bluedoor data·Job Postings API·bluedoor.sh ↗

HomeCompaniesSoweloconsultingGRC Specialist (Risk and Compliance) - Fully Remote

GRC Specialist (Risk and Compliance) - Fully Remote

Soweloconsulting · Remote · Active · JazzHR / ApplyToJob

Job facts

FieldValue
CompanySoweloconsulting
TitleGRC Specialist (Risk and Compliance) - Fully Remote
Normalized title-
Department / team-
Location-
Work modelRemote / Remote
Employment type-
Salary-
Statusactive
ATS providerJazzHR / ApplyToJob
Posted / first seen / 2026-05-30
Changed / last seen2026-05-30 / 2026-06-06

Related slices

PageWhat it containsOpen
Company jobsActive postings from Soweloconsulting.Open
Company breakdownsRole, location, ATS, and work model facets for this company.Open
ATS provider jobsActive postings observed through JazzHR / ApplyToJob.Open
Provider filtered searchThe same provider as a filtered job collection.Open
Work model jobsActive Remote postings.Open
Lifecycle eventsOpen, update, close, and reopen events for this posting.Open
Original postingCanonical source or apply URL captured from the ATS.Open

Linked records

CompanySoweloconsulting
Source56c66432-d7cb-4ce7-bb22-d924a7ffba9e
ATS providerJazzHR / ApplyToJob

Description

Do you enjoy combining security, risk, and compliance with practical, scalable solutions rather than pure “check-the-box” compliance? Do you enjoy cross-functional work with Security, Engineering, and IT? Great , please read on as we have the role for you!   We’re partnering with a fast-growing, international Legal Tech / SaaS company that builds a leading legal data intelligence platform used globally. Their Security organization is investing heavily in modern, technology-driven governance, risk & compliance (GRC) and is now looking for an Advanced Risk & Compliance Analyst to join the team in Poland. This is an opportunity to work in a security-focused environment, within an international team, where you’ll have a real impact on how security controls are designed, tested, and automated across a global SaaS product. You will be a member of the Governance, Risk & Compliance (GRC) team within the Security function. Your work will focus on the company’s global information security management program and control landscape. This is a fully remote B2B contract opportunity in Poland which will end at the end of 2026. Your Tasks Will Include: Control testing & second-line assurance:  Perform monthly control testing to validate that key security and IT controls are operating effectively. Conduct process and operational reviews against predefined test procedures. Support second-line audit-type activities, reviewing evidence and identifying gaps. Policy & procedure lifecycle: Coordinate and track annual reviews of policies, standards, and procedures. Work with stakeholders to update and improve documentation so it’s both audit-ready and useful to the business. Risk & compliance program support: Coordinate tracking of the information security management program, including: Control performance monitoring, Risk assessments,  Compliance-related activities and exceptions Maintain accurate control testing files and risk ratings for identified issues. Audit support: Prepare and organize evidence for internal and external audits. Support engagements aligned to frameworks such as ISO/IEC 27001/27018, NIST 800-53, and SOC 2. Work with auditors to explain controls, processes, and remediation actions. Automation & workflow improvement: Help develop and operationalize automated evidence collection processes integrated with control workflows and ticketing systems, reducing manual effort and audit friction.   To be a good fit for the GRC Specialist (Risk and Compliance) role, you will have: 2+ years of professional experience in Risk management, Internal audit (especially IT audit), Security/compliance or GRC roles Experience with ISO/IEC 27001/ 27018, SOC 2 knowledge is a plus Experience with external  and/or internal audit, control development, and control development and testing Experience within a SaaS environment or another higher regulated environment Experience with GRC tools such as Archer, ServiceNow, LogicGate or similar Clearly articulate risk and control concepts to both technical and non-technical stakeholders. Experience with project management tools like JIRA or Asana is desired Nice to have experience in designing or supporting automated evidence collection workflows for audits, control testing, or continuous compliance programs. What’s in it for you Work on a leading global tech product in the Legal Tech space, where security and compliance are critical. Be part of a growing, international GRC team with a mandate to modernize and improve how security controls are designed, tested, and automated. Gain exposure to multiple security frameworks and certifications (ISO, SOC 2, NIST). The chance to shape and improve processes, not just execute them.   Sounds interesting?  Send us your CV by applying to this page   The provision of personal data by you is fully voluntary and the basis for their processing is your consent. We have prepared some necessary information, you can find in document: "Information regarding the processing of your personal data" . There you will find how your Personal Data is being processed and what your rights are in connection to this. The personal data will be processed by Sowelo Consulting spółka z ograniczoną odpowiedzialnością with its registered seat in Cracow (LLC) registered in National Court Register (KRS) under no. 0000671136, our Employees and Subcontractors (jointly referred to as the Company). Sowelo Consulting sp. z o.o. (LLC) is entered in the register of employment agencies under the number: 35288 Our candidate selection process relies entirely on human judgment. We explicitly avoid using automated screening algorithms or AI-driven scoring systems for any part of the assessment. Every single profile is reviewed personally by our experienced recruiters, ensuring a thorough and unbiased consideration of your fit. IT Recruitment Poland | Executive Search | Recruitment Process Outsourcing

