דרושים » אבטחת מידע וסייבר » Digital Forensics and Incident Response Analyst 2584

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Merkaz
On our Cyber Defense team, you will investigate security incidents and conduct thorough forensic analysis across multiple systems.
You will determine points of compromise and assess the scope and impact of incidents.
Your work will support containment and remediation efforts while providing valuable insights.
Requirements:
3+ years of experience IR/digital forensics
Conduct digital forensic on endpoints, servers, networks and cloud environments (AWS, Azure, GCP)
Experience using forensics tools such as: Volatility, FTK, Autopsy, log2timeline, X-ways
Apply Knowledge of Windows/Linux internals and their forensic artifacts - including processes, memory, registry, event logs, file systems and persistence mechanisms
Hands on experience with data analysis using Splunk, ELK stack or other SIEM platforms
Experience in programming or scripting language (Python, PowerShell, C# etc.)
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8763761
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking an Incident Response Engineer to join the IR team. This technical role focuses on active investigation, threat mitigation, and the continuous improvement of the security organizations posture through detection engineering and automation development.
The successful candidate will be responsible for the full lifecycle of security incidents, from initial triage to recovery. Beyond reactive response, this role involves tuning SIEM correlation rules and developing SOAR workflows to increase operational efficiency.
What Youll Be Doing:
Incident Management: Execute the IR lifecycle (Triage, Containment, Eradication, Recovery) for complex security events.
Technical Investigation: Perform root cause analysis and forensic examination across Windows, Mac, and Linux environments.
Detection & Tuning: Collaborate with the IR team to create, test, and tune SIEM rules and dashboards to reduce false positives and improve visibility.
Automation Engineering: Build and refine SOAR playbooks and automated response actions to streamline repetitive investigation tasks.
Cloud Security: Monitor and mitigate cloud-native threats across Azure, AWS, and GCP environments.
Requirements:
Experience as a SecOps/IR Analyst or Engineer with a heavy focus on active investigation.
Deep understanding of the Incident Response lifecycle (Triage, Containment, Eradication, Recovery).
Hands-on experience handling and managing security alerts, performing root cause analysis, and leading investigations.
Experience working across cloud providers (Azure, AWS, GCP) to identify and mitigate cloud-native threats.
Strong knowledge of operating systems (Mac, Windows, Linux) and their respective artifacts.
Proficiency with Splunk or other SIEM platforms for log analysis and threat hunting.
Experience with XSOAR or other security automation tools from an end-user/analyst perspective.
Strong knowledge of security technologies, including EDR, Mail Relay, Vulnerability Scanning, Secure Access, and MDM.
Scripting experience with Python or Bash to assist in data parsing and investigation tasks.
Nice to Have:
Detection Engineering: Ability to build and improve SIEM rules, correlations, and dashboards.
Automation Development: Experience developing new SOAR workflows, automated actions, and response playbooks.
Technical Literacy: Familiarity with REST APIs and Regex for advanced querying and tool integration.
Container Security: Familiarity and experience with K8S (Kubernetes).
Consultative Skills: Ability to guide best practices in Cloud Security and SIEM operations.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8794710
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
30/07/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
This is a hands-on role that balances deep technical work alongwith building and running the function: the Lead drives high-severity incidents end-to-end, serves as the escalation ceiling, and sets the standards and structure the team operates by.

Youre welcome to work in our offices in Tel Aviv, Israel.

Your responsibilities will include:

Build and lead global IR capability - select and mature DFIR tooling, and establish the playbooks and follow-the-sun operating model across EMEA, Asia, and APAC while hiring and developing a team of responders.
Lead the technical response to major incidents hands-on - from escalation through containment, eradication, and recovery - and act as the final technical authority on the most complex cases.
Personally conduct end-to-end forensic investigations across cloud, platform, and endpoint environments - log analysis at scale, host and network forensics, memory analysis, malware triage, and timeline reconstruction.
Define and enforce consistent investigation standards across the team: severity and escalation criteria, cross-region handoff quality, and evidence handling that meets legal, regulatory, and forensic requirements.
