Information Security Analyst

Scale Up Recruiting Partners

Kraków

On-site

PLN 134,000 - 201,000

Full time

28 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Scale Up Recruiting Partners is seeking an Information Security Analyst to own the vendor security questionnaire process across multiple client accounts. You will coordinate with U.S.-based startups, monitor security requests, and ensure accurate, timely responses.

The role emphasizes GRC, security compliance, and vendor risk, supporting enterprise deals in a fast-paced consulting environment. You will work with teams across security and engineering to maintain questionnaire libraries, handle

Qualifications

  • 2–4 years of experience in vendor security questionnaires, GRC/compliance, or client-facing security roles.
  • Hands-on experience completing SIG, CAIQ, or custom vendor questionnaires.
  • Working knowledge of SOC 2 and ISO 27001.
  • Understanding of common security concepts (SSO, MFA, endpoint management, encryption, cloud fundamentals, backup/DR).
  • Experience with vendor risk management and multi-client support.
  • Strong organizational skills and ability to coordinate with SMEs.
  • Excellent written communication and professional English.

Responsibilities

  • Monitor client Slack channels and respond to security questionnaire requests promptly.
  • Create and manage tickets in Jira, Linear, or similar systems to track requests.
  • Complete vendor security questionnaires using SIG/CAIQ and platforms like OneTrust/Whistic/SecurityScorecard.
  • Develop understanding of each client’s security posture, policies, and controls.
  • Maintain and improve client answer libraries and knowledge bases.
  • Coordinate with security consultants, engineers, and SMEs for technical clarification.
  • Escalate gaps or missing controls affecting questionnaire responses.
  • Ensure all questionnaires are completed accurately and on time.

Skills

SSO
MFA
Endpoint Mgmt
Encryption
Cloud fundamentals
Backup/DR
Vendor risk
Organizational skills
Written communication
Professional English

Tools

Jira
Linear
OneTrust
Whistic
SecurityScorecard

Job description

Hey! We're Scale Up, and our client is looking to hire a Information Security Analyst.

Type of Employment: Contractor (Long-term)

Work Modality: 100% Remote

Work Schedule: Full-time

Time Zone: U.S. Pacific Time (PST) with overlap during business hours

About Our Client

Our client is a fast-growing U.S.-based cybersecurity and compliance consulting firm that partners with technology startups to strengthen their security posture and achieve compliance with frameworks such as SOC 2, ISO 27001, HIPAA, and more.

They act as an extension of their clients' security teams, providing GRC consulting, audit readiness, vendor risk management, and virtual CISO services. As the company continues to grow, they are expanding their team with professionals who enjoy working across multiple clients in a fast-paced consulting environment.

About The Role

You'll own the vendor security questionnaire process from end to end across multiple client accounts.

You'll work closely with U.S.-based startups, monitoring incoming security requests, coordinating with technical stakeholders, and completing security questionnaires accurately and on time. This role requires a solid understanding of security frameworks, strong organizational skills, and the ability to communicate clearly with both technical and non-technical stakeholders.

This is an excellent opportunity for someone with experience in GRC, security compliance, or vendor risk who enjoys supporting multiple clients and playing a key role in helping companies close enterprise deals.

Key Responsibilities
  • Monitor client Slack channels and respond promptly to incoming security questionnaire requests.
  • Create and manage tickets in Jira, Linear, or other ticketing systems to track requests through completion.
  • Complete vendor security questionnaires (SIG, CAIQ, custom questionnaires) through spreadsheets and security platforms such as OneTrust, Whistic, SecurityScorecard, and similar tools.
  • Develop a deep understanding of each client's security posture, policies, controls, and technical environment.
  • Maintain and continuously improve client answer libraries and knowledge bases.
  • Coordinate with security consultants, engineers, and subject matter experts whenever technical clarification is needed.
  • Escalate recurring gaps or missing controls that impact questionnaire responses.
  • Ensure all questionnaires are completed accurately and within customer deadlines.
Requirements
  • 2–4 years of experience completing vendor security questionnaires, working in GRC/compliance, or in a security-related client-facing role.
  • Hands-on experience completing SIG, CAIQ, or custom vendor security questionnaires.
  • Working knowledge of SOC 2 and ISO 27001.
  • Understanding of common security concepts, including:
    • Single Sign-On (SSO)
    • Multi-Factor Authentication (MFA)
    • Endpoint Management
    • Encryption (at rest & in transit)
    • Cloud infrastructure fundamentals
    • Backup & Disaster Recovery
    • Vendor Risk Management
  • Strong organizational skills with the ability to manage multiple requests simultaneously.
  • Excellent judgment regarding when to answer independently and when to involve technical SMEs.
  • Excellent written communication skills.
  • Professional English (written and spoken).
Nice to Have
  • Experience handling a high volume of vendor security questionnaires.
  • Experience with:
    • Conveyor
    • SafeBase
    • Vanta
    • Whistic
    • Trust Center platforms
  • Experience maintaining questionnaire knowledge bases.
  • Experience working alongside Sales or Revenue teams supporting enterprise deals.
  • Certifications such as:
    • CompTIA Security+
    • ISC2 Certified in Cybersecurity (CC)
    • Similar cybersecurity certifications
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Remote Vendor Security & Compliance Analyst
Remote Vendor Security & Compliance Analyst

Scale Up Recruiting Partners • Warszawa

On-site
PLN 308,000 - 462,000
Remote Information Security & GRC Analyst
Remote Information Security & GRC Analyst

Scale Up Recruiting Partners • Kraków

On-site
PLN 134,000 - 201,000
Remote Information Security Analyst - Vendor Risk & GRC
Remote Information Security Analyst - Vendor Risk & GRC

Scale Up Recruiting Partners • Kraków

On-site
PLN 332,000 - 443,000
Security Specialist
Security Specialist

SOFTSWISS • Suchy Las

On-site
PLN 80,000 - 110,000
Private health insurance
Sports benefits
Mental Health Program
+6
Cyber Security Analyst
Cyber Security Analyst

Sigma Software • Poland

On-site
PLN 60,000 - 80,000
GRC Analyst/Consultant
GRC Analyst/Consultant

Link Group • Poland

Hybrid
PLN 120,000 - 200,000
Security & Compliance Engineer
Security & Compliance Engineer

Nomagic • Warszawa

Hybrid
PLN 180,000 - 260,000
Equity
Relocation package
Hybrid work in Warsaw
Application Security Engineer
Application Security Engineer

LionHires Recruitment • Poland

On-site
PLN 180,000 - 240,000
Security and Compliance Engineer
Security and Compliance Engineer

STN Inc • Poland

Hybrid
PLN 530,000 - 683,000
Senior Information Security Engineer
Senior Information Security Engineer

Smart Recruitment • Poland

On-site
PLN 85,000 - 120,000