- Location
- Belgrade, RS
- Workplace
- Remote
- Type
- Full-time
- Department
- Security
- Seniority
- Manager
- Source
- Breezy HR
Description
About us
Insightful is a market-leading platform for workforce analytics. We process really big data, synthesize it into actionable insights, and ultimately provide an easy-to-use product that empowers enterprise customers to improve employee productivity, business processes, and overall staff well-being.
Job Description
We are looking for an Information Security Manager to join Insightful. In this role, you will act as the primary point of contact for all InfoSec matters across the organization, ensuring our security posture remains strong, compliant, and aligned with our business goals.
Key Responsibilities:
- Security Leadership & Compliance: Act as the main point of contact for all Information Security topics across the organization. Implement, maintain and own InfoSec controls compliance and lead/oversee audit processes for SOC 2 Type II and ISO 27001 certification.
- Cross-Functional Collaboration: Partner with Development, DevOps, IT, and Product teams as a subject matter expert. Ensure solution architectures align with InfoSec best practices and actively mitigate identified security risks.
- Legal Collaboration: Work closely with Legal on compliance with emerging InfoSec laws and identify security-related redlines in customer contracts.
- Customer Enablement: Partner with our Sales, Customer Success, and Support teams to address prospective or active customer inquiries, security assessment questionnaires, and audit requests.
- Incident Response: Assist and guide the Incident Response team in handling, investigating, and resolving any potential security events of interest.
- Security Architecture & Monitoring: Propose and drive continuous improvements to current security architecture and monitoring mechanisms to safeguard Insightful’s business-critical assets.
- Risk Management: Support the management team with strategic expertise in information security risk management.
- Security Awareness: Own and drive information security awareness training activities for both new and existing employees.
You are a great fit for this role if you have:
- 5+ years of proven experience as an Information / IT Security expert.
- A track record of leading at least one successful SOC 2 Type II, ISO 27001, or similar security audit (driving the process from initial implementation, through the audit to the official report/certificate).
- Solid knowledge of security architecture principles.
- Familiarity with modern cloud technologies (such as GCP, AWS, Azure).
- Ability to translate complex security and privacy concepts into clear, actionable business terms.
- Excellent communication skills, with fluent verbal and written English language skills.
Bonus points if you have:
- Experience with AI security concepts, risk frameworks, and safe AI deployment practices.
- Relevant information security certifications