דרושים » אבטחת מידע וסייבר » Senior Security Engineer- Hybrid

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Herzliya
Job Type: Full Time and Hybrid work
we are looking for a Senior Security Engineer.
In this role, your solutions and expertise will have a company-wide impact. You will build cutting-edge software that solves complex pain points, actively support security efforts, and collaborate directly with teams across Akamai to reduce our overall attack surface.
As a Senior Security Engineer, you will be responsible for:
Designing, developing, testing, and deploying scalable security tools adopted across the organization.
Acting as a technical resource during security incidents to analyze threats and deploy scripts.
Researching and integrating AI and machine learning to automate workflows and enhance security.
Partnering with diverse teams to understand operational environments and engineer customized solutions.
Managing, documenting, and upgrading internal security tools to address evolving business needs.
Staying at the forefront of InfoSec and AI landscapes to upskill the team.
Requirements:
Possess at least 4 years of experience in cybersecurity and software engineering.
Demonstrate proficiency writing complex scripts and production-grade tools using one or more of the following languages: Python, Go, Rust, Bash, Groovy.
Have to apply AI (LLM) technologies to solve security problems.
Understand threat modeling, attack vectors, and incident response to neutralize modern threats.
Manage Jenkins pipelines, Git workflows, and infrastructure tooling like Terraform or Ansible.
Communicate effectively with a diverse user base to define technical needs.
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8744432
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 20 שעות
דרושים בAlljobs Match
Job Type: Full Time
AllJobs, located in Netanya, is looking for an Information Security & Cybersecurity Specialist.
Responsibilities

Ongoing monitoring of security systems, including alerts received from SOC and SIEM platforms.
Receiving alerts and providing initial response to information security incidents as part of a 24/7 on-call rotation.
Conducting initial investigations of security alerts and incidents, assessing their severity, and determining the appropriate course of action.
Escalating critical incidents and engaging IT, infrastructure, development teams, and external security vendors as needed.
Managing information security incidents and tracking them through full resolution.
Continuously monitoring security vulnerabilities and CVEs relevant to the companys systems.
Assessing vulnerability severity, prioritizing remediation efforts, and coordinating the installation of security updates.
Working with Radware WAF systems, including log analysis, reviewing blocked traffic, handling exceptions, and updating security rules.
Working with Firewall systems, including reviewing rules, opening network access, reducing permissions, and analyzing logs.
Handling employee reports regarding phishing messages or suspicious activity.
Reviewing links, attachments, sender identity, and additional recipients in suspected phishing incidents.
Conducting phishing simulations for employees, analyzing results, and producing insights and recommendations.
Delivering training sessions and presentations to raise awareness of information security and cyber risks.
Writing, updating, and implementing information security policies and procedures across the group of companies.
Conducting periodic audits related to permissions, data retention, data transfer, and system access.
Documenting security incidents, findings, actions taken, and recommendations for future improvement.
Preparing periodic reports covering incidents, open vulnerabilities, remediation status, and key risks.
Requirements:
3-5 years of hands-on experience in information security, cyber operations, or Security Operations roles.
Experience working with SIEM systems or with a SOC team.
Ability to read, analyze, and investigate logs from security systems, servers, and network components.
Hands-on experience responding to information security alerts and incidents in real time.
Experience working with Firewall systems and analyzing network rules.
Hands-on experience working with WAF systems.
Experience in vulnerability management, CVE monitoring, and prioritizing security updates.
Strong understanding of network protocols, IP addresses, ports, DNS, HTTP, and HTTPS.
Good knowledge of Windows environments, Active Directory, user permissions, and endpoints.
Experience handling phishing incidents and suspicious email messages.
Ability to write procedures, working documents, and incident investigation reports.
Ability to work independently and make decisions under pressure.
Ability to manage multiple incidents and tasks simultaneously and follow them through to completion.
Ability to work effectively with both technical and non-technical stakeholders.
Ability to deliver clear and accessible security training to employees.
Willingness to participate in a 24/7 on-call rotation and handle information security incidents outside regular working hours, including evenings, nights, weekends, and holidays, depending on the nature and severity of the incident.
Ability to respond quickly, connect remotely, and begin investigating and handling critical incidents.
Availability to engage IT, infrastructure, development teams, and external vendors when required.
Good technical English.

