רובוט
היי א אי
stars

תגידו שלום לתפקיד הבא שלכם

לראשונה בישראל:
המלצות מבוססות AI שישפרו
את הסיכוי שלך למצוא עבודה

SOC/SIEM

מסמך
מילות מפתח בקורות חיים
סימן שאלה
שאלות הכנה לראיון עבודה
עדכון משתמש
מבחני קבלה לתפקיד
שרת
שכר
משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP

חברות מובילות
כל החברות
כל המידע למציאת עבודה
כל מה שרציתם לדעת על מבחני המיון ולא העזתם לשאול
זומנתם למבחני מיון ואין לכם מושג לקראת מה אתם ה...
קרא עוד >
לימודים
עומדים לרשותכם
מיין לפי: מיין לפי:
הכי חדש
הכי מתאים
הכי קרוב
טוען
סגור
לפי איזה ישוב תרצה שנמיין את התוצאות?
Geo Location Icon

משרות בלוח החם
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
דרושים בתיגבור 6
מיקום המשרה: לוד
תנאים נוספים:קרן השתלמות
לארגון ביטחוני מוביל בלוד דרוש/ה אנליסט/ית בקרת סייבר ( SOC ) להצטרפות לצוות מקצועי ודינמי.
התפקיד כולל עבודה במערך SOC הפועל במתכונת 7/24, כולל משמרות בשעות לא שגרתיות, סופי שבוע וחגים.
תחומי אחריות:
ניטור, זיהוי וניתוח אירועי סייבר ואבטחת מידע.
יישום ותפעול תהליכי הגנת סייבר.
התקנה, ניהול, תפעול ותחזוקה של מוצרי הגנת סייבר, לרבות Anti-Virus, Firewall, IPS, DLP, בקרת גישה והגנת התקנים ניידים.
ביצוע פעולות אבטחה שוטפות ומתן מענה לאירועי אבטחת מידע.
עבודה עם מערכות וכלי אבטחת מידע כחלק מתהליכי הניטור והבקרה.
עבודה כחלק מצוות SOC ובממשק עם גורמים מקצועיים נוספים בארגון.
דרישות:
דרישות התפקיד:
    ניסיון של שנה לפחות בתפקיד SOC - חובה.
    ניסיון בעבודה עם לפחות אחת מהמערכות: SIEM, EDR או XDR - חובה.
    השכלה רלוונטית בתחום הסייבר / אבטחת מידע - חובה.
    אנגלית ברמה גבוהה.
    יכולת עבודה בסביבה מרובת משימות ותחת לחץ.
    יחסי אנוש מצוינים ותודעת שירות גבוהה.
    יכולת עבודה עצמאית ובצוות.
    מוטיבציה גבוהה, סקרנות ויכולת למידה עצמית.
היקף העבודה:
עבודה במשמרות במתכונת 7/24, כולל לילות, סופי שבוע וחגים.
סביבת העבודה:
הצטרפות לצוות מקצועי ודינמי, בסביבה טכנולוגית ומאתגרת, עם אפשרויות ללמידה ולהתפתחות מקצועית בתחום הסייבר. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8811899
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
דרושים בmatrix
מיקום המשרה: לוד
סוג משרה: משרה מלאה
דרוש/ה אחראי/ת ניהול סקרים, מבדקי חדירה וטיפול בחשיפות, לתפקיד משמעותי הכולל עבודה בסביבה טכנולוגית מורכבת ובעלת השפעה על תשתיות קריטיות.

תחומי אחריות:
ניהול והובלת סקרי אבטחת מידע ומבדקי חדירה למערכות IT ו-OT.
עבודה מול סוקרים חיצוניים ובעלי מערכות - הגדרת תכולות, ליווי תהליכים ובקרה על ביצוע.
ניהול ומעקב אחר ממצאי סקרים ומבדקי חדירה עד לסגירתם.
בחינת פתרונות ואישור סגירת חשיפות אבטחת מידע.
עבודה מול ממשקים פנים-ארגוניים וחיצוניים והצגת סטטוסים ודוחות.
דרישות:
לפחות שנתיים ניסיון בתחום הסייבר ואבטחת המידע - חובה.
ניסיון בניהול או ליווי סקרי אבטחת מידע ו/או מבדקי חדירה - חובה.
היכרות עם טכנולוגיות ומוצרי הגנת סייבר וטופולוגיות רשת מאובטחות - חובה.
קורסים בתחום אבטחת המידע - חובה.
שליטה מלאה בעברית ובאנגלית.
יכולת גבוהה לכתיבה, ניסוח והצגת מסמכים ומצגות.
שליטה מלאה ביישומי Office. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8721375
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
דרושים בוואן פתרונות טכנולוגיים בע"מ
מיקום המשרה: ירושלים
סוג משרה: משרה מלאה
תכנון, הקמה, שדרוג ותחזוקה של מערכות SIEM וצנרת איסוף לוגים ארגונית ( data Pipeline).
הובלת תהליכי איסוף, אגרגציה, נרמול ואופטימיזציה של לוגים ממקורות ארגוניים מגוונים.
פיתוח אוטומציות וסקריפטים ושילוב כלי AI לייעול תהליכי ניטור, תחקור ותגובה לאירועים.
תכנון מערכות ניטור, בקרה והתראה בתחום הגנת הסייבר.
כתיבת מסמכי הקשחה, בחינת מוצרי הגנה וליווי אירועי סייבר.
עבודה עם סביבות ענן AWS ו-GCP, תשתיות ותקשורת.
הובלת פרויקטים טכנולוגיים ומתן ייעוץ והנחיה מקצועית לצוותים.
דרישות:
ניסיון של 4 שנים לפחות בביצוע משימות בתחום.
ניסיון מעשי בתכנון, ניהול ותפעול מערכות SIEM וניהול לוגים בסביבות מורכבות.
ניסיון בעבודה עם data Pipeline, איסוף ונרמול לוגים ואופטימיזציה.
ניסיון בכתיבת סקריפטים ואוטומציות.
ידע וניסיון בעולמות אבטחת המידע והסייבר.
היכרות עם סביבות ענן AWS ו/או GCP.
ידע בתקשורת, ארכיטקטורת רשת מאובטחת ומערכות הפעלה Windows/ Linux המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8844531
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
1 ימים
דרושים בקבוצת אשטרום
סוג משרה: משרה מלאה
קבוצת אשטרום מגייסת מיישם.ת תקשורת ואבטחת מידע למטה הקבוצה
אחריות על תפעול, תחזוקה וניהול תשתיות התקשורת ואבטחת המידע בארגון, כולל טיפול בתקלות מורכבות, יישום מדיניות אבטחה והטמעת פתרונות תקשורת ואבטחה.
*משרה זמנית לחצי שעה עם אופציה*

