CrawlJobs Logo

Senior GRC specialist

jfrog.com Logo

JFrog

Location Icon

Location:
Israel , Netanya/Tel Aviv

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

At JFrog, we’re reinventing DevOps to help the world’s greatest companies innovate - and we want you along for the ride. This is a special place with a unique combination of brilliance, spirit, and just all-around great people. Here, if you’re willing to do more, your career can take off. And since software plays a central role in everyone’s lives, you’ll be part of an important mission. Thousands of customers, including 75% of the Fortune 100, trust JFrog to manage, accelerate, and secure their software delivery from code to production - a concept we call “liquid software.” Wouldn't it be amazing if you could join us in our journey? We're looking for a Senior Governance, Risk, and Compliance (GRC) Specialist to join our global GRC team. In this critical role, you will help secure the JFrog platform that powers the software supply chain for thousands of the world's top organizations. Reporting to the GRC Manager, you will work alongside a talented team to enhance our security posture, establish GRC best practices, and embed security governance into our fast-paced, DevOps-driven culture. You will be a key advisor, helping to translate complex risks and compliance requirements into actionable controls that support JFrog's mission.

Job Responsibility:

  • Drive Security Framework Adoption (New Markets): Lead the strategic adoption of net-new security frameworks to unlock business markets
  • Oversee the Security Certification Program: Oversee the end-to-end execution of our security assurance portfolio (ISO 27001, SOC 2)
  • Lead Security Audits: Serve as a primary GRC contact for internal and external audits. You'll coordinate evidence gathering, craft management responses, and drive the remediation of findings
  • Lead Governance Initiatives: Develop, maintain, and enhance the enterprise-wide security GRC framework, policies, standards, and procedures, ensuring they align with our cloud-native and SaaS environment
  • Risk Management & TPRM: Evolve our Third-Party (TPRM) and Internal Security Risk programs, including executing and documenting comprehensive risk assessments, ensuring that findings are remediated and clearly aligned with JFrog’s risk appetite
  • Collaborate Cross-Functionally: Partner with engineering, product, IT, and legal teams to embed security controls into daily business operations, ideally automated
  • Mentor & Advise: Act as a subject matter expert on governance and risk for the wider organization and provide mentorship to junior GRC team members

Requirements:

  • 5+ years of direct experience in Information Security GRC, Risk Management, or Audit, preferably acquired within a high-growth SaaS or cloud-native environment
  • A proactive, self-starting mentality with strong analytical, project management, and problem-solving skills, with proven ability to validate your own work and drive tasks to completion independently
  • Demonstrable expertise in managing core compliance programs (SOC 2, ISO 27001)
  • Experience pursuing net-new compliance certifications and initiatives (e.g., R, C5, TISAX, IRAP)
  • Experience developing, drafting, and implementing security policies and standards from the ground up in a tech-focused environment, harmonizing controls across frameworks to create agile standards
  • Experience leading complex security audits, serving as a primary liaison and "in-the-room" lead during internal and external audits
  • Strong understanding of information security principles, risk management, and control frameworks in a cloud-first environment (AWS, GCP, Azure)
  • Exceptional communication and interpersonal skills, with a proven ability to build relationships and influence change across engineering, product, and business teams, and the ability to write concise, "Executive Ready" policies and risk reports
  • Hands-on experience with GRC platforms and a drive to automate manual GRC workflows
  • Bachelor’s degree in Cybersecurity, Information Technology, Law, or a related field, or equivalent practical experience

Nice to have:

  • Advanced Framework Knowledge: experience with pursuing and implementing advanced security frameworks such as IRAP, NIST CSF, and FedRAMP
  • Experience leading formal risk assessments using established methodologies (e.g., NIST RMF)
  • Familiarity with emerging AI regulations (e.g., EU AI Act, NIST AI RMF) and experience applying governance and security frameworks to AI/ML models
  • Familiarity with the intersection of privacy laws (GDPR, CCPA) and cybersecurity regulations (DORA, SEC Rules)
  • One or more of the following professional certifications, such as CISSP, CISM, CRISC, or CISA
  • Knowledge of DevOps principles, CI/CD pipelines, and software supply chain security concepts
  • Experience with building automated workflows to streamline compliance tasks, scripting, and integrations