Advantages

Hands-on experience with WAF systems.
Experience working with an external SOC or MSSP.
Experience working within a group of companies or in a multi-system environment.
Familiarity with Microsoft 365, Azure, or another cloud environment.
This position is open to all candidates.
 
Show more...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8759855
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 2 שעות
דרושים בAlljobs Match
Job Type: Full Time
A corporate group is looking for an Information Security & Cyber Security Expert for a cross-functional, hands-on role, including monitoring security systems, handling cyber incidents, vulnerability management, and implementing information security processes.

This is a mid-level position, suited to professionals with practical experience who can investigate incidents in real time, make decisions, and lead response efforts in coordination with IT, infrastructure, development, and external vendors.

Reports to: CTO

Role Responsibilities
Monitor alerts from SOC and SIEM systems, investigate incidents, and assess their severity.
Lead the handling of information security incidents through to closure, including escalation and engaging relevant stakeholders.
Manage security vulnerabilities, track CVEs, and prioritize patching.
Work with WAF and Firewall systems: log analysis, rule review, handling blocks and exceptions, and access reduction.
Handle phishing incidents and suspicious activity, including checking links, files, and sender identity.
Conduct phishing simulations and deliver training sessions for employees.
Write and implement information security procedures and conduct periodic controls.
Document incidents, prepare reports, and track risks and open tasks.
Participate in a 24/7 on-call rotation and respond to unusual incidents outside working hours, including weekends and holidays.
Requirements:
3-5 years of hands-on experience in information security, cyber operations, or Security Operations.
Experience working with SIEM, a SOC, and handling real-time security incidents.
Ability to read and analyze logs from security systems, servers, and network components.
Hands-on experience with Firewall and WAF systems.
Experience in vulnerability management, CVE tracking, and prioritization.
Knowledge of communication protocols, IP, ports, DNS, HTTP, and HTTPS.
Familiarity with Windows environments, Active Directory, permissions, and endpoints.
Experience handling phishing incidents and suspicious emails.
Ability to write procedures, working documents, and investigation reports.
Ability to work independently, manage multiple tasks, and make decisions under pressure.
Ability to work with both technical and business stakeholders and deliver clear training sessions.
Willingness to participate in on-call duty, connect remotely, and respond quickly during incidents.
Good technical English.
Advantages (Nice to Have)
Experience working with Radware WAF.
Experience working with an external SOC or MSSP.
Familiarity with Microsoft 365, Azure, or cloud environments.
Experience with EDR, DLP, antivirus, or email filtering systems.
Familiarity with ISO 27001, NIST, CIS Controls, and Israeli privacy protection regulations.
Certifications such as Security+, CySA+, CEH, or equivalent.
This position is open to all candidates.
 
Show more...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8763051
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
2 ימים
דרושים בלוגיקה IT
סוג משרה: משרה מלאה ועבודה היברידית
?Ready to Power Up Your Career

Cloud Security Engineer

תל אביב | משרה מלאה | היברידי

בואו להיות חלק מהעשייה הטכנולוגית שמשפיעה על הבריאות בישראל!
בחטיבת הטכנולוגיות אנחנו משלבים בין חדשנות טכנולוגית לשליחות אמיתית, כדי להמשיך ולפתח מערכת בריאות טובה ומתקדמת יותר עבור מיליוני חברי הארגון.
אצלנו תמצאו סביבת עבודה דינמית וחדשנית הכוללת שימוש בטכנולוגיות מובילות כמו ענן, בינה מלאכותית (AI) ופתרונות דיגיטליים חוצי-ארגון.
אנחנו מאמינים בשותפות ובפיתוח אישי ומקצועי, בסביבת עבודה נעימה שמורכבת מעובדים שמגיעים כל בוקר מתוך רצון להשפיע ולעשות טוב.