תחומי אחריות:
-  ניהול ותחזוקת תשתיות תקשורת (LAN/WAN) ומוצרי אבטחת מידע
- ניטור, איתור ופתרון תקלות תקשורת ואבטחה
- יישום ועדכון מדיניות אבטחת מידע במערכות הארגוניות
- עבודה מול ספקים ויצרנים לצורך הטמעה, תחזוקה ושיפור מערכות התקשורת והאבטחה

מיקום המשרה- מגדלי LYFE בני ברק
דרישות:
מה חשוב שיהיה לך?
- ניסיון של 3-5 שנים לפחות בתחום התקשורת ואבטחת המידע
- שליטה בפרוטוקולי תקשורת: TCP/IP, DNS, HTTP/HTTPS, VPN
- ניסיון בעבודה עם ציוד תקשורת של Cisco ויצרנים מובילים נוספים
- ידע וניסיון בפרוטוקולי ניתוב וטכנולוגיות: OSPF, BGP, VLAN, STP, HSRP
- ניסיון מעשי בניהול ותפעול Firewalls של Palo Alto
- ניסיון בעבודה עם פתרונות אבטחה כגון IPS/IDS, WAF, NAC, Load Balancer ו-Mail Gateway
- ידע וניסיון בתחום Endpoint Security ופתרונות EDR/XDR המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8844857
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
דרושים בוואן פתרונות טכנולוגיים בע"מ
מיקום המשרה: מספר מקומות
סוג משרה: משרה מלאה
- אחריות לטיפול מקצועי בחשד לאירועי סייבר
- פיקוח על הפעילות השוטפת של מרכז הניטור וניהול משימות של אנליסטים T1
- מעקב רציף על האירועים / חשד לאירועים
- ניהול משמרות ניטור
- הקצאה וניהול משימות במרכז הניטור
- הפעלת צוותים לניהול תגובה לאירועי סייבר
- ניהול ומעקב פערי ניטור מול הצוותים הרלוונטיים
דרישות:
לפחות שנה כאנליסט ב- SOC
לפחות שנה כמנהל צוות ב- SOC או כמנהל צוות תגובה
ניסיון בהגדרות חוקים במערכות ה- SIEM (יתרון ל-SPLUNK)
יכולת הובלה מקצועית
יכולת ראייה בוגרת
המשרה מיועדת לנשים ולגברים כאחד. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8165491
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
מיקום המשרה: לוד
סוג משרה: משרה מלאה ומשמרות
לחברה מובילה במרכז הארץ דרוש/ה ראש/ת צוות SOC לתפקיד מקצועי, Hands-On ודינמי, המשלב הובלת צוות, חקירת אירועי סייבר ועבודה טכנית מעמיקה בסביבת SOC מתקדמת.

התפקיד מתאים לSOC TIER 1 מנוסה בעל 3-4 שנות ניסיון.


מה כולל התפקיד?
ניהול מקצועי ותפעולי של צוות הבקרים במהלך המשמרת

הובלת הטיפול באירועי סייבר בזמן אמת, כולל חקירה, אסקלציה ו-Mitigation

עבודה Hands-On עם מערכות SIEM ו-XSOAR

יצירה, טיוב, תחזוקה וניהול של חוקי ניטור והתראות

ביצוע Parsing ומיפויים ב- SIEM

חיבור ואינטגרציה של רכיבי אבטחה ומקורות מידע עד לקבלת לוגים תקינה

איתור וטיפול בתקלות טכניות ועבודה מול הגורמים הרלוונטיים בארגון

ניהול וטיפול ב-EPS וברמות חומרה

בקרה על דוחות, משימות ותהליכים עד לסגירת מעגל

כתיבה, יצירה ותחזוקה של נהלי עבודה

קידום משימות ופרויקטים מקצועיים מקצה לקצה
דרישות:
מה אנחנו מחפשים?

ניסיון משמעותי ו-ותק בעבודת SOC

ניסיון בתפעול וחקירת אירועי סייבר בזמן אמת

ניסיון מעשי בעבודה עם מערכות SIEM

יכולת טכנית גבוהה, עצמאות ויכולת Troubleshooting

יכולת להוביל משימות מקצה לקצה ולעבוד באופן עצמאי

יכולת הובלה וניהול מקצועי של צוות במהלך משמרת

נכונות לעבודה במשמרות בוקר וצהריים ולכוננויות

ניסיון בעבודה עם XSOAR - יתרון משמעותי


מיקום: מרכז הארץ

זו הזדמנות מצוינת לאיש SOC מנוסה שרוצה לעשות את הצעד הבא לתפקיד המשלב הובלה מקצועית, אחריות וניהול לצד המשך עבודה טכנית Hands-On בליבת פעילות הסייבר. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8504132
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
דרושים בוראסיטי
מיקום המשרה: רמת גן
סוג משרה: משרה מלאה
מיישם Splunk / data Analyst
דרישות:
שנתיים ניסיון בתפקידי תמיכה טכנית - חובה
היכרות עם עולם תשתיות ה-IT בארגוני Enterprise - חובה
ניסיון במערכות הפעלה Linux / Unix - חובה
ניסיון עם Splunk (כתיבה ב-SPL) - יתרון משמעותי
ניסיון בכתיבת סקריפטים Python, Bash וכו' - יתרון משמעותי
ניסיון בפלטפורמות Big Data אחרות כגון Elastic - יתרון
ניסיון בסביבות ענן AWS/GCP/Azure - יתרון
כישורי SQL חזקים וניסיון בכתיבת שאילתות מורכבות - יתרון
יכולת תכנות ב- JAVA / JavaScript - יתרון
סיווג בטחוני - יתרון המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8807278
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
דרושים בExtreme Group
מיקום המשרה: פתח תקווה
תחומי אחריות:
תחקור אירועים ומתן מענה לאסקלציה פנימית עבור Tier 1
ביצוע חקירות מקיפות של התראות אבטחה מורכבות, אירועי פריצה וחשדות לפעילות זדונית (Malware, Phishing, Unauthorized Access)
ביצוע ציד איומים יזום (Proactive Threat Hunting)  בארגון תוך התמקדות בזיהוי פעילות זדונית בחתימה נמוכה ובאנומליות התנהגותיות באמצעות ניתוח סטטיסטי מתקדם, קורלציה של אירועים לאורך זמן ויישום טקטיקות זיהוי מבוססות MITRE ATT&CK
ביצוע ניתוח פורנזי בסיסי של תחנות קצה (Endpoint Forensics) וניתוח תעבורת רשת (Network Traffic Analysis) לזיהוי וקטור החדירה והיקף הפגיעה
ניתוח וטיוב חוקות במערכות ה- SIEM /XDR לטובת צמצום התראות False Positives ושיפור יעילות המערכות.
זיהוי פערים בתהליכי העבודה ב- SOC  ויזום פרויקטים לשיפורם
חניכה (Mentoring) והדרכה מקצועית לאנליסטים ברמת Tier 1
דרישות:
דרישות חובה מקצועיות (השכלה, ניסיון):
2-3 שנים כ- SOC Analyst (רצוי ניסיון קודם כ-Tier 1 או בתפקיד סיסטם/רשתות).
ניסיון מוכח בתחקור, ניתוח ותגובה לאירועי אבטחת מידע
ניסיון מוכח בעבודה וחקירה בסביבת multi-cloud (AWS/Azure)
ניסיון מעשי מול מערכות אבטחה, כגון: FW, IPS, WAF, XDR/EDR, SIEM
הבנה מעמיקה של פרוטוקולי תקשורת (TCP/IP, DNS, HTTP/S) וניתוח תעבורת רשת
יכולת ביצוע ניתוח סטטי ודינמי בסיסי של קבצים חשודים
יכולת כתיבת דוחות טכניים (בעברית ובאנגלית)

