Cybersecurity GRC Engineer
5 days ago
The world of digital assets is accelerating in speed, magnitude, and complexity, opening the door to new ways for leveraging the blockchain. Fireblocks' platform and network provide the simplest and most secure way for companies to work with digital assets and it trusted by some of the largest financial institutions, banks, globally-recognized brands, and Web3 companies in the world, including BNY Mellon, BNP Paribas, ANZ Bank, Revolut, and thousands more.
The world of digital assets is accelerating in speed, magnitude, and complexity, opening the door to new ways for leveraging the blockchain. Fireblocks' platform and network provide the simplest and most secure way for companies to work with digital assets and it trusted by some of the largest financial institutions, banks, globally-recognized brands, and Web3 companies in the world, including BNY Mellon, BNP Paribas, ANZ Bank, Revolut, and thousands more.
About The Role
We're looking for a highly skilled Cybersecurity Governance, Risk, and Compliance Engineer with strong technical and hands-on cybersecurity expertise. This role bridges the gap between compliance and technology — ensuring that Fireblocks' GRC frameworks are not just compliant on paper but effective in practice across infrastructure, SaaS, and cloud environments.
As the Cybersecurity GRC Engineer you will oversee the technical execution of GRC initiatives, collaborating with cross-functional teams (Security Engineering, IT, DevOps, Product) to drive resilience, risk reduction, and audit readiness across the organization.
Reporting line: GRC Director
What You Will Do
- Collaborate with R&D and DevOps teams to integrate security into development and deployment processes.
- Perform technical risk assessments, vulnerability trend analysis, and threat modeling to ensure risk registers reflect the true security posture.
- Lead security awareness and social-engineering simulations, correlating campaign results with real technical findings (phishing, MFA bypass, insider threat trends).
- Initiate and coordinate offensive security activities including penetration testing, red teaming, and vulnerability assessments to proactively identify and mitigate risks.
- Support incident response readiness by integrating lessons learned into policy, control design, and awareness materials.
- Leverage AI to automate GRC reporting, surface risk insights, and maintain intelligent dashboards integrated with platforms like ServiceNow, Jira, and internal data sources.
- Partner with Security Engineering and IT teams to ensure consistent endpoint hardening, patch management, and configuration compliance.
- Coordinate DR exercises and tabletop simulations, track findings, and oversee remediation to strengthen resilience.
- Prepare for and support internal and external audits, including SOC 2, ISO 27001, NYDFS, and customer due-diligence requests.
Qualifications
- +3 years of experience in GRC, IT Risk, or Security Operations, with at least 2 years hands-on in technical environments (e.g., system administration, cloud security, endpoint management, vulnerability management).
- Strong working knowledge of cloud security (AWS, GCP, or Azure) and endpoint management (Jamf, Intune, CrowdStrike).
- Proven ability to automate or optimize GRC workflows using tools, APIs, and AI.
- Practical experience designing or testing Disaster Recovery and Business Continuity programs.
- Strong analytical and problem-solving skills; able to translate complex technical risks into actionable business terms.
- Visionary and innovation-driven, capable of implementing security and compliance programs in complex, fast-paced organizations.
- Exceptional communication, collaboration, and interpersonal skills, with the ability to engage both technical and non-technical audiences.
- Strong analytical, problem-solving skills and attention to detail, with the ability to manage multiple projects simultaneously and meet tight deadlines.
Preferred Qualifications
- Certifications such as CISA, CISM, CISSP, or Security+.
- Background in the financial / digital assets sector or regulated environments.
- Strong technological understanding and familiarity with product development practices.
Fireblocks' mission is to enable every business to easily and securely access digital assets and cryptocurrencies. In order to do that, we strongly believe our workforce should be as diverse as our clients, and this is why we embrace diversity and inclusion in all its forms.
Please see our candidate privacy policy here.
-
Cybersecurity GRC Engineer
7 days ago
Tel Aviv, Tel Aviv, Israel Fireblocks Full time ₪80,000 - ₪120,000 per yearThe world of digital assets is accelerating in speed, magnitude, and complexity, opening the door to new ways for leveraging the blockchain. Fireblocks' platform and network provide the simplest and most secure way for companies to work with digital assets and it trusted by some of the largest financial institutions, banks, globally-recognized brands, and...
