jobify_logo ×
  • מִשׁתַמֵשׁ
  • התחברות/הרשמה
  • עמוד הבית
  • מי אנחנו
  • מעסיקים מובילים
  • פרסום משרה חינם
  • צרו קשר
  • תנאי שימוש
  • מדיניות פרטיות
  • הצהרת נגישות
קרן עזריאלי טקסט בעברית עם סמל אינסוף social_security the_israeli_employment_service work_office המקום
jobify_logo
  • מי אנחנו
  • מעסיקים מובילים
  • פרסום משרה חינם
  • צרו קשר
דילוג לתוכן

עדיין מחפשים עבודה במנועי חיפוש? הגיע הזמן להשתדרג!

במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.

מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.

Senior GRC specialist

JFrog

JFrog JFrog

  • תל אביב - יפו
  • LinkedIn
LinkedIn

Senior GRC specialist

JFrog

JFrog JFrog

  • תל אביב - יפו
  • bag_icon מלאה
  • coins_icon 18,000-26,000 ₪ (הערכה מבוססת AI)
    הערכה מבוססת AI ולא שכר של המעסיק
  • LinkedIn
LinkedIn


At JFrog, we’re reinventing DevOps to help the world’s greatest companies innovate - and we want you along for the ride. This is a special place with a unique combination of brilliance, spirit, and just all-around great people. Here, if you’re willing to do more, your career can take off. And since software plays a central role in everyone’s lives, you’ll be part of an important mission. Thousands of customers, including 75% of the Fortune 100, trust JFrog to manage, accelerate, and secure their software delivery from code to production - a concept we call “liquid software.” Wouldn't it be amazing if you could join us in our journey?

We're looking for a Senior Governance, Risk, and Compliance (GRC) Specialist to join our global GRC team. In this critical role, you will help secure the JFrog platform that powers the software supply chain for thousands of the world's top organizations.

Reporting to the GRC Manager, you will work alongside a talented team to enhance our security posture, establish GRC best practices, and embed security governance into our fast-paced, DevOps-driven culture. You will be a key advisor, helping to translate complex risks and compliance requirements into actionable controls that support JFrog's mission.

As a Senior GRC specialist at JFrog you will...

  • Drive Security Framework Adoption (New Markets): Lead the strategic adoption of net-new security frameworks to unlock business markets.
  • Oversee the Security Certification Program: Oversee the end-to-end execution of our security assurance portfolio (ISO 27001, SOC 2).
  • Lead Security Audits: Serve as a primary GRC contact for internal and external audits. You'll coordinate evidence gathering, craft management responses, and drive the remediation of findings.
  • Lead Governance Initiatives: Develop, maintain, and enhance the enterprise-wide security GRC framework, policies, standards, and procedures, ensuring they align with our cloud-native and SaaS environment.
  • Risk Management & TPRM: Evolve our Third-Party (TPRM) and Internal Security Risk programs, including executing and documenting comprehensive risk assessments, ensuring that findings are remediated and clearly aligned with JFrog’s risk appetite.
  • Collaborate Cross-Functionally: Partner with engineering, product, IT, and legal teams to embed security controls into daily business operations, ideally automated.
  • Mentor & Advise: Act as a subject matter expert on governance and risk for the wider organization and provide mentorship to junior GRC team members.

To be a Senior GRC specialist at JFrog you need…

  • 5+ years of direct experience in Information Security GRC, Risk Management, or Audit, preferably acquired within a high-growth SaaS or cloud-native environment.
  • A proactive, self-starting mentality with strong analytical, project management, and problem-solving skills, with proven ability to validate your own work and drive tasks to completion independently.
  • Demonstrable expertise in managing core compliance programs (SOC 2, ISO 27001)
  • Experience pursuing net-new compliance certifications and initiatives (e.g., R, C5, TISAX, IRAP).
  • Experience developing, drafting, and implementing security policies and standards from the ground up in a tech-focused environment, harmonizing controls across frameworks to create agile standards.
  • Experience leading complex security audits, serving as a primary liaison and "in-the-room" lead during internal and external audits.
  • Strong understanding of information security principles, risk management, and control frameworks in a cloud-first environment (AWS, GCP, Azure).
  • Exceptional communication and interpersonal skills, with a proven ability to build relationships and influence change across engineering, product, and business teams, and the ability to write concise, "Executive Ready" policies and risk reports.
  • Hands-on experience with GRC platforms and a drive to automate manual GRC workflows.
  • Bachelor’s degree in Cybersecurity, Information Technology, Law, or a related field, or equivalent practical experience.

Preferred Qualifications

  • Advanced Framework Knowledge: experience with pursuing and implementing advanced security frameworks such as IRAP, NIST CSF, and FedRAMP.
  • Experience leading formal risk assessments using established methodologies (e.g., NIST RMF).
  • Familiarity with emerging AI regulations (e.g., EU AI Act, NIST AI RMF) and experience applying governance and security frameworks to AI/ML models.
  • Familiarity with the intersection of privacy laws (GDPR, CCPA) and cybersecurity regulations (DORA, SEC Rules)
  • One or more of the following professional certifications, such as CISSP, CISM, CRISC, or CISA.
  • Knowledge of DevOps principles, CI/CD pipelines, and software supply chain security concepts
  • Experience with building automated workflows to streamline compliance tasks, scripting, and integrations.


במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.

מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.

שאלות ותשובות עבור משרת Senior GRC specialist

מומחה GRC בכיר ב-JFrog אחראי על חיזוק אבטחת הפלטפורמה של JFrog, המשמשת אלפי ארגונים מובילים. התפקיד כולל הובלת אימוץ מסגרות אבטחה חדשות, פיקוח על תוכנית הסמכות האבטחה (ISO 27001, SOC 2), ניהול ביקורות אבטחה, ופיתוח ושיפור מסגרת ה-GRC הארגונית, המדיניות והנהלים, תוך התאמה לסביבת הענן וה-SaaS של החברה.

כדי להצליח בתפקיד מומחה GRC בכיר ב-JFrog, נדרש ניסיון של 5+ שנים ב-GRC אבטחת מידע, ניהול סיכונים או ביקורת, רצוי בסביבת SaaS או ענן. המועמד צריך להפגין מומחיות בניהול תוכניות ציות מרכזיות (SOC 2, ISO 27001), ניסיון בהובלת ביקורות אבטחה מורכבות, והבנה חזקה של עקרונות אבטחת מידע ומסגרות בקרה בסביבת ענן (AWS, GCP, Azure). כמו כן, נדרשות מיומנויות תקשורת בינאישיות יוצאות דופן ויכולת להשפיע על שינויים בצוותים שונים.

מומחה GRC בכיר ב-JFrog משתלב בתרבות ה-DevOps על ידי שיתוף פעולה עם צוותי הנדסה, מוצר, IT ומשפטים כדי להטמיע בקרות אבטחה בפעילות העסקית היומיומית, רצוי באופן אוטומטי. בתחום ניהול סיכוני צד שלישי (TPRM), התפקיד כולל פיתוח ושיפור תוכניות הסיכון הפנימיות והחיצוניות, ביצוע ותיעוד הערכות סיכון מקיפות, והבטחת תיקון ממצאים בהתאם לתיאבון הסיכון של JFrog.

לכל המשרות של Senior GRC Specialist

הכשרות רלוונטיות

הטכניון -  מכון טכנולוגי לישראל

הטכניון - מכון טכנולוגי לישראל

מנהלי אבטחת מידע CISO

  • map_icon ירושלים
  • ערב
  • clk_icon 10 חודשים
Real Time College

Real Time College

קורס CISO - ניהול אבטחת מידע וסייבר

  • map_icon תל אביב - יפו
  • בוקר
  • clk_icon 10 חודשים
  • תעודה ממשלתית תעודה ממשלתית
  • סיבסוד סבסוד
  • השמה השמה
הטכניון -  מכון טכנולוגי לישראל

הטכניון - מכון טכנולוגי לישראל

מנהלי אבטחת מידע CISO

  • map_icon אונליין
  • אונליין
  • clk_icon 7 חודשים
הטכניון -  מכון טכנולוגי לישראל

הטכניון - מכון טכנולוגי לישראל

מנהלי אבטחת מידע CISO

  • map_icon תל אביב - יפו
  • ערב
  • clk_icon 7 חודשים

ניתן לצפות במשרות שסימנת בכל שלב תחת התפריט הראשי בקטגוריית 'משרות שאהבתי'

המקום קרן עזריאלי טקסט בעברית עם סמל אינסוף
  • מי אנחנו
  • מעסיקים מובילים
  • צרו קשר
  • תנאי שימוש
  • מדיניות פרטיות
  • הצהרת נגישות

2026 Ⓒ ג'וביפיי - כל הזכויות שמורות

קרן עזריאלי טקסט בעברית עם סמל אינסוף social_security the_israeli_employment_service israel_innovation_authority work_office המקום
המערכת בונה את הפרופיל התעסוקתי שלך

עוד רגע...

המערכת זיהתה ששינית את הנתונים באזור האישי ומעדכנת את ההמלצות על תפקידים ומשרות בהתאם.

מצטערים, לא הצלחנו לנתח בהצלחה את הנתונים שהזנת.
אתם מוזמנים לנסות להזין שוב או להעלות קובץ קורות חיים במידה ויש לכם.
בהצלחה

הגעת להגבלה היומית של שלושה עדכונים בפרופיל האישי ביום

loader

הבקשה שלך נשלחה בהצלחה!

יש באפשרותך לשלוח בקשה לקבלת ייעוץ אישי ללא עלות מיועצת קריירה.

באפשרותך לשלוח בקשה לקבלת ייעוץ אישי ללא עלות

  • בעיה טכנית

  • סיוע בכתיבת קורות חיים או בהכנה לראיון עבודה

  • התאמה של משרות

  • אחר:

פנייתך נשלחה בהצלחה. נציג מטעם ארגון נכי צהל ייצור איתך קשר בהקדם