יתרונות:
יכולת כתיבה ב- Python  או PowerShell לאוטומציה של תהליכי חקירה
שליטה במערכות Sentinel, Splunk  או Palo Alto Cortex
יכולת כתיבת שאילתות מורכבות ב-KQL/SPL המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8724132
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
2 ימים
דרושים בקומפאי טכנולוגיות בע"מ
לארגון מוביל דרוש/ה SOC Analyst עם אוריינטציה טכנולוגית לתפקיד Hands-on בצוות GRC, המשלב עולמות של סייבר, אוטומציה, אינטגרציות וחדשנות טכנולוגית.
התפקיד מתאים לאנליסט/ית SOC שמעוניין/ת להתפתח מעבר לעולמות הניטור והחקירה, ולהשתלב בעבודה טכנולוגית הכוללת פיתוח Scripts ואוטומציות, מיפוי ושיפור תהליכים, Troubleshooting וחיבור בין מערכות. במסגרת התפקיד עובדים מול צוותי סייבר, תשתיות, פיתוח, ענן, ביקורת ויחידות עסקיות בארגון.
דרישות:
- 2 שנות ניסיון ומעלה כ- SOC Analyst / Security Analyst / Cyber analyst או בתפקיד טכנולוגי דומה בעולמות הסייבר ואבטחת המידע- חובה
- ניסיון בכתיבת Scripts ואוטומציות באמצעות Python, PowerShell או שפות מקבילות- חובה
- יכולת להבין תהליך מורכב End-to-End, למפות אותו ולתרגם אותו לפתרון טכנולוגי- חובה
- היכרות עם עולמות GRC, לרבות ניהול סיכונים, בקרות, ציות ודרישות רגולטוריות- יתרון משמעותי
- היכרות עם ISO 27001, NIST ודרישות בתחומי פרטיות ורגולציה- יתרון משמעותי
* משרה זו פונה לנשים וגברים כאחד. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8831779
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
דרושים בGtech
לחברה מובילה דרוש/ה אנליסט/ית סייבר מנוסה להצטרפות לתפקיד מרכזי בתחום אבטחת המידע והסייבר.

התפקיד כולל אחריות על פעילות הניטור, התחקור והתגובה לאירועי סייבר, עבודה שוטפת מול צוות SOC גלובלי, ניהול חולשות אבטחה והובלת תהליכים לשיפור מערך ההגנה הארגוני.

מה בתפקיד?
ניהול קשר שוטף מול צוות ה- SOC הגלובלי.
תחקור וטיפול באירועי אבטחת מידע וסייבר, כולל Root Cause Analysis.
עבודה עם מערכות SIEM, SOAR, EDR ו-XDR לצורך ניטור, חקירה ותגובה.
ניהול ותיעדוף ממצאי חולשות אבטחה ומעקב אחר תהליכי תיקון.
עבודה מול צוותי IT, תשתיות ופיתוח.
תחזוקה, שיפור וכיול של בקרות אבטחה וצמצום False Positives.
השתתפות בפרויקטים טכנולוגיים והטמעת בקרות אבטחה חדשות.
עבודה מול ממשקים טכנולוגיים ועסקיים בארץ ובחו"ל.
דרישות:
2/3 שנות ניסיון כאנליסט/ית סייבר או SOC Tier 2.
ניסיון בתחקור אירועי סייבר, ניתוח לוגים ותעבורת רשת.
ניסיון בעבודה עם כלי SIEM / SOAR / EDR / XDR.
ידע וניסיון בסביבות Windows, Linux, Active Directory ו-Entra ID.
הבנה טובה בתקשורת, רשתות ופרוטוקולים.
ניסיון בתהליכי Vulnerability Management.
אנגלית ברמה טובה מאוד - עבודה שוטפת מול צוותים גלובליים, כולל השתתפות בפגישות והצגת נושאים מקצועיים.
נכונות לזמינות בעת אירועי סייבר חריגים.

מה אנחנו מחפשים?
יכולת עבודה עצמאית והובלת משימות מקצה לקצה.
חשיבה אנליטית ויכולת תחקור גבוהה.
סדר, ארגון ויכולת מעקב אחר משימות ותהליכים.
יחסי אנוש מעולים ויכולת עבודה מול מגוון ממשקים.
יוזמה, אחריות אישית ורצון להתפתח מקצועית.

חשוב לדעת: מדובר במשרת בוקר, ללא משמרות וללא כוננויות קבועות, זמינות בשעות חריגות נדרשת רק במקרים חריגים של אירועי סייבר. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8841478
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
דרושים בתבל מטרו בע"מ
חברת תבל מטרו, שמפעילה ומתחזקת את הקו האדום של הרכבת הקלה, מחפשת מפעיל/ת SOC מקצועי/ת להצטרף לצוות אבטחת המידע שלנו ולפעול במרכז הבקרה בזמן אמת.

