דרושים » אבטחת מידע וסייבר » סוקר /ת אבטחת מידע

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
דרושים במכון התקנים הישראלי
מיקום המשרה: תל אביב יפו
סוג משרה: משרה מלאה
הזדמנות להצטרף לצוות מקצועי ולהוביל תהליכים משמעותיים!
למכון התקנים הישראלי, לאגף איכות והסמכה דרוש/ה אודיטור/ית לתחום אבטחת מידע
לביצוע מבדקים אצל לקוחות האגף בתחום טכנולוגיות המידע.
עדיפות תינתן לבני העדה האתיופית והדרוזית
רק פניות מתאימות תענינה.
המשרה מיועדת לנשים ולגברים כאחד
דרישות:
תואר ראשון במדעי המחשב /מדעים מדוייקים/ הנדסה - חובה
ניסיון של לפחות 10 שנים בתעשייה או בוגרי /ות קורס סייבר בצבא עם ניסיון מעשי של 5 שנים לפחות- חובה
יתרון: הכרות עם תקני ISO בתחומי אבטחת המידע, תעודות מיקצועיות הסמכות בתחום ניהול איכות ואבטחת המידע.
ניסיון בעריכת מבדקים, הכרות עם עולם ההתעדה, ניסיון ניהולי.
רישיון נהיגה ונכונות לנסיעות ברחבי הארץ.
ידיעת השפה האנגלית.
סביבת עבודה (שטח, עבודת צוות) המשרה מיועדת לנשים ולגברים כאחד.
 
הסתר
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8692294
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
דרושים ברשות ניירות ערך
מיקום המשרה: תל אביב יפו
סוג משרה: משרה מלאה ועבודה היברידית
תיאור המשרה:
יחידת הביקורת במחלקת ביקורת ואכיפה מגייסת ראש תחום לפיתוח והובלה של תחום ביקורת סיכוני טכנולוגיית מידע והגנת סייבר בגופים המפוקחים על ידי הרשות.
מטרת התפקיד הינה גיבוש תפיסת הביקורת בתחום סיכוני טכנולוגיית המידע והגנת הסייבר, בניית תוכניות עבודה מבוססות סיכון, ביצוע ביקורות בתחום בגופים המפוקחים וחיזוק ניהול סיכוני טכנולוגיית מידע והגנת הסייבר בקרב הגופים המפוקחים.
הביקורות יכללו בחינה והערכה של ממשל תאגידי בתחום טכנולוגיית המידע; הערכת טיב ניהול סיכוני טכנולוגיית המידע, חוסן תפעולי, סיכוני ספקים וצדדי ג'; הערכת אפקטיביות הבקרות המיושמות על ידי הגופים המפוקחים וכן ניתוח פרוטוקולים, דוחות, חוות דעת ומסמכים נוספים לצורך גיבוש ממצאים והמלצות התומכים בפעילות הפיקוח של הרשות.
התפקיד מחייב ראייה מערכתית, חשיבה ביקורתית ומתודולוגית, יכולת ניתוח גבוהה, יכולת כתיבה ברמה גבוהה, סקרנות מקצועית, יכולת למידה עצמאית והיכרות עם מגמות טכנולוגיות ורגולטוריות מתקדמות.
דרישות:
תנאי סף:
השכלה אקדמית בתחום רלוונטי
ניסיון מקצועי של חמש שנים לפחות בתחום ביקורת מערכות מידע, ובכלל זה ביקורות בתחום אבטחת מידע והגנת סייבר
היכרות עם מסגרות עבודה מקובלות בתחום ניהול סיכוני סייבר, כגון: NIST, ISO27001, COBIT או מסגרות מקבילות.