-
GRC and Cybersecurity Specialist
7 days ago
Tel Aviv, Tel Aviv, Israel Unilink Ltd. Full time ₪60,000 - ₪120,000 per yearGRC and Cybersecurity SpecialistWe're looking for a talentedGRC and Cybersecurity Specialistto take responsibility for managing information security and cyber risk processes across the organization.In this role, you will:Lead risk management activities and ensure compliance with information security and cyber standards.Develop and implement policies,...
-
Junior GRC Analyst
3 days ago
Tel Aviv, Tel Aviv, Israel DataFence Full time ₪40,000 - ₪80,000 per yearLocation:On-site in Datafence offices, Tel Aviv-Yafo Job Type:Full-time Department:Governance, Risk, and Compliance (GRC)About DataFenceDataFence is a leading boutique cyber compliance and advisory firm based in Tel Aviv-Yafo, specializing in helping businesses protect their assets through tailored cybersecurity and compliance solutions. We serve as trusted...
-
GRC Expert
7 days ago
Tel Aviv, Tel Aviv, Israel HUB Technologies Full time ₪90,000 - ₪120,000 per yearWe're looking for a Governance, Risk, and Compliance (GRC) expert to help shape and lead both our internal and customers' GRC strategies. In this role, you'll be responsible for developing and maintaining information security policies, managing risk processes, and ensuring compliance with standards such as ISO 27001, SOC 2, and relevant privacy...
-
GRC Manager
2 weeks ago
Tel Aviv, Tel Aviv, Israel Pentera Full time ₪120,000 - ₪180,000 per yearAccelerate Your Career in CybersecurityAs a leader in Automated Security Validation, we help businesses around the world safely emulate real-world attacks to uncover their vulnerabilities. At Pentera, you will be at the forefront of cybersecurity innovation, working on advanced tools that challenge organizations' defenses and push the limits of security...
-
Cybersecurity Expert
1 week ago
Tel Aviv, Tel Aviv, Israel Deloitte Full time ₪120,000 - ₪180,000 per yearWe are seeking an experienced and highly professional candidate to lead Cybersecurity Assessments and Audits. This role will also play a key part in developing marketing and business materials, including proposals, points of view (POV) documents, and business presentations. The ideal candidate will demonstrate strong leadership capabilities, exceptional...
-
Cybersecurity Expert
7 days ago
Tel Aviv, Tel Aviv, Israel Deloitte Full time ₪120,000 - ₪180,000 per yearWe are seeking an experienced and highly professional candidate to lead Cybersecurity Assessments and Audits. This role will also play a key part in developing marketing and business materials, including proposals, points of view (POV) documents, and business presentations. The ideal candidate will demonstrate strong leadership capabilities, exceptional...
-
GRC Specialist
2 weeks ago
Tel Aviv, Tel Aviv, Israel Matrix 2Bsecure Full time ₪40,000 - ₪80,000 per year2BSecure, a leading cybersecurity consulting firm, is seeking a highly motivated and skilled GRC Consultant to join our professional services team.In this role, you will guide organizations in building, maintaining, and improving their governance, risk, and compliance posture while ensuring alignment with leading industry standards and regulatory...
-
GRC Analyst
7 days ago
Tel Aviv, Tel Aviv, Israel Upwind Security Full time ₪90,000 - ₪120,000 per yearDescriptionUpwind is a next-generation Cloud Security Platform that leverages runtime context to identify and prioritize critical risks, providing precise insights and efficient cloud security management. Unlike traditional tools, Upwind uses runtime data proactively for risk prioritization and posture insights, ensuring teams focus on what truly matters....
-
GRC Analyst
7 days ago
Tel Aviv, Tel Aviv, Israel Upwind Security Full time ₪90,000 - ₪120,000 per yearUpwind is a next-generation Cloud Security Platform that leverages runtime context to identify and prioritize critical risks, providing precise insights and efficient cloud security management. Unlike traditional tools, Upwind uses runtime data proactively for risk prioritization and posture insights, ensuring teams focus on what truly matters. With...