דרושים » אבטחת מידע וסייבר » Cyber Threat Intelligence Analyst

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
Location: Herzliya
Job Type: Full Time
We are looking for a talented Cyber Threat Intelligence analyst to join the automotive CTI team, and focus on investigating global automotive and smart mobility related cyber incidents and emerging deep and dark web threats.
As a Cyber Threat Intelligence Analyst you will be responsible to utilize our clear, deep and dark web threat intelligence platforms and tools to identify vulnerabilities, exploits, counterfeit and fraud within the automotive ecosystem.
We are looking for an independent analyst, capable of producing accurate intelligence in the automotive threat landscape to protect the software-defined vehicles of tomorrow.
This role is full-time and is Herzliya, Israel based.
Responsibilities
Perform clear, deep and dark web research and social media monitoring related to automotive products, components and various threat actors targeting the automotive ecosystem.
Producing actionable CTI and mitigation recommendations to our customers in our CTI service and platform.
Research and implement new tools and data sources to expand analysis on emerging automotive related cyber threats.
Monitor and detect vulnerabilities impacting IT and automotive related components and software.
Identify threat actors across the clear, deep, and dark web to gain further intel.
Constant interaction with customers as well as Research, Product, CSM teams to consult, guide and provide best-in-class CTI deliverables.
Requirements:
Experience in cyber threat intelligence or equivalent role with familiarity with product intelligence, cybercrime communities and OSINT sources and tools.
Familiarity of IT-Product based threat intelligence deep and dark web monitoring experience.
Strong analytical, critical thinking, and communication skills.
Experience in a customer-facing role and able to summarize and present complex concepts in a clear and engaging manner.
English - full professional proficiency - a must
Vulnerability management background - advantage
Automotive threat intelligence background advantage
Proficient in multiple languages - advantage.
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8325289
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
6 ימים
Location: Herzliya
Job Type: Full Time and Hybrid work
we are looking for a cyber threat intelligence analyst to join our CTI team.
As a member of the CTI team, you will take part in intelligence gathering, deep technological and operational analysis, use of advanced intelligence systems, helping customers understand their threats, and engaging in IR investigations.
Responsibilities:
Monitoring and analyzing threats to customers
Utilizing your technical expertise to understand adversary capabilities and tactics and improve threat detection
Providing actionable intelligence to security teams within customers management
Collaborating closely with the DFIR team as part of all IR events
Identifying intelligence gaps for customers and proactively suggesting ways to close them.
Requirements:
1+ years in Cyber Intelligence role
Strong analytical skills, including high-level threat analysis and operational and tactical skills
Skilled at writing reports that non-technological audiences can easily understand
Strong communication skills and investigative practices
Familiarity with CTI tools for data analysis
Technological background in information systems and networks
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8320504
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
17/08/2025
חברה חסויה
Location: Herzliya
Job Type: Full Time
we are at the forefront of worldwide data detection and response services. We lead and redefine how data should be monitored, and protected and how data breach incidents should be handled. Its a 24/7 global security service assisting customers to investigate and respond to security incidents.
A Senior (Level 3) Security Analyst within our MDR team is expected to serve as their teams technical lead and a key escalation point for complex security incidents.
In your role, you will lead complex investigations, working directly with customers by assisting them in investigating and responding to security incidents.
As a senior staff in your team, you are expected to mentor junior analysts, and drive continuous improvement of our detection and response capabilities. You will collaborate with internal and external stakeholders, and ensure best practices are followed across monitoring, detection, and incident response processes. This position requires a strong foundation in cybersecurity operations, a deep understanding of SIEM technologies and log sources, as well as the ability to train and document processes for others.
Responsibilities:
Incident Escalations & Investigations
Serve as an escalation point for security alerts and incidents, ensuring timely and thorough investigations.
Perform end-to-end incident handling, including scoping, containment, and eradication activities.
Coordinate and communicate with customers, leadership, and other stakeholders throughout the incident response lifecycle.
Understand, interpret, and analyze a diverse range of log sources (Exchange Online, Entra, Active Directory, Windows events, Azure, DNS, VPN, etc.).
Proactively identify potential threats and anomalies, recommending and implementing improvements in detection logic.
Training & Mentorship:
Assist in training and upskilling junior and mid-level analysts, including sharing best practices in investigations, threat hunting, and emerging threats.
Provide guidance in troubleshooting escalated issues, ensuring efficient knowledge transfer and professional growth within the team.
Contribute to the development, documentation, analysis, testing, and modification of threat detection systems and playbooks.
Provide feedback on gaps or improvements needed in processes, documentation, or technology.
Work closely with Team Leads and other senior staff to align on operational goals, SLA adherence, and service delivery standards.
Communicate findings, root causes, and recommended actions to both technical and non-technical stakeholders clearly and effectively.
Share insights and best practices with the broader team, championing a culture of continuous learning.
Requirements:
3+ years of experience in cybersecurity operations (monitoring, detection, investigation, and incident response) at a global cybersecurity company.
Advanced knowledge of SIEM technologies, including log collection, analysis, and correlation.
Expertise with various log sources (Exchange Online, Entra, Active Directory, Windows Events, SharePoint_0365, Azure, Syslog, DNS, OneDrive, VPN) and the ability to interpret and analyze these logs for security incidents.
Strong understanding of authentication protocols, both modern and legacy (Kerberos, NTLM).
Proven ability to handle escalations from end to end, including incident scoping, containment, eradication, and post-incident activities such as lessons learned and documentation.
Excellent communication skills in English (written and oral) to interface effectively with customers, peers, and leadership.
Ability to mentor and train junior analysts, providing feedback and sharing best practices.
Strong analytical and problem-solving skills, with an eye for detail and the capability to deliver autonomously.
Familiarity with common security tools and technologies, such as EDR, AV, DLP, DSPM, PAM, IAM, firewalls, and IDS/IPS.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8306556
סגור
שירות זה פתוח ללקוחות VIP בלבד