Cyber Resilience Act, the AI Act, or NIS2. - Experience working in a fully remote, async first organisation.
Job Details
Responsibilities
- Own and continuously improve the Information Security Management System (ISMS)
- Drive security audit cycles for ISO 27001, SOC 2, and future frameworks
- Review information security requirements in customer contracts and provide recommendations for negotiators
- Lead responses to complex customer security questionnaires
- Run and improve GRC tooling with automation and continuous monitoring
- Manage emerging compliance topics such as the Cyber Resilience Act and the AI Act
Requirements
- Hands on experience implementing and maintaining ISO 27001 and/or SOC 2 certifications
- Substantial experience in information security, risk management, and compliance (GRC), ideally in SaaS or cloud software
- Experience reviewing information security requirements in customer contracts and leading security questionnaire responses
- Experience with GRC tools, compliance automation, and continuous monitoring
- Strong project management and collaboration skills
- Ability and/or willingness to use Camunda's product
Skills & Technologies

Related Opportunities
Discover more opportunities that match your interests and skills