Security Compliance Coordinator

Nebius · Tel Aviv, Israel · Engineering

Posted 2026-10-08

Apply for this role →

The role

The Security Compliance Coordinator supports the day-to-day execution and scaling of the company's security compliance program. This hands-on role coordinates audits and certifications, performs control and evidence reviews, supports supplier compliance reviews within Third Party Risk Management (TPRM), and drives assigned actions to closure across multiple stakeholders. The coordinator works alongside other team members and is expected to contribute professional judgment, not only administrative tracking.

Your responsibilities will include:

Compliance and Audit Operations

Coordinate external audits, certifications, and readiness activities, including SOC 2 and ISO-based programs, evidence collection, control populations, sampling, and auditor requests.

Perform recurring control testing and evidence reviews; identify gaps and inconsistencies and track findings, corrective actions, and remediation commitments through closure.

Maintain organized, audit-ready records and provide clear status reporting on milestones, risks, dependencies, and overdue actions.

TPRM and Supplier Compliance Reviews

Conduct compliance reviews of new and existing suppliers as part of the TPRM process, assessing questionnaires, SOC reports, ISO certifications, policies, and other security and compliance evidence against applicable requirements.

Identify missing, expired, or insufficient supplier evidence and material compliance gaps; coordinate clarifications and remediation and document the resulting assessment, decision, escalation, or accepted exception.

Governance and Compliance Projects

Support the policy and procedure lifecycle, including inventory maintenance, owner coordination, scheduled reviews, approval tracking, publication, and reporting.

Support the implementation and operation of the GRC platform, including workflows, evidence automation, integrations, data quality, reporting, and user adoption.

Support the integration of new entities, services, and sites into the compliance program, including scope extensions and data-center documentation and evidence coordination.

Maintain workplans and Jira tasks and develop practical templates, metrics, and reporting that improve visibility and consistency across assigned workstreams.

We expect you to have:

2-3 years of experience in information security compliance, GRC, IT audit, IT risk, or a closely related field.

Working knowledge of information security controls, audit and certification cycles, and frameworks such as ISO 27001 or SOC 2.

Ability to review evidence critically, identify missing or inconsistent information, and follow issues through to a clear and documented resolution.

Prior exposure to TPRM, supplier security or compliance assessments, or review of third-party assurance documentation is an advantage.

Strong organizational and English communication skills, with the ability to manage multiple workstreams and summarize requirements, findings, and status accurately.

Proficiency with Jira, Confluence, and Excel or equivalent spreadsheet tools; experience with GRC platforms is an advantage.

Apply for this role →

← Back to all jobs