Back to jobs
New

Security Compliance Lead (JCP)

Amsterdam, Netherlands; Berlin, Germany; Munich, Germany; Remote, Germany

You care about building trust without clogging up engineering workflows, and you know how to translate complex compliance frameworks into practical controls that developers actually use. If you want to shape the SOC 2 and ISO security posture at JetBrains while working directly with customers, this is for you.

About JetBrains 

We create intelligent software development tools for developers and teams. More than 15 million users, over 300,000 companies, and 88 of the Fortune Global Top 100 rely on our products to solve real, complex problems. Our mission is simple: make development teams more productive and AI adoptable at scale.

What you’ll do 

As JetBrains expands its cloud and SaaS offerings, maintaining customer trust and robust security compliance is critical. We are investing in the security posture and compliance program for JetBrains Cloud Platform (JCP), a new JetBrains offering, moving beyond checklist-driven security to build practical, real-world controls.

In this role, you will take ownership of our compliance program from design to execution, focusing on SOC 2 and ISO standards. You’ll sit at the intersection of product security, platform engineering, legal, and customer-facing teams. Rather than imposing rigid bureaucracy, you’ll help design workflows that protect user data while keeping development teams fast and autonomous. You’ll also serve as a key technical voice on compliance matters, speaking directly with customers to explain our security architecture and build trust.

Day to day, you will:

  • Design, implement, and mature the compliance program for JCP, focusing initially on SOC 2 (Type 1 and Type 2) and ISO standards (such as ISO 27001, 27017, 27018, and 42001).
  • Translate complex framework requirements into clear, practical controls that fit how JetBrains builds products.
  • Partner with product security, platform engineering, legal, and people teams to embed security and compliance requirements into day-to-day work (policies, procedures, onboarding, training, SDLC, vendor management, etc.).
  • Coordinate evidence collection, control testing, and remediation for internal reviews and external audits.
  • Maintain and improve core compliance documentation, including policies, standards, control catalogs, risk registers, and playbooks.
  • Respond to customer security questionnaires, participate in due diligence calls, and collaborate with account teams to handle non-standard compliance requests.
  • Monitor changes in relevant standards and regulations and help keep our program aligned with them.

What you’ll bring

  • A practical mindset that values clear systems and real outcomes over rigid checklists.
  • A clear, structured communication style that makes technical security concepts accessible to any audience.
  • A detail-oriented approach with the curiosity to navigate both policy text and technical architecture.
  • Calmness and confidence when guiding customers through security due diligence.

What you’ll need

  • Established hands-on experience building and maturing compliance programs around SOC 2 and ISO security standards.
  • Experience managing security compliance in SaaS or cloud environments (such as AWS, GCP, or Azure).
  • Practical experience across core security and compliance domains, including access management, logging, secure development, vendor risk, and business continuity.
  • A track record of collaborating effectively with technical teams (engineering, SRE, product security, etc.) and turning framework language into concrete, realistic requirements.
  • Direct experience answering customer security questionnaires and leading customer-facing compliance discussions.
  • Strong English communication skills, both written and spoken.

It would be great if you also have:

  • Experience with other frameworks and regulations relevant to SaaS, such as FedRAMP, ISMAP, or others.
  • Experience working inside or closely with product security, cloud security, or risk management teams.
  • Familiarity with security and compliance tooling (such as GRC platforms, ticketing systems, policy and evidence repositories, asset and identity management tools).
  • Prior experience in a fast-growing or multi-product environment where processes and ownership boundaries are evolving.

What success looks like 

Success in this role means establishing a clear, reliable compliance foundation for JetBrains Cloud Platform that strengthens customer trust and respects engineering autonomy. You’ll know you’re succeeding when compliance controls feel like a natural part of product development, external audits run smoothly without last-minute scrambles, and customer security calls build lasting confidence in our platform.


Why join JetBrains? 

  • Strong base salary. We offer competitive pay that reflects your skills and experience.
  • Flexible work location. Enjoy the freedom to work from home or from the office.
  • Remote work. Spend up to 30 days per year working remotely from abroad.
  • Extra time off. More days to relax, recharge, and do the things you love.
  • Medical insurance allowance. Enjoy peace of mind for you and your family
  • Learning and development opportunities. Access to conferences, courses, and language classes.
  • Relocation support. We help make your move as smooth and stress-free as possible. 
  • Language classes. Pick up the local language or sharpen your English skills.
  • Fuel your day. Enjoy a hot meal or receive a lunch allowance on workdays.
  • Mental health support. To help you feel your best, we provide easy access to professional mental health services.
  • Sports benefit. Enjoy an on-site gym or sports club stipend.
  • Internal events. Join company-wide celebrations and team gatherings.

*Some benefits may vary depending on location.

#LI-HYBRID 
#LI-EP1 

We are an equal opportunity employer

We know great ideas can come from anyone, anywhere. That’s why we do our best to create an open and inclusive workplace – one that welcomes everyone regardless of their background, identity, religion, age, accessibility needs, or orientation.

We process the data provided in your job application in accordance with the Recruitment Privacy Policy.

Apply for this job

*

indicates a required field

Phone
Resume/CV*

Accepted file types: pdf, doc, docx, txt, rtf

Cover Letter

Accepted file types: pdf, doc, docx, txt, rtf


Select...
Which is your preferred location for this role? *

A lot of teams at JetBrains are distributed across our core locations. If you are not based in one of the locations above, we’d be happy to talk through relocation possibilities with you.