דרושים » אבטחת מידע וסייבר » Information Security GRC Lead

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
5 ימים
חברה חסויה
Location: Petah Tikva
Job Type: Full Time
Were looking for an experienced and passionate Information Security compliance expert, to help drive organization wide security compliance and risks processes such as Risk Assessment, Mitigation Planning, Compliance with security standards, Internal and External Audits preparations and execution, and supporting customer Security requirements operations.

Responsibilities:
Planning, performing, and tracking cyber security gap analysis and risk assessment processes.
Performing internal & external, hands-on technical and procedural security audits.
Develop, implement and track technical risk control/mitigation plans.
Working with the company business owners and IT Business applications and infrastructure to implement security controls, solutions and software qualifications and compliance and monitoring.
Manage information security related tasks, track progress and report to management.
Plan and execute Security processes and InfoSec group controls.
Write, Update and implement security related procedures.
Lead audit and compliance activities as SOX, SOC2, ISO27001, FedRamp and more and provide Privacy technical guidance.
Contributor to GDPR and privacy, working closely with the company legal department.
Responsible to handle Internal and third-party security qualification processes, vendor risk management and assign required controls
Responsible on customers RFP security risk assessment questionnaire; in a business-driven approach and a prompt response time
Always pushing to modernize compliance solutions with efficiencies and business facing approach
Requirements:
3+ years of experience in security Governance, Risk and Compliance in hi-tech global company.
Proven experience with security compliance audit and management (NIST, ISO, SOC2, SOX, FedRamp and/or DoD).
Hands-on experience with ISMS in audits, Security Risk Management, and mitigation planning.
Experience in working with customers and 3rd party qualification processes
Experience in cloud security compliance and risks.
Background and experience in R&D infrastructure (an advantage).
Familiar with security vulnerabilities, trends, tools and practices.
Professional certifications as Information Systems Auditor (CISA), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC) or Certified Information Security Professional (CISSP) an advantage.
Ability to multi-task in a dynamic work environment.
Ability to motivate others in a matrix management structure.
A true team player and easy to collaborate with A true proactive and can do approach.
High level English with an emphasis on writing skills.
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8248006
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
4 ימים
אלביט מערכות
דרושים באלביט מערכות
Job Type: Full Time
We are looking for a skilled specialist in cryptographic algorithms to join our dynamic team at our Netanya site

In this role, you will:
Lead cryptographic algorithms activities in radio communication projects, incorporating cutting-edge technologies
Define cryptographic requirements, design processes and algorithms in this field
Collaborate with R&D teams as well as with customers, both domestically and internationally
Requirements:
Bachelor's or Master's degree in Electronics Engineering, Software Engineering, or Computer Science
At least 5 years of practical experience in cryptographic algorithms
Familiarity and practical experience with encryption algorithms and security protocols
Knowledge of securing data and communications methods is an advantage
This position is open to all candidates.
 
