Security Compliance
1 week ago
At Port, we are pioneering a new dimension of the Developer Experience. Our innovative platform for Internal Developer Portals has been designed with the ultimate aim of enhancing developer satisfaction, increasing productivity, and ensuring the highest standards of engineering output.
Port brings everything a developer needs together, encapsulated within a single user-friendly interface. From comprehending the software development lifecycle, executing tasks, to adhering to the organization's development standards, Port ensures that every aspect of software development is within easy reach for every developer.
As a team, we personify the values that underpin our product: openness, transparency, resourcefulness, community orientation, and kindness. We are on the lookout for like-minded individuals who share our ethos to join us on our exciting journey of revolutionizing the platform engineering sector. By joining Port, you'll be a part of a team that's changing how developers collaborate, enabling them to work faster, smarter, and more efficiently. Join us, and be a part of this transformation.
Why we're looking for you
We're seeking a Security Compliance & Assurance Manager to own the hands-on documentation, policy writing, and evidence management across Port's security and compliance programs. This is a technical writing and audit readiness role supporting our FedRAMP authorization and broader GRC initiatives.
As Port grows and pursues FedRAMP authorization, we need someone who can translate complex technical controls into clear, comprehensive documentation. You'll be the expert who writes the SSP, maintains policies, collects evidence, and ensures our compliance programs are audit-ready - working closely with our GRC team and supporting both FedRAMP and ongoing compliance frameworks (SOC 2, ISO 27001, GDPR).
Who you'll work with
You'll report to the CIO and work closely with the GRC Manager and FedRAMP Program Manager as part of the Security & Risk team. You'll collaborate cross-functionally with Engineering, DevOps, IT, and Product teams to document technical controls and collect evidence.
You'll also partner with Legal, HR, and external auditors (3PAOs, SOC 2 auditors) to ensure Port maintains and demonstrates the highest levels of security and compliance.
What you'll do
- Write, maintain, and update the System Security Plan (SSP), Plan of Action & Milestones (POA&M), and all compliance documentation for FedRAMP authorization.
- Develop and maintain security policies and procedures including access control, incident response, data classification, encryption, and acceptable use policies.
- Lead evidence collection and audit readiness activities across multiple frameworks (FedRAMP, SOC 2, ISO 27001, GDPR).
- Partner with Engineering, IT, and the GRC Manager to document technical control implementations and translate controls into clear policy language.
- Support continuous monitoring activities, control testing, and remediation tracking.
- Manage customer security questionnaires, RFPs, and Trust Center content to support sales and customer assurance efforts.
- Maintain compliance tooling and dashboards (e.g., Drata, Tugboat Logic) for continuous visibility into control status.
- Support internal and external audits with timely, complete evidence packages and coordinate with 3PAOs and auditors.
- Build and maintain the compliance evidence repository and artifact management system.
- Over time, evolve into a core GRC & Assurance leader supporting enterprise certifications and customer trust programs.
What we're looking for
- 5+ years in security compliance, audit, or assurance roles in SaaS or cloud environments.
- Deep expertise in compliance frameworks (FedRAMP, SOC 2, ISO and control requirements.
- Excellent technical writing and documentation skills - ability to translate complex technical controls into clear, comprehensive policies and procedures.
- Hands-on experience building and maintaining compliance evidence repositories and control testing programs.
- Strong understanding of technical security controls (encryption, access management, logging, monitoring, network security).
- Experience supporting audits and working with external assessors (3PAOs, SOC 2 auditors, ISO auditors).
- Strong organizational skills and attention to detail with ability to manage multiple compliance workstreams simultaneously.
- Collaborative communication style - able to work effectively with technical and non-technical stakeholders.
Nice to have
- Direct FedRAMP authorization experience (SSP development, POA&M management, continuous monitoring).
- Experience with customer-facing security programs (Trust Center management, security questionnaires, vendor security assessments).
- Hands-on experience with GRC automation platforms (Drata, Tugboat Logic, Vanta, OneTrust, Secureframe).
- Background in technical security controls, risk management, or security engineering.
- CISSP, CISA, CISM, or other security/compliance certifications.
- Familiarity with GDPR, CCPA, or other privacy frameworks and regulations.
- Experience in high-growth SaaS or cloud infrastructure companies.
