דרושים » ניהול ביניים » Senior Security Engineer: Digital Forensics and Incident Response

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 16 שעות
Location: Petah Tikva
Job Type: Full Time
We are seeking an experienced Senior Security Engineer to join our Digital Forensics and Incident Response (DFIR) team within the broader Security Incident Response Team (SIRT), to help our organization respond to cyber-attacks.
The ideal candidate will have a deep understanding of the security incident response and incident management process, attacker kill chains / methodologies, be able to respond quickly to attacks, restore services, and forensically investigate the root cause.
As a member of our SIRT, you will closely collaborate with other engineers to design and implement solutions, improve incident response readiness, and provide guidance and training to external teams.
Responsibilities:
Oversee and promptly respond to escalated security events or investigations, and activate the Security Incident Response Plan as required.
Provide on-call support for critical severity issues, manage communications, and report incident status to the appropriate stakeholders.
Lead forensic analysis and conduct investigations to ascertain the root cause, scope, and impact of security incidents.
Develop, maintain, and improve incident response plans, procedures, and playbooks to help ensure swift action and regulatory compliance.
Present guidance and training on security best practices and incident response to organizational partners, while ensuring alignment with business objectives and compliance requirements.
Mentor and train incident responders on incident handling techniques, forensic analysis, and cloud security forensics and best practices.
Collaborate with Compliance, Legal, and Risk teams to integrate incident response operations with business and regulatory needs.
Assess vulnerabilities, propose remediation strategies, and keep up to date on current and emerging security trends, threats, and countermeasures.
Requirements:
Possession of industry-recognized professional-level certifications such as AWS Security Specialty, GCIH, GCFA, CCFE, CISSP is advantageous
3-5 years' experience in a dedicated cybersecurity role, with a strong emphasis on digital forensics and incident response
1-3 years' experience using scripting languages such as bash, PowerShell, and Python
Experience performing analysis and detection engineering using Endpoint Detection and Response, or Cloud Security Posture Management tools such as CrowdStrike Falcon, SentinelOne, or Wiz
Comprehensive understanding of cybersecurity and networking principles, including protocols, ports, and frameworks such as OWASP, MITRE ATT&CK, NIST, or CIS
Experience using and defending Public Cloud services such as AWS, Azure, and GCP (IAM, CI/CD Pipelines, Network Security, DLP)
Deep understanding of Security Information, and Event Management (SIEM) solutions such as Splunk or LogScale
Profound knowledge of digital forensics technologies and methodologies, as well as expertise in the Security Incident Response Lifecycle according to frameworks like NIST or SANS
Strong analytical and problem-solving abilities, with a focus on identifying root causes and assessing risk exposure
Exceptional communication skills, both verbal and written, capable of explaining technical details to non-technical audiences and fostering strong stakeholder relationships
Self-motivated with the ability to work autonomously, managing tasks effectively, and seeking assistance when necessary
Proficient in working under pressure in a dynamic environment, prioritizing tasks to meet tight deadlines while maintaining procedural discipline
Adaptable and proactive attitude, willing to take on various responsibilities, and eager to continuously learn and upgrade skill
Proficient understanding of AI technologies and their application in enhancing security operations, threat detection, and incident response
A Bachelors degree or higher in Technology, Computer Science, Cybersecurity, or a related field is preferred [or equivalent experience].
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8574797
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
לפני 2 שעות
דרושים בSQLink
סוג משרה: משרה מלאה
ארגון פיננסי באזור המרכז מגייס מנהל /ת SOC
התפקיד כולל: עבודה עם מערכות SIEM, SOAR ו-EDR, הובלת צוות אנליסטים Tier 1 ו-Tier 2 וניהול כולל של פעילות ה- SOC, ניהול אירועי סייבר מקצה לקצה, חקירה מעמיקה של התראות מורכבות, ביצוע Threat Hunting ופעילות פורנזית, כתיבה וטיוב חוקי ניטור ובניית Playbooks לאוטומציה. עבודה בסביבת Multi-Cloud ובתשתיות מקומיות, הובלת פרויקטים לשיפור מערך ההגנה ועוד.