יתרון משמעותי:
ניסיון בביצוע ביקורת טכנולוגיית מידע והגנת סייבר במסגרת עבודה במוסד פיננסי, משרד רו"ח, חברת ייעוץ או רשות רגולטורית
ניסיון בביצוע ביקורות בנושאים הבאים: ממשל תאגידי של מערכות מידע, ניהול סיכוני טכנולוגיית מידע, חוסן תפעולי, המשכיות עסקית והיערכות לחירום, סיכוני שרשרת אספקה לרבות מיקור חוץ וצד ג'
הסמכה מקצועית רלוונטית, כגון: CISA, CRISC, CISM, CISSP, CIA או הסמכה מקבילה
היכרות עם רגולציה ישראלית ובינלאומית בתחומים הרלוונטיים
היכרות עם טכנולוגיות עדכניות, בדגש על סיכוני בינה מלאכותית/ פיתוח תוכנה בקוד פתוח/ טכנולוגיית ענן.

תנאי העסקה ומידע נוסף:
מקום העבודה: רשות ניירות ערך, תל אביב
קיימת אפשרות לעבודה היברידית, המשלבת עבודה מהמשרד ומהבית
בהתאם לסעיף 5 לחוק ניירות ערך, התשכ"ח-1968, מוטלות על עובדי הרשות מגבלות מסוימות בקשר לרכישת ניירות ערך. כמו כן תיבחן סוגיית ניגוד העניינים ומהימנות
השכר ייקבע בהתאם לכישורי המועמד.ת וניסיונו.ה
* המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8749847
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
מיקום המשרה: תל אביב יפו
סוג משרה: משרה מלאה
אנו מחפשים CISO מנוסה להובלת תחום אבטחת המידע והסייבר בארגון.

מיקום המשרה: משרדי החברה ברמת החייל, תל אביב.

תחומי אחריות:

גיבוש והובלת אסטרטגיית אבטחת המידע של החברה.
ניהול מערך אבטחת המידע והסייבר בהתאם לדרישות רגולציה ונהלי החברה.
ניהול סיכוני סייבר, ביצוע סקרי סיכונים והטמעת בקרות אבטחה.
אחריות על ניהול זהויות, הרשאות ובקרות גישה.
ליווי פרויקטים טכנולוגיים בהיבטי אבטחת מידע.
טיפול באירועי אבטחת מידע, תחקורם והובלת פעולות מניעה ושיפור.
עבודה מול ספקים, מבקרים וגורמים רגולטוריים.
הובלת הדרכות והטמעת מודעות לאבטחת מידע בקרב עובדי החברה.
ייעוץ להנהלת החברה בנושאי אבטחת מידע, סייבר והמשכיות עסקית.


היקף המשרה: משרה מלאה, עבודה ממשרדי החברה ברמת החייל, תל אביב.
דרישות:
ניסיון של לפחות 3 שנים בתפקיד CISO או בתפקיד בכיר בתחום אבטחת המידע והסייבר.
ניסיון בגיבוש והטמעת מדיניות ונהלי אבטחת מידע.
היכרות מעמיקה עם תקני אבטחת מידע ורגולציה (כגון ISO 27001, NIST או תקנים מקבילים).
ניסיון בניהול הרשאות, Microsoft 365 ופתרונות אבטחה ארגוניים.
היכרות עם מערכות Firewall, EDR, SIEM ופתרונות הגנת סייבר.
ניסיון בביצוע סקרי סיכונים, ניהול אירועי אבטחת מידע וביקורות.
יכולת הובלת תהליכים חוצי ארגון ועבודה מול הנהלה בכירה.
הסמכות מקצועיות בתחום (כגון CISSP, CISM, ISO 27001 Lead Implementer) - יתרון.
* המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8725508
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
מיקום המשרה: תל אביב יפו
סוג משרה: משרה מלאה ועבודה היברידית
צוות ניהול סיכוני IT מתמחה בזיהוי, ניתוח והתמודדות עם סיכונים טכנולוגיים, ובבניית פתרונות לשיפור מערכות ותהליכי עבודה לצמצום פגיעה עסקית. המנהלים בצוות מובילים פרויקטים מול לקוחות מהותיים בישראל ובעולם, בשיתוף מומחים מקומיים ובעלי ניסיון גלובלי, תוך שימוש במתודולוגיות ייחודיות וכלים טכנולוגיים מתקדמים. הצוות מוביל פרויקטי IT Risk וניהול ממשל (GRC) עבור Deloitte US ועבור ארגונים מובילים בישראל, כולל בנקים וחברות טכנולוגיה נסחרות. תחומי האחריות כוללים הובלת מספר פרויקטים במקביל בתחומי אבטחת מידע, GRC, SOC2/SOC1, סקרי סיכוני מערכות מידע וסייבר, ביקורות פנימיות וחיצוניות, ייעוץ בנושא בקרה, אוטומציה, ענן, דיגיטל והרשאות/SoD, לצד עבודה שוטפת מול לקוחות, הנחיית צוותים זוטרים, ופיתוח קשרים עם הנהלה בכירה. עבודה היברידית.
דרישות:
תואר ראשון - חובה.

