ICEYE
Staff GRC Engineer
Part remote, part office, you need to live within commuting distance of a named location.
Hybrid · Espoo
Employer listed it 7 weeks ago · Added yesterday
Been open since 7 weeks ago. Long-running listings are sometimes left up after the role is filled.
Salary
Not stated
Location
Hybrid · Espoo
Timezone
Not stated
Contract
Full-time
Experience
Lead
Category
Software
This employer didn't state pay. Jobs like this usually pay around $200k–$275k a year, a typical range taken from 596 lead-level software roles on Nomaders that do state pay. It's a guide, not an offer.
Remote flexibility
Hybrid
This role is only partly remote, the employer expects time in the office around Espoo, Hybrid, so you need to live within commuting distance.
What the employer says
- Source listing states candidate location: "Espoo, Hybrid"
- Listing mentions "Hybrid"
What Nomaders makes of it
- Not suitable if you plan to move between countries
The quotes above are the employer's own words; the reading is ours. Always check the original listing and employment terms before working from another country.
About the role
Role highlights:
Staff GRC Engineer
Location: Espoo, Finland
Department: Product Security
Reports to: VP Product Security
Employment type: Permanent
Workplace model: Hybrid
Employment is subject to applicable security screening (incl. SUPO, where required)
Why this role matters:
As the Staff GRC Engineer, you'll own and mature ICEYE's Security Governance, Risk and Compliance program across a multi-country, multi-regulator footprint, including Finland, Germany, Spain, Poland, the UK and Greece amongst others. ICEYE operates at the intersection of commercial space technology and sovereign defence, so our compliance posture (ISO 27001, NIS2, NIST, and national frameworks) has to be credible to customers who include governments and defence agencies. You'll be the person who keeps that posture accurate, current and audit-ready, maps client and national requirements to internal ICEYE requirements, as a senior individual contributor. This role will be working closely with all the ICEYE Security team domains, ICEYE IT, ICEYE product management and the Program Management Office, Engineering and Sales.
Who We Are
ICEYE is the world leader in sovereign intelligence from space. We deliver persistent monitoring capabilities to detect and respond to changes in any location on Earth.
ICEYE owns the world's largest and most advanced SAR (synthetic aperture radar) satellite constellation. To our customers we provide intelligence with unmatched quality, latency and revisit times, in any weather, day or night. To governments who choose to operate their own constellation we provide this proven capability as a sovereign system.
ICEYE-built constellations serve customers in defence and intelligence, environmental monitoring, insurance and emergency management. We enable fast decisions that contribute to a safer future.
Founded and headquartered in Finland, ICEYE operates globally with over 1000 employees across Europe, North America, the Middle East, and Asia-Pacific.
Your day-to-day responsibilities
Ensure clients’ and their national security requirements are at all times clearly translated accurately to ICEYE internal requirements across product, IT, and other ICEYE functions.
Ensure ICEYE has evidence of fulfilling and complying with the requirements, preferably as compliance-as-code whenever possible.
Support ICEYE’s Product, the Missions business line, PMO and Sales on client requirements. Produce material to support accreditation and acceptance requirements.
Own and continuously improve ICEYE's ISO 27001 ISMS, including risk assessments, the risk register, Statement of Applicability, internal audits and certification/surveillance audit cycles.
Track and operationalise NIS2, CRA and other EU product security obligations across ICEYE's in-scope entities, translating regulatory requirements into concrete policies, controls and evidence.
Run third-party and vendor security risk assessments.
Prepare clear, concise compliance and risk reporting for senior leadership, including status against certifications, audits and remediation plans.
Own and maintain information security policies, standards and supporting documentation, ensuring they stay practical and enforceable rather than shelfware.
Requirements
- ·Application Process
- ·Initial screening call with Talent Acquisition
- ·Technical/competency interview with the VP Product Security
- ·Scenario-based exercise on requirements discovery, mapping and prioritisation
- ·Final interview with senior stakeholders including a behavioural interview
Benefits
- ·Our Commitment to Diversity, Equity, and Inclusion
- ·We’re committed to fair, inclusive hiring and equal opportunity. Everyone is welcome to apply. If you need any adjustments or support during the recruitment process, tell us—we’ll do our best to help.
- ·Apply now to start your ICEYE journey, and help us continue to make the impossible possible together. Read more about ICEYE and working with us at iceye.com .
How to apply
- 1Check the flexibility label above, hybrid, matches where you plan to live and work.
- 2Tailor your CV to the role at ICEYE, mentioning your remote working experience.
- 3Apply directly on the employer's careers page using the button below. Nomaders never handles your application.
Found 2d ago. Last checked today. Always confirm the details on the original posting, salary and location can change after publication.
Listing sourced from Company boards.
Similar roles
Other open software roles with comparable remote rules.
Free to apply, no account needed.
Typically $200k–$275k · You'll be taken to the employer's careers page.