דרישות:
- שנתיים ניסיון כמנהל/ת SOC
- 3 שנות ניסיון בתפקידי SOC כגון: Tier 2 או Incident Response
- ניסיון מעשי עם מערכות SIEM כגון: Splunk או Sentinel וכתיבת שאילתות ב-XQL,
KQL או SPL
- ניסיון בביצוע חקירות פורנזיות, Threat Hunting והובלת תהליכי תגובה לאירועי סייבר
- ניסיון בכתיבת סקריפטים ב- Python, PowerShell או Bash ועבודה עם AWS
ו-Azure המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8563589
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
סוג משרה: משרה מלאה ועבודה היברידית
לחברת ייעוץ בינלאומית דרוש/ה יועץ/ת סייבר
עבודה בתל אביב

התפקיד כולל השתלבות בצוות סייבר ומתן ייעוץ ללקוחות בחומוי ההגנה ל CLOUD, NETWORK, APPLICATION

עבודה בסביבת עבודה נעימה ואיכותית
תנאים טובים למתאימים/ות
דרישות:
ניסיון משמעותי והבנה עמוקה בתחום הסייבר
ניסיון במתן ייעוץ עסקי ואסטרטגי בתחומי הסייבר לתשתיות ובענן

ניסיון מחברת ייעוץ - יתרון המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8547104
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Petah Tikva
Job Type: Full Time
We are looking for a hands-on cybersecurity expert to serve as a trusted technical advisor for our customers. In this role, you will leverage your in-depth knowledge of the cybersecurity landscape, our company platform, and security validation principles to lead technical deep-dives, guide remediation strategies, and ensure successful deployment. Acting as the bridge between the field and R&D, you will combine technical and problem-solving skills with strong communication abilities to drive platform adoption and enhance customer security maturity.
Roles & Responsibilities:
Demonstrate deep technical mastery of the company platform and its integration across customer networks, endpoints, authentication, and security controls.
Lead technical deep-dives with security teams (SOC, IR, Red/Blue) to review findings, explain and analyze attack vectors, and guide remediation based on real-world offensive techniques.
Provide end-to-end support for deployment, configuration, and complex troubleshooting, while advising on security risks, misconfigurations, and validation procedures.
Drive customer success, retention, and platform adoption by providing consistent technical guidance on cybersecurity trends and identifying opportunities for expanded use.
Act as the technical voice of the customer, channeling operational feedback and needs internally to Product, R&D, and Support teams.
Requirements:
3+ years of hands-on cybersecurity experience (SOC, IR, PT, or Security Engineering)
2+ years of Linux administration (Ubuntu preferred).
Strong understanding of network security fundamentals (TCP/IP, routing, VPNs) and IT infrastructure, including OS internals, VMware, Ansible, and Docker.
Familiarity with offensive security principles, including attack techniques, and standard attack frameworks.
Proven ability to troubleshoot and analyze complex network and system issues within enterprise environments.
Strong customer-facing experience with the ability to explain complex technical concepts to varied audiences, guide conversations, and manage expectations.
Excellent communication, presentation, and documentation skills.
Valid drivers license with a willingness to travel periodically.
Ability to obtain (or currently hold) a high-level security clearance.
Preferred Skills:
Experience in Cloud Security (AWS, Azure, GCP) and scripting proficiency (Python, Bash).
Background in Sales Engineering or technical customer-facing roles; relevant certifications (OSCP, CRTO, GXPN) are an advantage.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8556186
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Petah Tikva
Job Type: Full Time
We offer hope to patients suffering from rare and severe diseases by forming partnerships with emerging biotech companies to accelerate access to highly innovative therapies in international markets. As the creator and leader of the global partnership category in the pharma industry, we strive to be Always Ahead and work relentlessly to bring therapy to patients in need, no matter where they live. Our values are at the core of every action we take, and we are committed to going above and beyond to benefit the patients we serve. We are a dynamic, fast-paced company operating in over 34 countries on 5 continents. We are looking for out-of-the-box thinkers, people who are passionate, caring, agile, and adaptive, to join us on our mission. If you are looking to make a difference in people's lives, we invite you to join us! We are looking for Microsoft 365 Security Engineer to lead the implementation and continuous improvement of Microsoft security and compliance capabilities across the Microsoft 365 environment. The role focuses especially on Microsoft Purview and Microsoft Defender for Cloud Apps, and also covers Microsoft Defender for Office 365, Security for identity, Entra ID security controls, and security features across Exchange Online and collaboration services. You will translate requirements into technical design and configuration, implement and tune policies, rollout changes safely, troubleshoot complex issues, and document solutions and operational procedures. You will work closely with IT and system teams to ensure stable integrations, minimal business disruption, and measurable risk reduction.