Partner with the SOC, SOC Automation, Threat Intelligence, Threat Hunting, and Platform Security teams to improve detection fidelity and reduce MTTD and MTTR.
Serve as the technical voice of incident response to executive leadership, Legal, and Privacy - delivering clear, risk-based briefings, regulatory-ready documentation, and root cause analyses (RCA).
Raise the teams technical bar through case reviews and hands-on mentoring, and drive lessons-learned into measurable improvements in controls and readiness.
Requirements:
We expect you to have:

Experience

8+ years of hands-on incident response and digital forensics, including technical leadership of large-scale, high-impact incidents (ransomware, nation-state / advanced threat actors, cloud intrusions, identity compromise).
Experience building or leading IR teams and capabilities in cloud or infrastructure-heavy environments, which are highly regulated (SOC 2, ISO 27001, GDPR/NIS2).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8761463
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
7 ימים
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
As the worlds leading vendor of Cyber Security, facing the most sophisticated threats and attacks, weve assembled a global team of the most driven, creative, and innovative people. At our company, our employees are redefining the security landscape by meeting our customers real-time needs and providing our cutting-edge technologies and services to an ever-growing customer base.
Key Responsibilities
Responsible for daily incident management of customer incidents
Perform incident response and forensic analysis of compromised systems, identify and provide recommendations for remediation
Formulate and direct incident response efforts, prioritize those response efforts, and create legible incident reports that describe the compromise vector, attacker methodologies and artifacts
Ability to manage complicated global incidents
Ability to perform large-scale compromise assessments for customer environments
Build incident response plans and playbooks
Create attack scenarios for customer tabletop training exercises
Creation of detailed incident reports for customers and effective communication of findings to customers
Build and maintain sandbox/test lab environments to evaluate malicious code
Work within a team environment and will be responsible for coordinating work actions.
Requirements:
10+ years of cybersecurity experience out of which 2-5 years are experience performing incident response with an emphasis on system compromise analysis.
Experience of performing security reviews/vulnerability risk assessments of network environments using both manual procedures and automated analysis tools.
Experience with enterprise security solutions, incident crisis management.
Experience with performing attack simulation for training security teams.
Experience with creating procedures and documented plans for security teams.
Ability to participate in on-call rotation, including at least one weekend a month.
Domestic and International travel may be required.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8786828
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
Are you an innovative security researcher with a deep understanding of Linux systems and a passion for protecting modern environments? Do you want to lead the charge in securing enterprise networks against the latest threats?
We're looking for a skilled professional to join our team, focusing on the critical and rapidly evolving fields of Linux Security. You'll be a foundational member of a new and growing team dedicated to the blue ocean of detection, developing multiple new capabilities within the largest cybersecurity enterprise in the world.
This is a unique opportunity to apply your expertise and influence the future of threat prevention-helping us build cutting-edge security solutions from the ground up.
Key Responsibilitie
Play a pivotal role in shaping the future of our security solutions.
Enhance product effectiveness by designing advanced protection components and developing sophisticated detection rules.
Research Linux OS internals, virtualized environments, and malware behaviors to inform and strengthen our attack prevention mechanisms.
Apply advanced AI and big data approaches to investigate and analyze large-scale datasets across our client base.
Lead research on novel protection concepts and bring them to production-grade quality, serving as a subject matter expert.
Stay up to date with the latest attacker methodologies, APT campaigns, and TTPs targeting Linux systems.
Conduct static and dynamic reverse engineering of Linux malware to uncover new techniques and develop mitigation strategies.
Collaborate closely with engineering, product management, and other research teams to translate research findings into production features.
Requirements:
5+ years of experience in cybersecurity research, with a proven track record of impactful projects.
Good knowledge of Linux OS internals, including both user and kernel space.
Solid knowledge of the cyber threat landscape, modern malware techniques, and APTs.
Hands-on experience in real-world threat hunting, incident response, or detection engineering.
Proficiency in programming languages such as Python, C, and/or C++, with a strong understanding of system-level programming and APIs.
Excellent problem-solving skills and a passion for cybersecurity innovation.
Ability to work independently, take initiative, and collaborate effectively in a team environment.