התפקיד כולל:
ניטור ותחקור מתקדם של אירועי אבטחת מידע במתקן בזמן אמת.
זיהוי, ניתוח וביצוע בדיקות מתמידות של איומי אבטחת מידע חדשים.
תיאום ודיווח עם גורמים רלוונטיים בארגון בהתאם לממצאים.
תחקור אירועי אבטחת מידע ברמת Tier 1 וכתיבת דו"חות מקצועיים.
פיתוח וכתיבת נהלים והוראות עבודה בהתאם לסטנדרטים הארגוניים.
דרישות:
ניסיון בעולמות ה SOC של חצי שנה לפחות - חובה.
זיקה לעולמות ה IT / לימודי אבטחת מידע - חובה
פרואקטיביות בתחום אבטחת מידע - יתרון.
הבנה ברשת ופרוטוקולי תקשורת - יתרון.
הכרות עם מוצרי אבטחת מידע כדוגמת:
SIEM, IPS, EDR, FW (Firewall), AV(Antivirus),NAC יתרון.
נכונות לעבודה במשמרות במשרה חלקית (3 פעמים בשבוע), כוננויות ועבודה בשעות לא שגרתיות ע"פ הצורך. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8788601
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
דרושים בBDO
מיקום המשרה: תל אביב יפו והרצליה
BDO מגייסת SOC Analyst
ההזדמנות להצטרף לצוות סייבר מקצועי ודינמי בתפקיד משמעותי
עם עבודה על טכנולוגיות מתקדמות מבית Microsoft
מיקום: מרכז, היברידי

מה נדרש לתפקיד:
ניסיון של לפחות שנתיים בעבודה ב- SOC
שליטה במערכות Microsoft Security בדגש על Sentinel
ניסיון בניתוח אירועי אבטחת מידע ותגובה לאירועים
אנגלית ברמה טובה
הסמכות Microsoft - יתרון משמעותי
סיווג ביטחוני בתוקף - יתרון
מתאים למועמדים שמחפשים סביבת עבודה טכנולוגית, מקצועית ומאתגרת עם אפשרות להתפתח ולהעמיק בעולם הסייבר.
דרישות:
מה נדרש לתפקיד:
ניסיון של לפחות שנתיים בעבודה ב- SOC
שליטה במערכות Microsoft Security בדגש על Sentinel
ניסיון בניתוח אירועי אבטחת מידע ותגובה לאירועים
אנגלית ברמה טובה
הסמכות Microsoft - יתרון משמעותי
סיווג ביטחוני בתוקף - יתרון
מתאים למועמדים שמחפשים סביבת עבודה טכנולוגית, מקצועית ומאתגרת עם אפשרות להתפתח ולהעמיק בעולם הסייבר. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8660140
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
דרושים באוקטאלי אינטגרציה בע"מ
מיקום המשרה: ירושלים
סוג משרה: משרה מלאה
מיקום: ירושלים - הר חוצבים
היקף: משרה מלאה

לחברה ממשלתית דרוש/ה SOC Analyst Tier 2 / מיישם /ת הגנת סייבר לתפקיד מקצועי ומאתגר הכולל חקירה וניתוח של אירועי סייבר, ניטור מערכות אבטחה ומתן מענה לאירועים מורכבים בסביבה ארגונית.
מה כולל התפקיד?
חקירה עצמאית ומעמיקה של אירועי סייבר.
ניתוח התראות אבטחה וקורלציה בין מקורות מידע שונים.
ביצוע Threat Hunting וזיהוי איומים.
Triage של אירועים, קביעת חומרה, Scope ו-Impact.
ביצוע פעולות Mitigation ו-Containment.
עבודה עם מערכות SIEM, SOAR, EDR ו-XDR.
חקירת אירועים בסביבות Endpoint, Identity, Network ו-Cloud.
עבודה עם IOCs ו-TTPs.
זיהוי וטיפול באירועי אבטחה והסלמת אירועים מורכבים ל-Tier 3 ולצוותי Incident Response.
תפעול, קונפיגורציה ותחזוקה של מוצרי אבטחת מידע.
כתיבת דוחות אירוע ותיעוד פעולות החקירה והטיפול.
דרישות:
דרישות התפקיד
לפחות 3 שנות ניסיון בתחום הגנת הסייבר.
ניסיון כ- SOC Analyst Tier 2 או בתפקיד מקביל.
ניסיון בחקירה וניתוח של אירועי סייבר באופן עצמאי.
ניסיון מעשי עם מערכות SIEM / SOAR / EDR / XDR.
היכרות טובה עם רשתות תקשורת, מערכות הפעלה ותשתיות IT.
היכרות עם Network Security ו-Endpoint Security.
ניסיון בעבודה עם חשבונות והרשאות, בקרת גישה וניטור מערכות.
אנגלית ברמה גבוהה.
יכולת עבודה עצמאית ובצוות, למידה מהירה ותפקוד בתנאי לחץ.
ניידות ורכב - חובה.
נכונות לזמינות במערכות קריטיות, כולל כוננויות וזמינות 24/7 לפי הצורך.

השכלה
תואר בתחום המחשבים / מערכות מידע / אבטחת מידע - יתרון.
ניתן להתאים גם למועמדים ללא תואר בעלי הכשרות מקצועיות משמעותיות בתחום הסייבר או רקע טכנולוגי רלוונטי. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8823920
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
2 ימים
דרושים במלם תים
מיקום המשרה: פתח תקווה
סוג משרה: משרה מלאה
לצוות SOC של קבוצת Malam Team דרוש/ה SOC Tier 2
התפקיד כולל חקירה מעמיקה ותגובה לאירועי סייבר מורכבים, טיפול באירועים המוסלמים מ-Tier 1, ניתוח לוגים, ביצוע פעולות Response ושיפור מתמיד של מערכות ה- SOC.
עבודת hands-on עם QRadar, טיוב ובניית חוקי ניטור וקורלציות, חיבור מקורות לוג, Parsing ו-DSM, לצד אוטומציה וייעול תהליכים.
העבודה במשרה מלאה בימי א-ה בשעות 8-17 / 9-18.
דרישות:
- שנה ומעלה ניסיון בתפקיד SOC Tier 2
- ניסיון מוכח בעבודה עם IBM QRadar - חובה
- ניסיון עם מערכות EDR כגון SentinelOne / Microsoft Defender / CrowdStrike
- ניסיון ב-Log Sources, Parsing, DSM ונרמול נתונים ב-QRadar
- ניסיון בטיוב חוקים, בניית קורלציות והחרגות
- ניסיון ב-XSOAR ופיתוח Playbooks - יתרון
- ידע ב- Python / PowerShell - יתרון
- ניסיון בסביבת MSSP / SOC מנוהל - יתרון המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8799606
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
דרושים בmatrix
מיקום המשרה: ירושלים
למערך הדיגיטל הלאומי דרוש/ה מומחה/ית בכיר/ה להובלת תחום הSIEM והניטור האבטחתי. התפקיד כולל תכנון, הקמה וניהול של תשתיות איסוף לוגים ממערכות ארגוניות ומסביבות ענן, בשיתוף צוותי סייבר, ענן ותשתיות.