תואר שני - יתרון.

לפחות 5 שנות ניסיון בתחום אבטחת מידע/ GRC/ SOC2/ ISO27001 או ניהול סיכוני IT דומים - חובה.

ניסיון מוכח בהובלת צוותים או בניהול פרויקטים - חובה.

שליטה באנגלית ברמה גבוהה (דיבור וכתיבה) - חובה.

שפות נוספות - יתרון.

ידע וניסיון מעמיק בסטנדרטים ותקני אבטחה/ציות (Soc2, Soc3, FedRAMP, CJIS, GDPR, NIST 800-53 וכדומה).

יכולת אנליטית גבוהה ויכולות הצגה, תקשורת בין-אישית ועמידה מול קהל.

יכולת ניהול ובקרה על מספר פרויקטים במקביל, סדר עדיפויות גבוה ועמידה ביעדים תחת לחץ.

יתרון - ניסיון בעבודה עם צוותים או לקוחות גלובליים.

אנו ב-Deloitte מאמינים כי גיוון והכלה בקרב אנשינו הוא מרכיב קריטי בהצלחה שלנו ולכן אנו מטפחים תרבות ארגונית שמכילה ומאמצת גיוון על כל צורותיו המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8728427
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
2 ימים
דרושים בריקרוטיקס בע"מ
Job Type: Full Time and Hybrid work
CISO Role in a Leading Cybersecurity Company
Our company specializes in cybersecurity consulting and we are currently expanding our team, and looking for a talented CISO to join our top star team.
We offer a dynamic and challenging role in a company that greatly values human capital and work with cutting-edge security technologies and top-tier clients.
What will you do?
Strengthen cybersecurity across cloud & on-prem networks
Implement security frameworks & best practices
Provide expert guidance on advanced security controls
Requirements:
Job Requirements:
At least 2 years of experience in a CISO role.
Certificate of CISO ( Chief Information Security Officer ) or Professional certification in information technology/security.- MUST
Extensive knowledge of cybersecurity best practices for network and cloud infrastructure.
Familiarity with privacy protection regulations and certifications such as ISO 27001 and SOC2.
Hands-on experience with technical security controls (FW, EDR, etc).
Strong organizational skills, team-oriented, and service-focused.
Knowledge of web security and familiarity with the OWASP Top 10 security risks is advantageous.
High proficiency in English.
This position is open to all candidates.
 
