368,657open jobs
9,442companies
50,883added this week
Browse all
Location
Remote/Hybrid (Espoo, Finland)
Employment
Full-Time
Overview
Company
Impact
Profile match
ICEYE is a Finnish aerospace manufacturer and Earth observation company that operates the world's largest commercial constellation of Synthetic Aperture Radar (SAR) satellites. Founded in 2014, the firm specializes in micro-satellites capable of capturing high-resolution radar imagery through clouds, dense smoke, and total darkness. Its persistent monitoring platform serves global government, defense, and commercial sectors, enabling near-real-time decision-making for disaster response, maritime domain awareness, and security intelligence.

Role highlights:

  • Information Security Officer - Governance, Risk & Compliance

  • Location: Espoo, Finland

  • Department: Security, Architecture & Governance

  • Reports to: VP Security

  • Employment type: Permanent

  • Workplace model: Hybrid

  • Employment is subject to applicable security screening (incl. SUPO, where required)

Why this role matters:

As an Information Security Officer, you'll own and mature ICEYE's Security Governance, Risk and Compliance program across a multi-country, multi-regulator footprint, including Finland, Germany, Spain, Poland, the UK and Greece amongst others. ICEYE operates at the intersection of commercial space technology and sovereign defence, so our compliance posture (ISO 27001, NIS2, NIST, CRA and related frameworks) has to be credible to customers who include governments and defence agencies. You'll be the person who keeps that posture accurate, current and audit-ready, working closely with the VP Security, security architecture, legal and engineering teams, as a senior individual contributor.

Who We Are

ICEYE is the world leader in sovereign intelligence from space. We deliver persistent monitoring capabilities to detect and respond to changes in any location on Earth.

ICEYE owns the world's largest and most advanced SAR (synthetic aperture radar) satellite constellation. To our customers we provide intelligence with unmatched quality, latency and revisit times, in any weather, day or night. To governments who choose to operate their own constellation we provide this proven capability as a sovereign system.

ICEYE-built constellations serve customers in defence and intelligence, environmental monitoring, insurance and emergency management. We enable fast decisions that contribute to a safer future.

Founded and headquartered in Finland, ICEYE operates globally with over 1000 employees across Europe, North America, the Middle East, and Asia-Pacific.

Your day-to-day responsibilities

  • Own and continuously improve ICEYE's ISO 27001 ISMS, including risk assessments, the risk register, Statement of Applicability, internal audits and certification/surveillance audit cycles.

  • Track and operationalise NIS2 obligations across ICEYE's in-scope entities, translating regulatory requirements into concrete policies, controls and evidence.

  • Assess the Cyber Resilience Act (CRA) and other emerging EU product-security regulation against ICEYE's products, and work with the relevant teams to close gaps ahead of enforcement deadlines.

  • Maintain a cross-jurisdiction compliance view (NIST, ISO 27001, NIS2, CRA, and national frameworks in Finland, Germany, Spain, Poland, the UK and Greece), keeping crosswalks and control mappings current as regulation evolves.

  • Run third-party and vendor security risk assessments, and support client/customer due diligence and security questionnaires.

  • Prepare clear, concise compliance and risk reporting for senior leadership, including status against certifications, audits and remediation plans.

  • Own and maintain information security policies, standards and supporting documentation, ensuring they stay practical and enforceable rather than shelfware.

  • Act as a day-to-day point of contact for external auditors, certification bodies and regulators on GRC matters.

What we’re looking for

Must haves:

  • Proven hands-on experience running ISO 27001 (implementation, internal audit, or certification maintenance) in a real organisation, not just theoretical knowledge.

  • Working knowledge of NIS2 and how its obligations translate into practical controls and reporting.

  • Familiarity with NIST frameworks (e.g. NIST CSF, 800-53) and how they map to ISO 27001 and other standards.

  • Awareness of the Cyber Resilience Act (CRA) and its implications for products with digital elements.

  • Experience building or maintaining a risk register and running structured risk assessments.

  • Strong stakeholder management skills, with the ability to influence engineering, legal and leadership without formal authority.

  • Comfortable operating independently across multiple countries and regulatory regimes.

  • A relevant certification such as CISSP, CISM, CRISC, ISO 27001 Lead Implementer or Lead Auditor.

  • Awareness of emerging AI governance frameworks (ISO 42001, NIST AI Risk Management Framework, EU AI Act).

Nice to haves:

  • Experience in defence, space, aerospace or another regulated/sovereign-sensitive industry.

  • Exposure to classified information handling frameworks (EUCI, NATO equivalents, or national security clearance regimes).

  • Familiarity with GRC tooling (e.g. ServiceNow GRC, OneTrust, Vanta, or similar).

Application Process

  • Application review

  • Initial screening call with Talent Acquisition

  • Technical/competency interview with the VP Security

  • Scenario-based exercise on GRC prioritisation

  • Final interview with senior Stakeholders

Working at ICEYE

At ICEYE, you’ll join a diverse and highly engaged team united by the ambition to make the impossible possible. As a global scale-up, we combine speed and ambition with the opportunity to take real ownership from day one. Your growth, wellbeing, and success are a priority, with continuous professional development, training opportunities, and a culture where collaboration is how we win.