על המשרה:

אחריות לזמינות, אמינות וביצועים של מערכות אבטחה בענן
ניהול שוטף של מעטפת האבטחה במספר Landing Zones בענן ציבורי
ניהול שינויים דרך תהליכי CI/CD מאובטחים IaC ושימוש ב Terraform
בעלות מקצועית על מערכות אבטחה בקטגוריות  CNAPP, SAST, SCA
שותפ/ה בתכנון Landing Zones חדשים ובפרויקטים אסטרטגיים של עליה לענן
דרישות:
תואר במדעי המחשב/ הנדסת מחשבים / מערכות מידע /יוצא יחידות צבאיות/קורסים מתקדמים בתחום חובה
ניסיון של לפחות 7 שנים ביישומי באבטחת מידע, מתוכן לפחות 3 שנים בענן ציבורי (Azure יתרון משמעותי)
היכרות ועבודה עם ארכיטקטורות ענן בארגוני Enterprise
ניסיון בעבודה עם רכיבי אבטחה בענן כגון: Firewall, API GW, WAF, Azure Policy, APM
רקע משמעותי ב כתיבת תשתיות באמצעות IaC (Terraform או שווה ערך)
ניסיון באבטחת Kubernetes (AKS / OpenShift) הכולל Network Policies, RBAC, Secrets Management, Image Scanning, Admission Control
ניסיון רב-עננים (Multi-Cloud) AWS / GCP בנוסף ל-Azure- יתרון משמעותי
ניסיון בעבודה במודל CCoE / Platform Team / Enterprise Architecture- יתרון משמעותי


הבנה טכנולוגית גבוהה ויחסי אנוש מעולים
ראייה מערכתית רחבה ויכולת חשיבה ארכיטקטונית
יכולת עבודה עצמאית, עבודת צוות ויכולת לימוד עצמי מהיר
שליטה מלאה בעברית ואנגלית ויכולת ניסוח טובה בעל-פה ובכתב המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8743927
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
לפני 53 דקות
דרושים במלם תים
מיקום המשרה: מספר מקומות
סוג משרה: משרה מלאה ומתאים גם לחיילים משוחררים
חברת InfraEdge מגייסת אותך לתפקיד Cyber security Architect להובלת תכנון ויישום תפיסת אבטחה מתקדמת בסביבות Multi Cloud SaaS.
במסגרת התפקיד תכנון ארכיטקטורת הגנה רב שכבתית, הגדרת סטנדרטים וקווי בסיס לאבטחה, חיבור בין ארכיטקטורה, צוותי ניטור ותגובה לאירועים לצורך שיפור נראות וזיהוי איומים, והובלת פתרונות אבטחה משלב התכנון ועד לעלייה לייצור תוך מדידה ובקרה.
דרישות:
-  ניסיון של 3+ שנים בתחום ה-Cloud Security / Security Architecture
-  ניסיון מוכח בתכנון ארכיטקטורת אבטחה בלפחות שני ספקי ענן מובילים (AWS/GCP/Azure)
- רקע קודם בעולמות Security או DevOps /Cloud עם התמחות באבטחת מידע.
- היכרות עם SaaS, CSPM/CNAPP, IaC ותקני אבטחה כגון NIST / SOC2 - יתרון משמעותי. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8654277
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
2 ימים
דרושים בלוגיקה IT
סוג משרה: משרה מלאה ועבודה היברידית
ארגון מוביל בתחומו מגייס איש תקשורת ואבטחת מידע מנוסה לתפקיד מאתגר הכולל עבודה בסביבה מרובת אתרים, היברידית ומתקדמת (On-Premise וMulti Cloud).
מיקום: הרצליה

תיאור התפקיד:

אפיון, הקמה ותחזוקה של תשתיות תקשורת ואבטחת מידע בארגון רחב היקף
ניהול, ניטור ושיפור מתמיד של מערכות תקשורת ואבטחה
הובלת והטמעת פתרונות טכנולוגיים מתקדמים תוך עבודה עם ספקים חיצוניים
תכנון ויישום פתרונות ניטור, אוטומציה וOptimization בסביבות תקשורת, אבטחת מידע וענן
טיפול בתקלות מורכבות ומתן מענה ברמות 2nd ו3rd level
עבודה בסביבה דינמית הכוללת אינטגרציה בין מערכות, צוותים וטכנולוגיות
דרישות:
לפחות 5 שנות ניסיון Hands-on בתחומי תקשורת ואבטחת מידע - חובה
ניסיון בעבודה עם רשתות מבוזרות והיברידיות
ניסיון עם פתרונות תקשורת של יצרנים מובילים, כולל Juniper - חובה
ניסיון בעבודה עם מערכות Firewall כגון Check Point, Palo Alto, Juniper
ניסיון בתכנון והקמה של רשתות LAN / WAN / Wireless (Branch / Campus / Datacenter)
ניסיון מעמיק בפרוטוקולי ניתוב דינמיים, בדגש על BGP
ניסיון בעבודה עם Load Balancers וAPI Gateways (כגון F5, HAProxy)
ניסיון עם מערכות Proxy וסינון תוכן וקבצים
ניסיון בעבודה עם Linux - חובה