Show more...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8104536
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Petah Tikva
Job Type: Full Time
A global leader in Identity Security, is seeking a talented GRC Compliance Expert to join our Governance, Risk, and Compliance team.
This role is ideal for someone with a strong understanding of leading international standards and regulations (such as ISO 27001, SOC 2, PCI-DSS, and others) and a passion for building and maintaining scalable, enterprise-grade compliance programs.
Youll play a central role in ensuring ongoing organizational alignment with world-class frameworks while working closely with cross-functional teams to drive a culture of trust, risk awareness, and regulatory readiness.
We are especially looking for someone with hands-on experience implementing and maintaining PCI-DSS / SOC2 compliance, including managing assessments, evidence collection, and cross-functional collaboration.
Key Responsibilities:
Ensure the companys continuous compliance with leading international standards and regulatory frameworks (e.g., ISO 27001, SOC 2, PCI-DSS).
Serve as a subject matter expert on PCI-DSS, including supporting annual assessments, gap analyses, and remediation planning.
Maintain, update, and improve internal GRC policies, controls, and documentation in line with global best practices.
Monitor changes in the regulatory and industry landscape and assess their applicability to our operations.
Lead internal control mapping, gap assessments, and remediation tracking.
Coordinate audit readiness efforts and maintain supporting evidence for external assurance engagements.
Support risk management activities such as risk assessments, risk registers, mitigation tracking, and escalation workflows.
Collaborate with teams across Security, IT, Legal, Engineering, and Operations to align compliance and business needs.
Drive internal awareness and training initiatives on key compliance requirements and GRC processes.
Contribute to the maturity and automation of the GRC program using dedicated platforms/tools.
Requirements:
3+ years of hands-on experience in GRC, Information Security, or Compliance roles.
Deep familiarity with global standards and regulatory frameworks: ISO 27001, SOC 2, and strong practical experience with PCI-DSS.
Proven experience supporting PCI-DSS compliance across multiple domains (network security, access control, data protection, etc.).
Experience managing internal compliance programs in tech-driven or cloud-native environments.
Excellent written and verbal communication skills in English ability to document, analyze, and present compliance-related content clearly.
Highly organized, detail-oriented, and self-motivated with strong analytical thinking.
Proven ability to work collaboratively across teams in a dynamic environment.
A positive, proactive, and solution-oriented mindset (can-do approach).
Experience with GRC platforms is a plus.
Relevant certifications (e.g. CISA, CISM, CISSP, ISO 27001 Lead Auditor, PCIP) an advantage.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8223266
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Petah Tikva
Job Type: Full Time
Additionally, the ISO will manage projects related to the examination and implementation of new information security products and characterize information security solutions for related projects. The ISO will also advise on compliance with privacy and cyber protection laws and regulations, conduct information security and privacy protection surveys, and oversee ISO 27001 compliance, focusing on all aspects of cybersecurity within Application Security (AppSec), Infrastructure Security (DevSec), Governance, Risk, and Compliance (GRC), Security Information and Event Management (SIEM)/Security Operations Center (SOC), incident response, and IT security.

Responsibilities
Develop, update, and maintain a cybersecurity strategy.
Manage a risk-based cybersecurity program to secure corporate IP, technology, information, computer systems, networks, and data.
Provide guidance on proposed cybersecurity best practices to different business functions.
Develop comprehensive cybersecurity guidance, processes, and procedures based on industry standards.
Stay informed on trends and issues in the security industry, including current and emerging technologies and regulatory and compliance issues.
Advise, counsel, and educate executive and management teams on the importance of cybersecurity.
Requirements:
5+ years of experience as an ISO, with a focus on reviewing and recommending security business solutions (GRC).
Experience in a large global company.
Certifications in one or more of the following areas: CISO, CISM, GISO, IAM, CISSP.
Demonstrated knowledge of recognized security industry standards and leading practices (e.g., SOX, ISO 27001/2/3, ISO 27018, GDPR, PCI, OWASP, NIST, DISA, CIS, etc.).
Broad knowledge of cybersecurity technologies, solutions, and tools (e.g., encryption technologies, SIEM, DLP, etc.).
Strong knowledge of cloud technologies, platforms, and services.
Broad knowledge of operational and security processes/controls (e.g., vulnerability management, patch management, configuration management, access management, etc.).
Previous experience as a system administrator and/or security administrator is an advantage.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8202252
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
22/06/2025
חברה חסויה
Location: Petah Tikva
Job Type: Full Time and Hybrid work
Be the guardian of trust in a fast-moving fintech world. As a GRC Security Specialist, youll lead cybersecurity governance, drive compliance with global standards (SOC 2, PCI-DSS, NIST), and partner with tech and legal teams to embed security into every layer of the business. If you live and breathe risk, regulation, and resiliencethis is your arena.

Hybrid.
Full-time.