מה כוללת המשרה?
הובלת מערכות SIEM וצנרת הלוגים הארגונית מקצה לקצה.
איסוף מידע ממקורות רבים, אגרגציה, נרמול, סינון ואופטימיזציה של לוגים.
תכנון והטמעת תהליכי איסוף מסביבות On-Premise ומסביבות AWS וGCP.
פיתוח סקריפטים ואוטומציות לשיפור הניטור, התחקור והתגובה לאירועי סייבר.
הובלת פרויקטי שדרוג והגירה, פתרון תקלות מורכבות ומתן הנחיה מקצועית לצוותים.
דרישות:
לפחות 4 שנות ניסיון בביצוע מטלות רלוונטיות לתפקיד.
ניסיון מעשי בתכנון, תפעול וניהול מערכות SIEM ולוגים בסביבות מורכבות.
ניסיון באיסוף לוגים ממקורות מרובים ובבניית תהליכי data Pipeline.
ניסיון בכתיבת סקריפטים ואוטומציות.
ניסיון באבטחת מידע וסייבר, והיכרות עם תשתיות ענן, מערכות Windows/ Linux ותקשורת נתונים.
עמידה בתנאי ההשכלה של המשרה: תואר ראשון בתחום טכנולוגי רלוונטי, או חלופה מוכרת בהתאם לתנאי המכרז.
יתרון לניסיון עם Splunk או Google SecOps, וכן עם Bindplane או תשתית איסוף לוגים מקבילה.

מיקום: ירושלים | מתכונת היברידית המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8847156
סגור
שירות זה פתוח ללקוחות VIP בלבד
לוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a MXDR Analyst to join the team of cybersecurity analysts monitoring services 24/7. The role includes development of detection analyses, triage of alerts, investigation of security incidents, proactive threat hunting and enhancement of sensors and overall visibility status.
The suitable candidate should be a team player with previous experience in SOC, SecOps or security monitoring, independent, and with a can-do attitude.
Responsibilities:
Working across all areas of Sygnias SOC, including continuous monitoring and analysis, threat hunting, security compliance, security event auditing and analysis, rule development and tuning, and forensics.
Solving security incidents in accordance with defined service level agreements and objectives.
Prioritizing and differentiating between potential incidents and false alarms.
Addressing clients enquiries via phone, email, and live chat.
Working side-by-side with customers, providing insightful incident reports.
Working closely with peers and higher-tier analysts to ensure that your analysis work meets quality standards.
Identifying opportunities for improvement and automation within the MXDR Operation Lead, and leading efforts to operationalize ideas.
Identifying and offering solutions to gaps in current capabilities, visibility, and security posture.
Correlating information from disparate sources to develop novel detection methods.
Requirements:
At least one year of experience in a SOC/MDR or Managed EDR service, including night and weekend shifts.
Strong analytical thinker, problem-solving mindset, and ability to succeed in a dynamic environment.
Independent, bright and positive analyst who strives for excellence.
Proficiency and experience with scripting (Python).
Strong capabilities in drafting cyber security reports for clients.
Basic understanding of the lifecycle of advanced security threats, attack vectors, and methods of exploitation.
Hands-on experience working with SIEM technologies. (e.g. Splunk, QRadar, ArcSight, Exabeam, etc.)
Familiarity with common data and log sources for monitoring, detection and analysis (e.g., Event Logs, firewall, EDR).
Strong technical understanding of network fundamentals, common internet protocols, and system and security controls.
Basic knowledge of host-based forensics and OS artifacts.
Familiarity with cloud infrastructure, web application and servers - an advantage.
Fluent English (written, spoken) - a must. Another language - an advantage.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8845600
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
4 ימים
מיקום המשרה: הוד השרון
מחפשים תפקיד עם אחריות אמיתית בסביבה גלובלית? אנחנו מגייסים!
חברתנו מגייסת SOC Analysts למוקד הבקרה שלנו בהוד השרון.
אנחנו מנטרים ומאבטחים בזמן אמת מטענים של חברות גלובליות מובילות - באוויר, בים וביבשה המוקד שלנו פועל 24/7, ואנחנו מחפשים אנשים חדים ואחראיים שרוצים להצטרף אלינו.
מה עושים בתפקיד?
ניטור בזמן אמת של משלוחים ברחבי העולם
זיהוי וניתוח אירועים - התראות אבטחה, סטיות ממסלול וחריגות טמפרטורה
טיפול באירועים ותקשורת מול לקוחות בחו"ל, באנגלית
מה אנחנו מציעים?
הכשרה מקצועית מלאה של כ-6 שבועות - קורס וחפיפה במוקד
אפשרויות קידום והתפתחות בחברה
עבודה במשמרות גמישות שמתאימות גם לסטודנטים
ניסיון בסביבת עבודה בינלאומית
הוד השרון.
דרישות:
מה צריך?
אנגלית ברמה גבוהה בדיבור ובכתיבה - חובה
ידע ב-Excel - חובה
חשיבה אנליטית ויכולת עבודה תחת לחץ
זמינות ל-3 משמרות בשבוע לפחות, כולל לילות וסופי שבוע
ידע ב-Power BI - יתרון המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8844548
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
5 ימים
Location: Merkaz
Job Type: Full Time
we are looking for a Lead SoC Architect
Responsibilities

Definition and detailed hardware specifications of subsystems in the SoC

Breaking down the sub-system architecture into microarchitectural blocks with the related firmware, and SW components.

Understanding the system in which the SoC is integrated to and designing the SoC to perfectly fit into the datacenter system.
Requirements:
BSc or higher degree in Electrical Engineering, Computer Science or Computer Engineering. Graduated with honors.

6+ years of experience as a system architect for large, high-end ASIC SoCs.

Experience with multidisciplinary HW/SW systems.