Full job record

Job IDab47fe39718b9cbe1896314a89fc1422165d7eb7
Org ID5b21896e-8d66-4d1e-966f-d2229c307b4f
Source ID56c66432-d7cb-4ce7-bb22-d924a7ffba9e
Board ID56c66432-d7cb-4ce7-bb22-d924a7ffba9e
Providerjazzhr
Provider Job Key7YvASrUDUD
TitleGRC Specialist (Risk and Compliance) - Fully Remote
Normalized Title
Statusactive
Activeyes
Location Text
Department
Team
Employment Type
Workplace Typeremote
Remote Policyremote
Country
Region
City
Salary Raw
Salary Min
Salary Max
Salary Currency
Salary Period
Source URLhttps://soweloconsulting.applytojob.com/apply/7YvASrUDUD/GRC-Specialist-Risk-And-Compliance-Fully-Remote
Apply URLhttps://soweloconsulting.applytojob.com/apply/7YvASrUDUD/GRC-Specialist-Risk-And-Compliance-Fully-Remote
First Seen At2026-05-30 05:51:00Z
Last Seen At2026-06-06 20:24:31Z
Last Checked At2026-06-06 20:24:31Z
Last Changed At2026-05-30 05:51:00Z
Inactive At
Source Posted At
Source Updated At
Raw Payload Uris3://job-postings-prod-raw-590183727216/raw/provider=jazzhr/board=soweloconsulting/date=2026-06-06/2026-06-06T20-24-30-326Z-a2c3ba2d87fe09ac82b732cfbcd0b8d80632101cfe45acde0d1e54500c1226bd.json
Event Fields
{
  "content_hash": "f85b54b128f645e186ade55233f0ce040b03adcf2311309d9889cc66aa65d93e",
  "source_hash": "ba27d28cc8a16a341904a5e64baf910e3d3e748963314b65587250e9723e6085",
  "last_changed_at": "2026-05-30T05:51:00.336Z",
  "active_status": "active"
}
Parsed Structured
{
  "language": "en",
  "location": {
    "raw": null,
    "city": null,
    "region": null,
    "country": null,
    "is_remote": true,
    "confidence": null
  },
  "salary_max": null,
  "salary_min": null,
  "inferred_at": "2026-06-06T20:24:31.109Z",
  "launch_scope": {
    "reason": "jazzhr_production_catalog",
    "included": true,
    "location": {
      "raw": null,
      "city": null,
      "region": null,
      "country": null,
      "is_remote": true,
      "confidence": null
    },
    "countries": []
  },
  "remote_policy": "remote",
  "salary_period": null,
  "workplace_type": "remote",
  "salary_currency": null
}
Extensions
{}
Native Structured
{
  "detail": {
    "url": "https://soweloconsulting.applytojob.com/apply/jobs/details/7YvASrUDUD?&",
    "heading": "GRC Specialist (Risk and Compliance) - Fully Remote",
    "html_title": "JazzHR » Job Listings",
    "canonical_url": "https://soweloconsulting.applytojob.com/apply/7YvASrUDUD/GRC-Specialist-Risk-And-Compliance-Fully-Remote",
    "description_html": "<div class=\"job_description\">\n\t\t\t\t\t<p><strong>Do you enjoy combining security, risk, and compliance with practical, scalable solutions rather than pure &#8220;check-the-box&#8221; compliance?</strong></p><p><strong>Do you enjoy cross-functional work with Security, Engineering, and IT?</strong></p><p>Great , please read on as we have the role for you!</p>&#160;<p>We&#8217;re partnering with a fast-growing, international Legal Tech / SaaS company that builds a leading legal data intelligence platform used globally. Their Security organization is investing heavily in modern, technology-driven governance, risk &amp; compliance (GRC) and is now looking for an Advanced Risk &amp; Compliance Analyst to join the team in Poland.</p><p>This is an opportunity to work in a security-focused environment, within an international team, where you&#8217;ll have a real impact on how security controls are designed, tested, and automated across a global SaaS product. You will be a member of the Governance, Risk &amp; Compliance (GRC) team within the Security function. Your work will focus on the company&#8217;s global information security management program and control landscape.</p><p><strong>This is a fully remote B2B contract opportunity in Poland which will end at the end of 2026.&#160;</strong></p><p><br><strong>Your Tasks Will Include:</strong></p><ul><li>Control testing &amp; second-line assurance:&#160; Perform monthly control testing to validate that key security and IT controls are operating effectively.</li><li>Conduct process and operational reviews against predefined test procedures.</li><li>Support second-line audit-type activities, reviewing evidence and identifying gaps.</li><li>Policy &amp; procedure lifecycle: Coordinate and track annual reviews of policies, standards, and procedures.</li><li>Work with stakeholders to update and improve documentation so it&#8217;s both audit-ready and useful to the business.</li><li>Risk &amp; compliance program support: Coordinate tracking of the information security management program, including: Control performance monitoring, Risk assessments,&#160; Compliance-related activities and exceptions</li><li>Maintain accurate control testing files and risk ratings for identified issues.