דרושים » אבטחת מידע וסייבר » דרוש /ה מומחה /ית PT ( Penetration Tester )

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
1 ימים
דרושים בTOP SOFT טופ סופט - השמה ומיקור חוץ
מיקום המשרה: הרצליה
חפש/ת את האתגר הבא בעולם ה-Offensive Security?

אנחנו מגייסים מומחה/ית Penetration Testing לביצוע מבדקי חדירות אפליקטיביים, תשתיתיים ובענן בסביבה טכנולוגית מתקדמת, עם עבודה צמודה לצוותי פיתוח ותשתיות והשפעה אמיתית על אבטחת המוצרים והמערכות.

מה כולל התפקיד?
ביצוע מבדקי חדירות לאפליקציות Web, Mobile ו-API.
זיהוי חולשות לוגיות וטכניות והערכת סיכונים.
כתיבת דוחות מקצועיים והצגת ממצאים לצוותי פיתוח ותשתיות.
ליווי תהליך תיקון החולשות ומתן המלצות טכנולוגיות.
עבודה עם סביבות Cloud וטכנולוגיות מתקדמות.
דרישות:
לפחות 3 שנות ניסיון מעשי (Hands-on) בביצוע מבדקי חדירות אפליקטיביים.
ניסיון משמעותי עם Burp Suite Professional.
היכרות מעמיקה עם OWASP Top 10 ו-ASVS.
ניסיון בבדיקות API (REST, SOAP, GraphQL) באמצעות Burp או Postman.
יכולת קריאת קוד בשפות כגון JAVA, C #, Node.js או Python.
היכרות עם מנגנוני Authentication ו-Authorization כגון OAuth2, JWT ו-SAML.

יתרון משמעותי
ניסיון בכתיבת סקריפטים ב- Python או Bash.
ניסיון במבדקי חדירות לסביבות Cloud ו-Microservices.
ניסיון בבדיקות Mobile ( Android / IOS ).
היכרות עם Linux, Windows ותקיפות תשתית.
הסמכות כגון OSCP, OSWE או GWAPT. המשרה מיועדת לנשים ולגברים כאחד.
 
הסתר
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8755765
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
דרושים בגב מערכות
מיקום המשרה: הרצליה
סוג משרה: משרה מלאה
תחום אחריות
הובלת מבדקי חדירה מקצה לקצה, זיהוי חולשות אבטחה מורכבות ומתן המלצות לתיקון (Remediation) ברמת הקוד והתשתית.
עבודה שוטפת מול צוותי פיתוח ו- DevOps בסביבות Agile/CI-CD.
דרישות:
ניסיון: 3 שנות ניסיון מעשי לפחות כ- Penetration Tester.
אפליקציות ופיתוח: ניסיון מוכח במבדקי חדירה לאפליקציות Web (SaaS) ומערכות backend מורכבות (כולל רשתות מבודדות), ורקע מעשי בפיתוח ( backend frontend ).
ענן: ניסיון בביצוע מבדקי חדירה לסביבות ענן (AWS, Azure, GCP).
יכולות טכניות: שליטה מוחלטת ב-OWASP Top 10, ביצוע Code Review ידני ( Python, JAVA, C #, JS/ Node.js ), והבנה עמוקה ב-API Security (REST, GraphQL, gRPC) ובפרוטוקולי הזדהות (OAuth2, OIDC, SAML).