Preferred Qualifications
Background in EDR/XDR products or security solution development.
Experience in reverse engineering, including familiarity with debugging and disassembly tools such as GDB, IDA Pro, or Ghidra.
Experience in advanced data analysis, statistics, or machine learning for security applications.
Experience with Linux kernel development or vulnerability research.
Familiarity with virtualization platforms (e.g., ESXi/vCenter).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8781072
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
05/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
Are you an innovative security researcher with a deep understanding of Linux systems and a passion for protecting modern environments? Do you want to lead the charge in securing enterprise networks against the latest threats?
We're looking for a skilled professional to join our team, focusing on the critical and rapidly evolving fields of Linux Security. You'll be a foundational member of a new and growing team dedicated to the blue ocean of detection, developing multiple new capabilities within the largest cybersecurity enterprise in the world.
This is a unique opportunity to apply your expertise and influence the future of threat prevention-helping us build cutting-edge security solutions from the ground up.
Key Responsibilitie
Play a pivotal role in shaping the future of our security solutions.
Enhance product effectiveness by designing advanced protection components and developing sophisticated detection rules.
Research Linux OS internals, virtualized environments, and malware behaviors to inform and strengthen our attack prevention mechanisms.
Apply advanced AI and big data approaches to investigate and analyze large-scale datasets across our client base.
Lead research on novel protection concepts and bring them to production-grade quality, serving as a subject matter expert.
Stay up to date with the latest attacker methodologies, APT campaigns, and TTPs targeting Linux systems.
Conduct static and dynamic reverse engineering of Linux malware to uncover new techniques and develop mitigation strategies.
Collaborate closely with engineering, product management, and other research teams to translate research findings into production features.
Requirements:
5+ years of experience in cybersecurity research, with a proven track record of impactful projects.
Good knowledge of Linux OS internals, including both user and kernel space.
Solid knowledge of the cyber threat landscape, modern malware techniques, and APTs.
Hands-on experience in real-world threat hunting, incident response, or detection engineering.
Proficiency in programming languages such as Python, C, and/or C++, with a strong understanding of system-level programming and APIs.
Excellent problem-solving skills and a passion for cybersecurity innovation.
Ability to work independently, take initiative, and collaborate effectively in a team environment.
Preferred Qualifications
Background in EDR/XDR products or security solution development.
Experience in reverse engineering, including familiarity with debugging and disassembly tools such as GDB, IDA Pro, or Ghidra.
Experience in advanced data analysis, statistics, or machine learning for security applications.
Experience with Linux kernel development or vulnerability research.
Familiarity with virtualization platforms (e.g., ESXi/vCenter).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8770069
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
חברה חסויה
Location:
Job Type: Full Time
We are seeking to hire a Technical Fraud Threat Analyst to join the Fraud team. In this role, you will research, evaluate, and analyze fraud detection mechanisms, abuse vectors, and platform vulnerabilities across a wide range of online services. You will generate strategic insights from diverse intelligence sources, conduct OSINT investigations, and identify emerging fraud tactics and behavioral vulnerabilities. In addition to research and analysis, you will leverage technical tools and infrastructure to support investigations, simulate real-world abuse scenarios, and enable scalable fraud research. Your work will culminate in actionable intelligence and mitigation recommendations for clients. Key Responsibilities:
* Conduct investigations and identify fraud methods across web and mobile platforms (social media, forums, apps, and the dark web).
* Design and execute fraud research methodologies, including technical validation of abuse scenarios.
* Build, maintain, and operate research environments and technical tooling that support fraud investigations and red team activities.
* Analyze large datasets, telemetry, and technical artifacts to uncover patterns and deliver actionable insights.
* Develop or leverage automation to improve research workflows and increase operational efficiency.
* Monitor third-party websites and channels for malicious activities and fraud risks.
* Prepare detailed reports with findings, insights, and actionable recommendations.