</li><li>Audit support: Prepare and organize evidence for internal and external audits.</li><li>Support engagements aligned to frameworks such as ISO/IEC 27001/27018, NIST 800-53, and SOC 2.</li><li>Work with auditors to explain controls, processes, and remediation actions.</li><li>Automation &amp; workflow improvement: Help develop and operationalize automated evidence collection processes integrated with control workflows and ticketing systems, reducing manual effort and audit friction.</li></ul>&#160;<p><strong>To be a good fit for the GRC Specialist (Risk and Compliance) role, you will have:</strong></p><ul><li>2+ years of professional experience in Risk management, Internal audit (especially IT audit), Security/compliance or GRC roles</li><li>Experience with ISO/IEC 27001/ 27018, SOC 2 knowledge is a plus</li><li>Experience with external&#160; and/or internal audit, control development, and control development and testing</li><li>Experience within a SaaS environment or another higher regulated environment</li><li>Experience with GRC tools such as Archer, ServiceNow, LogicGate or similar</li><li>Clearly articulate risk and control concepts to both technical and non-technical stakeholders.</li><li>Experience with project management tools like JIRA or Asana is desired</li><li>Nice to have experience in designing or supporting automated evidence collection workflows for audits, control testing, or continuous compliance programs.</li></ul><p><strong>What&#8217;s in it for you</strong></p><ul><li>Work on a leading global tech product in the Legal Tech space, where security and compliance are critical.</li><li>Be part of a growing, international GRC team with a mandate to modernize and improve how security controls are designed, tested, and automated.</li><li>Gain exposure to multiple security frameworks and certifications (ISO, SOC 2, NIST).</li><li>The chance to shape and improve processes, not just execute them.</li></ul>&#160;<p><strong>Sounds interesting?&#160; Send us your CV by applying to this page</strong></p><br>&#160;<p><span style=\"font-size:10px\">The provision of personal data by you is fully voluntary and the basis for their processing is your consent. We have prepared some necessary information, you can find in document: <a href=\"http://www.sowelo.eu/candidates/personal-data-information/\">&#34;Information regarding the processing of your personal data&#34;</a>. There you will find how your Personal Data is being processed and what your rights are in connection to this.</span></p>\n\n<p><span style=\"font-size:10px\">The personal data will be processed by Sowelo Consulting spółka z ograniczoną odpowiedzialnością with its registered seat in Cracow (LLC) registered in National Court Register (KRS) under no. 0000671136, our <a href=\"http://www.sowelo.eu/about/team/\">Employees and Subcontractors</a> (jointly referred to as the Company).</span></p>\n\n<p><span style=\"font-size:10px\">Sowelo Consulting sp. z o.o. (LLC)</span><span style=\"font-size:10px\"> is entered in the register of employment agencies under the number: 35288</span></p>\n\n<p><span style=\"font-size:10px\"><span style=\"font-family:Arial,Helvetica,sans-serif\">Our candidate selection process relies entirely on human judgment. We explicitly avoid using automated screening algorithms or AI-driven scoring systems for any part of the assessment. Every single profile is reviewed personally by our experienced recruiters, ensuring a thorough and unbiased consideration of your fit.</span></span></p>\n\n<p><span style=\"font-size:10px\"><a href=\"https://sowelo.eu/services/it-recruitment-poland/\">IT Recruitment Poland</a> | Executive Search | Recruitment Process Outsourcing</span></p>\n\n<p> </p>",
    "description_text": "Do you enjoy combining security, risk, and compliance with practical, scalable solutions rather than pure “check-the-box” compliance?\n Do you enjoy cross-functional work with Security, Engineering, and IT?\n Great , please read on as we have the role for you!\n  We’re partnering with a fast-growing, international Legal Tech / SaaS company that builds a leading legal data intelligence platform used globally. Their Security organization is investing heavily in modern, technology-driven governance, risk & compliance (GRC) and is now looking for an Advanced Risk & Compliance Analyst to join the team in Poland.\n This is an opportunity to work in a security-focused environment, within an international team, where you’ll have a real impact on how security controls are designed, tested, and automated across a global SaaS product. You will be a member of the Governance, Risk & Compliance (GRC) team within the Security function. Your work will focus on the company’s global information security management program and control landscape.