What youll do:
Developing and maintaining policies, procedures, and controls to ensure compliance with regulatory, legal, and audit requirements, as well as best business practices.
Creating a cybersecurity compliance strategy and ensuring alignment with contractual obligations and globally recognized standards and guidelines.
Identifying regulatory, legislative, and industry-specific compliance requirements and defining controls to meet them.
Conducting and participating in periodic internal reviews or audits to ensure compliance procedures are followed.
Overseeing and evaluating compliance systems to ensure their effectiveness.
Compiling and presenting reports to management on compliance activities and progress.
Staying up to date on industry developments, regulatory trends, and best practices to assess their impact on the organization.
Designing and implementing improvements in compliance communication, monitoring, and enforcement mechanisms.
Developing and executing a compliance awareness program, including the creation and distribution of materials for all employees.
Partnering with Legal and IT teams to manage data protection agreements and compliance initiatives.
Leading the development and execution of company-wide security awareness and training initiatives.
Assisting in incident response planning and investigations when necessary.
Requirements:
Who you are:
3+ years of experience in GRC, information security, or compliance within SaaS, cloud, or enterprise IT environments.
Strong understanding of regulatory frameworks and security standards such as SOC 2, PCI-DSS, and NIST.
Solid knowledge of SDLC methodology.
Strong understanding of IT systems and security controls.
Experience conducting security risk assessments and working with auditors or regulatory bodies.
Excellent project management skills with the ability to manage multiple compliance initiatives.
Experience collaborating with IT teams and business stakeholders to enhance security measures.
Strong communication and collaboration skills, with the ability to translate compliance requirements into actionable business processes.
Ability to effectively interface with technical staff and senior management.
Proficiency in English and Hebrew, both written and spoken, to communicate effectively with local and global teams.
Strong interpersonal skills with the ability to engage effectively with stakeholders.
Excellent teamwork and interpersonal communication abilities.

Advantages:
Certifications such as CISM, CISA, CISSP.
CISO certification from a recognized institution.
Masters degree in information security, Business Administration, or a related field.
Experience in the fintech or financial services industry.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8224965
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
25/06/2025
חברה חסויה
Location: Petah Tikva
Job Type: Full Time
As a Product Security Response Manager, you will be responsible for managing a portion of PSIRTs global headcount. You will direct the day-to-day activities of product security engineers you lead, including processing root cause analysis of product security vulnerabilities reported as part of the bug bounty and responsible disclosure program, vulnerability remediation collaboration with internal development teams, research projects for reported vulnerability patterns, and process improvements. As a Product Security Response Manager, you will work with pool of talented external researchers (i.e., our bug bounty and responsible disclosure programs) to ensure they are equipped to succeed and mitigate uncoordinated disclosures. You will also make hands-on contributions to reducing security risks in products and services by partnering with other teams in the development and security organisations.

What you get to do in this role:

