Mploy - דרושים

דרושים GRC Analyst בתל אביב

 \ 
PMO \ 

GRC Analyst

 נכון לתאריך

 

17/10/2025

 תל אביב

 Upwind Security

**Upwind is a next-generation Cloud Security Platform that leverages runtime context to identify and prioritize critical risks, providing precise insights and efficient cloud security management. Unlike traditional tools, Upwind uses runtime data proactively for risk prioritization and posture insights, ensuring teams focus on what truly matters. With industry-leading efficiency and eBPF-powered sensors, Upwind delivers comprehensive capabilities, including agentless cloud posture discovery, real-time threat protection, and integrated API security. From misconfigurations to malware defense, Upwind ensures end-to-end, cost-effective cloud infrastructure protection. At Upwind, you’ll have the opportunity to think creatively, explore new ideas, and use your skills to make a meaningful impact on our growth.

Upwind Security is seeking a highly motivated GRC (Governance, Risk, and Compliance) Analyst to join our growing Security & Compliance team. In this role, you will be responsible for supporting the implementation, operation, and continuous improvement of our GRC framework. You will help ensure our organization’s policies, procedures, and controls align with regulatory requirements and industry best practices.

Responsibilities

  • Governance: Develop, maintain, and socialize security policies, standards, and procedures aligned with ISO 27001, SOC 2, GDPR, FedRamp and other frameworks.
  • Risk Management: Lead the enterprise, product, and vendor risk management programs—including risk assessments, mitigation plans, and risk registers.
  • Compliance Readiness: Own and drive security compliance initiatives such as SOC 2 Type II, ISO 27001, and customer audits.
  • Third-Party Risk: Build and operate a third-party security review program; work with Procurement and Legal on vendor onboarding and offboarding.
  • Audit & Assurance: Prepare evidence, manage internal and external audits, and continuously improve audit readiness posture.
  • Training & Awareness: Run the company-wide security awareness and training programs.
  • Metrics & Reporting: Develop KPIs and reporting dashboards to track control effectiveness and risk posture for leadership and board-level communication.
  • Collaboration: Partner with Legal, Engineering, Product, and IT to ensure compliance is embedded across business processes.

Requirements

  • 8+ years of experience in GRC, InfoSec, or risk & compliance functions
  • Strong understanding of industry standards and frameworks (e.g., SOC 2, ISO 27001, PCI, NIST, GDPR, CIS)
  • Experience leading compliance projects and audits end-to-end
  • Hands-on experience with GRC tooling and risk management workflows
  • Ability to write and communicate security policies, reports, and training in clear, accessible language
  • Strong project management skills and stakeholder engagement ability
  • Prior experience in a fast-paced startup or SaaS environment - a plus
  • Relevant certifications: CISA, CISM, CRISC, or ISO 27001 Lead Implementer/Auditor - a plus

משרות דומות שיכולות לעניין אותך

 נכון לתאריך

 

05/11/2025

 תל אביב

**Description and Requirements

**"At BMC trust is not just a word - it's a way of life!" **Description And Requirements

**CareerArc Code...  

read more

 נכון לתאריך

 

27/11/2025

 תל אביב

At PwC Israel, Risk Management is a core part of our organizational culture and reflects our commitment to delivering high-quality, professional, and ...  

read more

 נכון לתאריך

 

07/11/2025

 תל אביב

**Accelerate Your Career in Cybersecurity

**As a leader in Automated Security Validation, we help businesses around the world safely emulate real...  

read more

 נכון לתאריך

 

15/11/2025

 תל אביב

The world of digital assets is accelerating in speed, magnitude, and complexity, opening the door to new ways for leveraging the blockchain. Fireblock...  

read more

 נכון לתאריך

 

18/11/2025

 תל אביב

At Port, we are pioneering a new dimension of the Developer Experience. Our innovative platform for Internal Developer Portals has been designed with ...  

read more

 נכון לתאריך

 

10/11/2025

 תל אביב

Join Check Point’s Legal Department, a global leader in cybersecurity.

As a **Legal Counsel for Privacy**, you’ll lead and implement Check Point’s gl...  

read more

 נכון לתאריך

 

17/11/2025

 תל אביב

Navina is a fast-growing digital health SaaS company that’s on a mission to enhance the primary care experience by transforming the way physicians int...  

read more

 נכון לתאריך

 

11/11/2025

 תל אביב

We are seeking an experienced and highly professional candidate to lead Cybersecurity Assessments and Audits. This role will also play a key part in d...  

read more

 נכון לתאריך

 

18/11/2025

 תל אביב

At Port, we are pioneering a new dimension of the Developer Experience. Our innovative platform for Internal Developer Portals has been designed with ...  

read more
הצג משרות דומות נוספות...

Mploy אצלכם בוואטסאפ

✨ רוצים להתעדכן בכל המשרות הכי שוות ישר לנייד?

הצטרפו לקבוצות הוואטסאפ שלנו וקבלו את כל ההצעות המתאימות – בלי לחפש, ובלי לפספס. מחכים לכם! 📱😊