דרושים » אבטחת מידע וסייבר » GRC Security Specialist

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Rehovot
Job Type: Full Time
The Cyber Security team is looking for a highly motivated GRC Security Specialist to join our team and take ownership of our Governance, Risk & Compliance program.
In this role, youll work closely with the CISO and cross-functional teams to embed security and compliance into everything we do. enabling the business to scale securely while meeting regulatory and customer expectations.
This is a high-impact position for someone who thrives in dynamic environments and wants to build, improve, and influence how security is managed across the organization.
Responsibilities
What will you be doing:
Own and lead the organizations Governance, Risk & Compliance (GRC) program
Reporting the CISO to define and execute a GRC strategy aligned with business objectives and risk appetite
Develop, implement, and maintain security policies, standards, and procedures aligned with industry best practices and regulatory requirements
Lead and manage risk assessment processes across cybersecurity, IT, third-party, and operational domains
Maintain and actively manage the risk register, ensuring risks are identified, prioritized, tracked, and remediated
Drive and manage compliance programs (e.g., ISO 27001, NIST, CIS, GDPR), ensuring continuous audit readiness
Lead internal and external audits end-to-end, including evidence collection, auditor coordination, and remediation tracking
Manage third-party risk (TPRM), including vendor security assessments, questionnaires, and ongoing monitoring
Support product and engineering teams by integrating security and compliance requirements into new features and systems
Build and deliver risk and compliance reporting, including dashboards, KPIs, and executive-level insights
Translate technical risks into clear, business-relevant communication for leadership and stakeholders
Drive security awareness initiatives and promote a security-first culture across the organization.
Requirements:
5+ years of experience in GRC, information security, risk management and compliance roles
Hands-on experience with security audits and certifications such as ISO 27001 and/or SOC 2
Strong understanding of risk management frameworks (e.g., NIST CSF, ISO 27001, CIS)
Experience managing third-party/vendor risk programs
Knowledge of data privacy and regulatory requirements (e.g., GDPR)
Familiarity with GRC platforms and compliance automation tools
Understanding of cloud environments (AWS, Azure, or GCP) and general security practices (infrastructure, application, and IT security)
Ability to manage multiple audit and compliance workstreams simultaneously with strong attention to detail
Experience with security tools and IT systems (advantage)
Familiarity with automation and/or AI-driven GRC processes (advantage)
Ability to think critically about emerging risks, including AI and evolving regulatory landscapes (advantage)
That special something you bring in:
Strong analytical and problem-solving skills, with the ability to assess and prioritize risks
Excellent written and verbal communication skills in English, with the ability to translate technical concepts into business language
Self-starter with the ability to work independently, prioritize effectively, and operate in a fast-paced environment
Strong organizational skills and ability to build structure and processes from scratch.
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8775798
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
2 ימים
דרושים בלוגיקה IT
מיקום המשרה: מספר מקומות
סוג משרה: משרה מלאה ועבודה היברידית
דרוש/ה איש GRC ואבטחת מידע

לארגון פיננסי מוביל דרוש/ה איש GRC ואבטחת מידע להצטרפות לצוות מקצועי, לתפקיד הכולל ניהול סיכוני סייבר, סיכוני ספקים, רגולציה, תקנים ומדיניות אבטחת מידע.

 ראשון לציון |  יום עבודה אחד מהבית

מה בתפקיד?
ביצוע סקרי סיכוני אבטחת מידע וסייבר במערכות, תהליכים וספקים
ניהול ומעקב אחר סיכונים, פערים ותוכניות לתיקון ליקויים
ביצוע בקרות אבטחת מידע ומעקב אחר יישומן
ניהול סיכוני ספקים וצדדים שלישיים
כתיבה ועדכון של מדיניות, נהלים ומסמכי אבטחת מידע
הכנת דוחות ומצגות להנהלה וסיוע בהיערכות לביקורות
עבודה מול ממשקים רבים בארגון - תשתיות, פיתוח, משפטית, פרטיות, רכש וגורמים עסקיים
דרישות:
ניסיון באבטחת מידע, GRC, ניהול סיכונים, ביקורת, ציות או בקרות
 ניסיון בעבודה עם מערכות GRC - יתרון
 היכרות עם ISO 27001, NIST ו/או רגולציות בתחום אבטחת המידע
 יכולת כתיבה וניסוח גבוהה בעברית ואנגלית טובה
 יכולת אנליטית, סדר ודיוק
 יחסי אנוש טובים ויכולת עבודה מול ממשקים מרובים
 מוטיבציה ללמוד ולהתפתח בתחום
 תואר ראשון במערכות מידע, מדעי המחשב, תעשייה וניהול, משפטים או תחום רלוונטי - יתרון. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8763147
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
דרושים בMertens – Malam Team
סוג משרה: מספר סוגים
חברת Mertens - MalamTeam מגייסת מומחה.ית אבטחת מידע לארגון מוביל בשפלה 
תיאור משרה:
הובלת תהליכים בעולמות אבטחת המידע והטמעת מערכות אבטחת מידע מורכבות
תפעול, ניהול, התקנה, שדרוג ותחזוקה של מערכות אבטחת מידע
תכנון וליווי של מערכות ארגוניות בהיבטי אבטחת מידע
ליווי צוותי פיתוח והטמעת עקרונות של פיתוח מאובטח
פיתוח אוטומציות ותהליכי עבודה
איתור, ניתוח וטיפול בתקלות עד לסגירתן
הובלת הטמעות של מערכות אבטחת מידע חדשות, כולל כתיבת מסמכי HLD ו-LLD
עבודה שוטפת מול צוותי IT וממשקים נוספים בארגון
דרישות:
ניסיון של 5 שנים לפחות באחת מהחלופות הבאות: עבודה בתחום אבטחת המידע בארגון גדול / כאינטגרטור בתחום אבטחת המידע, בדגש על Firewalls,WAF ו-Secure Web Gateway / שילוב של שני סוגי הניסיון.
ניסיון בהקמה, הטמעה ותחזוקה של מערכות Firewall מסוג Check Point ו-Palo Alto, כולל עבודה עם Policies ברמות L3/L4/L7 וביצוע Optimization.
ניסיון בלפחות 4 מהתחומים הבאים: ניהול והגנה על אתרי אינטרנט באמצעות WAF והיכרות עם Web Vulnerabilities / הטמעה וניהול של מערכות EDR ו-Endpoint Security באלפי תחנות קצה / תפעול מערכות Secure Web Gateway ו-Proxy בהיקפים גדולים / ניהול מערכות Secure Mail Relay והיכרות עם אבטחת דואר אלקטרוני / תחקור אירועי אבטחת מידע, כולל שימוש בכלי EDR, Sandbox, Static/Dynamic Analysis והפקת IOCs / ניסיון באבטחת סביבות ענן מבוססות Azure או AWS.
ניסיון בתכנון ארכיטקטורת רשת מאובטחת.
ניסיון בתכנון מנגנוני הזדהות מאובטחים לאפליקציות Web ו-Mobile. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8758721
סגור
שירות זה פתוח ללקוחות VIP בלבד