GRC Expert

Fireblocks
Tel Aviv-Yafo +1 more

Who this role is best for

Strong fit for GRC professionals with AI tool fluency who thrive in cross-functional environments, particularly those with experience in digital assets and cybersecurity frameworks.

Best fit for

  • Candidates with AI tool fluency and experience in digital assets and cybersecurity frameworks
    — “Demonstrated, hands-on fluency with AI tools as part of your daily workflow
  • Individuals who can modernize GRC programs using AI-driven automation and research
    — “actively leverages AI tools (from chatbot-assisted research and document creation to AI-assisted development)
  • Candidates with proven track record in TPRM and security awareness program management
    — “Own, manage, and continuously improve the company’s Third Party Risk Management (TPRM) program

Things to consider

  • This role may require managing multiple projects and meeting tight deadlines simultaneously
    — “ability to manage multiple projects simultaneously and meet tight deadlines

How to stand out

  • Highlight AI-assisted development and automation experience in your resume and interview responses
    — “using chatbots, AI assistants, and AI-assisted development
  • Emphasize your hands-on experience in managing security awareness and TPRM programs
    — “Own, manage, and continuously improve the company’s security awareness program
  • Showcase your ability to align GRC programs with industry regulations and standards
    — “Strong understanding of industry best practices, regulations, frameworks, standards and certifications
Pace · SteadyCollaboration · HighAutonomy · MediumDecision Impact · Company

Derived from job-description analysis by Serendipath's career intelligence engine.

What success looks like

  • successful GRC program implementation
  • compliance with industry standards
  • continuous improvement of GRC programs
Typical background
cybersecurityGRC operations

Skills & requirements

Required

GRC OperationsThird Party Risk ManagementSecurity AwarenessAI Tools IntegrationCybersecurityRegulatory ComplianceInternal AuditsRisk AssessmentsPolicy Management

Preferred

InnovationAutomation

Stack & domain

CybersecurityGRCAI ToolsInnovationLeadershipFinanceDigital Assets

About the role

Original posting from Fireblocks

The world of digital assets is accelerating in speed, magnitude, and complexity, opening the door to new ways for leveraging the blockchain. Fireblocks’ platform and network provide the simplest and most secure way for companies to work with digital assets and it trusted by some of the largest financial institutions, banks, globally-recognized brands, and Web3 companies in the world, including BNY Mellon, BNP Paribas, ANZ Bank, Revolut, and thousands more. 

About The Role

We are looking for a passionate and experienced Governance, Risk, and Compliance (GRC) operations specialist to contribute to our company’s efforts in making Fireblocks the most secure and trusted provider of digital asset management solutions. This role is critical in driving our day-to-day GRC programs, ensuring they are well maintained, run according to schedule, and align with our business needs.

As the GRC operations specialist, you will oversee the successful implementation and progress of GRC programs, practices, and projects, while collaborating with multiple cross-functional teams within the security department and outside of it. This role will focus on the GRC’s Third Party Risk Management (TPRM) and Employee Awareness programs, while also contributing to additional team activities and duties.

We're looking for someone who goes beyond traditional GRC operations - someone who actively leverages AI tools (from chatbot-assisted research and document creation to AI-assisted development) to modernize how our programs run, turning this role into a driver of change and innovation, not just an operational function.

Reporting line: GRC Director

What You Will Do

Own, manage, and continuously improve the company’s Third Party Risk Management (TPRM) program, making sure it is both aligned with expected security standards and best practices, and meets business requirements and SLAs.

Own, manage, and continuously improve the company’s security awareness program, making sure its scope, content, cadence and overall performance are always aligned with the latest and most relevant expectations, while also well received and relevant to the business.

Manage ongoing operations within the GRC team including project management and tracking, financial planning and reporting, annual and periodic planning, and more.

Drive ongoing GRC efficiency through innovation, automation, data-driven decision making research and exploration with AI tools as a primary lever: using chatbots, AI assistants, and AI-assisted development.

Support and contribute to ongoing GRC operations such as internal and external audits, risk assessments, certification processes, policy management, business continuity program and more.

What You Will Bring:

Minimum of 3+ years of experience in cybersecurity or GRC.

Proven experience in cyber or IT or third party risk management.

Proven experience in the security awareness domain, including development and implementation of security training programs and their testing (phishing, vishing, social engineering etc.).

Strong understanding of industry best practices, regulations, frameworks, standards and certifications such as SOC 2, ISO, NIST, CIS, DORA, GDPR, etc.

Demonstrated, hands-on fluency with AI tools as part of your daily workflow -  using AI chatbots/assistants, and comfort with AI-assisted development (e.g., building scripts, automations, or internal tools with the help of AI coding assistants). 

Visionary and innovation-driven, capable of implementing security and compliance programs in complex, fast-paced organizations.

Exceptional communication, collaboration, and interpersonal skills, with the ability to engage both technical and non-technical audiences.

Strong analytical, problem-solving skills and attention to detail, with the ability to manage multiple projects simultaneously and meet tight deadlines.

Preferred Qualifications:

Experience working with GRC software and utilities such as compliance management, policy management, risk management, vendor management, awareness, training and phishing simulation platforms, etc.

Background in the financial/digital assets sector.

Good technological understanding and familiarity with product development practices.

Fireblocks' mission is to enable every business to easily and securely access digital assets and cryptocurrencies. In order to do that, we strongly believe our workforce should be as diverse as our clients, and this is why we embrace diversity and inclusion in all its forms. 

Please see our candidate privacy policy here.

Source: Fireblocks careers

Similar roles