Show more...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8761449
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for a Senior Security Engineer to own and elevate the security posture of our
cloud-native, AI-driven SaaS platform. Reporting to the Director of DevOps, you'll be the technical
anchor for security across our product, infrastructure, and organization - combining hands-on
engineering with the strategic judgment to translate risk into clear, actionable priorities.
This is a high-ownership role for someone who can operate end to end: threat modeling a new feature
in the morning, hardening cloud infrastructure in the afternoon, and briefing leadership on risk posture
by the end of the week. As we scale our platform and deepen our use of AI/ML, you'll define how we
build, ship, and operate securely - often standing up programs and controls that don't yet exist.
You'll work cross-functionally well beyond engineering, partnering with Customer Success, Marketing,
Finance, and Legal to make security a shared, business-aware practice rather than a gate at the end of
the line.
What You'll Do:
Own the day-to-day security engineering function across cloud infrastructure, application, and data
layers.
Lead threat modeling, penetration testing, and vulnerability management across the product and
platform lifecycle.
Design, implement, and continuously improve cloud security controls across AWS, GCP, and/or
Azure environments.
Assess and secure our AI/ML systems, addressing the unique risks they introduce - from data
pipelines to model and LLM behavior.
Drive compliance readiness and audit support for frameworks such as SOC 2, ISO 27001, and
GDPR.
Embed security into the SDLC and CI/CD pipelines, partnering closely with DevOps and engineering
teams.
Translate technical risk into clear business and board-level language, and advise leadership on
prioritization and trade-offs.
Partner cross-functionally with non-engineering teams (Customer Success, Marketing, Finance,
Legal) to build security awareness and practical, low-friction controls.
Lead or support incident response, including detection, containment, remediation, and post-incident
review.
Requirements:
8+ years in security engineering, security architecture, or a CISO/Security Officer role.
Deep cloud security experience (AWS / GCP / Azure).
Hands-on with threat modeling, penetration testing, and vulnerability management.
Working knowledge of AI/ML systems and their unique security challenges.
Experience with compliance frameworks: SOC 2, ISO 27001, GDPR (or equivalent).
Strong communication - translates technical risk into business and board language.
Comfortable operating cross-functionally with non-engineering teams (CS, Marketing, Finance).
Nice to Have
Prior experience in a fast-scaling SaaS or AI-driven product company.
Hands-on red-teaming of LLM-based systems.
Familiarity with the OWASP LLM Top 10 and NIST AI RMF.
Certifications: CISSP, CISM, CCSP, or equivalent.
Experience standing up a security program from scratch (rather than scaling an existing one).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8718587
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
This is a hands-on role that balances deep technical work alongwith building and running the function: the Lead drives high-severity incidents end-to-end, serves as the escalation ceiling, and sets the standards and structure the team operates by.

Youre welcome to work in our offices in Tel Aviv, Israel.

Your responsibilities will include:

Build and lead global IR capability - select and mature DFIR tooling, and establish the playbooks and follow-the-sun operating model across EMEA, Asia, and APAC while hiring and developing a team of responders.
Lead the technical response to major incidents hands-on - from escalation through containment, eradication, and recovery - and act as the final technical authority on the most complex cases.
Personally conduct end-to-end forensic investigations across cloud, platform, and endpoint environments - log analysis at scale, host and network forensics, memory analysis, malware triage, and timeline reconstruction.
Define and enforce consistent investigation standards across the team: severity and escalation criteria, cross-region handoff quality, and evidence handling that meets legal, regulatory, and forensic requirements.
Partner with the SOC, SOC Automation, Threat Intelligence, Threat Hunting, and Platform Security teams to improve detection fidelity and reduce MTTD and MTTR.
Serve as the technical voice of incident response to executive leadership, Legal, and Privacy - delivering clear, risk-based briefings, regulatory-ready documentation, and root cause analyses (RCA).
Raise the teams technical bar through case reviews and hands-on mentoring, and drive lessons-learned into measurable improvements in controls and readiness.
Requirements:
We expect you to have:

