GRC Security Specialist
פורסם לפני 11 ימים · 0 מועמדים
התפקיד במילים פשוטות
תפקיד זה כולל ניהול תהליכי ניהול סיכוני ספקים מקצה לקצה, ניהול ביקורות ועמידה בתקני SOC 2 ו-ISO 27001, והובלת מדיניות אבטחה והערכת סיכונים. העבודה כוללת שיתוף פעולה הדוק עם צוותי פיתוח, טכנולוגיה, משפטים ורכש, תוך שימוש בכלי בינה מלאכותית לייעול התהליכים.
- 2-5 years of experience in GRC / Information Security / Compliance
- SOC 2 compliance and audit management experience
- ISO 27001 compliance and audit management experience
- Vendor Risk Management (TPRM) end-to-end management
- Security governance, policies, risk assessments, and remediation
חולץ מתיאור המשרה · מתעדכן אוטומטית
למי זה מתאים
התפקיד מתאים לבעלי 2-5 שנות ניסיון בתחומי ה-GRC, אבטחת מידע או רגולציה, בעלי ידע חזק ב-SOC 2 ו-ISO 27001, מעולם ה-SaaS וההייטק. התפקיד פחות מתאים למי שמחפש עבודה מרחוק מלאה או ללא ניסיון קודם בתקני אבטחה.
תיאור המשרה המלא
המשרה המקורית · נשמר לעיוןWe’re Hiring GRC Security Specialist!
We’re looking for a hands-on GRC Security Specialist to join a leading global tech company and take ownership of key security, compliance, and governance processes.
What you’ll do:
• Lead Vendor Risk Management (TPRM) processes end-to-end
• Manage SOC 2 & ISO 27001 compliance and audits
• Drive security governance, policies, risk assessments, and remediation
• Work closely with Security, R&D, IT, Legal, Privacy & Procurement
• Leverage AI tools to make GRC processes smarter and more efficient
What we’re looking for:
• 2-5 years of experience in GRC / Information Security / Compliance, ideally in or working with SaaS/tech companies, with strong knowledge of SOC 2, ISO 27001 and security risk management.
📍 Tel Aviv | Hybrid- 3 days onsite
שאלות על המשרה
- המשרה לא ציינה שכר. אנחנו מציגים שכר רק כשהמעסיק מפרסם אותו.
- היברידי
- 2-5 years of experience in GRC / Information Security / Compliance, SOC 2 compliance and audit management experience, ISO 27001 compliance and audit management experience, Vendor Risk Management (TPRM) end-to-end management, Security governance, policies, risk assessments, and remediation