jobify_logo ×
  • מִשׁתַמֵשׁ
  • התחברות/הרשמה
  • עמוד הבית
  • מי אנחנו
  • מעסיקים מובילים
  • פרסום משרה חינם
  • צרו קשר
  • תנאי שימוש
  • מדיניות פרטיות
  • הצהרת נגישות
קרן עזריאלי טקסט בעברית עם סמל אינסוף social_security the_israeli_employment_service work_office המקום
jobify_logo
  • מי אנחנו
  • מעסיקים מובילים
  • פרסום משרה חינם
  • צרו קשר
דילוג לתוכן

עדיין מחפשים עבודה במנועי חיפוש? הגיע הזמן להשתדרג!

במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.

מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.

Cyber GRC Lead

Active Fence

Active Fence Active Fence

  • רמת גן

Cyber GRC Lead

Active Fence

Active Fence Active Fence

  • רמת גן
  • bag_icon מלאה, היברידית
  • coins_icon 25,000-35,000 ₪ הערכה מבוססת AI ולא שכר שהתקבל מהמעסיק
    הערכה מבוססת AI ולא שכר של המעסיק

Description:

We are seeking a skilled and experienced Cyber GRC Lead to join Alice (Formerly ActiveFence) CISO team. The ideal candidate will be responsible for driving the security initiatives.

Key Responsibilities:

  • Third-Party Risk Management (TPRM) & Supply Chain Security:
  • Lead the end to end Operational TPRM lifecycle, assessing and continuously monitoring the security postures of vendors, SaaS platforms, AI tool providers.
  • Establish risk criteria for third party tools, ensuring third party AI integrations do not introduce data leakage, or intellectual property risks.
  • Security Awareness & Culture & Behavioral Programs:
  • Design and manage the enterprise wide security awareness and training program using modern platforms.
  • Conduct targeted phishing simulations, role based security training and specialized training among others on GenAI risks (prompt injection, shadow AI, data exposure).
  • Customer Due Diligence (DDQs) & Sales Enablement:
  • Manage and streamline the end to end customer security assessment process (DDQs, RFPs, Security Questionnaires, customer audits).
  • Build and maintain a centralized, automated knowledge base to expedite responses, directly removing friction from sales velocity and supporting enterprise revenue goals.
  • Risk Management Frameworks & Risk Advisory:
  • Lead ongoing security risk assessments, maintaining a dynamic Risk Register mapped to real world business impacts.
  • Provide continuous risk advisory services across business units, establishing risk treatment and mitigation plans that balance operational agility with guardrails.
  • GRC Automation & Continuous Compliance:
  • Architect and leverage high-level GRC automation tools to move from point in time audits to continuous control monitoring.
  • Drive process automation for evidence collection, vendor assessments, and policy management to reduce manual overhead across technical teams.
  • Compliance, Frameworks & AI Governance:
  • Maintain core information security certifications (ISO 27001, SOC 2 Type II, etc)
  • Build, operationalize, scale the organization's AI Governance Framework, referencing established benchmarks (NIST AI RMF, ISO/IEC 42001).
  • Lead internal and external audit readiness, acting as the primary liaison for independent auditors.
  • Close Collaboration with Legal, Privacy & DPO:
  • Partner directly with Legal and Privacy teams to operationalize global data protection standards (GDPR, CCPA, EU AI Act) align security controls with contractual commitments.


Requirements:

Professional Experience:

  • 4+ years of hands on experience in Cyber GRC, IT audit, or security consulting within global, fast paced technology companies.
  • Proven track record of owning SOC 2 Type II and ISO 27001 compliance lifecycles.
  • Direct experience partnering with Legal and Privacy teams on GDPR compliance and privacy risk assessments.
  • Demonstrated track record handling customer DDQs, vendor security reviews (TPRM), and managing security awareness platforms.
  • Technical, Automation & AI Capabilities:
  • Strong technical proficiency in utilizing GRC automation platforms to automate control testing, evidence gathering, and vendor workflows.
  • Working knowledge of cloud security (AWS/GCP/Azure), AI/ML operational risks
  • Deep familiarity with core frameworks: NIST CSF, ISO 27001, NIST AI RMF, ISO 42001.
  • Leadership & Stakeholder Management:
  • Exceptional communication and negotiation skills, capable of translating complex security and compliance demands into clear business terms
  • A pragmatic, business first mindset focused on designing guardrails that empower teams rather than introducing operational roadblocks.
  • Fluent in professional English (written and verbal).

Preferred Qualifications (Pluses):

  • Industry certifications: CISA, CRISC, CISM, CISSP, CIPP/E, or IAPP AIGP.
  • Experience with automated TPRM and vendor intelligence solutions
  • Practical scripting capabilities to custom build or tie together GRC automation workflows.