\n This is a fully remote B2B contract opportunity in Poland which will end at the end of 2026.\n Your Tasks Will Include:\n Control testing & second-line assurance:  Perform monthly control testing to validate that key security and IT controls are operating effectively.\n Conduct process and operational reviews against predefined test procedures.\n Support second-line audit-type activities, reviewing evidence and identifying gaps.\n Policy & procedure lifecycle: Coordinate and track annual reviews of policies, standards, and procedures.\n Work with stakeholders to update and improve documentation so it’s both audit-ready and useful to the business.\n Risk & compliance program support: Coordinate tracking of the information security management program, including: Control performance monitoring, Risk assessments,  Compliance-related activities and exceptions\n Maintain accurate control testing files and risk ratings for identified issues.\n Audit support: Prepare and organize evidence for internal and external audits.\n Support engagements aligned to frameworks such as ISO/IEC 27001/27018, NIST 800-53, and SOC 2.\n Work with auditors to explain controls, processes, and remediation actions.\n Automation & workflow improvement: Help develop and operationalize automated evidence collection processes integrated with control workflows and ticketing systems, reducing manual effort and audit friction.\n   To be a good fit for the GRC Specialist (Risk and Compliance) role, you will have:\n 2+ years of professional experience in Risk management, Internal audit (especially IT audit), Security/compliance or GRC roles\n Experience with ISO/IEC 27001/ 27018, SOC 2 knowledge is a plus\n Experience with external  and/or internal audit, control development, and control development and testing\n Experience within a SaaS environment or another higher regulated environment\n Experience with GRC tools such as Archer, ServiceNow, LogicGate or similar\n Clearly articulate risk and control concepts to both technical and non-technical stakeholders.\n Experience with project management tools like JIRA or Asana is desired\n Nice to have experience in designing or supporting automated evidence collection workflows for audits, control testing, or continuous compliance programs.\n What’s in it for you\n Work on a leading global tech product in the Legal Tech space, where security and compliance are critical.\n Be part of a growing, international GRC team with a mandate to modernize and improve how security controls are designed, tested, and automated.\n Gain exposure to multiple security frameworks and certifications (ISO, SOC 2, NIST).\n The chance to shape and improve processes, not just execute them.\n   Sounds interesting?  Send us your CV by applying to this page\n  The provision of personal data by you is fully voluntary and the basis for their processing is your consent. We have prepared some necessary information, you can find in document: \"Information regarding the processing of your personal data\" . There you will find how your Personal Data is being processed and what your rights are in connection to this.\n The personal data will be processed by Sowelo Consulting spółka z ograniczoną odpowiedzialnością with its registered seat in Cracow (LLC) registered in National Court Register (KRS) under no. 0000671136, our Employees and Subcontractors (jointly referred to as the Company).\n Sowelo Consulting sp. z o.o. (LLC) is entered in the register of employment agencies under the number: 35288\n Our candidate selection process relies entirely on human judgment. We explicitly avoid using automated screening algorithms or AI-driven scoring systems for any part of the assessment. Every single profile is reviewed personally by our experienced recruiters, ensuring a thorough and unbiased consideration of your fit.\n IT Recruitment Poland | Executive Search | Recruitment Process Outsourcing",
    "jsonld_jobposting": null
  },
  "list_job": {
    "id": "7YvASrUDUD",
    "title": "GRC Specialist (Risk and Compliance) - Fully Remote",
    "detailUrl": "https://soweloconsulting.applytojob.com/apply/jobs/details/7YvASrUDUD?&"
  },
  "detail_errors": []
}
Get this page with API

Rendered from the bluedoor Job Postings API. Reproduce it:

GET https://api.bluedoor.sh/job-postings/v1/jobs/ab47fe39718b9cbe1896314a89fc1422165d7eb7?include=descriptionJSON
GET https://api.bluedoor.sh/job-postings/v1/orgs/5b21896e-8d66-4d1e-966f-d2229c307b4fJSON
GET https://api.bluedoor.sh/job-postings/v1/sources/56c66432-d7cb-4ce7-bb22-d924a7ffba9eJSON
GET https://api.bluedoor.sh/job-postings/v1/jobs/ab47fe39718b9cbe1896314a89fc1422165d7eb7/eventsJSON