Additional Information:

Job Posted:
February 16, 2026

Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Senior GRC specialist

Digital Assurance Senior Specialist

We are currently looking for a Digital Assurance Senior Specialist to join our I...
Location
Location
Greece , Athens
Salary
Salary:
Not provided
https://www.metlengroup.com Logo
Metlen Group
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Computer Information Systems, Engineering, Finance, Business Administration, or a related field
  • 7+ years of client-facing experience delivering Digital Assurance services, with a background in Cyber/IT audit, SOX IT audits, and IT risk advisory
  • Hands-on experience auditing IT general controls, financial IT systems (e.g. Windows, Linux, SAP, Oracle, SQL), and cloud environments (e.g. AWS, Azure, AI tools)
  • Familiarity with IT standards and frameworks such as ISO 27001, COBIT, NIST, NIS2, and the AI Act
  • Certified in CISA, CRISC, CGEIT, CISM, ITIL, ISO 27001/LA, or similar credentials
  • Skilled in agile ways of working, sprint management, stakeholder engagement, and producing high-quality reports
  • Strong analytical, communication, and problem-solving skills, with a high sense of confidentiality
  • Fluent in English and willing to travel both in Greece and internationally
Job Responsibility
Job Responsibility
  • Apply the Internal Audit strategy/policies, update the Digital Audit and Assurance strategy and prepare the Digital Assurance annual plan
  • Participate in digital assurance engagements, ensuring the delivery of high-quality, tech-enabled solutions
  • Collaborate with business units to understand their systems and technologies and provide recommendations to mitigate risks
  • Develop and utilize GRC, data analytics and other innovative tools to help business units identify, assess and manage risk and controls during their transformation journey
  • Work closely with external audit teams and internal cybersecurity teams to ensure comprehensive risk management
  • Stay updated with emerging technologies (e.g., cloud, AI, cybersecurity) and provide insights to integrate them into client solutions
  • Provide mentorship to junior team members, fostering a culture of continuous learning and improvement
What we offer
What we offer
  • Competitive remuneration package
  • Ticket Restaurant Card
  • Group Health Insurance Plan
  • Preferential household electricity plan
  • Pension Plan
  • Fulltime
Read More
Arrow Right