Responsibilities:
Lead end to end implementation and ongoing improvement of Microsoft 365 security and compliance controls. Implement and operate Microsoft Purview, including sensitivity labels and DLP, and support additional compliance capabilities as needed. Implement and operate Microsoft Defender for Cloud Apps CASB, including cloud discovery, governance controls, and policy enforcement. Implement and tune Microsoft Defender for Office 365 protections for phishing, malware, and impersonation threats. Support identity driven security controls with Entra ID, including Conditional Access concepts and tenant security posture improvements. Improve Exchange Online security posture, mail flow protections, and related configurations. Create technical documentation, runbooks, and change plans, and provide operational support and troubleshooting. Partner with internal teams and stakeholders to plan rollouts, reduce false positives, and maintain business continuity. Experience in securing Microsoft SharePoint Online, including configuration of access controls, data protection policies, and compliance settings.
City:
Petah Tikva
Requirements:
5-8 years of experience in cloud, IT systems, and security roles within global environments - including approximately 3 years as a system Administrator and 2-3 years implementing security projects (must). Experience from Integration companies- Advantage.
Strong hands-on experience implementing Microsoft 365 security solutions end to end.
Strong understanding of Microsoft 365 E5 security and compliance capabilities and licensing scope.
Proven implementation experience of Microsoft Purview.
Proven implementation experience with MS Defender for Cloud Apps (CASB, Defender for Office 365, Defender for identity etc.).
Strong understanding of Entra ID security, Intune and Conditional Access concepts.
Strong understanding of IT and system domains, including Active Directory, and core enterprise infrastructure tools.
Strong understanding of Exchange Online security and mail flow basics. Strong troubleshooting skills across tenant, endpoint, and network dependencies.
Experience writing clear technical documentation and runbooks. Advantage: Relevant certifications such as SC 400, SC 200, AZ 500, MS 102.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8548611
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 16 שעות
חברה חסויה
Location: Petah Tikva
Job Type: Full Time
We are seeking a AI Security Researcher to join AI Adversarial Robustness Research (A2RS), a multidisciplinary team focused on securing AI and GenAI models and systems.
Were looking for innovative team players who love new challenges, enjoy cracking tough problems, and thrive in cross-functional environments.
In this role, you will partner with data scientists and security researchers to define how we secure AI applications.
Responsibilities
Research AI and GenAI systems from a security perspective to understand when and how they are vulnerable to a variety of threats
Blue team: Explore innovative ways to enhance the security of AI systems
Red team: Analyze the attack surface of state-of-the-art AI technologies
Center of Excellence: Collect and synthesize research literature and open-source tools to build and maintain a robust knowledge base for adversarial robustness of AI systems
Distill and share AI security knowledge within and externally through seminars, blogs, papers, and conference talks
We encourage you to apply if you
Are passionate about exploring the field of AI security
Are a seasoned security researcher who enjoys both red team and blue team work: performing threat analysis, discovering new attack vectors, and designing mitigations
Have a strong AI background (well beyond prompt engineering) and a passion for math and algorithms
Learn quickly and thrive in uncharted technical territories
Love to gain, share, and build knowledge.
Requirements:
MSc (preferred) or BSc in Computer Science, Applied Mathematics, or a related field; equivalent research experience considered with a proven record
4+ years of industry experience in cybersecurity research, including 2+ years in threat research, and 2+ years in security innovation (may overlap)
Strong background in data science and prompt engineering experience in AI security or AI research
Significant experience in research and innovation, including rapid prototyping, publications, conference talks, or patents
Strong abstract-thinking and problem-solving skill.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8574807
סגור
שירות זה פתוח ללקוחות VIP בלבד