יתרונות
ניסיון בעולמות Cloud בדגש על GCP
ניסיון בכתיבת אוטומציות וסקריפטים ( Python, Ansible, Terraform)
מה מחכה לך בתפקיד:
סביבה טכנולוגית מתקדמת, עבודה עם מערכות מורכבות בקנה מידה גדול, חשיפה לטכנולוגיות חדשניות והשפעה אמיתית על תשתיות הליבה של הארגון. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8592200
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
לפני 58 דקות
דרושים בQpoint Technologies
סוג משרה: משרה מלאה
לארגון גדול בתחום הבריאות דרוש/ה רכז/ת סיכוני סייבר ואבטחת מידע לתפקיד משמעותי בעולם הגנת הסייבר. התפקיד כולל ריכוז ובקרה של ממצאי אבטחה וסיכונים, מעקב אחר תוכניות טיפול ולוחות זמנים, הערכת סיכונים והצגת תמונת מצב להנהלה. עבודה מול מגוון ממשקים טכנולוגיים ועסקיים והזדמנות להתפתח מקצועית בעולמות הסייבר.
דרישות:
5 שנות ניסיון בתחום אבטחת המידע, סייבר, SOC, GRC או ניהול סיכונים טכנולוגיים - חובה.
היכרות עם מושגי יסוד בעולם הסייבר ואבטחת המידע - חובה.
הבנה בסיסית של סיכוני סייבר, חולשות אבטחה ותהליכי טיפול בממצאים.
הבנה טובה של סביבות IT מורכבות וארכיטקטורות Enterprise.
יכולת להבין ולהעריך את המשמעות של חולשות וממצאי אבטחה. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8781427
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 3 דקות
דרושים בAlljobs Match
סוג משרה: משרה מלאה
לחברת אולג'ובס היושבת בנתניה, דרוש/ה איש/ת אבטחת מידע וסייבר.