Senior Specialist, Customer Assurance

We’re looking for a Senior Specialist, Customer Assurance to help us manage and ...
Location
Location
Canada , Vancouver
Salary
Salary:
78400.00 - 109800.00 CAD / Year
hootsuite.com Logo
Hootsuite
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Demonstrated years of experience in a security, privacy, customer assurance, or compliance related role (e.g., Security Specialist, Security Support Specialist, Privacy Specialist, GRC Specialist, Information Security or Compliance Auditor) and/or relevant experience in SaaS or technology industry
  • Bachelor’s degree or equivalent industry experience
  • Previous experience leading a high volume support request queue
  • Working knowledge of content management or content automation systems
  • Solid understanding of information security, privacy, risk, and compliance
  • Ability to work within tight deadlines and under pressure
  • Commitment to Results: consistently achieves results, demonstrating high performance, and challenging self and others to deliver result
  • Priority Setting: focuses time/energy on the most important issues/opportunities. Clearly understand how to assess the importance of tasks and decisions
  • Collaboration and Teamwork: works with others to deliver results, meaningfully contributing to the team and prioritizing group needs over individual needs
  • Accountability: holds self and others accountable to meet commitments
Job Responsibility
Job Responsibility
  • Communicate directly with internal stakeholders and external customers to understand and address their security, privacy, AI, and compliance concerns, acting as the primary point of contact on these matters for Hootsuite’s GNB and C&E Teams
  • Collaborate on the security, privacy and AI support process and build strong relationships with teams across the organization (e.g., Sales, Security, Privacy, Product and Technology, Legal), sharing best practices and learnings on what customers need to ensure they’re protected
  • Coordinate, qualify and prioritize a high volume queue of customer assurance review requests
  • Accountable for the accurate completion of customer assurance reviews (e.g., questionnaires) and similar customer requests (e.g., contracts) within tight deadlines
  • Provide expertise and support with RFPs (and similar documents) for Hootsuite’s GNB and C&E Teams
  • Maintain and further develop the capabilities of an AI-driven response automation tool and customer facing Trust Center to aid in driving process and response efficiency
  • Facilitate regular enablement sessions and knowledge sharing to update GNB and C&E teams on new security, privacy and AI support, processes and collateral
  • Manage Salesforce and other reports (e.g., Trust Center reports) that track Customer Assurance program metrics
  • share key data insights with stakeholders on successes, failure points and key learnings from customer review requests
  • Oversee the maintenance of security, privacy and AI collateral and certifications including Trust Center, CAIQ, SIG , etc
What we offer
What we offer
  • Canadian Benefits: health insurance including medical, dental, vision, life/disability insurances
  • Employee and Family Assistance Program
  • group RRSP plan with a company match of up to 4% of base salary
  • US Benefits: health insurance including medical, dental, vision, and life/disability insurances
  • 401k Plan with a company match (up to 4% of base salary)
  • Employee and Family Assistance Program
  • Global Parental Leave: 26 weeks of full and partially paid leave for eligible employees
  • Fulltime
Read More
Arrow Right

Senior Information Security GRC Specialist

The Senior Information Security GRC Specialist is responsible for enhancing the ...
Location
Location
Saudi Arabia
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Information Technology or Computer Science
  • Certifications like CISA and CRISC
  • At least 5 years of experience in information security
  • Strong communication skills
Job Responsibility
Job Responsibility
  • Enhancing the organization's information security program through risk assessments, compliance management, and policy development
What we offer
What we offer
  • Access to various wellness initiatives and health benefits tailored to individual needs
  • Competitive leave policies for vacations, illness, recovery or significant life events
  • Competitive salary plus a bonus or commission plan
  • Access to unrestricted courses, learning programs and professional certifications
  • Active mentorship program
  • World-class career platform
  • Fulltime
Read More
Arrow Right

Senior Information Security GRC Specialist

Join a leading company as a Senior Information Security GRC Specialist, where yo...
Location
Location
Saudi Arabia
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong knowledge and experience with NCA regulations
  • Strong experience in Essential Cybersecurity Controls (ECC)
  • Advanced understanding of information security frameworks and standards
  • Advanced proficiency in conducting risk assessments, analyzing security controls, and policy management
  • Excellent communication and interpersonal skills for collaborating with various stakeholders
  • Strong project management skills for handling security initiatives
  • Advanced familiarity with legal and compliance aspects related to information security
  • Bachelor’s degree or equivalent in Information Technology or Computer Science degree or related field
  • Security certifications such as CISA, CRISC, COBIT, IIA or equivalent preferred
  • Certifications such as Lead audit/Implementer - ISO 27001, SOC TSP preferred
Job Responsibility
Job Responsibility
  • Leads risk assessments and gap analyses to identify vulnerabilities and recommends risk mitigation strategies
  • Develops and maintains security policies, standards, and procedures
  • Collaborates with legal and compliance teams to ensure adherence to regulatory requirements
  • Provides guidance and support to junior GRC team members
  • Assists in the creation and delivery of security awareness and training programs
  • Participates in security incident response activities as needed
  • Contributes to the continuous improvement of the information security program
  • Assists in policy management and refinement
  • Performs any other related task as required
  • Closing gabs on key findings during internal audits and evidence validation
What we offer
What we offer
  • Flexible, hybrid working model
  • Access to various wellness initiatives and health benefits tailored to individual needs
  • Competitive leave policies
  • Competitive salary plus a bonus or commission plan
  • Access to unrestricted courses, learning programs and professional certifications
  • Active mentorship program
  • World-class career platform
  • Fulltime
Read More
Arrow Right