Experience

8+ years of hands-on incident response and digital forensics, including technical leadership of large-scale, high-impact incidents (ransomware, nation-state / advanced threat actors, cloud intrusions, identity compromise).
Experience building or leading IR teams and capabilities in cloud or infrastructure-heavy environments, which are highly regulated (SOC 2, ISO 27001, GDPR/NIS2).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8761463
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
02/07/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
our companys Harmony SASE is looking for an Information Security Manager to join its staff.
This is a unique opportunity for you to work in the #1 worldwide Cyber Security Company, gain expertise and experience leading the information security program for the best of SASE (Secure Access Service Edge).
Key Responsibilities
As Information Security Manager you will:
Governance, Risk & Compliance
Lead and manage the Product Security team
Build, operate, and continuously improve the Harmony SASE Information Security Management System (ISMS), aligning policies, standards, and controls with our company and industry best practices.
Own the Harmony SASE compliance roadmap - lead and maintain certifications and attestations including ISO/IEC 27001, SOC 2 Type II, GDPR, IRAP and C5
Lead enterprise risk assessments and the third-party / vendor risk program, ensuring risks are identified, prioritized, and treated.
Coordinate internal and external audits, manage evidence collection, and remediate findings to closure.
Product & Application Security
Develop and implement a comprehensive AI - Secure Software Development Lifecycle (AI S-SDLC) framework, embedding security into every phase of the SDLC and CI/CD pipelines.
Conduct threat modeling and secure architecture reviews for new and existing Harmony SASE features, partnering with R&D to mitigate vulnerabilities by design.
Operate the application security tooling stack - ASPM, SAST, DAST, SCA, AI Security Scanning and secret scanning - at scale, and partner with development teams to drive findings to remediation while maintaining developer productivity.
Champion secure coding practices and OWASP Top 10 awareness across R&D.
Operational Security & Incident Response
Lead security incident response for Harmony SASE - preparedness, detection, containment, eradication, recovery, and lessons-learned - covering both product and information security incidents.
Oversee identity and access governance, ensuring least-privilege, segregation of duties, and access reviews across production and corporate environments.
Design and operate security automation to enhance the efficiency and coverage of security operations.
Security Culture & Enablement
Foster a culture of security awareness and continuous improvement; deliver targeted training for engineers, operations, and broader staff.
Lead responses to customer security questionnaires, RFPs, and due-diligence requests, representing Harmony SASEs security posture to customers and partners.
Stay current on the evolving Threats Landscape, regulations, and technologies, and translate them into pragmatic improvements to the security program.
Youll enjoy:
Interact with executives, managers, engineers across the company
Be the best security expert and knowledgeable you can imagine
Sharing your day with fun, passionate, brilliant people.
דרישות:
We are looking for you:

Bachelors degree in computer science, Information Security, or related field.
Minimum of 5 years of experience in information security or application/product security, with at least 2 year in a leadership role.
Proven experience building or operating an Information Security Management System (ISMS) and leading certifications such as ISO/IEC 27001 and SOC 2.
Working knowledge of GDPR, PCI-DSS, and NIST CSF / 800-53; familiarity with HIPAA, FedRAMP, DORA, Cyber Essentials, C5, IRAP, AI Security Frameworks and the Cloud Controls Matrix (CCM).
Hands-on experience with S-SDLC, threat modeling, and application security tooling such as ASPM, SAST, and DAST in complex, high-scale environments.
Strong understanding of risk management, third-party risk, identity and access governance, and incident response.
Excellent communication and leadership skills, with the ability and passion to drive change across R&D and the broader organization.
Reports to the Harmony SASE Head of Architecture (R&D Director) and partners closely with R&D, DevOps, IT, Legal, and the company Corp המשרה מיועדת לנשים ולגברים כאחד.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8721123
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for an Senior/Staff Infrastructure Security Engineer to secure our cloud and on-premises infrastructure by implementing security controls, monitoring threats, ensuring compliance with industry standards and respond to security incidents. The ideal candidate has a strong background in cloud security, Linux hardening, and network security.

Your responsibilities will include:

Design and implement security measures to protect cloud and on-premises infrastructure.

Identify and remediate vulnerabilities in cloud environments, networks, and operating systems.

Build and maintain cloud and infrastructure security tools.

Perform security reviews, threat modeling and risk assessments of infrastructure components.

Develop and maintain security guidelines for Network and SRE teams.

Collaborate with Network and SRE teams to integrate security best practices into their processes and systems.

Stay updated on the latest security threats, vulnerabilities, and mitigation techniques.

Serve as an network and infrastructure security subject matter expert to other teams.
Requirements:
We expect you to have:

6+ years of experience in network, infrastructure or cloud security.

Strong understanding of modern cloud architectures and deployment models (VMs, containers, serverless, Kubernetes).

Solid knowledge in networks, distributed systems and Linux systems engineering.

Hands-on experience with network, VPN and Linux security.

Understanding of Identity and Access Management (IAM) systems.

Experience with security automation tools and scripting (e.g. Python, Bash, Go, etc.) and willingness to learn Go, if necessary.

Experience in using and accessing security of Infrastructure as Code (Terraform).

Experience in hardening Linux based systems (apparmor, seccomp, etc.).