יתרון משמעותי
הסמכות: OSCP, OSWE, BSCP, AWS Certified Security או Azure Security Engineer (AZ-500).
AI Security: היכרות עם OWASP Top 10 for LLM (כגון Prompt Injection, Insecure Output Handling) ובחינת עמידות APIs של שירותי AI (OpenAI API, Azure AI Services).
תשתיות ו-Cloud Security: ניסיון באבטחת סביבות Containerized (Kubernetes, Docker), פריצה דרך IAM Roles, Lateral Movement בענן, שליטה ב-Active Directory / Azure AD והתקפות רשת נפוצות. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8803136
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
2 ימים
דרושים בQpoint Technologies
סוג משרה: משרה מלאה
לארגון גדול בתחום הבריאות דרוש/ה רכז/ת סיכוני סייבר ואבטחת מידע לתפקיד משמעותי בעולם הגנת הסייבר. התפקיד כולל ריכוז ובקרה של ממצאי אבטחה וסיכונים, מעקב אחר תוכניות טיפול ולוחות זמנים, הערכת סיכונים והצגת תמונת מצב להנהלה. עבודה מול מגוון ממשקים טכנולוגיים ועסקיים והזדמנות להתפתח מקצועית בעולמות הסייבר.
דרישות:
5 שנות ניסיון בתחום אבטחת המידע, סייבר, SOC, GRC או ניהול סיכונים טכנולוגיים - חובה.
היכרות עם מושגי יסוד בעולם הסייבר ואבטחת המידע - חובה.
הבנה בסיסית של סיכוני סייבר, חולשות אבטחה ותהליכי טיפול בממצאים.
הבנה טובה של סביבות IT מורכבות וארכיטקטורות Enterprise.
יכולת להבין ולהעריך את המשמעות של חולשות וממצאי אבטחה. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8781427
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
דרושים בוואן פתרונות טכנולוגיים בע"מ
מיקום המשרה: מספר מקומות
סוג משרה: משרה מלאה
- אחריות לטיפול מקצועי בחשד לאירועי סייבר
- פיקוח על הפעילות השוטפת של מרכז הניטור וניהול משימות של אנליסטים T1
- מעקב רציף על האירועים / חשד לאירועים
- ניהול משמרות ניטור
- הקצאה וניהול משימות במרכז הניטור
- הפעלת צוותים לניהול תגובה לאירועי סייבר
- ניהול ומעקב פערי ניטור מול הצוותים הרלוונטיים
דרישות:
לפחות שנה כאנליסט ב- SOC
לפחות שנה כמנהל צוות ב- SOC או כמנהל צוות תגובה
ניסיון בהגדרות חוקים במערכות ה- SIEM (יתרון ל-SPLUNK)
יכולת הובלה מקצועית
יכולת ראייה בוגרת
המשרה מיועדת לנשים ולגברים כאחד. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8165491
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Herzliya
Job Type: Full Time
We are looking for a highly skilled and security-savvy Application Security Engineer to lead our product and application security efforts. In this role, you will drive security design, ensure secure coding practices, and validate our services and environments against the highest security standards.

You will work closely with our R&D and Product teams to identify, mitigate, and prevent security risks throughout the software development lifecycle (SDLC). You will own security initiatives, mentor developers on security best practices, and play a key role in shaping the security posture of our products.

The ideal candidate is highly motivated, eager to learn, and has a security by design mindset. This role provides career growth opportunities, enabling you to deepen your expertise in AppSec, DevSecOps, and cloud security.

What you'll do:
Partner with development and product teams to integrate security best practices into the SDLC.
Lead threat modeling and architecture security reviews to proactively identify and mitigate risks.
Conduct security assessments, including code reviews, vulnerability scans, penetration testing, and secure product design reviews.
Stay up to date with emerging security threats, vulnerabilities, and industry trends, ensuring we remains ahead of evolving risks.
Support and contribute to security incident response activities, including root cause analysis and post-incident improvements.
Automate security processes and integrate security tools within CI/CD pipelines.
Develop and deliver secure coding training to engineering teams.
Requirements:
What you have:
3+ years of experience in Application Security, Penetration Testing, or Product Security in a SaaS company
Deep understanding and hands-on experience of web application security, including OWASP Top 10, authentication, encryption, and secure coding principles
Proficiency in scripting or programming languages (Terraform, Python, JavaScript, Go, etc.) for security automation and infrastructure.
Experience with cloud security best practices (AWS, GCP, or Azure)
Strong communication skills, with the ability to explain security risks and recommendations to technical and non-technical stakeholders, including executive management
Experience working with large-scale, complex R&D environments

