Security & Compliance Specialist

Polysense

Oost-Vlaanderen

Sur place

EUR 60 000 - 90 000

Plein temps

14 jours+

Recevez plus de réponses des employeurs

Envoyez un CV adapté au poste en quelques minutes.

Résumé du poste

Polysense is building an information security program from the ground up as we scale. You will own ISO 27001 and SOC 2, drive GDPR compliance, and align with NIS2/CRA requirements for a fast-growing, deep-tech SaaS hardware/software company.

You’ll work directly with leadership, engineers, and sales to embed security into product development and customer trust. This zero-to-one role rewards proactive builders who translate complex requirements into practical controls.

Qualifications

  • Meaningful hands-on experience in security, compliance or IT with focus on information security frameworks.
  • Solid working knowledge of ISO 27001, SOC 2, GDPR and NIS2 in practice.
  • A background in IT to understand how systems are built and exposed.
  • Familiarity with the tech stack of deep tech SaaS or HW/SW SaaS is a strong plus.
  • Experience with Azure, Azure DevOps or a compliance automation platform like Vanta is a strong plus.
  • Startup or scale-up experience is a bonus.
  • Exposure to the food manufacturing or food tech industry is a nice to have.

Responsabilités

  • Own ISO 27001 and SOC 2 end-to-end, including gap analysis, policy development, implementation and maintenance.
  • Drive NIS2 and CRA compliance and document obligations across frameworks.
  • Develop and maintain internal policy library: information security policies, access control, risk management and incident response.
  • Coordinate with external auditors during certification cycles and manage process through to completion.
  • Own GDPR compliance: records of processing, DPIAs, vendor and sub-processor reviews.
  • Serve as internal reference for data protection questions from sales, legal, and customers.
  • Keep GDPR obligations up-to-date as product evolves and customers grow.
  • Run internal audits and coordinate with external penetration testing partners; track remediation.
  • Build and own the incident response plan and test it.

Connaissances

ISO 27001
SOC 2
GDPR
NIS2
Azure DevOps
Vanta
compliance automation
IT background
SaaS security
startup experience

Outils

Azure DevOps
Vanta
Compliance automation platform

Description du poste

Polysense is scaling fast. We're building operational intelligence software that's reshaping how food manufacturers work. Customers like Agristo, Lotus Biscoff, and La Lorraine are already running on it. As we grow, so do the expectations around how we handle data, infrastructure, and trust. Security and compliance are no longer nice to have. They're core to how we operate and how we sell.

To make that happen, we're hiring a Security Compliance Specialist. This is a zero-to-one role. You are the person who builds the security and compliance function at Polysense, sets the standards, and makes them stick. There is no existing team to inherit and no framework to maintain on someone else's behalf. You are starting something. Leadership will back you, engineering will partner with you, and sales will rely on you. The direction is yours to set, because no one has set it yet.

The mission is to build a security and compliance foundation that Polysense's customers can trust, that holds up to external scrutiny, and that scales with a company that isn't slowing down.

What you’ll be doing
Information security frameworks
  • Own ISO 27001 and SOC 2 from end to end. That means gap analysis, policy development, implementation, certification, and ongoing maintenance. You run the process and you keep it alive after the certificate is on the wall.
  • Drive NIS2 and CRA compliance as they become increasingly relevant to our operating environment. Understand where Polysense sits in scope across both frameworks and make sure our obligations are documented and met.
  • Develop and maintain the internal policy library: information security policies, access control, risk management, incident response, and everything in between. Policies don't write themselves and they don't stay accurate without someone owning them.
  • Coordinate with external auditors and specialists during certification cycles. You prepare Polysense for those conversations and you manage the process through to completion.
  • GDPR and data protection
  • Own GDPR compliance at Polysense. From the register of processing activities to data protection impact assessments to vendor and sub-processor reviews, this is your domain.
  • Be the internal reference point for anything data protection related. When the sales team has a question, when legal needs input, when a customer asks, the answer comes from you.
  • Keep GDPR obligations up to date as the product evolves and as our customer base grows. Compliance is not a one-time project.
  • Customer trust and internal audits
  • Handle inbound customer security questionnaires. Our customers are large food manufacturers with their own compliance requirements, and they want to know Polysense takes this seriously. You make sure we can answer confidently and accurately.
  • Run internal audits and manage the relationship with external penetration testing partners. You coordinate the work, own the findings, and track remediation.
  • Build and own the incident response plan. If something goes wrong, we need to know exactly what to do, who does it, and how fast. That plan starts with you.

