GRC Security Analyst - Information Security

appfire· Information Security
Apply Now ↗
📍 Poland

About this role

At Appfire, we believe that great work happens when people get to choose how they work. After 20 years of creating software that empowers teams to break silos and collaborate seamlessly, we've learned that one size does not fit all. We’re a team of 800+ employees, working remotely across 28 countries. Our flagship products include: JXL, Comala Document Management, 7Pace Time Tracker, Jira Misc Workflow Extensions, and BigPicture.

Here you can read some of our customer stories: https://appfire.com/resources/resource-library/customer-stories

About the role

We are Appfire, the largest global provider of award-winning Atlassian apps! Our portfolio of trusted product brands includes more than 200+ purpose-built apps loved by thousands of teams and millions of users worldwide.

Amplified by our partnership and strategic investment from private equity powerhouse Silversmith Capital Partners, a recent surge of marquee brand acquisitions, and an additional $100M investment from TA Associates, Appfire is uniquely poised to accelerate our leadership position within the billion-dollar Atlassian app market.

Come be a part of our Appfire family for this amazing journey! Learn more at appfire.com.

Job Purpose & Overview

Do you have a strong understanding of information security GRC operations? Have you built lasting relationships with business owners and vendors? Appfire, the leading provider of Atlassian apps, is looking for a creative problem-solver and a self-starter to join our Information Security team. The GRC Security Analyst will handle diverse security-related tasks and issues for our rapidly growing company, including managing risk through a shared vision with Appfire’s business leaders.

You’ll work within the GRC department managing diverse governance, risk and compliance security-related tasks and issues for our rapidly growing company, with a focus on people, practices, systems, and metrics. You’ll be asked to keep up with the latest industry requirements and will assist in the identification of security risks and the associated execution of remediation and corrective action plans, ensuring we are following up with those steps previously agreed upon by the business. Additionally, you’ll participate in regular vendor reviews and ensure compliance with Appfire policy, as well as provide ISO 27001 and other audit support. 

If you’re a highly organized, detail-oriented expert communicator, let’s chat! 

You will be expected to engage in professional development to maintain continual growth in professional skills and knowledge essential to the position and thrive in a highly collaborative workplace. 

Lists (Requirements & Responsibilities)

  • Work on the coordination and facilitation of Appfire’s security governance goals and initiatives
  • Support our sales channels regarding prospect and customer security questions, assessments, and audits, including speaking to technical controls and their alternatives and appropriate risk mitigation.
  • Conduct assessments related to vendor risk management and following up on associated findings.
  • Provide support for regulatory and compliance initiatives (e.g. ISO 27001, SOC2, GDPR, etc.). 
  • Identify, document, and track information security policy related non-conformities and assist in developing and monitoring corrective action plans.
  • Assist in identifying & tracking information security risks, assessing impact, and tracking the execution of mitigation plans.
  • Assist in tracking information security risk acceptances and exceptions and monitoring the execution of remediation plans.
  • Track and ensure adequate and timely resolution to all audit and risk assessment findings/issues relating to information security.
  • Assist in the monitoring of business continuity (BC) and disaster recovery (DR) testing.
  • Perform periodic compliance checks across the Appfire organization.
  • Provide support for the coordination and execution of integration plans for Appfire acquisitions.
  • Support the annual review and update of information security related policies and processes.
  • Participate in and support annual security awareness campaigns.
  • Handle sensitive and/or confidential material and information with suitable discretion.

About You:

  • Bachelor’s Degree in Computer Science, Information Security, Engineering, related curriculum, or equivalent experience.
  • 2+ years of experience working in information security risk and/or compliance roles.
  • Knowledge of common Information Security frameworks such as CIS, ISO 27001 & SOC 2.
  • Prior experience with cloud-based security tools, technologies, and controls a plus (e.g, Amazon AWS, Azure, Heroku, GCP)
  • Ability to work effectively within a fast paced, changing environment that is going through high growth.
  • A self-starter with the demonstrated ability to take initiative, who can proactively identify issues/opportunities and recommend actions.
  • Creative problem solving required
  • Excellent interpersonal and communication skills
  • CISA, CISSP or similar security/GRC focused certifications a plus.

Benefits & Perks 

Equity

Every Appfire team member is eligible for company equity, fostering a true sense of ownership and connection to our growth.

Time Off & Wellbeing

  • 26 paid vacation days annually, regardless of tenure
  • 12 Wellness Days — one fully paid day off each month to recharge, available on an ad-hoc basis and not carried over month to month
  • 24 hours of paid volunteer time to support meaningful causes outside of work
  • 3 fully paid volunteering days each year through Appfire Town, our Corporate Social Responsibility (CSR) program supporting local communities

Learning & Development

Grow with Appfire University — our custom, on-demand learning platform designed to support continuous learning and professional development.

Health & Insurance

  • Fully covered Luxmed private healthcare plan
  • Option to extend coverage to your partner or add personalized upgrades
  • UNUM life insurance, fully paid by Appfire

Lifestyle & Benefits

  • MyBenefit Platform with 150 PLN per month to spend on:
    • a Multisport card
    • shopping
    • restaurants
    • entertainment experiences
  • Lunch Card with 300 PLN monthly for groceries or dining out via a virtual prepaid Pluxee card (Google Pay or Apple Wallet supported)

Remote Work Support

Receive 200 PLN net per month as a home office allowance to help cover electricity and internet costs while working remotely.

Market recognition

Appfire has been consistently recognized for company growth, culture, corporate social responsibility, and product excellence and has been included among the Deloitte Technology Fast 500, Inc. Best Workplaces, BuiltIn Best Places to Work, and Inc. 5000. Learn more about our accomplishments, which would not be possible without our team members, partners, and customers: https://appfire.com/awards.

Equal Employer Opportunity (EEO)  

Appfire is an equal opportunity employer and does not discriminate based on race, color, religion, sex (including pregnancy), sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, veteran status, or any other protected characteristic as defined by applicable law. Our commitment extends to all employment practices, including recruitment, hiring, training, promotion, compensation, benefits, and termination.

Frequently Asked Questions

Is the salary disclosed for the GRC Security Analyst - Information Security position at appfire?
The salary for this GRC Security Analyst - Information Security role at appfire is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the GRC Security Analyst - Information Security position at appfire located?
This GRC Security Analyst - Information Security role at appfire is based in Poland. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Which team or department does the GRC Security Analyst - Information Security at appfire belong to?
This GRC Security Analyst - Information Security position is part of the Information Security department at appfire. See the full job description for more information about the team structure and responsibilities.
How do I apply for the GRC Security Analyst - Information Security position at appfire?
Click the "Apply Now" button on this page. You will be redirected to appfire's official application portal hosted on greenhouse where you can submit your application directly.
When was the GRC Security Analyst - Information Security job at appfire posted?
This GRC Security Analyst - Information Security position at appfire was posted on Sep 28, 2026. Apply as soon as possible — early applications are often reviewed first.
GRC Security Analyst - Information Security
appfire
Apply for this role ↗

You'll be redirected to appfire's official application page on Greenhouse.