GRC Specialist
Rehovot, IL, IL
We're looking for a GRC Specialist to help strengthen our cybersecurity governance, risk, and compliance practices across a global organization. In this role, you'll work closely with IT, Engineering, Procurement, and business teams to ensure our security controls, third-party risk management, and compliance processes support a secure and resilient business environment.
This is an excellent opportunity to join a collaborative cybersecurity team and make a meaningful impact on the security posture of a global technology company.
What You'll Do:
Vulnerability Management
- Support the organization's vulnerability management program through CVE monitoring, risk prioritization, and coordination of remediation activities.
- Work closely with technical teams to improve software and infrastructure security and drive timely resolution of security findings.
Identity & Access Governance
- Manage identity governance activities, including access reviews, permission recertification campaigns, and user lifecycle processes.
- Monitor privileged and high-risk accounts and support continuous improvement of access control practices.
Security Governance & Compliance
- Support security awareness initiatives across the organization.
- Contribute to maintaining ISO 27001 compliance by supporting audits, control reviews, documentation, and governance activities.
- Participate in continuous improvement initiatives to strengthen cybersecurity processes and controls.
Supply Chain & Third-Party Security
- Conduct security assessments and approvals for suppliers and third-party vendors.
- Evaluate connectivity requests, network access, and security controls for internal and external integrations.
- Help ensure third-party engagements align with Stratasys security policies and risk management standards.
What You'll Bring
- 4+ years of experience in Governance, Risk & Compliance (GRC), Information Security, Cybersecurity, or a related discipline.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field
- Strong understanding of cybersecurity frameworks and standards such as ISO 27001 and NIST Cybersecurity Framework.
- Hands-on experience with security technologies such as SIEM, endpoint security, DLP, vulnerability management, or similar security platforms.
- Strong analytical and problem-solving skills with the ability to assess security risks and recommend practical solutions.
- Experience working across multiple stakeholders and cross-functional teams.
- Excellent written and verbal communication skills in English.