Serve as a people leader.
Serve as a project manager for PSIRT-led research projects.
Oversee product security incidents, small and large.
Stay updated on industry best practices, including the CVE program and FIRST.org special interest groups.
Recommend and develop new product security policies and procedures.
Partner with key contacts outside of our department.
Requirements:
An analytical mind for problem solving, abstract thought, and challenging product security problems and solutions.
Strong interpersonal skills (written and oral communication) and the ability to work collaboratively in a team environment, both in real-time and asynchronously, and remotely across ServiceNows regions.
Accountability and the ability to take feedback as a member of a continuous improvement culture.
Autonomy and ability to make practical decisions and recommendations in the face of uncertainty and imperfect information.
Flexibility in working hours is needed to assist with a global team and product security incident response.
Comfort with change as part of being on a growing team.
2+ years of experience managing or supervising individual contributors.
5+ years of experience working in a role focused on web application security.
B.S. Degree in Computer Science / STEM field or equivalent job experience.
In-depth experience with exploiting OWASP Top 10 application vulnerabilities, such as deserialization and injection attacks.
Experience performing Threat Modelling and Penetration Testing.
Strong code reading comprehension and code tracing skills, and experience performing source code reviews for security issues.
Experience in a fast-paced and demanding security environment.
Experience with bounty programs preferred.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8229723
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Petah Tikva
Job Type: Full Time
We are looking for an eager and talented individual for our growing Solution Architect team. You will be a part of a fast-growing cybersecurity company, learn and practice high-end cyber skills from the best in the business and manage customers regionally. You will work with amazing people who work together to improve the cybersecurity resilience of our customers. The Solution Architects are considered to be our top experts in our products, serving as a very important point of contact between our customers and our inner departments.
Roles and Responsibilities:
Demonstrate a deep understanding and professional knowledge in our platform across our customers networks
Design deployment solutions for the platform in complex environments
Maintain in-depth knowledge of security trends, threats, and attack techniques in order to be able to improve us and to give better remediation guidance to the customers
Lead technical deep-dive sessions with cybersecurity experts, guide them through better Penetration Testing procedures and remediation/defense decisions
Be involved in the business application of the company by maintaining customer loyalty and act as a product expert focused on customer education and identify service expansion opportunities to drive increased revenue
Interface between different internal departments (Support, R&D, Sales, Pre-Sales, and more) to improve your skills, knowledge and problem-solving capabilities
Pay attention to support requests to identify recurring issues and recommend changes to the Pentera platform
Flexibility to accept a changing work description based on a hyper-fast startup.
Requirements:
At least 4-5 years of penetration testing/red team operations experience or equivalent with a deep understanding of cybersecurity concepts
Scripting capabilities Python, bash, PowerShell, etc.
Ability to explain technical details and requirements to customers with different levels of expertise and responsibilities
Knowledge in troubleshooting, monitoring, and managing TCP/IP networks
Team player, self-sufficient, autodidact, and a friendly attitude
Fluent English (written and verbal)
CISSP, OSCP, or equivalent an advantage
Willing to travel frequently based on customer and business needs
Security clearance in effect (or willingness to undergo a security clearance process if required).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8223084
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Petah Tikva
Job Type: Full Time
We are looking for a passionate and skilled Network Security Expert to join our team! If you're excited about securing critical systems, networks, and information while working with cutting-edge security technologies, this role is for you.
What You'll Do:
Design, implement, and monitor security measures to protect our systems, data, and networks.
Define and establish robust security requirements to mitigate risks effectively.
Develop and document security protocols and best practices.
Configure, troubleshoot, and optimize security components to ensure peak performance.
Detect and respond to security threats, breaches, and vulnerabilities with precision.
Work with the latest security tools to automate and enhance security processes.
Requirements:
You should have hands-on experience in at least 4 of the following:
Next-Generation Firewalls (NGFW)
Intrusion Prevention/Detection Systems (IPS/IDS)
Network & Application Load Balancers
Web Application Firewall (WAF)
Secure Network Topologies (Segmentation, DMZ, WAN, etc.)
Sandboxes for threat analysis
Network Access Control (NAC)
Secure Access Service Edge (SASE)
Encryption in Transit
VPNs & Secure Remote Access
RADIUS & Role-Based Access Control (RBAC)
Bonus Points If You Have:
Experience with Linux & Windows security configurations
Scripting skills in PowerShell, Python, or Bash
Knowledge of Data Classification & Protection.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8208925
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
3 ימים
חברה חסויה
Location: Petah Tikva
Job Type: Full Time
Design and deploy network & security systems (FWs, web filtering systems etc.) and networking infrastructure (LAN, WAN, routing protocols, failover mechanism, IPSEC, SSL VPNs).
Perform technical operations on various IP network elements of multiple networks.
Maintain the availability and performance of business-critical networks.
Define and enforce rules for various network security control systems such as: firewalls, virtual private networks.
Provide escalated support and troubleshooting to maintain high availability and performance of the security & network infrastructure.
Create and maintain detailed network & security documentation.
Keep a tight relationship with integrators & vendors to maintain upgrades, installs, downtime planning alongside exploration of new features & innovative solutions.
Evaluate, test and select enterprise networking & security hardware and solutions.
Requirements:
3-5 years of experience with networking & TCP/IP protocols (routing & switching, IP/MPLS, BGP, OSPF, IPv6) -a must.
Thorough knowledge and experience with IP network elements, including routers, switches, and firewalls from multiple vendors (Juniper, Fortinet & Cisco) -a must.
Experience in network design and implementation -a must.
Excellent IP network troubleshooting skills with the ability to work with customers and internal departments to resolve complex technical problems -a must.
A team player with a strong ability to learn independently and handle multiple tasks -must.
Fluent English -a must.
Linux / Unix: network configuration, network debugging, experience in installing different Linux editions.
Must be well versed in common network security threats, as well as best practices to mitigate them.
Experience with AWS and any public cloud vendor + virtual environment (VMWARE/KVM) - an advantage.
Knowledge of core cellular network structure an advantage.
Script developments (Python, etc.) an advantage.
JNCIP, CCNP, Security certifications an advantage.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8251318
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
24/06/2025
חברה חסויה
Location: Petah Tikva
Job Type: Full Time
mission is to enable its customers to protect and save lives, accelerate justice, and preserve privacy in communities around the world. a global leader in Digital Intelligence solutions for the public and private sectors, empowering organizations to master the complexities of legally sanctioned digital investigations by streamlining intelligence processes. Trusted by thousands of leading agencies and companies globally, Digital Intelligence platform and solutions transform how customers collect, review, analyze, and manage investigative digital data in legally sanctioned investigations.