Team player with great communication skills.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8843023
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: More than one
Job Type: Full Time
Technical Leadership: Provide authority guidance within the Splunk security domain, exhibiting deep expertise in SIEM, SOAR, and Observability integrations.

Strategic Advisory: Lead sophisticated, multi-functional security projects, acting as a trusted partner to CISO and IT leadership.

Solution Delivery: Lead the strategic planning, compose, and implementation of tailored Splunk security architectures to mitigate risk and maximize technology investments.

AI-Driven Security: Apply sophisticated AI and automation tools to optimize security operations, automate incident response, and improve detection efficacy.

Customer Management: Develop and maintain high-value relationships, ensuring technical alignment with customer security objectives.

Documentation Excellence: Define and implement documentation standards for sophisticated security deployments, ensuring transparency and structure for technical assets.

Authority Support: Build and apply advanced simulation environments; provide expert support for sophisticated security issues and platform challenges.

Mentorship & Growth: Build technical skills across the team, serving as a domain expert on Plan, Design, Implement, and Optimize (PDIO) methodologies.

Product Influence: Synthesize customer feedback to prioritize and advocate for Splunk product and service improvements.

Innovation: Apply expertise in security orchestration, automation, and AI Ops to deliver innovative, scalable customer outcomes.

Intellectual Capital: Lead the creation of digital assets, procedures, and standardized methodologies for Splunk security engagements.

multi-functional Partnership: Collaborate with Product Management to track security trends, influence service offers, and share actionable customer insights.
Requirements:
University degree plus equivalent experience (minimum 6-8 years)

Expert-level certification in Splunk (e.g., Splunk Certified Architect, Splunk Certified Consultant) or equivalent relevant security certification.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8837198
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
23/09/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
Required Sr MSIAM SOC Engineer (Unit 42)
Job Summary
As a Senior SOC Engineer within Unit 42, you will drive the creation, validation, and optimization of custom detection rules and automated playbooks across our global customer base. Acting as a trusted advisor, you will collaborate closely with clients to maximize their security posture using Cortex XSIAM and Unit 42 expertise. This highly analytical role leverages your deep understanding of detection lifecycles, proactive automation, and threat intelligence to secure enterprise environments. You will architect end-to-end security lifecycles that seamlessly connect data ingestion with high-fidelity detection engineering.
Key Responsibilities:
Own the full lifecycle of custom detections and response automations, deploying them as high-fidelity Cortex XSIAM correlation rules and playbooks through a rigorous engineering process of development, testing, staging, and soft implementation.
Drive the continuous refinement of correlation rules to ensure strict standards for performance, accuracy, and operational relevance.
Translate Unit 42 threat intelligence research and emerging adversary TTPs into actionable, robust detection logic.
Champion proactive automation by engineering sophisticated playbooks to resolve emerging security challenges and optimize operational workflows ahead of demand.
Architect the end-to-end security lifecycle within Cortex XSIAM, seamlessly connecting data ingestion, high-fidelity detection engineering, and sophisticated response automation.
Requirements:
Required Qualifications:
5+ years of hands-on experience in a Senior SOC, Detection Engineering, or Security Architecture role utilizing SIEMs, firewalls, EDR, sandboxes, and SOAR platforms in complex enterprise environments.
Proven mastery of the Detection Engineering lifecycle, including experience with rule testing frameworks, soft-deployment strategies, and continuous tuning.
Demonstrated experience reviewing and QA-ing detection logic written by others, with the ability to provide constructive optimization feedback.
Exceptional consultative and communication skills, with the confidence to guide enterprise customers through complex architectural and workflow decisions.
Proactive engineering mindset with a track record of designing complex automation playbooks (Cortex XSOAR or similar) based on anticipated threat vectors, not just reactive requests.
Strong background in incident response, threat hunting, and translating threat intelligence into actionable defense mechanisms.
Software development experience with a strong proficiency in Python for security automation and scripting.
Preferred Qualifications:
Previous hands-on experience utilizing and optimizing Cortex XSIAM.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8830540
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
As a Senior SOC Engineer within Unit 42 at Palo Alto Networks, you will drive the creation, validation, and optimization of custom detection rules and automated playbooks across our global customer base. Acting as a trusted advisor, you will collaborate closely with clients to maximize their security posture using Cortex XSIAM and Unit 42 expertise. This highly analytical role leverages your deep understanding of detection lifecycles, proactive automation, and threat intelligence to secure enterprise environments. You will architect end-to-end security lifecycles that seamlessly connect data ingestion with high-fidelity detection engineering.
Key Responsibilities
Own the full lifecycle of custom detections and response automations, deploying them as high-fidelity Cortex XSIAM correlation rules and playbooks through a rigorous engineering process of development, testing, staging, and soft implementation.
Drive the continuous refinement of correlation rules to ensure strict standards for performance, accuracy, and operational relevance.
Translate Unit 42 threat intelligence research and emerging adversary TTPs into actionable, robust detection logic.
Champion proactive automation by engineering sophisticated playbooks to resolve emerging security challenges and optimize operational workflows ahead of demand.
Architect the end-to-end security lifecycle within Cortex XSIAM, seamlessly connecting data ingestion, high-fidelity detection engineering, and sophisticated response automation.
Requirements:
5+ years of hands-on experience in a Senior SOC, Detection Engineering, or Security Architecture role utilizing SIEMs, firewalls, EDR, sandboxes, and SOAR platforms in complex enterprise environments.
Proven mastery of the Detection Engineering lifecycle, including experience with rule testing frameworks, soft-deployment strategies, and continuous tuning.
Demonstrated experience reviewing and QA-ing detection logic written by others, with the ability to provide constructive optimization feedback.
Exceptional consultative and communication skills, with the confidence to guide enterprise customers through complex architectural and workflow decisions.
Proactive engineering mindset with a track record of designing complex automation playbooks (Cortex XSOAR or similar) based on anticipated threat vectors, not just reactive requests.
Strong background in incident response, threat hunting, and translating threat intelligence into actionable defense mechanisms.
Software development experience with a strong proficiency in Python for security automation and scripting.
Preferred Qualifications
Previous hands-on experience utilizing and optimizing Cortex XSIAM.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8830331
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
20/09/2026
Location: Giv'atayim
Job Type: Full Time and Hybrid work
We are looking for a Head of DevOps to own the strategy and standards for the function that keeps our cloud infrastructure fast, reliable, and secure. You'll manage the DevOps team lead, giving direction on architecture, priorities, and the technical bar while they run the team's day-to-day work. You'll be the person engineering leadership turns to when infrastructure and security decisions need to move fast without cutting corners
Responsibilities:
Manage the DevOps team lead: set direction, priorities, and the technical bar for the team, and support their growth as a manager
Own our cloud infrastructure and architecture (multi-cloud), including provisioning, scaling, and cost governance
Drive CI/CD, release processes, and deployment reliability so engineers can ship confidently
Own observability and incident response tooling, ensuring issues are caught early and resolved fas
Introduce and evaluate new cloud technologies and tools to improve delivery, scalability, and availability
Partner with R&D, product, and IT leadership to align infrastructure decisions with business needs
Own the R&D budget: plan and track spend, prioritize investment across infrastructure, tooling, and security, and report on it to leadership
Requirements:
8+ years in DevOps, Site Reliability, or Platform Engineering, including experience managing a team lead or manager (not just individual contributors)
Deep expertise in at least one major cloud provider (AWS, Azure, or GCP), including networking, IAM, and cost management
Strong hands-on experience with Kubernetes, Terraform (or equivalent IaC), and modern CI/CD tooling
Working knowledge of security tooling (SIEM, EDR, IDS/IPS, vulnerability management) and compliance frameworks (SOC 2, ISO 27001, NIST)
Solid observability experience (metrics, logging, tracing) and a track record of owning incident response end-to-end
Strong people leader: coaches and grows managers, sets direction others can execute against, and represents DevOps and security credibly across the organization
Pragmatic and outcome-oriented, comfortable balancing technical depth with leadership responsibilities and defending trade-offs to non-technical stakeholders
Experience owning a budget: planning spend, prioritizing trade-offs, and reporting to leadership
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8827117
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
You will be the only SOC analyst based in Israel, while the rest of the analyst team operates from the Philippines. You will act as the SOCs local anchor - the on-site technical counterpart for the Israel-based Cyber Security, IT, Operations, and R&D teams, and the escalation and knowledge bridge between them and the offshore shifts. The role calls for ownership, independence, and the appetite to build and improve, not only to operate.

