Security Compliance Lead (JCP)
Quick Summary
Design, implement, and mature the compliance program for JCP, focusing initially on SOC 2 (Type 1 and Type 2) and ISO standards (such as ISO 27001, 27017, 27018, and 42001).
You care about building trust without clogging up engineering workflows, and you know how to translate complex compliance frameworks into practical controls that developers actually use. If you want to shape the SOC 2 and ISO security posture at JetBrains while working directly with customers, this is for you.
We create intelligent software development tools for developers and teams. More than 15 million users, over 300,000 companies, and 88 of the Fortune Global Top 100 rely on our products to solve real, complex problems. Our mission is simple: make development teams more productive and AI adoptable at scale.
Responsibilities
~2 min readAs JetBrains expands its cloud and SaaS offerings, maintaining customer trust and robust security compliance is critical. We are investing in the security posture and compliance program for JetBrains Cloud Platform (JCP), a new JetBrains offering, moving beyond checklist-driven security to build practical, real-world controls.
In this role, you will take ownership of our compliance program from design to execution, focusing on SOC 2 and ISO standards. You’ll sit at the intersection of product security, platform engineering, legal, and customer-facing teams. Rather than imposing rigid bureaucracy, you’ll help design workflows that protect user data while keeping development teams fast and autonomous. You’ll also serve as a key technical voice on compliance matters, speaking directly with customers to explain our security architecture and build trust.
Day to day, you will:
- →Design, implement, and mature the compliance program for JCP, focusing initially on SOC 2 (Type 1 and Type 2) and ISO standards (such as ISO 27001, 27017, 27018, and 42001).
- →Translate complex framework requirements into clear, practical controls that fit how JetBrains builds products.
- →Partner with product security, platform engineering, legal, and people teams to embed security and compliance requirements into day-to-day work (policies, procedures, onboarding, training, SDLC, vendor management, etc.).
- →Coordinate evidence collection, control testing, and remediation for internal reviews and external audits.
- →Maintain and improve core compliance documentation, including policies, standards, control catalogs, risk registers, and playbooks.
- →Respond to customer security questionnaires, participate in due diligence calls, and collaborate with account teams to handle non-standard compliance requests.
- →Monitor changes in relevant standards and regulations and help keep our program aligned with them.
- A practical mindset that values clear systems and real outcomes over rigid checklists.
- A clear, structured communication style that makes technical security concepts accessible to any audience.
- A detail-oriented approach with the curiosity to navigate both policy text and technical architecture.
- Calmness and confidence when guiding customers through security due diligence.
- Established hands-on experience building and maturing compliance programs around SOC 2 and ISO security standards.
- Experience managing security compliance in SaaS or cloud environments (such as AWS, GCP, or Azure).
- Practical experience across core security and compliance domains, including access management, logging, secure development, vendor risk, and business continuity.
- A track record of collaborating effectively with technical teams (engineering, SRE, product security, etc.) and turning framework language into concrete, realistic requirements.
- Direct experience answering customer security questionnaires and leading customer-facing compliance discussions.
- Strong English communication skills, both written and spoken.
- Experience with other frameworks and regulations relevant to SaaS, such as FedRAMP, ISMAP, or others.
- Experience working inside or closely with product security, cloud security, or risk management teams.
- Familiarity with security and compliance tooling (such as GRC platforms, ticketing systems, policy and evidence repositories, asset and identity management tools).
- Prior experience in a fast-growing or multi-product environment where processes and ownership boundaries are evolving.
Success in this role means establishing a clear, reliable compliance foundation for JetBrains Cloud Platform that strengthens customer trust and respects engineering autonomy. You’ll know you’re succeeding when compliance controls feel like a natural part of product development, external audits run smoothly without last-minute scrambles, and customer security calls build lasting confidence in our platform.
What We Offer
~2 min readLocation & Eligibility
Listing Details
- Posted
- September 1, 2026
- First seen
- September 1, 2026
- Last seen
- September 2, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 76%
- Scored at
- September 1, 2026
Signal breakdown
Please let Jetbrains know you found this job on Jobera.
3 other jobs at Jetbrains
View all →Explore open roles at Jetbrains.
Similar Compliance Lead jobs
View all →Browse Similar Jobs
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.