Position Overview:
As a talented researcher, you will be joining the industrys leading digital intelligence Security Research Labs group. In this position you will be taking part and leading new projects in little-explored vulnerability research territories, producing world-unique capabilities to extract evidence from phones and other embedded devices. Recent phones (from burner phones to the latest flagships) are increasingly challenging from a forensics perspective, and involve hardware-backed encryption (FDE/FBE), secure boot chains (Verified Boot/dm-verity), evolving hardened SELinux policies, as well as adventures in ARM TrustZone secure worlds.

Key Responsibilities:
You will join digital intelligence Security Research Labs Group and be a part of a team of passionate researchers, dedicated to solving modern digital intelligence challenges, years ahead of others in the industry. Our world-class research results assist law enforcement by enabling lawful evidence extraction, and putting criminals behind bars, every day.

You are a security researcher who cares about the ethical use case for his/her work, and if the art of engineering and crafting a platform-wide native payload in a fragmented ecosystem of gaping variance is the kind of challenge you appreciate, you belong with us. We need your help to make the world a safer place.
Requirements:
Practical experience performing vulnerability research and exploitation, preferably in mobile or other modern environments, eg. Windows/Linux/iOS/MacOS
Practical reverse engineering experience, preferably in ARM / TrustZone / Hypervisors
Advantage: Cryptographic primitives and weaknesses
Advantage: Advanced fuzzing
Advantage: Offensive hardware research/board design
Advantage: Experience dealing with modern memory corruption mitigations, such as PAC and MTE.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8229205
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Petah Tikva
Job Type: Full Time
We are interested in welcoming a Senior Cybersecurity Expert to join our team, to plan, research, and develop proprietary automotive cybersecurity solutions.
Responsibilities and tasks include:
Threat and vulnerability assessment and analysis
Design, implement, and verify mechanisms to neutralize potential threats
System hardening and characterization
Penetration testing.
Requirements:
Essential:
5+ years experience as a Cybersecurity software engineer
Strong background in low-level cybersecurity, especially with embedded systems
Strong embedded C++ skills
Strong Cybersecurity research and hacking skills, or relevant experience in IDF cyber units
Strong Linux and/or RTOS low-level programming
Self-learning skills with the ability to investigate and implement new technologies
Ability to work both independently and as a team member
BSc. or higher in Electrical Engineering, or Computer Engineering
Strong interpersonal, communication (written and verbal) skills, and presentation skills
Fluency in English
Advantage to those who also have:
Knowledge of automotive industry, systems, and regulations.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8218617
סגור
שירות זה פתוח ללקוחות VIP בלבד