Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Information Security Compliance Specialist image - Rise Careers
Job details

Information Security Compliance Specialist

Location:  Remote - Estonia, Turkey, UK 

Team: Operations

 

The Information Security Compliance Specialist ensures that Binalyze’s Information Security Management System (ISMS) and Business Continuity Management System (BCMS), including its' systems, processes, and procedures comply with internal policies and external regulatory requirements. The role must maintain a strong knowledge of industry standards and best practices related to information security, compliance, and risk management. The role collaborates with various teams, including engineering, finance, sales, marketing and people to ensure that information security practices are aligned with company goals and integrated into business operations. The specialist coordinates with external auditors to assess compliance with applicable regulations and provide subject matter expertise to the other teams for projecting Binalyze’s information security practices to external parties and partners.

 

+ What you’ll do

  • Develop and maintain information security policies, procedures, and guidelines in accordance with industry standards and regulatory requirements.

  • Supervise (monitor, assess and communicate) Binalyze’s information security risks management system.

  • Collaborate with the information security team to implement and maintain effective security controls, including secure coding, threat hunting, incident response, system monitoring, and business continuity, and participate in incident response activities.

  • Conduct security assessments and audits to ensure compliance with applicable regulations, such as ISO 27001, ISO 22301, ISO 27701, SOC II, and GDPR.

  • Serve as a liaison with external auditors and regulators to provide evidence of compliance and facilitate audits and assessments.

  • Develop, implement, and maintain a comprehensive risk management framework to identify, assess, and mitigate information security and business continuity risks, ensuring that risks are communicated effectively across the organization and addressed in a timely manner.

  • Develop and deliver information security training and awareness programs to educate employees on information security policies and procedures

  • Stay up-to-date on the latest information security trends, technologies, and best practices, as well as relevant regulations and laws, and provide recommendations for improving the organisation’s security and compliance posture.

  • Manage and supervise Binalyze’s GRC tool and ISMS/BCMS documentation.

  • Ensure alignment between information security controls and business continuity measures, ensuring that both disciplines work together to protect critical assets and ensure operational resilience.

+ What we're looking for

  • Experience:

    • Experience in IT security and compliance, including experience with regulatory compliance frameworks such as ISO 27001, ISO 27701, ISO 22301, SOC2, GDPR and NIST 800-53.

    • Strong knowledge of information security and business continuity principles, practices, and technologies, including network security, access controls, cryptography, and security operations

    • Strong understanding of ISMS/BCMS documentation.

    • Experience with security assessments, business continuity tests, audits, and compliance reporting.

    • Related professional certifications such as CISA, ISO/IEC 27001 Lead Auditor, ISO 22301 Lead Implementer, GSEC, and CompTIA Security are preferred.

  • Technical Skills:

    • Deep understanding of information security and business continuity controls, compliance requirements, and regulatory frameworks.

    • Proficiency in managing GRC tools such as Drata and maintaining ISMS/BCMS documentation.

    • Experienced in conducting, responding to, and remediating audits and assessments for security and business continuity.

  • Communication & Collaboration:

    • Exceptional  (English) written and verbal communication skills, with the ability to craft clear, persuasive, and comprehensive audit responses, reports, and policies.

    • Adept at translating complex technical concepts into accessible language for non-technical stakeholders, ensuring alignment and understanding across teams.

    • Skilled in writing formal security documentation, policies, and executive-level reports that effectively communicate risk, compliance status, and security recommendations.

    • Strong ability to present security findings, risks, and mitigation strategies in a compelling and structured manner.

    • Works closely with all teams to ensure alignment between security controls and continuity measures.

  • Analytical and Problem-solving skills:

    Ability to use metrics, risk assessments, and compliance data to inform security and business continuity strategies.

  • Project management:

    Experience leading projects to enhance both security frameworks and business continuity strategies.

  • Initiative:

    Proactive in identifying risks related to both information security and business continuity.

  • Adaptability & Resilience: 

    • Able to maintain focus and effectiveness under pressure during security incidents or business disruptions.

    • Able to respond to both security incidents and business continuity challenges in real-time.

  • Growth Mindset:

    Committed to continuous learning and improvement 

  • Remote Working:

    Demonstrates strong self-management skills for effective remote collaboration.

+What we offer

  • 28 days holiday allowance + wellbeing days + birthday off!

  • Private medical insurance for you and your family.

  • A supportive and collaborative team that's as passionate as you are.

  • Home office setup support.

  • Great opportunities for growth and development

  • Entertainment allowance - Netflix / Spotify.

  • Healthy living allowance- Gym membership.

+Join Us
If you're ready to take the lead as the driving force redefining the DFIR industry, we want to hear from you.

+Diversity and Inclusion
We are committed to diversity and inclusion, and we encourage candidates from all backgrounds to apply.

