
About JFrog
The software supply chain platform for seamless updates
Key Highlights
- Headquartered in Sunnyvale, CA with 1001+ employees
- $226.5 million raised in Series C funding
- Serves thousands of clients including Dell, Netflix, and Facebook
- Focus on automating DevOps and DevSecOps with REST APIs
JFrog, headquartered in Sunnyvale, CA, is a leading software supply chain platform that automates the release of software updates. Founded in 2008, JFrog has raised $226.5 million in funding and serves thousands of clients, including Dell, Netflix, and Facebook. With a focus on DevOps and DevSecOps,...
🎁 Benefits
JFrog offers an Employee Stock Purchase Plan, comprehensive medical, dental, and vision coverage, a robust retirement plan, wellness programs, and gen...
🌟 Culture
JFrog fosters a culture centered on automation and security, emphasizing the importance of continuous software updates. The company prioritizes collab...
Overview
JFrog is hiring a Senior GRC Specialist to enhance security posture and establish governance best practices. You'll work with frameworks like ISO 27001 and SOC 2, and require knowledge of GDPR and DevOps principles.
Job Description
Who you are
You have 5+ years of experience in Governance, Risk, and Compliance (GRC) roles, ideally within a technology or software environment. Your expertise includes navigating complex compliance requirements and translating them into actionable controls that support business objectives. You possess strong analytical skills and a deep understanding of security frameworks, including ISO 27001 and SOC 2, which you have successfully implemented in previous roles.
You are familiar with privacy laws such as GDPR and CCPA, and you understand the intersection of these regulations with cybersecurity standards. Your professional certifications, such as CISSP, CISM, or CISA, demonstrate your commitment to maintaining high standards in security and compliance. You have experience working in a DevOps-driven culture, which allows you to effectively integrate security governance into fast-paced development environments.
Desirable
Experience with building automated workflows to streamline compliance tasks is a plus. You are comfortable with scripting and integrations, which enhances your ability to manage compliance processes efficiently. Your collaborative nature allows you to work effectively with cross-functional teams, ensuring that security practices are embedded throughout the organization.
What you'll do
As a Senior GRC Specialist at JFrog, you will lead the strategic adoption of new security frameworks to unlock business opportunities in new markets. You will oversee the execution of the security certification program, ensuring that the organization meets its compliance obligations and maintains its security assurance portfolio. Your role will involve conducting security audits and assessments, identifying areas for improvement, and implementing necessary changes to enhance the overall security posture.
You will serve as a key advisor to various teams, helping them understand and navigate complex risks and compliance requirements. By embedding security governance into the DevOps culture, you will ensure that security is a priority at every stage of the software development lifecycle. Your insights will help shape the organization's approach to risk management and compliance, ultimately supporting JFrog's mission to secure the software supply chain for its customers.
What we offer
At JFrog, you will be part of a dynamic team that values innovation and collaboration. We offer competitive compensation and benefits, along with opportunities for professional growth and development. You will work in an environment that encourages you to take initiative and contribute to meaningful projects that impact thousands of organizations worldwide. Join us in our mission to redefine DevOps and secure the future of software delivery.
Interested in this role?
Apply now or save it for later. Get alerts for similar jobs at JFrog.
Similar Jobs You Might Like
Based on your interests and this role

R&d Team Lead
JFrog is seeking an R&D Team Lead to guide a team in developing security solutions for software delivery. You'll leverage your expertise in Java and distributed systems to manage complex projects. This role requires hands-on leadership and experience in software design.

Full Stack Engineer
JFrog is hiring a Senior Full Stack Engineer to lead the development of foundational frontend components and services. You'll work with TypeScript, Vue.js, and Node.js to support platform-wide features. This position requires extensive full-stack experience and strong leadership skills.

Security Engineer
JFrog is hiring a SecOps Team Lead to manage and mentor a team of SecOps engineers, focusing on incident response and security operations. You'll work with technologies like Python, Go, and various security tools. This role requires strong leadership and technical skills in security engineering.

Qa Engineer
JFrog is seeking a Senior QA Engineer to lead quality initiatives across the organization. You'll work closely with developers and Quality Engineers to enhance product quality using automation frameworks. This role requires hands-on experience with scripting and data analysis tools.

Senior Product Manager
JFrog is seeking a Senior Product Manager to lead the product lifecycle for JFrog Security. You'll collaborate with engineering, sales, and marketing teams to deliver innovative software security solutions. This role requires strong project management and communication skills.