Experience in hardening Kubernetes.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8761116
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
You will own security end to end: strategy and execution, both. You inherit a working program, with an annual SOC 2 Type II audit, an established tool stack, and clear vendor-gating rules already in place. You will work closely with our Application Architect, our IT team, Legal, and engineering leads across Israel, the US and the UK. The role reports to a member of the executive team.

This is a player-coach role. One week you present the annual risk review to management; the next you are pulling audit evidence, tuning a cloud alert rule, or reading a vendor's risk scan yourself. If you need a large team under you to be effective, this is probably not the right fit. If you like owning the whole problem, it is a good one.

What you will do:

Own the annual SOC 2 Type II audit end to end: controls, evidence collection, external auditors and consultants. The bar we hold ourselves to is zero deviations.
Run supply-chain security: vendor risk assessments and security questionnaires, gating rules for new vendors, and contract security terms together with Legal. We do not onboard vendors without SOC 2 or ISO 27001, and critical findings block the deal.
Own application security with runtime-context prioritization: focus engineering on what is actually exploitable in production, and filter out the scanner noise.
Run day-to-day security operations: cloud security posture across AWS and GCP, EDR, email security, identity and zero-trust access, alert triage and remediation follow-up with the owning teams.
Manage the annual penetration-testing program: scoping, vendor selection, findings triage and remediation tracking with R&D.
Own incident response: keep the plan current, run it when needed, and handle notification duties toward our cyber insurer.
Run the security awareness program and the security portion of employee onboarding.
Manage the security budget, tool renewals and vendor relationships.
Set governance for AI tools used across the company: usage guidelines, risk registers, and security review of new AI vendors.
Requirements:
What you will bring:
7+ years in information security, including at least 2 years owning a security function or leading the work of others.
Hands-on cloud security experience in AWS (GCP is a plus). You can read an alert, form an opinion and act on it yourself.
You have taken a company through SOC 2 or ISO 27001 audits personally, evidence included, not just from the steering committee.
Working knowledge of application security, and the ability to talk with developers in their own language.
Experience running third-party and vendor risk.
Clear written English. The role works daily with US and UK teams, auditors and vendors.
Comfort using automation and AI tools to multiply what a small team can do.

Nice to have:
Media, ad-tech or other high-traffic consumer-web experience.
Security due diligence on M&A.
Experience presenting risk to executive management.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8761684
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
22/06/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Linux Low Level Security Research team manager for our Tel Aviv R&D center. You will manage and lead a team that is responsible for researching the most recent Malwares, Kernel mitigations, EBPF, and advanced cybersecurity threats, as well as designing, developing and improving our Linux Agent ability to protect against different threats. The position includes researching Linux internals, Reverse engineering, malwares analysis, diving into internals of the Linux kernel and user-mode code, java, javascript and more.
Key Responsibilities
Leading the existing employees as well as hire future employees to join your team.
Be a thought leader around anti-malware detection and protection; designing, planning, and improving our anti-malware detection and prevention capabilities.
Lead the rapid response and find ways to prevent new critical vulnerabilities.
Respond to malware-based security events from customers.
Stay up to date with current malware and new attackers techniques.
Requirements:
Required Qualifications
At least one year of management experience.
At least 5 years of security research experience.
At least 3 years of Linux security research experience.
At least 3 years of experience in Linux internals (both user and kernel) and research.
At least 3 years of experience with reverse engineering (both static and dynamic) as well as assembly.
At least 2 years of programming experience in C/C++/Rust.
Experience with leading projects, working with other teams, and meeting high-quality standards and deadlines.
High research and coding standards and ability to think ahead of possible pitfalls and issues.
Hands-on approach
Passion for working with people: recruiting, leading, mentoring, and helping them grow.
Excellent communication skills with the ability to present research results, processes, and ideas clearly and concisely.
The ability to work under pressure with strict deadlines and to prioritize projects.
Ability to take initiative and work under pressure.
Strong attention to detail.
A 'play-to-win' attitude.
Preferred Qualifications
Experience with writing eBPF applications.
Experience finding your own vulnerabilities and figuring out how to exploit them.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8705253
סגור
שירות זה פתוח ללקוחות VIP בלבד