התפקיד כולל:
* ניטור שוטף של מערכות האבטחה, לרבות התראות המתקבלות ממערכות SOC וSIEM.
* קבלת התראות ומתן מענה ראשוני לאירועי אבטחת מידע במסגרת כוננות 24/7.
* ביצוע תחקור ראשוני של התראות ואירועי אבטחת מידע, הערכת חומרתם והחלטה על המשך הטיפול.
* הסלמת אירועים קריטיים והפעלת צוותי IT, תשתיות, פיתוח וספקי אבטחה בהתאם לצורך.
* ניהול הטיפול באירועי אבטחת מידע ומעקב אחריהם עד לסגירה מלאה.
* מעקב שוטף אחר חולשות אבטחה וCVEs הרלוונטיים למערכות החברה.
* הערכת חומרת החולשות, תיעדוף הטיפול ותיאום התקנת עדכוני אבטחה.
* עבודה שוטפת עם מערכת WAF של Radware, לרבות ניתוח לוגים, בדיקת חסימות, טיפול בחריגים ועדכון חוקים.
* עבודה עם מערכות Firewall, כולל בחינת חוקים, פתיחת תקשורת, צמצום הרשאות וניתוח לוגים.
* טיפול בדיווחים של עובדים על הודעות פישינג או פעילות חשודה.
* בדיקת קישורים, קבצים מצורפים, זהות השולח ונמענים נוספים במקרה של אירוע פישינג.
* ביצוע סימולציות פישינג לעובדי החברה, ניתוח התוצאות והפקת מסקנות.
* העברת הדרכות והרצאות להעלאת המודעות לאבטחת מידע ולסיכוני סייבר.
* כתיבה, עדכון והטמעה של נהלי אבטחת מידע בקבוצת החברות.
* ביצוע בקרות תקופתיות בנושאי הרשאות, שמירת מידע, העברת מידע וגישה למערכות.
* תיעוד אירועי אבטחה, ממצאים, פעולות שבוצעו והמלצות להמשך.
* הכנת דוחות תקופתיים הכוללים אירועים, חולשות פתוחות, סטטוס טיפול וסיכונים מרכזיים.
דרישות:
* 3-5 שנות ניסיון מעשי בתפקידי אבטחת מידע, תפעול סייבר או Security Operations.
* ניסיון בעבודה עם מערכות SIEM או מול מוקד SOC.
* יכולת לקרוא, לנתח ולתחקר לוגים של מערכות אבטחה, שרתים ורכיבי תקשורת.
* ניסיון מעשי בטיפול בהתראות ובאירועי אבטחת מידע בזמן אמת.
* ניסיון בעבודה עם מערכות Firewall ובניתוח חוקי תקשורת.
* ניסיון מעשי בעבודה עם מערכות WAF.
* ניסיון בניהול חולשות אבטחה, מעקב אחר CVEs ותיעדוף עדכוני אבטחה.
* הבנה טובה בפרוטוקולי תקשורת, כתובות IP, פורטים, DNS, HTTP וHTTPS.
* היכרות טובה עם סביבות Windows, ‏Active Directory, הרשאות משתמשים ותחנות קצה.
* ניסיון בטיפול באירועי פישינג ובהודעות דוא"ל חשודות.
* יכולת כתיבת נהלים, מסמכי עבודה ודוחות תחקור.
* יכולת עבודה עצמאית וקבלת החלטות תחת לחץ.
* יכולת לנהל מספר אירועים ומשימות במקביל ולעקוב אחריהם עד לסגירה.
* יכולת עבודה מול ממשקים טכניים ולא טכניים.
* יכולת להעביר הדרכות לעובדים בצורה ברורה ונגישה.
* נכונות להשתלב בכוננות 24/7 ולטפל באירועי אבטחת מידע מחוץ לשעות העבודה, זמינות למענה בשעות הערב והלילה, בסופי שבוע ובחגים, בהתאם להתראות ולחומרת האירוע.
* יכולת להגיב במהירות, להתחבר מרחוק ולהתחיל בתחקור ובטיפול באירועים קריטיים.
* זמינות להפעלת צוותי IT, תשתיות, פיתוח וספקים חיצוניים במקרה הצורך.
* אנגלית טכנית ברמה טובה.

יתרון:
* ניסיון מעשי עם WAF.
* ניסיון בעבודה עם SOC או MSSP חיצוני.
* ניסיון בעבודה בקבוצת חברות או בסביבה מרובת מערכות.
* היכרות עם Microsoft 365, ‏Azure או סביבת ענן אחרת.
* ניסיון עם מערכות EDR, אנטיוירוס, DLP או מערכות סינון דוא"ל.
* היכרות עם תקן ISO 27001, מסגרת NIST או CIS Controls.
* היכרות עם תקנות הגנת הפרטיות ודרישות אבטחת המידע בישראל.
* הסמכות כגון Security+, ‏CySA+, ‏CEH או הסמכה מקבילה. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8759854
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
2 ימים
דרושים בHuman league
סוג משרה: משרה מלאה
לגוף פיננסי מוביל דרוש/ה אחרי/ית ניהול זהויות והרשאות לאגף מערכות מידע!!!

