Head of Information Security & Compliance

C&D Talent Advisory WARSAW 2026-08-24

Hiring via TechTree

This is a role that TechTree is recruiting for on behalf of one of its clients.

TechTree is an AI-driven recruitment platform working with high-growth companies.

When you apply, TechTree's AI Agent matches you not just to this role, but to other relevant opportunities across its network, so one application can unlock multiple roles.

Head of Information Security & Compliance | Warsaw / Kraków

TechTree's client is hiring a Head of Information Security & Compliance to build and mature the security and compliance programme of a fast-growing international B2B SaaS group.

This is a senior, hands-on role for a pragmatic security leader who can own certifications, audits, GDPR, customer assurance, incident response, and group-wide security standards without adding unnecessary bureaucracy.

  • Locations: Warsaw or Kraków, Poland
  • Work model: Hybrid — typically 2–3 days/week in office
  • Employment: Full-time
  • Estimated compensation: €80,000–€120,000 annually
  • Level: Director / Head of

What you'll own

  • Lead ISO 27001 and Cyber Essentials Plus across multiple entities
  • Own the ISMS, policies, controls, evidence, audits, and recertification cycles
  • Integrate newly acquired businesses into a consistent security framework
  • Manage GDPR compliance across multiple European jurisdictions
  • Own customer security assurance, questionnaires, due diligence, and security terms
  • Join customer conversations where security is critical to closing deals
  • Lead incident response, post-mortems, and remediation
  • Own business continuity and disaster recovery standards and testing
  • Set security baselines for endpoints and internal business systems
  • Maintain the risk register, access reviews, and control-testing programme
  • Manage external security vendors, penetration testers, MSPs, and cyber-insurance relationships
  • Report security posture and risk directly to executive stakeholders

What we're looking for

  • Experience as the most senior information security / compliance leader in a B2B SaaS environment
  • Proven ability to operate as a hands-on individual contributor
  • Experience taking ISO 27001 through a full audit cycle
  • Strong practical GDPR experience across multiple jurisdictions
  • Experience building or maturing security programmes in fast-scaling organisations
  • Commercial mindset and confidence working with customers, auditors, and executives
  • CISSP, CISM, or equivalent certification
  • Strong professional English

Strong advantages

  • Experience in scaling SaaS businesses
  • Cyber Essentials Plus experience
  • Security integration following M&A or acquisitions
  • Experience across multi-entity organisations
  • Professional Polish
  • Customer-facing security and enterprise deal-support experience

Why consider this opportunity?

  • Own the security function for an international SaaS group
  • Build the programme rather than inherit a mature structure
  • Direct access to executive leadership
  • High visibility across compliance, customers, and commercial operations
  • Significant autonomy and ownership
  • Hybrid flexibility in Warsaw or Kraków
  • Private healthcare, sport card, life insurance, and annual training budget

If this sounds like a fit, we'd love to hear from you. Apply today!