Bonus Points:
Hands-on experience with DevSecOps and integrating security tools into CI/CD pipelines
Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent experience)
Being introduced by an AppsFlyer team member
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8788766
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
19/08/2026
חברה חסויה
Location: Herzliya
Job Type: Full Time
Required Web Security Researcher
As a Web Security Researcher, you will:
Perform in-depth technical research of Android and iOS application architectures, using both static and dynamic techniques.
Deep dive into the network stacks and communication protocols used by mobile applications
Develop detailed, reliable Proofs of Concept (PoCs) for related solutions.
Requirements:
At least 3 years of security research experience, including static analysis of complex applications using tools such as Ghidra and JADX and dynamic application analysis using tools such as Frida, mobile debuggers and instrumentation frameworks.
Good understanding of cryptographic principles and common cryptographic protocols.
Proficiency in at least 2 of the following programming languages: C/C++, Java, Python, Swift and Objective-C
It would be great if you also have:
Hands-on experience in mobile security analysis of Android and/or iOS platforms
Strong understanding of operating system internals
Experience analyzing obfuscated, protected or heavily optimized code
Experience with vulnerability research and exploit development.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8788526
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
19/08/2026
חברה חסויה
Location: Herzliya
Job Type: Full Time
Required Technical Intelligence Analyst
As a Technical Intelligence Analyst, you will:
Conduct OSINT and technical research on mobile security, spyware, surveillance tools, cyber products, cybercrime markets, threat actors, companies, individuals and industry developments
Prepare clear analytical outputs, including company profiles, technical summaries, market overviews, incident analyses, timelines, trend reports and strategic briefs
Research corporate structures, founders, executives, investors, customers, partnerships, acquisitions, legal issues, sanctions and regulatory developments
Analyze mobile-related products, technical claims, infrastructure, capabilities and market movements to identify trends, red flags, intelligence gaps and signals.
Requirements:
3+ years of experience in intelligence, cyber intelligence, military intelligence, technical OSINT, corporate intelligence, threat intelligence or a comparable research role
Strong understanding of mobile and cyber concepts, including mobile apps, device identifiers, mobile malware, spyware, vulnerabilities, cloud services, telecom concepts and network fundamentals
Familiarity with cyber operations, including targeting, exploitation, persistence, collection, exfiltration, infrastructure usage and OPSEC
Strong OSINT skills across corporate registries, LinkedIn, media, regulatory filings, court records, GitHub, technical blogs, WHOIS/DNS, certificate transparency, forums, marketplaces, messaging platforms, app stores, social media and dedicated OSINT platforms/tools
Familiarity with OSINT tools and investigative workflows for entity resolution, link analysis, infrastructure mapping, social media research, breach/leak research, dark web/forum monitoring, domain/IP enrichment and data validation
Ability to assess source credibility, separate facts from assumptions and produce concise, source-backed analysis
Basic scripting ability, preferably in Python or similar languages, for data collection, parsing, enrichment and automation
SQL skills for querying, filtering, joining and analyzing datasets from internal and external sources
Excellent written English
Strong operational security awareness
It would be great if you also have:
IDF intelligence, IDF cyber or technology units, government intelligence/security organizations, mobile security research, cyber intelligence, technical OSINT, cybercrime research, spyware/surveillance technology research, corporate intelligence, due diligence or technology-focused business intelligence
Additional languages are an advantage.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8788513
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
4 ימים
Location: Herzliya
Job Type: Full Time
We are seeking a talented and versatile Threat Detection Engineer to work with us in Herzliya with expertise in iOS and Android security. As a key member of our engineering team, you will play a crucial role in designing and developing complex compromise detection solutions and providing advanced professional services to customers.

Responsibilities:
Design and develop mobile focused on-device and off-device malware and compromise detection solutions that enable forensic analysis, including infrastructure, features, classification logic, tools, proof of concepts, heuristics and signatures for Android and iOS devices.
Represent the Company in front of customers by providing advanced professional services including malware and indicator of compromise analysis, as well as professional training sessions.
Develop and implement components and features using C, C++, Python, JavaScript, Go, Rust and other programming languages as needed, while employing secure coding practices and ensuring optimal performance, responsiveness, and cross-platform compatibility in line with product specifications.
Represent the company in front of potential customers and partners by conducting technical demonstrations, participating in meetings and other pre and post sales engagements.
The position may require local and international travel.
Requirements:
3+ years of experience in security research / digital forensics with knowledge in fields of OS internals and reverse engineering and/or malware detection and analysis.
Software development experience in C, C++, Python, JavaScript, Go, Rust and/or other programming languages.
Excellent problem-solving abilities, attention to detail, and a passion for delivering exceptional user experiences and interacting with customers.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8814933
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
4 ימים
Location: Herzliya
Job Type: Full Time
We are seeking a talented and versatile Senior Threat Detection Engineer to work with us in Herzliya with expertise in iOS and Android security. As a key member of our engineering team, you will play a crucial role in designing and developing complex compromise detection solutions and providing advanced professional services to customers.

