Information Security Compliance Engineer

3 695 - 5 542 USDNet per month - B2B
2 364 - 4 124 USDGross per month - Permanent
Security

Information Security Compliance Engineer

Security
Zabłocie 43A, Kraków +1 Location

Spyrosoft

Go to company profile
Full-time
Permanent, B2B
Mid
Hybrid
3 695 - 5 542 USDNet per month - B2B
2 364 - 4 124 USDGross per month - Permanent

Job description

About the role


We are looking for an Information Security Compliance Engineer to join our Quality & Compliance team. You will support the development of our security framework, internal audits, and client-facing compliance activities, ensuring alignment with international standards and regulations.

Tech stack:

  • ISO/IEC 27001 (ISMS)

  • TISAX / VDA ISA

  • GDPR

  • NIS2

Requirements:

  • 2–4 years of experience in information security / compliance / risk (IT environment preferred)

  • Practical knowledge of ISO/IEC 27001 (ISMS, audits, controls, corrective actions)

  • Good understanding of GDPR and data protection

  • Familiarity with NIS2

  • Ability to assess security controls (governance perspective)

  • Very good English (spoken and written)

  • Strong analytical skills and attention to detail

  • Ability to communicate clearly with technical and non-technical stakeholders

  • Self-driven mindset and ability to manage multiple topics independently

  • Professional approach, high integrity, and attention to confidentiality

Nice to have:

  • Experienced in using AI tools in day-to-day workflow

  • Experience with TISAX / VDA ISA

  • Other ISO-based management systems (e.g. ISO 9001)

  • ISO 27001 Lead Auditor or CISA certification

  • Experience in consulting roles

Project description:

You will join an independent Quality & Compliance function and help maintain and develop the organization’s information security compliance framework. The role includes internal assurance work (e.g., internal audits and continuous improvement) and client-facing activities (e.g., customer audits, security questionnaires, and due diligence). You will act as a trusted advisor for both internal stakeholders and external clients, providing clear and actionable guidance on security and compliance topics.

Main responsibilities:

  • Maintain and improve ISMS (ISO 27001, TISAX)

  • Support internal and external audits

  • Identify compliance gaps and track improvements

  • Create and update policies, standards, and procedures

  • Support GDPR, NIS2, and other regulatory requirements

  • Assist with customer audits and security questionnaires

  • Provide basic advisory support to clients

  • Conduct high-level security and compliance assessments

Tech stack

    English

    B2

    GDPR

    regular

    NIS2

    regular

    ISO

    regular

    TISAX

    regular

Office location

About the company

Spyrosoft

Spyrosoft is a leading technology company specializing in software development and IT services. The company provides a wide range of expertise including artificial intelligence, cloud services, cybersecurity, digital pro...
Company profile

Information Security Compliance Engineer

3 695 - 5 542 USDNet per month - B2B
Summary of the offer

Information Security Compliance Engineer

Zabłocie 43A, Kraków
Spyrosoft
3 695 - 5 542 USDNet per month - B2B
2 364 - 4 124 USDGross per month - Permanent
By applying, I consent to the processing of my personal data for the purpose of conducting the recruitment process. Informujemy, że administratorem danych jest SpyroSoft S.A. z siedzibą w 50-141 Wrocław, pl. Nowy Targ 28 (dalej jako "administrator").... MoreThis site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.