Average salary estimate

$70000 / YEARLY (est.)
min
max
$60000K
$80000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Information Security Compliance Specialist, Binalyze

As an Information Security Compliance Specialist at Binalyze, you'll play a crucial role in ensuring that our Information Security Management System (ISMS) and Business Continuity Management System (BCMS) are not just frameworks, but effective systems that comply with our internal policies and the necessary external regulatory requirements. Being a remote position in Estonia, Turkey, or the UK, this role affords you the flexibility to work from wherever you're most productive. You'll be instrumental in developing and maintaining security policies, conducting security audits, and collaborating closely with almost every department, including engineering and finance, to ensure that our security practices align tightly with Binalyze’s overarching goals. Your expertise will guide us in supervising our risk management systems while also acting as the primary liaison for external auditors, helping to provide transparency and evidence of our compliance. This position isn't just about maintaining standards; it's about evolving our approach as you stay on top of the latest industry trends and technologies. At Binalyze, we value continuous learning, offering generous benefits and opportunities for personal and professional development. If you're excited to make a significant impact in the compliance landscape, we'd love for you to join our passionate team!

Frequently Asked Questions (FAQs) for Information Security Compliance Specialist Role at Binalyze
What responsibilities does an Information Security Compliance Specialist at Binalyze have?

The Information Security Compliance Specialist at Binalyze is tasked with developing and maintaining information security policies, conducting security assessments to ensure compliance with regulations like ISO 27001 and GDPR, and serving as a liaison with external auditors. This role involves a collaborative effort with different teams to align security practices with company objectives, while also overseeing the risk management framework to communicate and mitigate security risks effectively.

Join Rise to see the full answer
What qualifications are needed for the Information Security Compliance Specialist position at Binalyze?

To qualify for the Information Security Compliance Specialist role at Binalyze, candidates should have experience in IT security and compliance, particularly with regulatory frameworks such as SOC2, ISO 27001, and GDPR. Preferred professional certifications include CISA, ISO/IEC 27001 Lead Auditor, and GSEC. Strong communication skills, both verbal and written, as well as the ability to translate technical security details into comprehensible information for various stakeholders, are also essential.

Join Rise to see the full answer
How does the role of Information Security Compliance Specialist at Binalyze support business continuity?

The role of Information Security Compliance Specialist at Binalyze is designed to ensure that information security measures are integrated with business continuity planning. This entails developing effective security controls and strategies that are resilient in the face of disruptions while educating employees on best practices for safeguarding company assets against threats, ensuring operational resilience.

Join Rise to see the full answer
What tools and technologies does an Information Security Compliance Specialist use at Binalyze?

An Information Security Compliance Specialist at Binalyze manages Governance, Risk Management, and Compliance (GRC) tools like Drata, along with overseeing ISMS and BCMS documentation. Proficiency in conducting audits and assessments using various technologies related to network security, access controls, and risk management is crucial in this role.

Join Rise to see the full answer
What opportunities for growth does Binalyze offer for an Information Security Compliance Specialist?

Binalyze offers plenty of avenues for growth for an Information Security Compliance Specialist, including professional development programs, continuous learning opportunities to keep pace with evolving security trends, and a collaborative environment that encourages innovative thinking and personal contribution.

Join Rise to see the full answer
Common Interview Questions for Information Security Compliance Specialist
How do you approach developing security policies for a company?

When developing security policies, I start by assessing the current compliance landscape, identifying gaps in existing frameworks, and aligning policies with regulatory requirements and industry standards. Collaboration with various departments is critical to ensure that policies are practical and effectively communicated.

Join Rise to see the full answer
Can you describe your experience with ISO compliance frameworks?

I have significant experience with ISO compliance frameworks, specifically ISO 27001 and ISO 22301. My process includes conducting risk assessments, implementing control measures, and preparing for audits by documenting compliance efforts effectively to demonstrate regulatory adherence.

Join Rise to see the full answer
How do you handle communication with external auditors?

Effective communication with external auditors involves clear documentation and timely responses. I ensure all compliance evidence is well-prepared, concise, and readily accessible, allowing for a smooth audit process while addressing any auditor concerns promptly.

Join Rise to see the full answer
What steps do you take when a security incident occurs?

In the event of a security incident, I prioritize immediate assessment to contain the threat, followed by investigation and documentation of the incident for further analysis. I then work with the team to implement recovery measures and review policies to prevent similar incidents in the future.

Join Rise to see the full answer
How do you stay updated with the latest information security trends?

I stay updated with the latest trends by subscribing to industry publications, attending webinars, participating in professional networks, and engaging in continuous education and certification programs relevant to information security and compliance.

Join Rise to see the full answer
What is your experience with risk management frameworks?

I have extensive experience developing and maintaining comprehensive risk management frameworks. This includes identifying potential risks, assessing their impact, and implementing strategies to mitigate them while ensuring these measures are effectively communicated across the organization.

Join Rise to see the full answer
How do you ensure that employees understand security policies?

I promote understanding of security policies by developing engaging training and awareness programs that are relevant to employees' roles. Interactive workshops and frequent updates help reinforce the importance of these policies in protecting company assets.

Join Rise to see the full answer
Describe a challenging compliance issue you've faced.

A challenging compliance issue I faced involved reconciling multiple regulatory frameworks that had differing requirements. I tackled this by conducting a thorough compliance gap analysis and developing a unified strategy to standardize our compliance approach across all relevant regulations.

