Google Tag Manager
JUMP TO CONTENT

Senior Information Security Specialist

  1. Poland
  2. Engineering

Poland

Job description

SmartRecruiters is looking for a Senior Information Security Specialist to join the Governance, Risk & Compliance (GRC) team. This role is critical to ensuring that SmartRecruiters' applications, systems, and processes remain compliant with industry standards and regulatory requirements, including ISO 27001, ISO 22301, ISO 42001, SOC 2 Type II, Cyber Essentials, GDPR, and the EU AI Act.

The successful candidate will combine strong GRC expertise with a technical, engineering mindset - someone who can drive compliance programmes across multiple frameworks while also stepping into complex technical topics such as business continuity, AI security, and cloud compliance. Critically, this is not a purely audit-focused role; we need someone who can dig into technical details, assess security architectures, support forensic investigations, build automation to replace manual processes, and provide hands-on guidance to engineering and security teams. A core part of this role is identifying opportunities to engineer scalable, repeatable solutions, from compliance evidence collection to policy enforcement, rather than relying on manual effort.


Responsibilities

Governance, Risk & Compliance

  • Identify manual, repetitive GRC processes and design automation blueprints to streamline them, including evidence collection, control monitoring, access reviews, policy enforcement checks, and compliance reporting
  • Build and maintain automated workflows using compliance platforms, scripting, or integration tools to reduce manual effort and improve audit-readiness
  • Develop reusable templates, playbooks, and standardised blueprints for recurring GRC activities (e.g., vendor assessments, internal audits, risk reviews) to ensure consistency and scalability.
  • Collaborate with engineering and IT teams to integrate security and compliance checks into existing toolchains and CI/CD pipelines where applicable
  • Continuously evaluate and improve GRC tooling, data flows, and reporting to drive operational efficiency across the team
  • Manage stakeholder expectations and partner with internal teams to ensure effective management of IT risks and compliance obligations
  • Maintain regional and local stakeholder relationships, meeting schedules, minutes, and reports.
  • Support the maintenance of the SOC 2 Type II framework, including evidence collection, control testing coordination, and audit support
  • Effectively manage ISO 27001 and ISO 22301 audit lifecycles and coordinate with stakeholders on ISMS and BCMS improvements
  • Support the maintenance and continuous improvement of the ISO 42001 (AI Management System) framework in alignment with the EU AI Act
  • Support vendor risk management activities, including third-party security assessments and due diligence reviews

Business Continuity & ISO 22301

  • Serve as a subject matter expert or key contributor for the Business Continuity Management System (BCMS), supporting the strategy, framework, and audit programme under ISO 22301
  • Support Business Impact Analysis (BIA), BCP/DRP development, recovery exercises, and continuity metrics management

AI Security & Compliance

  • Support AI security and compliance activities, including the assessment of AI-related risks, alignment with ISO 42001 controls, and regulatory readiness under the EU AI Act
  • Collaborate with product and engineering teams to evaluate security controls for AI/ML features and services

Company Description

SmartRecruiters is the Recruiting AI Company that transforms hiring for the world’s leading enterprises. Built for global scale, SmartRecruiters, an SAP company, delivers an AI-powered hiring platform that automates and optimizes the entire talent acquisition process, ensuring faster and smarter hiring decisions. More than 4,000 companies, including Amazon, Visa, and McDonald's, rely on SmartRecruiters to build winning teams. In 2025, SmartRecruiters joined SAP, the global leader in enterprise applications. Together, SmartRecruiters and SAP are accelerating the reinvention of hiring by combining cutting-edge AI innovation with the scale, reach, and resources of SAP’s ecosystem.

At SmartRecruiters, we are a values-driven, globally focused tech company with strong financial backing and a bold vision for the future of work. We commit and dig deep, embracing challenges with grit, curiosity, and a drive for excellence. We foster a collaborative and inclusive work environment, where trust and determination bring us together. Because together, we will win.

Recognized by Fosway Industry Analysts as a strategic leader in recruitment technology for three consecutive years, and awarded by Comparably as a top company for Women, Perks and Benefits, Work-Life Balance, Happiness, Compensation, Diversity, and Culture - we take pride in creating a place where everyone can thrive. Our remote-friendly culture, competitive salaries, and strong internal mobility ensure that high performers have meaningful growth opportunities in an environment built on respect and empowerment.


