GRC Expert

6 hours ago


Tel Aviv, Tel Aviv, Israel HUB Technologies Full time ₪90,000 - ₪120,000 per year

We're looking for a Governance, Risk, and Compliance (GRC) expert to help shape and lead both our internal and customers' GRC strategies. In this role, you'll be responsible for developing and maintaining information security policies, managing risk processes, and ensuring compliance with standards such as ISO 27001, SOC 2, and relevant privacy regulations.

As part of your responsibilities, and beyond handling regulatory frameworks, you will also act as CISO as a Service for our customers, guiding them through security best practices, risk assessments, and compliance efforts, while serving as their trusted security advisor.

This is a great opportunity to apply your Information Security expertise in a high-growth, fast-paced environment, where you'll have real impact across multiple organizations.

Key Responsibilities:

GRC Program Leadership: Drive and significantly influence the company's GRC program.

Process and Policy Management: Design, maintain, and own GRC-related processes, policies, procedures, and guidelines.

Risk Management: 

  • Lead ongoing risk management activities.
  • Conduct risk assessments on systems, processes, vendors and maintain a security maturity program.
  • Ensure remediation plans are implemented and carried out.

Compliance Operations:

  • Oversee security compliance efforts, including ISO-27001, SOC2, and CSA-STAR certifications.
  • Lead our security compliance operations, including ISO-27001, SOC2 and CSA-STAR.

Performance Monitoring: Develop, monitor, and maintain KPIs and OKRs for information security to ensure that controls are adequate and effective.

Security Awareness: Develop, deliver and maintain ongoing Information security & privacy awareness Program.

Audit and GRC Tools

  • Execute and maintain the information security audit plan.
  • Efficiently operate and leverage GRC tools for risk management, supplier security assessments, and privacy.

Communication & Support:

  • Communicate risk methodologies to business units and R&D.
  • Support sales teams in responding to customer and prospect questionnaires.

Collaboration: 

  • Become a main stakeholder in privacy and internal audit processes along with the compliance team.
  • Support and work with other information security functions (SecOps, AppSec, etc.)

Experience: 4+ years in information security, risk management, privacy, and compliance.

Knowledge:

  • Information security and privacy regulations and standards such as ISO-27xxx, SOC2, CSA-STAR and privacy laws.
  • Risk assessment and management methodologies/frameworks.

Proven Track Record:

  • Leading major risk assessment projects and activities.
  • Responding to customer security assessments and questionnaires (RFI, RFP, DPA).
  • Building awareness programs, including evaluating effectiveness and improvements.
  • Assessing existing security controls and defining new controls and solutions

Communication & Collaboration:

  • Strong oral and written communication and presentation skills.
  • Excellent technical communication and ability to partner and collaborate with multiple departments and stakeholders in the organization.
  • Excellent business-level English proficiency (written and verbal).

Global Mindset: Experience working in a global environment.

  • Knowledge and hands-on experience in assessment automation tools.
  • Knowledge and hands-on experience in suppliers/vendors assessment tools.
  • Formal cybersecurity and GRC certification (e.g., CISSP, CISM, CRISC, CISA, CIPM).
  • Knowledge and experience in compliance activities for MRC and SOX.

  • GRC Specialist

    1 week ago


    Tel Aviv, Tel Aviv, Israel Matrix 2Bsecure Full time ₪40,000 - ₪80,000 per year

    2BSecure, a leading cybersecurity consulting firm, is seeking a highly motivated and skilled GRC Consultant to join our professional services team.In this role, you will guide organizations in building, maintaining, and improving their governance, risk, and compliance posture while ensuring alignment with leading industry standards and regulatory...


  • Tel Aviv, Tel Aviv, Israel Deloitte Full time ₪120,000 - ₪180,000 per year

    We are seeking an experienced and highly professional candidate to lead Cybersecurity Assessments and Audits. This role will also play a key part in developing marketing and business materials, including proposals, points of view (POV) documents, and business presentations. The ideal candidate will demonstrate strong leadership capabilities, exceptional...

  • Cybersecurity Expert

    6 hours ago


    Tel Aviv, Tel Aviv, Israel Deloitte Full time ₪120,000 - ₪180,000 per year

    We are seeking an experienced and highly professional candidate to lead Cybersecurity Assessments and Audits. This role will also play a key part in developing marketing and business materials, including proposals, points of view (POV) documents, and business presentations. The ideal candidate will demonstrate strong leadership capabilities, exceptional...


  • Tel Aviv, Tel Aviv, Israel Wiz Full time $120,000 - $180,000 per year

    SUMMARYWe're looking for a Product & Data Protection Counsel to join our Legal team and help drive the success of Wiz. This is a fantastic opportunity for an ambitious product counsel to join a global, rapidly growing B2B cybersecurity company.WHAT YOU'LL DOWork as part of the Wiz Product & Data Protection Team, with members based in Israel and the US.Act as...


  • Tel Aviv, Tel Aviv, Israel Axonius Full time ₪120,000 - ₪240,000 per year

    Data Engineering Team LeaderThis Data Engineering Team Leader role involves leading a team of Data Engineers dedicated to developing and optimizing a mission-critical data platform for our healthcare clients. The team's core mission is to manage high-scale data processes, leveraging advanced technologies to deliver vital security products. This position...


  • Tel Aviv, Tel Aviv, Israel Axonius Full time ₪120,000 - ₪240,000 per year

    Data Engineering Team LeaderThis Data Engineering Team Leader role involves leading a team of Data Engineers dedicated to developing and optimizing a mission-critical data platform. The team's core mission is to manage high-scale data processes, leveraging advanced technologies to deliver vital security products. This position requires hands-on expertise...

  • Systems Administrator

    2 weeks ago


    Tel Aviv, Tel Aviv, Israel Pagaya Full time ₪80,000 - ₪120,000 per year

    About PagayaPagaya is a global technology company making life-changing financial products and services available to more people nationwide, as it reshapes the financial services ecosystem. By using machine learning, a vast data network and a sophisticated AI-driven approach, Pagaya provides comprehensive consumer credit and residential real estate solutions...

  • Cybersecurity Expert

    6 hours ago


    Derech Menachem Begin Tel Aviv, Tel Aviv District, Israel Deloitte Full time ₪120,000 - ₪180,000 per year

    We are seeking an experienced and highly professional candidate to lead Cybersecurity Assessments and Audits. This role will also play a key part in developing marketing and business materials, including proposals, points of view (POV) documents, and business presentations. The ideal candidate will demonstrate strong leadership capabilities, exceptional...


  • Derech Menachem Begin Tel Aviv, Tel Aviv District, Israel Deloitte Full time ₪120,000 - ₪240,000 per year

    The IT risk management team specializes in identifying and locating technological risks, finding solutions, improving the systems and processes in the organization to prevent potential damage to the business and minimizing risks using local experts with global experience in complex projects, unique methodologies and technological tools while working with the...