תיאור התפקיד:
ניהול והובלת פרויקט הטמעת מערכת Identity Management system.
ניהול ובקרה על מחזור חיי הרשאות (קליטה, שינוי, עזיבה) כחלק מתהליכים ארגוניים רחבים.
הגדרה, יישום וטיוב מודלי הרשאות ופרופילים ארגוניים.
אחריות על הגדרת חוקים והתאמתם לצרכים העסקיים, לטובת מניעת דלף מידע.
ניהול מערכת Varonis וטיוב הגדרות לניטור פעילות משתמשים וביצוע בקרות.
ביצוע בקרות שוטפות לאיתור חריגות והרשאות עודפות.
דרישות:
ניסיון של שנתיים ומעלה בניהול זהויות והרשאות/ Help desk / אבטחת מידע - חובה
ניסיון מוכח בעבודה עם מערכת Aveksa - חובה
ניסיון בעבודה עם מערכות DLP - יתרון
היכרות עם מערכת Varonis - יתרון
ניסיון בעבודה בארגון פיננסי- יתרון
ניסיון בביצוע סקירות הרשאות ובקרות בארגון - יתרון
*יום 1 עבודה מהבית
*תנאים מצוינים למתאים/ה!!! המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8778803
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
05/08/2026
חברה חסויה
Location: Herzliya
Job Type: Full Time and Hybrid work
We are seeking an MDR Security Engineer to own and scale the automation layer that powers our global MDR operations. This role is responsible for building and operating production-grade automation systems that reduce manual workload, improve detection quality, and enable consistent, high-quality incident response.
The ideal candidate is a hands-on engineer with strong experience in SOAR platforms, security operations, and automation design, capable of driving measurable improvements in efficiency, reliability, and response outcomes across a high-volume SOC environment.
Responsibilities
Upkeep the design, development, and lifecycle of SOAR playbooks, workflows, and integrations across the MDR platform
Build and operate production-grade automation systems supporting alert triage, enrichment, investigation, and response
Define and drive automation strategy by identifying high-impact, high-volume SOC processes and scaling them through automation
Develop integrations across SIEM, EDR/XDR, identity, cloud, and ticketing systems using APIs and scripting
Partner with MDR analysts, IR, threat hunters, and engineering teams to translate operational workflows into scalable automation
Improve detection and response quality through automation of enrichment, investigation, and containment workflows
Contribute to incident response and RCAs by delivering tooling that improves investigation speed, accuracy, and consistency
Evaluate and implement new automation capabilities, including AI-assisted workflows and data-driven decisioning
Monitoring, Metrics & Reliability Ownership
Define and own automation KPIs, including:
Automation coverage (% of alerts handled or augmented)
MTTD / MTTR improvement
False positive reduction and signal-to-noise improvement
Analyst time saved and throughput increase
Build and maintain dashboards and reporting to measure automation impact on SOC performance and SLAs
Ensure production reliability and stability of automation systems, including:
Monitoring workflow success/failure rates and execution latency
Tracking integration and API health, errors, and retry behavior
Implementing logging, alerting, and observability across automation pipelines
Continuously optimize workflows based on data, feedback, and operational performance to ensure consistent 24/7 MDR operation.
Requirements:
4+ years of experience in Security Operations, MDR, Incident Response, or Security Engineering
2-3+ years of hands-on experience with SOAR platforms and security automation
Proven experience owning and operating production-grade automation workflows in a SOC/MDR environment
Strong understanding of SOC operations, alert triage, escalation workflows, and incident response
Experience with enterprise security technologies (SIEM, SOAR, EDR/XDR, IAM/AD)
Strong scripting/development skills (Python, PowerShell, Bash) and experience building APIs and integrations
Experience with CI/CD, version control (Git), and deploying automation at scale
Strong analytical thinking and problem-solving skills with the ability to translate complex workflows into automation
Excellent communication and collaboration skills across engineering and operations teams
Nice to Have
Experience with AI-enhanced automation or large-scale workflow orchestration
Experience in high-volume MDR/SOC environments
Familiarity with threat hunting or detection engineering.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8769894
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Herzliya
Job Type: Full Time
we are looking for a Senior Low-Level Security Researcher.
As an Embedded security researcher, you will be dealing with:
Embedded systems reverse engineering.
Kernel drivers research and development.
Real-time Embedded End-to-End Low-Level software developments on various unique embedded platforms and environments.
Requirements:
Deep understanding of embedded systems internals and OS.
5+ years of experience in real-time embedded systems development, writing code in Rust / C / C++ / Assembly.
Experience in reverse-engineering using disassemblers (IDA or GHIDRA).
Deep knowledge of network communication protocols and topologies.
Highly motivated and very creative individual.
Advantages:
Experience in vulnerability research.
Graduate of an elite technological unit in the IDF.
Bachelor's degree in computer science or engineering.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8747564
סגור
שירות זה פתוח ללקוחות VIP בלבד