Security and Compliance Specialist
The role owns Qurable's information-security and compliance function, including ISO/IEC 27001 and SOC 2 implementation, GDPR and privacy compliance, security infrastructure, access management, hardening, MDM, monitoring, code-security reviews, audit preparation, and AI-assisted compliance automation.
Responsibilities
- Lead the end-to-end implementation of ISO/IEC 27001.
- Perform the initial gap analysis and define security policies, controls, and documentation.
- Manage GDPR and equivalent privacy compliance across operating markets.
- Configure and audit security infrastructure, access policies, and hardening.
- Execute or coordinate security audits and code-security reviews.
- Implement and administer MDM solutions.
- Select, implement, and operate security-checking and monitoring tools.
- Design and automate compliance and security processes using AI agents.
- Act as the security and compliance contact for customer audits and evidence requests.
Requirements
- Experience implementing ISO/IEC 27001 and knowledge of the ISO/IEC 27000 family.
- Experience with GDPR or equivalent privacy regulations, ideally through a full certification process.
- Experience with security-checking and monitoring tools.
- Experience working with and managing MDM.
- Startup experience.
- Cloud security infrastructure experience is valued.
- Code-security audit or review experience is valued.
- Fraud-prevention knowledge or genuine interest is valued.
- Experience using AI agents to automate operational or compliance processes is valued.
Benefits
- Monthly health and wellness allowance.
- Monthly allowance for remote work expenses.
- Proportional 13th honorarium based on tenure.
- 15 business days of vacation per year.
- One birthday day off during the birthday month.
- Flexible schedule.
- 100% remote work.