- Technical background or ability to read/understand code and infrastructure configurations.
-
Cloud Security Engineer
1 week ago
Israel Levanon Street, Haifa, Israel Wix Test Full time ₪120,000 - ₪180,000 per yearCompany Description Wix makes it possible for anyone to succeed online.Since 2006, we've grown to around 5,300 employees in 22 countries, launched over 40 products, and serve over 282 million users and their visitors worldwide. Job Description Protect Wix's cloud infrastructure and ensure the security of millions of users' data. You'll design and implement...
-
Offensive Cyber Security Researcher
1 week ago
Israel Novartis Full time ₪120,000 - ₪180,000 per yearBandLevel 5Job Description SummaryLocation: Tel Aviv, Israel; #LI-Hybrid (12 days/month in office) The role is based in Tel Aviv. Novartis is unable to offer relocation support for this role: please only apply if this location is accessible for you.About the Role:The Offensive Cyber Security Researcher will join a newly established Think Tank of advanced...
-
Offensive Cyber Security Researcher
1 week ago
Israel Novartis Full time ₪120,000 - ₪180,000 per yearJob Description SummaryLocation: Tel Aviv, Israel; #LI-Hybrid (12 days/month in office) The role is based in Tel Aviv. Novartis is unable to offer relocation support for this role: please only apply if this location is accessible for you.About the Role:The Offensive Cyber Security Researcher will join a newly established Think Tank of advanced security...
-
Offensive Cyber Security Researcher
2 weeks ago
Israel Novartis Full time ₪72,000 - ₪300,000 per yearSummaryLocation: Tel Aviv, Israel; #LI-Hybrid (12 days/month in office)The role is based in Tel Aviv. Novartis is unable to offer relocation support for this role: please only apply if this location is accessible for you. About the Role: The Offensive Cyber Security Researcher will join a newly established Think Tank of advanced security researchers...
-
Backend Engineer
1 week ago
Israel Levanon Street, Haifa, Israel Wix Test Full time ₪120,000 - ₪180,000 per yearCompany Description Wix makes it possible for anyone to succeed online. Our payment solutions help millions of businesses accept payments and grow their revenue worldwide. Job Description Build and maintain Wix's payment infrastructure that processes billions of dollars annually. You'll work on payment gateways, fraud detection systems, and financial...
-
DevSecOps Manager
7 days ago
Israel Amdocs Full time ₪120,000 - ₪180,000 per yearJob ID: Required Travel :Up to 25% Managerial - Yes Location: :Israel- RAANANA (Amdocs Site) Who are we? Amdocs helps those who build the future to make it amazing. With our market-leading portfolio of software products and services, we unlock our customers' innovative potential, empowering them to provide next-generation communication and media...
-
US - IT Manager
1 week ago
New York, Israel Cyera Full time $150,000 - $175,000 per yearWHO WE ARECome join the company reinventing data security, empowering businesses to realize the full potential of their data. As the leading data security platform purpose-built for the cloud era, Cyera's mission is to reinvent how businesses secure data, enable agile collaboration, and boldly pursue new business opportunities. Trusted by security teams at...
-
IT Manager
1 week ago
Afek, Haifa District, , Israel Mego Afek Full time ₪60,000 - ₪120,000 per yearWe are seeking an Information Technology Manager to lead our comprehensive IT operations. This pivotal role involves managing our entire information systems and technology infrastructure, overseeing IT budgets, leading critical process optimization and integration projects, and ensuring top-tier security and compliance. If you are passionate about mentoring...
-
Legal Services Platform Developer
1 week ago
Israel Levanon Street, Haifa, Israel Wix Test Full time ₪80,000 - ₪120,000 per yearCompany Description Wix makes it possible for anyone to succeed online. We help legal professionals build their practice and connect with clients through professional online presence. Job Description Develop legal-specific features including consultation booking, document management, client portals, and case management tools. Help legal professionals...
-
Staff Product Manager
2 weeks ago
Israel SentinelOne Full time ₪120,000 - ₪240,000 per yearPrompt Security is the leading AI Security Platform, enabling organizations around the globe to safely adopt AI. The company was recently acquired by SentinelOne, the AI cybersecurity leader, to further advance its Generative AI and Agentic AI security strategy. At SentinelOne, we're redefining cybersecurity by pushing the limits of what's possible -...