Technical GRC Expert (Fintech)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Technical GRC Expert (Fintech): Driving technical execution of GRC initiatives and security compliance across infrastructure, SaaS, and cloud environments with an accent on risk reduction and audit readiness. Focus on automating GRC workflows using AI, coordinating offensive security activities, and integrating security controls into development and deployment lifecycles.
Location: Tel Aviv-Yafo, Israel
Company
A secure platform and network enabling financial institutions, banks, and brands to safely work with digital assets and cryptocurrencies.
What you will do
- Collaborate with R&D and DevOps teams to integrate security into development processes.
- Conduct technical risk assessments, vulnerability analysis, and threat modeling.
- Coordinate penetration testing, red teaming, and vulnerability assessments.
- Leverage AI to automate GRC reporting and maintain intelligent dashboards.
- Support incident response readiness and coordinate disaster recovery simulations.
- Manage preparation for internal and external audits like SOC 2 and ISO 27001.
Requirements
- 3+ years of experience in GRC, IT Risk, or Security Operations.
- 2+ years of hands-on experience in cloud security or endpoint management.
- Strong working knowledge of AWS, GCP, or Azure environments.
- Proven ability to automate GRC workflows using tools, APIs, and AI.
- Practical experience in disaster recovery and business continuity program design.
- Excellent communication skills for engaging both technical and non-technical stakeholders.
Nice to have
- Professional certifications such as CISA, CISM, CISSP, or Security+.
- Prior experience in the financial, digital assets, or regulated sectors.
Culture & Benefits
- Work within a fast-paced, innovative cybersecurity environment.
- Focus on cutting-edge digital asset and blockchain infrastructure.
- Commitment to workforce diversity and inclusion.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →