Wrike
Security Compliance Specialist
Job Summary
The role of Compliance Specialist involves managing and ensuring adherence to security standards such as ISO 27001 and SOC 2. The candidate will develop, implement, and review security policies, oversee risk assessments and audits, and facilitate security training programs. Collaboration with internal teams like Legal and IT, as well as external auditors, is essential to maintain compliance. The position requires experience in information security compliance, strong communication skills, and familiarity with regulatory standards and security frameworks.
Required Skills
Benefits
Job Description
Ready to become a Wriker?
We are seeking a detail-oriented and proactive Compliance Specialist to join our team. This role is responsible for managing and ensuring compliance with ISO 27001, SOC 2, and other relevant security frameworks. The ideal candidate will oversee security training programs, vendor risk management, and policy and procedure reviews to maintain a strong security posture across the organization.
More about Your team
You will work as part of the mega-class Wrike security team, which consists of 12 professionals specializing in SecOps, SOC, AppSec, Compliance and Training, and Sales. You will collaborate closely with Developers and Legal. The Security team reports directly to the CEO.
How You’ll make an impact
- Manage and maintain internal security controls to come up with complete understanding of compliance with ISO 27001, SOC 2, and other regulatory standards.
- Develop, implement, and enhance security policies and procedures to align with industry best practices.
- Assist with regular risk assessments and audits to identify and mitigate security risks and timely implementation of risk treatment plans.
- Oversee security awareness training programs for employees to promote a strong security culture.
- Track third-party vendor security assessments and incoming materials to ensure compliance with security requirements and become familiar with capabilities of internally used tool sets.
- Work cross-functionally with IT, Legal, and other departments to explore existing processes against security and compliance requirements and propose improvements.
- Keep up-to-date with industry trends, regulatory changes, and best practices in security by interacting with hands-on security functions.
- Assist in internal and external security audits, providing necessary documentation and support with opportunity to become a leading internal auditor and steward third-party assessments.
- Maintain documentation related to compliance efforts, audit findings, and remediation activities.
You will achieve your best if you have
- 2-3+ years of experience in information security compliance, preferably in technical audits.
- Experience with ISO 27001 and SOC 2.
- Understanding of security frameworks basics, risk management, and compliance best practices.
- Experience with security awareness training and policy development.
- Analytical and problem-solving skills, understanding how to apply a certain process to high-level standard requirements.
- Excellent communication and interpersonal skills to collaborate effectively with internal teams and external auditors.
- Fluent English
You will stand out with
- Familiarity with regulatory requirements such as GDPR, HIPAA, STAR, or other relevant standards.
- Ability to create and understand data flows within a product.
- A balanced approach to risk versus productivity: while saying 'no' might be easy, you know how to find workable solutions.
- Proficiency in using AI tools and a solid understanding of the AI landscape.
- An innovative mindset that enables you to creatively tackle complex challenges.
Perks of working at Wrike
- 28 calendar days of paid vacation
- Sick leave compensation
- Life insurance plan
- Health insurance plan
- Fitness plan (800 EUR/year)
- Parental leave
- 2 volunteer days
- Full-remote & On-demand access to Co-working space
- Utility allowance (30 EUR/month, subject to taxation)
Your recruitment buddy will be Alexandra Vorobyova, Lead Recruiter.
#LI-AV1
Who Is Wrike and Our Culture
Wrike promotes a hybrid work mode for those that live near an office hub, we meet in the office 2-3 times a week. This work mode supports our culture of collaboration and solving problems fast to deliver business outcomes and win together.
Our persona
Our culture and Values
🤩 Customer-Focused
We care about our customers. We understand the customer journey, experience, and value derived from Wrike. Decision-making and action-taking are done with the customer in mind.
🤝 Collaborative
We work as one and win together, each bringing unique strengths that contribute to diversity of thought for better outcomes. Leveraging our own work management platform, we foster an environment of creative collaboration and shared achievement.
🎨 Creative
We strive to succeed through continuous innovation. It’s our pursuit of novel concepts that helped us create a market category. We continue to cultivate a workplace that fosters creative thinking as a means of transcending conventional boundaries and empowers us to break new ground to deliver extraordinary work management solutions.
💪 Committed
We believe in ownership at all levels of the organization, by owning workflows from start to finish. Each member of our team is an integral part of this commitment, establishing work as a platform for personal growth and transformation, as well as collective success and growth.
Wrike
Only Wrike's work management platform gives your team full visibility and control over all your tasks and projects. Project management software has never been more collaborative.
See more jobsSafe Remote Job Search Tips
Verify Employer Thoroughly
Research the company's identity thoroughly before applying. Check for a professional website with contacts, active social media, and LinkedIn profiles. Verify details across platforms and look for reviews on Glassdoor or Trustpilot to confirm legitimacy.
Never Pay to Get a Job
Legitimate employers never require payment for applications, training, background checks, or equipment. Always reject upfront payment requests or demands for bank details, even if they claim it's for purchasing necessary work gear on your behalf.
Safeguard Your Personal Information
Protect sensitive data like SSN, bank details, or ID copies. Share this only after accepting a formal, written job offer. Ensure it's submitted via a secure company system or portal, never through insecure channels like standard email attachments.
Scrutinize Communication & Interviews
Watch for communication red flags: poor grammar, generic emails (@gmail), vague details, or undue pressure. Be highly suspicious of interviews held only via text or chat apps; legitimate companies typically use video or phone calls.
Beware of Unrealistic Offers
If an offer's salary or benefits seem unrealistically high for the work involved, be cautious. Research standard pay for similar roles. Offers that appear 'too good to be true' are often scams designed to lure you into providing information or payment.
Insist on a Formal Contract
Always secure and review a formal, written job offer or employment contract before starting work or sharing final personal details. Ensure it clearly defines your role, compensation, key terms, and conditions to avoid misunderstandings or scams.