Remote ISMS & GRC Engineer — ISO 27001 / SOC 2 Expert

Mozilla

France

Sur place

EUR 65 000 - 87 000

Plein temps

14 jours+
Générateur de candidature

Transformez ce poste en entretien — un CV et une lettre de motivation conçus selon ce que cet employeur recherche.

Passez les filtres ATS

Avantages offerts par ce poste

Performance bonus
Medical coverage
Retirement contributions
Wellness days
Birthday holiday
Home office stipend
Professional development budget
Well-being stipend
Parental leave
Referral bonus

Résumé du poste

Mozilla Corporation is seeking a senior information security professional to lead ISMS governance within the Security team. You’ll drive ISO 27001 and SOC 2 Type 2 readiness, maintain the SoA and policy program, and collaborate with Engineering, Legal, Privacy, and Product to translate compliance into practical practices.

You’ll partner with internal and external auditors, manage remediation, and help scale compliance as Mozilla expands products and business units.

Qualifications

  • 5+ years in information security, GRC, or compliance-focused roles.
  • Deep familiarity with ISO 27001 and SOC 2 Trust Services Criteria.
  • Experience across ISMS scope: SoA, MRM, and System Description authorship.
  • Proven ability to write and revise security policies with cross-functional buy-in.
  • Experience tracking gaps and remediation within a broader compliance program.
  • Excellent cross-functional collaboration with engineers, product, legal, and executives.
  • Strong written and verbal communication; capable in front of external auditors.
  • Industry certifications (e.g., CISA, CISSP, ISO 27001 Lead Auditor/Implementer) a plus.

Responsabilités

  • Maintain and mature the ISMS, including SoA, risk treatment plans, and MRM cadence.
  • Support ISO 27001 and SOC 2 Type 2 audit execution with evidence and narratives.
  • Contribute to SOC 2 System Description and audit narratives reflecting controls.
  • Track gaps and remediation from readiness assessments and audits.
  • Lead the policy program, driving creation, revision, and cross-functional reviews.
  • Support compliance scaling as more products pursue readiness and certification.
  • Assist internal audits, collaborating with internal or external resources as needed.
  • Partner with Engineering, IT, Legal, Privacy, People, and product leadership.
  • Advise GRC manager and Security leadership on audit risk and strategy.

Connaissances

Information security
GRC
Compliance programs
Audit readiness
Policy writing
Cross-functional collaboration
ISO 27001 knowledge
SOC 2 knowledge

Description du poste

Mozilla Corporation is seeking a senior information security professional to lead ISMS governance within the Security team. You’ll drive ISO 27001 and SOC 2 Type 2 readiness, maintain the SoA and policy program, and collaborate with Engineering, Legal, Privacy, and Product to translate compliance into practical practices.

You’ll partner with internal and external auditors, manage remediation, and help scale compliance as Mozilla expands products and business units.

Obtenez votre examen gratuit et confidentiel de votre CV.
ou faites glisser et déposez votre fichier ici.
Similar jobs

Postes similaires à comparer

Senior GRC Security Engineer - ISO 27001 & SOC 2
Senior GRC Security Engineer - ISO 27001 & SOC 2

DataDome • Paris

Hybride
EUR 75 000 - 110 000
Remote/hybrid/in-office options
Office near Opera Garnier
Kenko health benefits
+2
Senior GRC Security Engineer – ISO 27001 & SOC 2
Senior GRC Security Engineer – ISO 27001 & SOC 2

DataDome • France

Hybride
EUR 60 000 - 80 000
Remote work stipend
Health benefits
Annual leisure activity allowance
+3
ISO 27001 & GRC Security Analyst
ISO 27001 & GRC Security Analyst

RemoteLeads • France

Sur place
EUR 60 000 - 90 000
Remote GRC Engineer — Security & Compliance
Remote GRC Engineer — Security & Compliance

Revevol • Paris

Sur place
EUR 90 000 - 120 000
GRC Cybersecurity Engineer | ISO 27001 & SOC 2
GRC Cybersecurity Engineer | ISO 27001 & SOC 2

Jobtailor • Castet-Arrouy

Sur place
EUR 42 000 - 65 000
ISO 9001/27001 & SOC 2 Compliance Lead: Program Driver
ISO 9001/27001 & SOC 2 Compliance Lead: Program Driver

Skillbase Group • France

Sur place
EUR 90 000 - 120 000
Cybersecurity Engineer
Cybersecurity Engineer

Jobtailor • Castet-Arrouy

Sur place
EUR 42 000 - 65 000
ISO 27001 & GRC Analyst — Automate Compliance
ISO 27001 & GRC Analyst — Automate Compliance

Didomi • Paris

Sur place
EUR 48 000 - 60 000
Senior Compliance Manager
Senior Compliance Manager

Skillbase Group • France

Sur place
EUR 90 000 - 120 000
Information Security Analyst
Information Security Analyst

RemoteLeads • France

Sur place
EUR 60 000 - 90 000