Key point:

You don't need deep offensive security skills. But you do need to understand how deep tech SaaS or HW/SW SaaS products are built, where they break, and how to close gaps before they become problems.

What You BringBackground & Experience
  • Meaningful hands-on experience in a security, compliance or IT role with a clear focus on information security frameworks. You've done this before and you know what you're doing
  • Solid working knowledge of ISO 27001, SOC 2, GDPR and NIS2. You know these frameworks in practice, not just in theory
  • A background in IT is important. You need to understand how systems are built to understand where they're exposed
  • Familiarity with the tech stack of a deep tech SaaS or Hardware/Software SaaS company is a strong plus, close to a requirement. You don't need to be an engineer, but you need to speak the language
  • Experience with Azure, Azure DevOps or a compliance automation platform like Vanta is a strong plus
  • Experience in a startup or scale-up is a genuine bonus. You know what it means to build without a playbook
  • Exposure to the food manufacturing or food tech industry is a nice to have
Mindset & way of working
  • You own it fully
  • Compliance enables, not blocks
  • Clear communicator across the board

You are the only security specialist at Polysense. No one will have the answers before you do. You set the direction, build the processes, and drive them forward without waiting to be asked

Compliance enables, not blocks. You understand that good security makes the business faster, not slower. You know how to build frameworks that hold up to scrutiny without creating unnecessary friction for the team.

Clear communicator across the board. You work with engineers, sales and leadership. You can translate technical compliance requirements into language that makes sense to all of them, and you bring people along with you.

What Success Looks Like
  • ISO 27001 certification is achieved and maintained through a clear, repeatable process you built and own
  • SOC 2 compliance is structured, documented and progressing on a timeline you control
  • GDPR, NIS2 and CRA obligations are up to date, owned and never a source of last-minute scrambling
  • Customer security questionnaires are handled quickly, accurately and without pulling in half the company to answer them
  • An incident response plan exists, is tested and the team knows how to use it
  • Security is embedded in how Polysense builds and ships, not bolted on after the fact
Obtenez votre examen gratuit et confidentiel de votre CV.
ou faites glisser et déposez votre fichier ici.
Similar jobs

Postes similaires à comparer

Security & Compliance Specialist
Security & Compliance Specialist

Polysense • Gent

Sur place
EUR 55 000 - 75 000
Security & Compliance Architect (Zero-to-One)
Security & Compliance Architect (Zero-to-One)

Polysense • Oost-Vlaanderen

Sur place
EUR 60 000 - 90 000
Security & Compliance Lead for Scalable SaaS
Security & Compliance Lead for Scalable SaaS

Polysense • Gent

Sur place
EUR 55 000 - 75 000
Operations & Finance Lead
Operations & Finance Lead

Polysense • Oost-Vlaanderen

Sur place
EUR 90 000 - 150 000
Delivery Project Manager
Delivery Project Manager

Polysense • Oost-Vlaanderen

Hybride
EUR 50 000 - 70 000
Full ownership
Freedom to innovate
Amazing workspace
+1
Product Manager
Product Manager

Polysense • Oost-Vlaanderen

Sur place
EUR 65 000 - 95 000
Product Security Lead
Product Security Lead

Mondeadditif • Heverlee

Sur place
EUR 90 000 - 140 000
Chief Information Security Officer
Chief Information Security Officer

Jobtailor • Brussel Hoofdstad

Sur place
EUR 80 000 - 120 000
Flexible working hours
32 days of holiday
Personal coaching
+1
Consultant
Consultant

E-Resourcing Ltd - Specialist I.T. Recruitment • Brussel Hoofdstad

Hybride
EUR 90 000 - 130 000
CISO Financial Services
CISO Financial Services

Woven • Brussel Hoofdstad

Sur place
EUR 150 000 - 190 000