Responsibilities

Monitoring and Detection: Continuously monitor SIEM, endpoint protection (EDR), IPS, mail security, CASB, cloud, and identity security solutions to identify potential threats.
Incident Response: Serve as one of the first levels of escalation for security incidents - investigate, contain, and drive resolution before escalating to the senior SecOps members, in accordance with defined procedures and SLAs.
Incident Coordination: Lead coordination of major incidents until ownership is transferred to the relevant SecOps, IT, Operations, or R&D team; ensure clear communication, escalation, and tracking of action items.
Threat Analysis: Analyze logs, network traffic, endpoint telemetry, and native (in-tool) alerts to determine root cause, scope, impact, and remediation steps.
SIEM and Detection Engineering: Own day-to-day operation of the SIEM - data onboarding and ingest pipelines, field mapping and data quality, dashboards and platform health - and write, tune, and maintain detection rules while measuring their effectiveness.
Exclusion and Exception Management: Own the exclusion and exception lifecycle across the security stack: review requests, assess risk, apply scoped, time-bound exclusions, and revalidate them periodically.
Automation and AI-Assisted Operations: Build and maintain automations across the SOC toolchain (enrichment, containment, ticketing, reporting), and design, implement, and validate AI/LLM-based workflows for alert triage, investigation support, and documentation - including guardrails and quality control of AI output.
Investigation Documentation: Create and maintain detailed incident tickets, including investigation audit trail, action items, and timelines.
Technical Leadership: Act as the senior operational reference for the analyst team: help prioritize workload, assure investigation quality, maintain consistent handling of incidents, escalations, and shift handovers, and mentor analysts on tooling and methodology.
Collaboration: Work closely with the Cyber Security team, IT, Operations, and R&D locally, and with the offshore SOC team across time zones.
Continuous Improvement: Drive improvements to detection logic, automation, operational runbooks, and shift handover documentation based on lessons learned from incidents.
Compliance and Reporting: Support reporting for compliance audits, management reviews, and threat intelligence updates.
Requirements:
3-5 years of hands-on experience in a SOC or cybersecurity operations role.
Proven experience with a SIEM platform, including detection rule engineering and content development (Advantage: Elastic).
Experience with EDR and additional security tools and platforms (Advantage: CrowdStrike Falcon).
Practical experience using AI/LLM tools in technical workflows, with a clear understanding of their limitations and failure modes.
Broad technical foundation across the SOC domain: threat vectors, malware behavior, network protocols, operating system internals, identity, cloud, and SaaS security controls.
Strong analytical and problem-solving skills, with the ability to correlate events across multiple data sources and think beyond the alert.
High degree of ownership and autonomy - able to operate as the only analyst on site, set priorities independently, and drive tasks to closure.
Excellent communication skills and the ability to work effectively with distributed teams across time zones.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8820142
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
10/09/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a skilled Security Automation Engineer to join our SOC Automation team and play a key role in building and scaling automation across Security Operations. This is a hands-on role - you will design, develop, and integrate automation solutions across SIEM, EDR, and other security platforms, contributing to our SOAR capabilities from the ground up.

You will work in a technologically rich environment, integrating with a wide range of security and infrastructure systems across the network - a unique opportunity to build automation at scale in a greenfield setting, with real influence over the architecture and tooling decisions.

We are especially interested in candidates who are curious about leveraging AI and intelligent agents to help evolve next-generation automation and response workflows - and who want to be a driving voice in how we apply those technologies.

Your responsibilities will include:

Automation development

Design and develop automation workflows for incident response and SOC operations
Identify and eliminate manual processes through scalable automation
Build reusable components and maintainable automation patterns
Engineering & integration

Develop integrations using REST APIs, webhooks, and event-driven architectures
Write high-quality, maintainable Python for automation and orchestration
Implement data parsing, enrichment, and transformation across multiple systems
SOAR & platform buildout

Lead or actively contribute to the evaluation, selection, and implementation of SOAR/automation platforms
Design the automation architecture and integration strategy for the team
Build automation capabilities in a greenfield environment - your decisions will shape the foundation
SOC collaboration

Work closely with SOC analysts and incident responders to translate operational needs into automation solutions
Improve end-to-end detection and response workflows through close partnership with the team
AI & innovation