Join Rise to see the full answer
What role does documentation play in compliance efforts?

Documentation is vital in compliance efforts as it serves as the formal record of adherence to regulations and internal policies. It is essential for both internal reviews and external audits, providing transparency and accountability regarding compliance practices.

Join Rise to see the full answer
How do you manage GRC tools and ensure their effectiveness?

I manage GRC tools by regularly reviewing their configurations, ensuring they align with our compliance goals, and effectively integrating them with our risk management programs. Continuous monitoring and adjustments help maintain their relevance and effectiveness in our compliance strategies.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Binalyze Remote No location specified
Posted 3 days ago

Join Binalyze as an Enterprise Account Executive and play a pivotal role in driving sales and building relationships in the UK cybersecurity market.

Posted 13 days ago

Join Kentro as a Senior IT Analyst to drive innovation and enhance organizational efficiency for the National Geospatial-Intelligence Agency.

Photo of the Rise User
OpenAI Hybrid No location specified
Posted 10 days ago
Inclusive & Diverse
Feedback Forward
Collaboration over Competition
Growth & Learning

Join OpenAI as a Network Operations Center Technician to manage and secure applications critical to public sector missions.

Photo of the Rise User

Join Highgate Hotels as a strategic Director of Enterprise Applications, leveraging your expertise in Oracle ERP Cloud and integration technologies to drive business success.

Photo of the Rise User
Posted 11 days ago

Join Anduril Industries as a Senior Linux Systems Engineer to work on advanced defense technology by building critical classified systems.

Photo of the Rise User
University of Maryland Medical System Hybrid 920 Elkridge Landing Road, Linthicum, MD
Posted 3 days ago

Join the University of Maryland Medical System as a System Administrator II and contribute to innovative healthcare technology solutions.

Photo of the Rise User

As a Principal Solutions Architect at Cloudflare, you will lead strategic technological initiatives for enterprise clients while enhancing our platform capabilities.

Photo of the Rise User
Posted 4 days ago
Photo of the Rise User
ManTech Hybrid US, Maryland, Maryland
Posted 5 days ago

As a Cybersecurity Network Analyst at ManTech, you'll play a crucial role in securing government systems and networks through data threat analysis.

Binalyze is an innovator in Investigation and Response Automation. Founded in 2018 and headquartered in Tallinn, Estonia, Binalyze has a global presence with offices in the UK, US, and Singapore. We empower incident response and SOC teams with rap...

3 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
April 8, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
9 people applied to IT Intern - Seasonal at Carowinds
Photo of the Rise User
Someone from OH, Beachwood just viewed Dispensary Tech at Ayr Wellness
Photo of the Rise User
56 people applied to Cybersecurity Intern at Dewberry
Photo of the Rise User
Someone from OH, Springfield just viewed Front Desk Clerk at Marriott International
L
Someone from OH, Akron just viewed Junior Graphic Designer at Little Spoon
Photo of the Rise User
Someone from OH, Columbus just viewed Licensing and Regulatory Compliance Analyst at Sportradar
Photo of the Rise User
Someone from OH, Mansfield just viewed US_EN_Operations_Warehouse Loader (Part Time) at Red Bull
Photo of the Rise User
Someone from OH, Dublin just viewed Salesforce Administrator at Multiverse
Photo of the Rise User
Someone from OH, Pickerington just viewed Salesforce Solution Analyst at GoodLeap
S
Someone from OH, Pickerington just viewed Salesforce Project Manager at Studio Science
Photo of the Rise User
Someone from OH, Dayton just viewed Medical Receptionist at LifeStance Health
Photo of the Rise User
13 people applied to SOC Analyst at Prosegur
Photo of the Rise User
59 people applied to Cyber Crime Analyst at TEKsystems
Photo of the Rise User
12 people applied to IT Support Intern at SoundCloud
C
Someone from OH, Massillon just viewed RN Ambulatory - Outpatient Infusion Therapy at CCF
Photo of the Rise User
Someone from OH, Columbus just viewed HR Business Partner (Maternity Cover) at Marshmallow
Photo of the Rise User
Someone from OH, Columbus just viewed Community Outreach Canvasser $24/Hr at Confidential
Photo of the Rise User
Someone from OH, Cincinnati just viewed Email Marketing Coordinator at Creative Circle
Photo of the Rise User
Someone from OH, Columbus just viewed UX Researcher, Amazon Autos at Amazon
Photo of the Rise User
Someone from OH, Cincinnati just viewed AI training and enablement at Writer
Photo of the Rise User
Someone from OH, Cincinnati just viewed Data Analyst (Contact Center-Hybrid) at Dow Jones
Photo of the Rise User
Someone from OH, Delaware just viewed Practice Group Manager at LifeStance Health
Photo of the Rise User
Someone from OH, Youngstown just viewed Event Services Human Resources Coordinator at Allied Universal
Photo of the Rise User
Someone from OH, Columbus just viewed IP Network Engineering Intern - Summer 2025 at Bandwidth