Qualifications

  • 5+ years of experience in information security, governance, risk, and/or compliance roles with a technical orientation
  • Demonstrated compliance or auditing experience with at least one major framework
  • Hands-on experience with incident response - including participation in security incident investigations, containment, and post-mortem processes
  • Solid understanding of controls auditing principles and evidence management
  • Technical understanding of cloud infrastructure (AWS preferred), networking fundamentals, identity management, and SaaS security architectures
  • Knowledge of risk management methodologies and experience conducting or supporting risk assessments
  • Ability to manage and deliver on multiple complex projects simultaneously, with minimal supervision
  • The ability to investigate, question, and interpret internal and external IT security and compliance issues at both a governance and technical level
  • A strong understanding of technology, cloud-based products, and SaaS environments
  • Experience working across business units and geographical boundaries to engage engineering, business, and operational teams
  • Experience with ISO 27001
  • Excellent written and verbal communication skills in English

Nice to have

  • Professional certifications such as CISA, CRISC, CISM, CISSP, CCSK, CCSP, or equivalent
  • Experience with ISO 9001, 27017, and 27018 
  • Experience with ISO 22301 (Business Continuity), including BIA, BCP/DRP, and recovery testing
  • Experience with BSI C5 (Cloud Computing Compliance Criteria Catalogue) or similar cloud-specific compliance frameworks
  • Knowledge of AI security principles, experience with ISO 42001, or familiarity with the EU AI Act and its technical requirements
  • Experience with enterprise risk management frameworks and tools
  • Understanding of threat modelling methodologies and secure development lifecycle (SDLC) principles

Additional Information

SmartRecruiters is proud to be an Equal Employment Opportunity employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.

List #1

Working at SmartRecruiters

Inside the Team Hiring Senior AI Engineers

Teaser

Career Growth

Content Type

Blog

Publish date

05/13/2026

Summary

We’re hiring Senior AI Engineers to join our Chat Group in a remote role open to candidates based in Poland, Germany and the United Kingdom. The team is building the next generation of intelligent co

Teaser

We’re hiring Senior AI Engineers to join our Chat Group in a remote role open to candidates based in Poland, Germany and the United Kingdom. The team is building the next generation of intelligent conversational systems for the recruiting industry. In this interview, Matteo Sumberaz, Senior Engineering Manager, shares what strong candidates do differently, what day-to-day work actually looks like, and what a new hire can exp

Read more
The Power of Partnership: Driving Value in APAC

Teaser

Day in the Life

Content Type

Blog

Publish date

04/21/2026

Summary

Based in Melbourne, Brett Potts has spent over five years at SmartRecruiters evolving from a frontline Customer Success Manager into a strategic regional leader. His journey is a great example of ho

Teaser

Based in Melbourne, Brett Potts has spent over five years at SmartRecruiters evolving from a frontline Customer Success Manager into a strategic regional leader. His journey is a testament to the growth opportunities within our team and the impact of building deep, long-term partnerships with enterprise customers.

Read more
The Strategy of Connection

Teaser

Day in the Life

Content Type

Blog

Publish date

04/09/2026

Summary

Meet Mariano Flores Leyes, sharing his journey from Argentina to leading Deal Desk Strategy in Germany. Five years ago, Mariano Flores Leyes joined SmartRecruiters in Argentina. Today, he is in Düss

Teaser

Meet Mariano Flores Leyes, sharing his journey from Argentina to leading Deal Desk Strategy in Germany. Five years ago, Mariano Flores Leyes joined SmartRecruiters in Argentina. Today, he is in Düsseldorf leading our Deal Desk Strategy & Operations. His story is more than a successful international relocation. It’s a masterclass in how a business function can evolve from operations into a strategic engine. In this interviewMariano shares his 11,000km journey, the power of internal mentorship, an

Read more
Senior Software Engineer Turning AI into Hiring Impact

Teaser

Day in the Life

Content Type

Blog

Publish date

03/19/2026

Summary

What does a typical day look like for a Senior Engineer working on the cutting edge of HR tech? Piotr Morek, who has spent nearly half a decade evolving alongside SmartRecruiters, takes us behind the

Teaser

What does a typical day look like for a Senior Engineer working on the cutting edge of HR tech? Piotr Morek, who has spent nearly half a decade evolving alongside SmartRecruiters, takes us behind the scenes of his daily routine - from morning gratitude journals to "planning mode" in Cursor. Discover how he balances deep work, cross-functional collaboration, and his successful shift from a frontend specialist to an AI-focused full-stack developer.