Actively build and evaluate AI/LLM and agent-based workflows applied to security automation
Prototype AI-assisted enrichment, triage, and response solutions and drive them toward production
Requirements:
Minimum 3 years of hands-on experience with SOAR platforms (e.g., Torq, Cortex XSOAR, Splunk SOAR, or similar)
Strong hands-on experience with Python (or a comparable language)
Experience designing or implementing automation frameworks or workflows
Experience building integrations using REST APIs and web services
Experience working with security tools such as SIEM, EDR/XDR, or ticketing systems
Experience with at least one cloud platform (Azure, AWS, or GCP)
Solid understanding of incident response processes and SOC alert-handling workflows
Experience with at least one SIEM platform (Splunk,Sentinel,Qradar,Crowdstrike)
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8817744
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
09/09/2026
Location: Ra'anana
Job Type: Full Time and Shifts
Salary: 10,000-12,000
Location: Raanana
Shift-Based: Includes night shifts, weekends and holidays

Responsibilities:
Continuously track security alerts and logs from NG- SIEM, EDR, FW, NAC, WAF to identify and respond to threats.
Investigate, analyze, and resolve security incidents, ensuring minimal impact on operations.
Support the maintenance and updates of security tools and systems.
Integrate threat intelligence into daily operations and update security protocols.
Document security events and assist in preparing reports for audits and compliance.
Work with IT teams to ensure security measures align with projects and operations.
Assist in vulnerability scanning and suggest improvements for security gaps.
Help enforce security policies and promote cybersecurity awareness across the organization.
Requirements:
Requirements:
Minimum 2 years of experience in IT helpdesk roles or as a SOC Analyst.
Strong learning abilities and a customer service mindset.
High level of proficiency in English.
Must undergo a security clearance process.

What We Offer:
Comprehensive training and development opportunities.
A dynamic work environment with advanced security technologies.

This position is open to all qualified candidates, regardless of gender.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8815058
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Work At Home
Job Type: Full Time
we are looking for a SecOps Engineer.
As a SecOps Engineer, you'll be the operational nerve center of Guardicore's R&D Security Squad, the team protecting the platform we build. Embedded with the engineers creating Guardicore, you'll drive real-time detection, response, and full-lifecycle vulnerability management, turning every finding into measurable risk reduction. If you thrive on hunting threats, reducing signal-to-noise, and driving remediation to closure, this is your arena.
As a SecOps Engineer, you will be responsible for:
Ingesting and analyzing vulnerabilities from tools such as Wiz, Vulcan, Grype, and Tenable, while quantifying impact by exploitability and reachability.
Building AI automations that streamline the full security operations loop. Auto-triaging and containing SIEM alerts by prioritizing vulnerability data across tools.
Engineering signal quality by designing correlation searches and tuning detection rules. Automating SOAR playbooks to cut false positives and shrink MTTR.
Driving remediation governance by generating tickets, assigning owners, enforcing deadlines, verifying fixes through rescans, and collecting evidence comprehensively.
Building visibility and KPIs through live dashboards for monitoring remediation speed, SLA compliance, MTTR/MTTD, patch age, and risk trends
Running detection and response, monitoring SIEM telemetry, triaging alerts, mitigating threats, conducting root-cause analysis, aligning TTPs with MITRE ATT&CK, recommending safeguards.
Requirements:
5+ years in Security Operations, SOC, or Incident Response, handling live incidents and vulnerability remediation end-to-end.
Develop parsers, analytics, and automation scripts using Python, Bash, or Go; utilize SIEM tools such as Splunk and SOAR platforms.
Design vulnerability-management dashboards and SLA tracking for leadership visibility.
Experience triaging and analyzing vulnerabilities, assigning owners, recommending mitigations, and writing clear post-mortem reports.
Demonstrate expertise in network protocols, Linux/Windows internals, and cloud telemetry such as GCP or AWS.
Gain experience with vulnerability-management platforms and risk-based prioritization models.
Present metrics, incident summaries, and remediation roadmaps to both engineers and executives.
Proactive, clear communication with stakeholders across technical and business teams.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8806370
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
01/09/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a SecOps Detection & Response.
As a Security Operations Analyst, Detection & Response, you will help protect Aidocs cloud environments, products, corporate systems, and sensitive healthcare data by investigating SIEM alerts, supporting incident response, and improving the quality of security monitoring.

This is a hands-on security operations role for someone who can analyze security signals, understand real risk, communicate clearly, and help the organization respond quickly and effectively to security events.

You will work closely with real production environments, where accurate investigation, clear documentation, and practical escalation are critical to protecting sensitive healthcare data, customer trust, and the reliability of clinical AI platform.
Responsibilities:
Own the end-to-end investigation of SIEM alerts across cloud, product, identity, endpoint, and SaaS environments: analyze the relevant evidence, separate false positives from real threats, and prioritize cases based on risk and impact.
Escalate high-risk findings with a clear summary of what happened, what is affected, why it matters, and what actions are required.
Support incident response by collecting evidence, assisting with containment, tracking remediation, and maintaining clear investigation records for internal reviews, compliance needs, and post-incident learning.
Improve SIEM rules, dashboards, alert logic, playbooks, telemetry coverage, and detection quality to reduce noise and strengthen security monitoring.
Work with Security, IT, DevOps, R&D, Product Security, and Compliance teams to resolve issues and improve security operations.
Requirements:
2+ years of experience in Security Operations, SOC analysis, detection and response, incident response, cloud security operations, or a similar hands-on security role.
Hands-on experience with SIEM-based investigations, including alert triage, log analysis, event correlation, evidence review, case prioritization, and escalation.
Experience working with security telemetry from cloud platforms, identity providers, endpoints, SaaS systems, network tools, application logs, and production environments.
Familiarity with cloud-native environments, including IAM, storage access, workloads, Kubernetes, containers, APIs, logging, monitoring, and CI/CD pipelines.
Understanding of common attack techniques, including credential compromise, phishing, privilege escalation, suspicious API activity, malware, data exposure, lateral movement, and cloud misconfigurations.
Experience with identity and endpoint investigation, including SSO, MFA, service accounts, privileged access, EDR alerts, and suspicious user or device activity.
Ability to use query or scripting languages such as KQL, SPL, SQL, Python, Bash, or similar.
Familiarity with incident response workflows, case management, evidence collection, remediation tracking, and post-incident review.
Strong analytical judgment, with the ability to separate false positives from real risk and explain findings clearly.
Ability to work independently, document investigations clearly, and escalate issues with the right level of urgency.
Strong communication skills and the ability to work with Security, IT, DevOps, R&D, Product Security, Compliance, and business stakeholders.
Close attention to detail, strong ownership, and comfort working in a fast-moving production environment.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8805569
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות שנמחקו