GRC Manager
Next Insurance · Kfar Saba, Israel · On-site
Posted Aug 30, 2026
Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.
Location: Kfar Saba, IL (hybrid) ERGO NEXT's mission is to help entrepreneurs thrive. We’re doing that by building the only technology-led, full-stack provider of small business insurance in the industry, taking on the entire value chain and transforming the customer experience.
Simply put, wherever you find small businesses, you’ll find ERGO NEXT.
Since 2016, we’ve helped hundreds of thousands of small business customers across the United States get fast, customized and affordable coverage. We’re backed by industry leaders in insurance and tech, and we still have room to grow - that’s where you come in.
NEXT is expanding its role within the ERGO Group as a software and SaaS platform provider. As our platform capabilities grow beyond the US and into Europe, we are building a dedicated GRC capability to support European regulatory, security, privacy, operational resilience, and assurance expectations.
We are looking for a proactive, experienced GRC Manager to build and lead our Europe Platform Governance domain. This person will work at the intersection of GRC, engineering, product, security, privacy, legal, and ERGO Group stakeholders. The role requires someone who can translate complex regulatory and group requirements into practical controls, partner effectively with technical teams, and build scalable governance processes from the ground up.
This is a high-impact role for a self-starter who is comfortable with ambiguity, experienced in regulated technology environments, and capable of building new programs while maintaining strong execution discipline.
What you’ll do
Build and lead the GRC domain supporting NEXT’s expansion into ERGO Europe.
Translate requirements from DORA, GDPR, the EU AI Act, ERGO Group standards, and related regulatory expectations into practical governance, controls, and evidence processes.
Partner with Engineering, Product, Security, Privacy and Legal to embed compliance and risk requirements into platform design and software delivery.
Support platform replication and SaaS-readiness activities, including governance over cyber security risk, operational resilience, data protection, AI governance, third-party dependencies, incident management, logging, monitoring, access controls, and auditability.
Serve as a key GRC interface with Group and European stakeholders.
Develop and maintain regulatory readiness roadmaps, control mappings, gap assessments, risk registers, issue remediation plans, and executive reporting.
Design scalable evidence collection and assurance processes to support audits, reviews, regulatory inquiries, and internal governance.
Coach and support GRC team members contributing to the Europe domain.
Help mature NEXT’s GRC function as the company grows from a US-focused platform into a broader group technology provider.
What we’re looking for
7+ years of experience in GRC, security & regulatory compliance, operational resilience, privacy governance, and evidence based…