Stop applying to remote jobs that are already dead.
Every listing checked, aged honestly, expired when filled.

All listings

Mend.io via Ashby

Security Operations Lead

Poland lead
still open verified 1d ago posted 1d ago seen 1h ago
Apply at jobs.ashbyhq.com

This is the employer's own posting, not a copy on a job board.

What we know

Is it still open?

Confirmed still open

Last checked 1d ago — checked against the employer's own applicant tracking system, which is the company answering directly.

We re-read the employer's own applicant tracking system and the posting was still there. That is the company answering directly.

Check this listing's status as JSON

How old is it?

Posted 1d ago

The date the source published, not the day we noticed it (2026-09-30). Last seen at its source 1h ago.

We have tracked this listing since 30 Sep 2026 (1 days). The employer's own board has carried it every time we have read it, most recently 1 hour ago.

Is it remote?

Marked remote on the employer's board

Their board carries a remote setting on this posting — a field they filled in, not wording we read. The location field names somewhere specific, which is usually where the team or the entity sits.

Who may apply?

Poland

The description states no restriction of its own. This is the source's own tag.

Pay not stated

Similar roles pay $99.2k–195k/yr

Middle 50% of 35 listings that do state pay — Operations · all levels · Eastern Europe · USD/year. This employer has published no salary; this is what comparable listings we hold disclose, never converted between currencies or periods. How this is calculated.

Skills named in the ad

Cross-functional CollaborationISO 27001Incident ManagementSIEMSOC 2Vulnerability Management

Recognised terms only, from a fixed vocabulary — this is what CV matching compares against.

Carried by 1 source

The listing

Why Mend.io

We are redefining how modern organizations secure software from open source and custom code to AI-generated components. As the creators of the first AI Native AppSec Platform, we help global enterprises stay safe, fast, and compliant in an era of AI-driven development. Our platform combines intelligent automation, deep risk visibility, and developer-first experiences, shaping the future of application security.

We are also committed to building a collaborative, empowering workplace. If you are excited about this role but do not meet every requirement, we encourage you to apply. Your perspective could be exactly what we need!

Mend is looking for a hands-on Security Operations Lead to drive security operations across our cloud infrastructure, product, compliance, and customer-facing activities.

You will work closely with Engineering, Product, IT, Sales, Legal, and company leadership to identify risks, improve controls, respond to security issues, and strengthen Mend’s overall security posture.

Responsibilities

  • Assess security risks across Mend’s product and cloud infrastructure and drive a prioritized improvement plan.

  • Own day-to-day cloud and infrastructure security operations, including SIEM/SOC monitoring, WAF, CSPM, access reviews, encryption, and secrets management.

  • Lead vulnerability management, including Mend’s HackerOne bug bounty program and remediation coordination with Engineering.

  • Lead security incident response and support disaster recovery planning and testing.

  • Support customer-facing security activities, including questionnaires, RFPs, and technical security discussions during sales cycles.

  • Drive audit and certification activities, including SOC 2 and ISO 27001/27701/27017, and maintain compliance controls and evidence through Drata.

  • Manage third-party security assessments and support security and AI governance.

  • Serve as a key internal security advisor for teams across the company.

  • Own and improve security tooling, automation, and operational processes.

What We’re Looking For

  • Strong experience in Security Operations, Cloud Security, Product Security, or a similar role.

  • Hands-on experience with cloud security technologies, vulnerability management, incident response, SIEM, WAF, CSPM, and IAM.

  • Experience working closely with Engineering and Product teams.

  • Familiarity with SOC 2, ISO 27001, and security compliance frameworks.

  • Strong analytical, communication, and cross-functional collaboration skills.

  • A practical, hands-on approach with the ability to balance security risk and business needs.

Our Culture

At Mend.io, we are leading the way in securing AI-powered applications, and we believe the best innovations come from teams where everyone feels valued. We are committed to a workplace built on respect, trust, and growth, where learning and flexibility empower people to do their best work.

Apply at jobs.ashbyhq.com