How We Work (Our Values)

Make the impossible possible: We set ambitious goals and stay calm under pressure. We bring grit, optimism, and ownership when things get hard, and we keep moving until we find a way.

  • Be curious: Go deep, ask questions, listen carefully, and think critically. Understand the “why” behind decisions.

  • See the big picture: Stay close to what’s happening across the company so you can make better decisions. Consider how your work affects others.

  • Drive effective teamwork: Create psychological safety, invite different perspectives, and build inclusive teams. There are no bad questions.

  • Act as one team: We win together. We match tasks to the right owner and stay agile as priorities shift.

  • Have fun: What we do matters-and it should be enjoyable. Celebrate progress, take pride in results, and share the wins.

Benefits

Our benefits are designed to support your health and wellbeing, at work and beyond. We keep improving them based on employee feedback, and offerings vary by location. Talent Acquisition will confirm what applies for this role and location during the process.

Our Commitment to Diversity, Equity, and Inclusion

We want ICEYE to be a place where people can be themselves and do great work. Different backgrounds and perspectives make us stronger, which is why we work to create an environment where people feel included, respected, and able to speak up. Whatever your background, we want you to bring your authentic self to the table.

We’re committed to fair, inclusive hiring and equal opportunity. Everyone is welcome to apply. If you need any adjustments or support during the recruitment process, tell us-we’ll do our best to help.

Apply now to start your ICEYE journey, and help us continue to make the impossible possible together. Read more about ICEYE and working with us at iceye.com.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,657 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Espoo
$149k – $319k per year (Estimated) • Remote/Hybrid • Full-Time • 7+ years exp • Boston
AI/ML
ISO 42001
DevOps
IAM
Cybersecurity
GDPR
ISO 27001
SOC 2
Least Privilege
Apply
Cloud Engineer 3 days ago
$66k – $179k per year (Estimated) • Remote • 3+ years exp • Bachelor's Degree
PowerShell
Python
AI/ML
Claude
Claude Code
Copilot
DevOps
AWS
Azure
CI/CD
Datadog
GCP
Git
GitHub Actions
Prometheus
Terraform
Amazon CloudWatch
GitHub
IAM
Cybersecurity
BeyondTrust
FedRAMP
ISO 27001
NIST CSF
SOC 2
Apply
$42k – $104k per year (Estimated) • In office • Internship • 5+ years exp
Bash
PowerShell
Python
DevOps
Amazon EC2
Amazon EKS
Ansible
AWS
AWS Lambda
Azure
CentOS Stream
Chef
CI/CD
CloudFormation
Configuration Management
Datadog
FinOps
GCP
Git
GitHub Actions
GitLab CI
Grafana
Hyper-V
Istio
Jenkins
Kubernetes
KVM
Linkerd
Platform Engineering
Prometheus
Puppet
Service Mesh
Splunk
Terraform
Ubuntu
VMWare
Windows Server
Amazon CloudWatch
Amazon ECS
Amazon S3
API Gateway
AWS Step Functions
GitHub
GitLab
IAM
Cybersecurity
GDPR
ISO 27001
SOC 2
Apply
In office • Full-Time • Bucharest
Assembly
DevOps
Akamai
Incident Management
Cybersecurity
ISO 27001
Wireshark
Management
ServiceNow
Apply
$67k – $173k per year (Estimated) • In office • Contractor • 3+ years exp • Bachelor's Degree • Singapore
JavaScript
Python
DevOps
AWS
Azure
GCP
Cybersecurity
ISO 27001
OWASP Top 10
Apply
$59k – $101k per year (Estimated) • Remote/Hybrid • Full-Time • Warsaw
Apply
In office • Full-Time • 5+ years exp • Bachelor's Degree • Athens
Python
Management
Jira
Apply
$36k – $90k per year (Estimated) • In office • Full-Time • 1+ year exp • Valencia
Management
Confluence
Jira
Apply
In office • Full-Time • Bachelor's Degree • Espoo
Apply
$57k – $159k per year (Estimated) • In office • Full-Time • 3+ years exp • Munich • Berlin • Neuss
Python
Rust
TypeScript
AI/ML
AI Agents
LangChain
LangGraph
Model Context Protocol
Prompt Engineering
Pydantic AI
RAG
Scale AI
DevOps
Ansible
CI/CD
Docker
Kubernetes
Terraform
SpaceTech
QGIS
Apply
In office • Full-Time • 3+ years exp • PhD • Espoo
Apex
JavaScript
Python
TypeScript
Databases
Databricks
Google BigQuery
Snowflake
AI/ML
AI Agents
Claude
Cursor
LangChain
LlamaIndex
LLM
Prompt Engineering
Marketing
Salesforce
Apply
In office • Full-Time • 3+ years exp • Bachelor's Degree • Espoo
Apply
Apply
In office • Full-Time • Espoo
JavaScript
Frontend
React.js
Apply
Remote/Hybrid • Full-Time • Espoo
JavaScript
Kotlin
Node JS
SQL
TypeScript
Frontend
Angular
Next.js
React.js
DevOps
AWS
Azure
CI/CD
Docker
GCP
Kubernetes
GitHub
GitLab
Apply
See all jobs
This is one of many
368,657 more open roles from verified company boards, updated every day.