Responsibilities:
Design and develop mobile focused on-device and off-device malware and compromise detection solutions that enable forensic analysis, including infrastructure, features, classification logic, tools, proof of concepts, heuristics and signatures for Android and iOS devices.
Represent the Company in front of customers by providing advanced professional services including malware and indicator of compromise analysis, as well as professional training sessions.
Develop and implement components and features using C, C++, Python, JavaScript, Go, Rust and other programming languages as needed, while employing secure coding practices and ensuring optimal performance, responsiveness, and cross-platform compatibility in line with product specifications.
Represent the company in front of potential customers and partners by conducting technical demonstrations, participating in meetings and other pre and post sales engagements.
The position may require local and international travel.
Requirements:
6+ years of experience in security research / digital forensics with knowledge in fields of OS internals and reverse engineering and/or malware detection and analysis.
Software development experience in C, C++, Python, JavaScript, Go, Rust and/or other programming languages.
Excellent problem-solving abilities, attention to detail, and a passion for delivering exceptional user experiences and interacting with customers.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8814935
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
26/08/2026
חברה חסויה
Location: Herzliya
Job Type: Full Time
We are looking for a Junior Intelligence Analyst to join our team. In this role, you will combine investigative expertise, customer-facing engagement, and product knowledge to help customers maximize the value of our intelligence solutions. You will work closely with customers around the world, providing training, generating intelligence insights, and helping improve investigative methodologies and workflows.

You will:
Deliver product demonstrations, onboarding programs, workshops, and training sessions to customers and internal stakeholders worldwide.
Generate intelligence insights, investigations, and reports based on OSINT methodologies and analytical best practices.
Support customers in improving investigative workflows and achieving better operational outcomes through effective use of our solutions.
Drive product adoption and user engagement by identifying usage trends, friction points, and opportunities for improvement.
Participate in product validation activities, including beta testing and feedback collection, ensuring new capabilities meet operational needs.
Serve as a trusted advisor to customers while collaborating closely with Product Management, Customer Success, and Sales teams.
Act as a voice of the customer by sharing field insights, emerging trends, and user requirements that help shape product enhancements and strategy.
Requirements:
1 year of experience as an Intelligence Analyst, Investigator, OSINT Analyst, or in a similar intelligence-related role (including relevant military intelligence experience).
Unit 8200 military service - advantage.
Strong analytical and investigative mindset with excellent attention to detail and the ability to translate findings into actionable insights.
Confidence presenting to audiences and delivering training sessions in a professional environment.
Native-level fluency in Spanish, French, or another European language.
Professional-level English communication skills, both written and verbal.
Ability to work independently while collaborating with global cross-functional teams.
Willingness and ability to travel internationally up to 50% of the time.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8798756
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
19/08/2026
חברה חסויה
Location: Herzliya
Job Type: Full Time
Required Security Researcher
As a Security Researcher, you will:
Be a part of the OPSEC department which is in charge of research, design, development and enforcement of advanced OPSEC solutions.
Be in charge of the operational security research of a cyber intelligence product
Advanced analysis of operating system internals, including binary and architectural evaluation, security testing and exploit mitigation research
Define product requirements, alert mechanisms, working procedures and more.
Requirements:
Strong knowledge of mobile operating system internals
At least 2 years of experience in one or more of the following areas: malware research, mobile forensics and vulnerability research
At least 2 year of experience with advance static and dynamic tools ( e.g., Ghidra, Radare2, Binary Ninja, Hopper or similar tools)
At least 2 year of experience with ARM64 assembly and low-level debugging (e.g., LLDB, GDB)
Software development skills in at least one programming language: Objective-C, swift, C/C++
B.Sc. in a technological field or a relevant IDF background.
Ability to work independently and as a part of a team
It would be great, if you also have:
Familiarity with mobile security testing methodologies and security hardening techniques
Experience with network analysis tools, such as: Wireshark/Fiddler/Burp.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8788561
סגור
שירות זה פתוח ללקוחות VIP בלבד