Why This Job is Featured on The SaaS Jobs
This Information Security Lead role stands out in SaaS because it sits at the intersection of cloud trust and customer due diligence. For a platform serving thousands of customers across multiple countries, security governance is not a back office function but a core enabler of enterprise adoption, renewals, and regulated deployments. The remit spans the control frameworks that SaaS buyers routinely scrutinise, including ISO 27001, SOC 2, and PCI, alongside vendor assurance that reflects how modern SaaS products are assembled from third party services.
From a long-term SaaS career perspective, the position builds durable capability in running an audit-ready ISMS and translating security requirements into operational routines. Experience coordinating risk registers, remediation tracking, and customer security questionnaires is highly portable across B2B SaaS, particularly where procurement cycles demand evidence, not assurances. Exposure to AI governance considerations also signals relevance as SaaS teams formalise how new tooling is assessed and controlled.
This role is best suited to a security professional who prefers structured ownership, documentation discipline, and cross-functional coordination with IT and business stakeholders. It will fit someone comfortable representing security externally to auditors and customers while maintaining internal governance cadence in a hybrid, onsite-led setup.
The section above is editorial commentary from The SaaS Jobs, provided to help SaaS professionals understand the role in a broader industry context.
Job Description
Sustainability that means business
Who We Are
Sustainability software specialist, AMCS, is headquartered in Ireland, with offices in Europe, the USA, and Australasia. With over 1,300 highly-skilled employees across 22 countries, we specialize in delivering technology solutions to facilitate a carbon neutral future.
What We Do
Our innovative SaaS solutions increase efficiency and boost sustainability in resource-intensive industries. Over 5,000 customers across 23 countries already benefit from our Performance Sustainability software, ensuring we deliver practical solutions for improved profitability and environmental resilience across the globe.
Our People
AMCS offers team members more than just a job, but an opportunity to map out a career with a company that is growing, evolving and setting out new ways of working that are having a positive impact on the world around us. AMCS was established in Ireland and holds onto those local roots and ‘start-up’ mentality with a culture of connection. Connection to our work, our customers, our colleagues and our community that creates a working environment that fosters openness, collaboration and creativity.
Information Security Lead - This is a hybrid role requiring minimum 3 days per week onsite at our Limerick HQ
Role Overview
The Information Security Lead oversees the governance, development, and continuous improvement of the Information Security Management System (ISMS). The role is focused on ISMS governance, audit and compliance, risk management, vendor assurance, and security awareness.
Key Responsibilities
ISMS Governance & Continuous Improvement
- Manage and enhance the ISMS in line with ISO 27001, SOC 2, and PCI standards.
- Maintain policies, standards, and procedures.
- Maintain accurate, audit-ready documentation.
- Maintain the Statement of Applicability and control framework
Audit & Compliance
- Support internal and external audits (ISO 27001, SOC 2, PCI)
- Manage customer related audits and security questionnaires.
- Help track remediation of findings and non-conformities.
- Liaise with auditors and certification bodies.
Risk & Asset Management
- Perform risk and threat assessments.
- Maintain Asset and Risk registers.
- Coordinate risk treatment with business owners and IT teams.
- Assess security of new systems and technologies.
- Support AI governance framework development.
- Assess AI tools and use cases for security and compliance risks.
Vendor Risk Management
- Perform vendor security assessments against compliance standards
- Maintain vendor risk records.
Incident Response & Business Continuity
- Assist in security incident response activities & business continuity planning.
Security Awareness & Training
- Develop training materials and campaigns for targeted awareness programmes.
- Promote a strong information security culture across the business.
Experience & Education
- Degree in IT, Cyber Security, Business Informatics, Law, or equivalent.
- Experience in information security, ideally in SaaS or cloud environments.
- Practical experience with ISMS and certifications (ISO 27001, SOC 2, PCI).
- Good understanding of GDPR, EU Data Act and NIS Framework.
- Experience of undertaking ISO, SOC, PCI audits.
- Exposure to AI governance and Cloud Security.
Competencies
- Structured and detail oriented.
- High integrity and accountability.
- Strong communication skills.
- Fluent in English.