IT Security Specialist

We’re looking for a skilled IT Security professional to assess and strengthen se...
Location
Location
United States , Greenville
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Hands-on experience with risk management and IT control frameworks
  • Bachelor’s degree in Information Assurance, Computer Science, Engineering, or a related technical field preferred but not required
  • 2+ years of hands-on experience in Information Security and/or enterprise GRC
  • Expertise in IT Risk assessment, evaluating technical control sets, and determining the effectives of IT policies, procedures, controls, and systems
  • Cybersecurity certifications such as CySA+
  • Identify weak points in IT Controls and implements plans of action to remediate and improve
  • Strong knowledge of risk frameworks (CRI, COSO, ISO, COBIT, NIST)
  • Familiarity with regulatory standards (PCI, FFIEC, SOX, GDPR, CCPA, GLBA)
Job Responsibility
Job Responsibility
  • Conduct reviews and document the effectiveness of security and technology controls
  • Assess control environments through interviews, documentation analysis, and workflow evaluations
  • Recommend and assist in implementing risk mitigation strategies through policies, procedures, and technical safeguards
  • Collaborate with risk management and security leaders to align controls with organizational risk appetite
  • Identify strengths and gaps in controls related to privacy, security, resilience, and compliance
  • Advocate for improvements that enhance security without compromising business operations
  • Support control development and implementation across testing, QA, and production environments
  • Prepare and present reports on control effectiveness to senior leadership
  • Stay informed on regulatory changes, internal policies, and industry best practices
What we offer
What we offer
  • medical
  • vision
  • dental
  • life and disability insurance
  • 401(k) plan
Read More
Arrow Right

Customer Success Manager

At Stratsys, we offer a SaaS platform that streamlines compliance in business-cr...
Location
Location
Sweden , Gothenburg; Stockholm
Salary
Salary:
Not provided
Stratsys
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s or master’s degree in a relevant field, such as business administration or systems science
  • 1-3 years of relevant work experience, preferably as a Customer Success Manager or similar role
  • Strong interest in systems and digitization with experience in handling and learning new systems
  • Fluent in Swedish with excellent English skills
Job Responsibility
Job Responsibility
  • Build long-term customer relationships based on trust and engagement, working with both senior decision-makers and operational teams
  • Ensure that customers achieve their goals and get full value from our platform by identifying needs and turning them into business opportunities
  • Be a trusted advisor who develops product knowledge, advises customers, and increases awareness and interest in our products
  • Sales responsibility: Collaborate with Sales Specialists to proactively manage sales activities, meet revenue targets, and identify new opportunities within existing accounts
  • Manage your own budget with clear sales and growth targets, including negotiations, renewals and agreements to secure long-term partnerships
  • Work with Sales Specialists to analyze product usage, identify growth opportunities, and optimize product utilization
  • Drive customer dialogues such as check-ins, strategy meetings and product demos, as well as support with platform adjustments and improvements
What we offer
What we offer
  • An engaging work environment with people with a shared mindset to deliver a world-class product in important and impactful areas
  • Opportunities to learn about GRC, ESG, and the financial sector, even if you don’t have prior experience
  • Challenging, varied, and engaging work tasks with room and encouragement to be independent and innovative
  • Join a high-energy, close-knit team where every success is celebrated together
  • Work from a fantastic and central office in A House the Ark in Stockholm or at Kungsportplatsen in Gothenburg
  • Join a company with great benefits
Read More
Arrow Right