Read more
A Recap of International Women’s Day at SmartRecruiters

Teaser

Our People

Content Type

Blog

Publish date

03/13/2026

Summary

While the calendar marked International Women’s Day on March 8th, the energy at SmartRecruiters has continued well into the week. For us, this wasn't just a day to celebrate—it was a chance to look at

Teaser

While the calendar marked International Women’s Day on March 8th, the energy at SmartRecruiters has continued well into the week. For us, this wasn't just a day to celebrate—it was a chance to look at the incredible women who shape our culture every day.

Read more
Women in Tech: Seeing the Big Picture Beyond the Spreadsheet

Teaser

Our People

Content Type

Blog

Publish date

02/27/2026

Summary

In the latest part of our Women in Tech series, we’re featuring Aleksandra Gaj, our Accounts Receivable Manager based in Poland. She has been a cornerstone of our team for more than 8 years, and her

Teaser

In the latest part of our Women in Tech series, we’re featuring Aleksandra Gaj, our Accounts Receivable Manager based in Poland. She has been a cornerstone of our team for more than 8 years, and her journey is a fantastic reminder that career growth isn’t always a straight line. Sometimes the most rewarding moves are the ones that take you off your planned path to see the "big picture."

Read more
Women in Tech: Use AI as a co‑pilot, not a competitor

Teaser

Our People

Content Type

Blog

Publish date

01/26/2026

Summary

As part of our Women in Tech series, we spotlight SmartRecruiters teammates who are shaping the future of hiring, so candidates can meet the people behind our mission and see our values in action.

Teaser

As part of our Women in Tech series, we spotlight SmartRecruiters teammates who are shaping the future of hiring, so candidates can meet the people behind our mission and see our values in action. At the end of last year, Elle Green, our Senior Marketing Manager, was featured by Women Love Tech for her expert perspective on the AI skills talent acquisition professionals need now. We are thrilled to bring her recognized expertise into our "Women in Tech" series with a Q&A and a brief recap of her

Read more
Women in Tech: Career Growth & Client Success

Teaser

Day in the Life

Content Type

Blog

Publish date

12/16/2025

Summary

In this edition of our Women in Tech series, we hear from Jordan Jennison, Account Manager - Mid-Market. With nearly three years at the company, Jordan shares her journey into the tech industry, the

Teaser

n this edition of our Women in Tech series, we hear from Jordan Jennison, Account Manager - Mid-Market. With nearly three years at the company, Jordan shares her journey into the tech industry, the value of the team-first culture at SmartRecruiters, and the crucial advice she wishes she had received early in her career. Read on to gain insight into her rewarding work and her encouraging message to aspiring young women in tech.

Read more
Women in Tech: The Pivot from HR Leader to Tech Consultant

Teaser

Our People

Content Type

Blog

Publish date

12/08/2025

Summary

For nearly three years, Mirela Lane (Senior Manager, Onboarding Consulting) has been a vital part of the SmartRecruiters team, bringing a unique perspective that bridges the gap between technical inn

Teaser

For nearly three years, Mirela Lane (Senior Manager, Onboarding Consulting) has been a vital part of the SmartRecruiters team, bringing a unique perspective that bridges the gap between technical innovation and real-world business needs. But before she became a technology expert, she spent over 15 years on the other side of the table, as an HR leader managing global teams and budgets. In this edition of our Women in Tech series, Mirela shares how she leveraged that deep domain expertise to build

Read more
From Acquisition to Innovation

Teaser

Day in the Life

Content Type

Blog

Publish date

11/28/2025

Summary

Welcome to our Day in the Life series! In this feature, we sit down with Lucy Dawson, our Growth Marketing Specialist, who shares her unique career journey - including joining SmartRecruiters through

Teaser

Welcome to our Day in the Life series! You can choose to either watch the video interview below or read the full transcript. In this feature, we sit down with Lucy Dawson, our Partner Marketing Manager, who shares her unique career journey—including joining SmartRecruiters through the Attracts acquisition—and how she's driven new development in a role she personally shaped, focusing on her strategies for pace, growth, and project execution.

Read more

  1. Poland
  2. Engineering

Browse Jobs

Browse jobs by department