About Alice:

Alice is a trust, safety, and security company built for the AI era. We safeguard the communicative technologies people use to create, collaborate, and interact—whether with each other or with machines.

In a world where AI has fundamentally changed the nature of risk, Alice provides end-to-end coverage across the entire AI lifecycle. We support frontier model labs, enterprises, and UGC platforms with a comprehensive suite of solutions: from model hardening evaluations and pre-deployment red-teaming to runtime guardrails and ongoing drift detection.




במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.

מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.

שאלות ותשובות עבור משרת Cyber GRC Lead

ה-Cyber GRC Lead ב-Active Fence יהיה אחראי על ניהול סיכוני צד שלישי (TPRM), תוכניות מודעות אבטחה, תהליכי בדיקת נאותות ללקוחות (DDQs), מסגרות ניהול סיכונים, אוטומציה של GRC, עמידה בתקנים (כמו ISO 27001 ו-SOC 2 Type II), ופיתוח מסגרת ממשל AI, תוך שיתוף פעולה הדוק עם צוותי משפט ופרטיות.

לתפקיד Cyber GRC Lead ב-Active Fence נדרש ניסיון של 4+ שנים ב-Cyber GRC, ביקורת IT או ייעוץ אבטחה בחברות טכנולוגיה גלובליות. נדרשת מומחיות מוכחת בניהול מחזורי ציות ל-SOC 2 Type II ו-ISO 27001, ניסיון עם GDPR, טיפול ב-DDQs של לקוחות וסקירות אבטחה של ספקים. כמו כן, נדרשת מיומנות טכנית בפלטפורמות אוטומציה של GRC, ידע באבטחת ענן (AWS/GCP/Azure) וסיכוני AI/ML, והיכרות עמוקה עם מסגרות כמו NIST CSF, ISO 27001, NIST AI RMF ו-ISO 42001.

תפקיד Cyber GRC Lead ב-Active Fence חיוני לחיזוק פתרונות האבטחה של החברה בעידן ה-AI על ידי פיתוח והטמעה של מסגרת ממשל AI (בהתבסס על NIST AI RMF ו-ISO/IEC 42001), הבטחת עמידה בתקנים גלובליים, וניהול סיכונים הקשורים לשילוב AI. התפקיד כולל גם אבטחת שרשרת האספקה מפני סיכוני AI, מניעת דליפת נתונים וסיכוני קניין רוחני, ובניית תרבות אבטחה ארגונית המתמודדת עם סיכוני GenAI כמו הזרקת פרומפטים ו-Shadow AI.

משרות נוספות מומלצות עבורך
  • רשימת משאלות

    Cyber TGRC Lead

    • map_icon רחובות
    Elbit Systems

    Elbit Systems

  • רשימת משאלות

    Cyber TGRC Lead

    • map_icon רחובות
    אלביט מערכות

    אלביט מערכות

לכל המשרות של Cyber GRC Lead

ניתן לצפות במשרות שסימנת בכל שלב תחת התפריט הראשי בקטגוריית 'משרות שאהבתי'

המקום קרן עזריאלי טקסט בעברית עם סמל אינסוף
  • מי אנחנו
  • מעסיקים מובילים
  • צרו קשר
  • תנאי שימוש
  • מדיניות פרטיות
  • הצהרת נגישות

2026 Ⓒ ג'וביפיי - כל הזכויות שמורות

קרן עזריאלי טקסט בעברית עם סמל אינסוף social_security the_israeli_employment_service israel_innovation_authority work_office המקום
המערכת בונה את הפרופיל התעסוקתי שלך

עוד רגע...

המערכת זיהתה ששינית את הנתונים באזור האישי ומעדכנת את ההמלצות על תפקידים ומשרות בהתאם.

מצטערים, לא הצלחנו לנתח בהצלחה את הנתונים שהזנת.
אתם מוזמנים לנסות להזין שוב או להעלות קובץ קורות חיים במידה ויש לכם.
בהצלחה

הגעת להגבלה היומית של שלושה עדכונים בפרופיל האישי ביום

loader

הבקשה שלך נשלחה בהצלחה!

יש באפשרותך לשלוח בקשה לקבלת ייעוץ אישי ללא עלות מיועצת קריירה.

באפשרותך לשלוח בקשה לקבלת ייעוץ אישי ללא עלות

  • בעיה טכנית

  • סיוע בכתיבת קורות חיים או בהכנה לראיון עבודה

  • התאמה של משרות

  • אחר:

פנייתך נשלחה בהצלחה. נציג מטעם ארגון נכי צהל ייצור איתך קשר בהקדם