Senior ENT/Strategic Account Executive

The Senior ENT/Strategic Account Executive position is responsible for developin...
Location
Location
United States , Clearwater
Salary
Salary:
250000.00 - 270000.00 USD / Year
knowbe4.com Logo
KnowBe4
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's Degree strongly preferred (exceptions may be made for military experience). Degree in any field acceptable, but a plus if Cybersecurity, Computer Science, IT, Business, Marketing
  • Proven track record selling to EVP and C-level (CISOs and Security Teams a plus)
  • 5+ years SaaS sales experience (Cybersecurity preferred but not required)
  • Experience selling deals $100K - $200K in the Enterprise segment
  • Experience selling multi-year deals
  • International: English and local language proficiency required
  • Has demonstrated expertise in value-based selling methodologies with enterprise accounts
  • Executive-level presentation and communication skills
  • Experience with strategic account planning and management showing measurable account growth
  • Experience managing and progressing opportunities involving multiple stakeholders
Job Responsibility
Job Responsibility
  • Promote and sell KnowBe4’s range of products and services
  • Build and maintain a pipeline of potential customers by developing and managing relationships with prospects
  • Build and maintain a pipeline of potential cross sale, add-on and upgrade opportunities by developing and managing relationships with your assigned customer accounts
  • Identify key decision makers and develop meaningful relationships that add value and drive future account growth
  • Articulate the value proposition of KnowBe4’s full suite of products and help the customer understand how it will improve their business’s security awareness training (and security overall)
  • Achieve or exceed monthly quotas and/or targets
  • Be well versed in KnowBe4’s product offerings and promote the products and services at trade shows as requested
  • Follow up on marketing leads to generate sales opportunities and pipeline
  • Act strategically in offering or negotiating discounted pricing, in line with established policies and procedures
  • Maintain accurate and thorough records for customer calls, emails, notes, tasks, demos and other relevant information in compliance with the Administration Policy
What we offer
What we offer
  • Company-wide bonuses based on monthly sales targets
  • Employee referral bonuses
  • Adoption assistance
  • Tuition reimbursement
  • Certification reimbursement
  • Certification completion bonuses
  • Modern, high-tech, and fun work environment
  • Fulltime
Read More
Arrow Right

Senior ENT/Strategic Account Executive

The Senior ENT/Strategic Account Executive position is responsible for developin...
Location
Location
United States , Austin, Texas
Salary
Salary:
250000.00 - 270000.00 USD / Year
knowbe4.com Logo
KnowBe4
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's Degree strongly preferred (exceptions may be made for military experience)
  • Proven track record selling to EVP and C-level
  • 5+ years SaaS sales experience
  • Experience selling deals $100K - $200K in the Enterprise segment
  • Experience selling multi-year deals
  • International: English and local language proficiency required
  • Has demonstrated expertise in value-based selling methodologies with enterprise accounts
  • Executive-level presentation and communication skills
  • Experience with strategic account planning and management showing measurable account growth
  • Experience managing and progressing opportunities involving multiple stakeholders
Job Responsibility
Job Responsibility
  • Promote and sell KnowBe4’s range of products and services
  • Build and maintain a pipeline of potential customers by developing and managing relationships with prospects
  • Build and maintain a pipeline of potential cross sale, add-on and upgrade opportunities by developing and managing relationships with your assigned customer accounts
  • Identify key decision makers and develop meaningful relationships that add value and drive future account growth
  • Articulate the value proposition of KnowBe4’s full suite of products and help the customer understand how it will improve their business’s security awareness training
  • Achieve or exceed monthly quotas and/or targets
  • Be well versed in KnowBe4’s product offerings and promote the products and services at trade shows as requested
  • Follow up on marketing leads to generate sales opportunities and pipeline
  • Act strategically in offering or negotiating discounted pricing, in line with established policies and procedures
  • Maintain accurate and thorough records for customer calls, emails, notes, tasks, demos and other relevant information in compliance with the Administration Policy
What we offer
What we offer
  • Company-wide bonuses based on monthly sales targets
  • Employee referral bonuses
  • Adoption assistance
  • Tuition reimbursement
  • Certification reimbursement
  • Certification completion bonuses
  • Modern, high-tech, and fun work environment
  • Fulltime
Read More
Arrow Right