About us:
A trust, safety, and security company built for the AI era. We safeguard the communicative technologies people use to create, collaborate, and interact- whether with each other or with machines. In a world where AI has fundamentally changed the nature of risk, we provide end-to-end coverage across the entire AI lifecycle. We support frontier model labs, enterprises, and UGC platforms with a comprehensive suite of solutions: from model hardening evaluations and pre-deployment red-teaming to runtime guardrails and ongoing drift detection. we are widely considered a global leader in online safety and AI security. We have some of the most forward-thinking and passionate minds in the world working to safeguard over 3 billion users across the largest AI and tech platforms. If you're creative and driven to secure the future of AI, we want to hear from you!
Requirements:
Required Skills & Experience:
* 3+ years of experience in intelligence analysis, CTI, fraud detection, security research, or a similar technical investigative role.
* Strong understanding of OPSEC principles.
* Strong knowledge of WEBINT and OSINT, including social media, apps, and the dark web.
* Comfortable working with technical environments, logs, APIs, automation, and investigative tooling.
* Ability to troubleshoot technical issues and rapidly learn new technologies, tools, and research methodologies.
* Strong analytical, communication, and reporting skills.
* Proactive, creative, and quick to learn new tools and practices.
* Fluent in English (additional languages are a plus).
* Comfortable with sensitive content. Advantage:
* Experience conducting red team exercises on online platforms to identify abuse methods and bypass mechanisms.
* Experience with scripting or programming (e.g., Python, JavaScript, or similar) to support research and automation.
* Experience developing or maintaining research infrastructure, automation pipelines, or investigative tooling.
* Familiarity with cloud environments, virtualization, or containerized environments.
* Platform familiarity: Hands-on experience with social media, apps, and forums.
* Experience working with APIs, web technologies, or automation frameworks.
* Experience with multiple languages.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8795229
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Petah Tikva
Job Type: Full Time
We are looking for a hands-on Cyber Security Analyst in Petah Tikva to lead our SIEM/SOC operations and drive the implementation of security systems across the organization. This is an implementor-profile role: 30-50% of the time will be spent deploying, integrating, and testing security platforms (20-40 systems in scope), working closely with stakeholders across the company. The analyst combines monitoring, threat detection, and incident response work with end-to-end ownership of security tooling.
Responsibilities:
SIEM/SOC Leadership:
Develop and mature the SIEM/SOC program: build detection rules, use cases, and correlation logic
Lead cyber monitoring operations and incident-response procedures (write and maintain playbooks)
Security Systems Implementation (main focus - 30-50% of the role):
Deploy, integrate, and test security platforms across the organization (20-40 systems)
Manage implementation projects end-to-end with internal stakeholders and vendors
Threat Detection & Automation:
Identify and track relevant cyber threats; analyze organizational impact
Design and define automations as responses to cyber risks (SOAR-style workflows)
Security Controls & Governance:
Define measurement criteria and monitor compliance with information-security policy
Develop and run ongoing security controls
Produce insights from defense, control, and monitoring systems; build tailored dashboards.
Requirements:
5+ years total hands-on experience in cyber security / security operations, including:
Hands-on experience with monitoring platforms (SIEM) and detection-rule writing
Operating cyber defense systems (SecOps)
Practical experience with cloud infrastructures (AWS / Azure / GCP)
Solid knowledge of operating systems, network protocols, GPO, Active Directory, and authentication mechanisms
Deep familiarity with security solutions: DLP, WAF, IDM, VA
Proven experience implementing and integrating security systems in production environments
Experience writing technical documentation (HLD/LLD)
Project-management skills: driving implementations with multiple stakeholders
Experience in a mid-size to large organization
Team player, task-oriented, self-driven promoter of initiatives
Requirements:
Experience in a financial organization
B.Sc. in Information Systems or related field
Relevant professional certifications (e.g., CISSP, CCSP, Security+, vendor SIEM certs)
NOC background / familiarity with NOC tooling.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8792500
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Senior Fraud Analyst to serve as the technical cornerstone of our Fraud Prevention team.
In this role, you won't be managing a team; youll be managing the technical evolution of our fraud defenses. Reporting directly to the Fraud Prevention Director, you will act as a high-level individual contributor, bridging the gap between data science, engineering, and risk strategy. You will be responsible for pioneering the use of AI and advanced analytics to protect our community and ensure our platform remains the safest place for independent businesses to grow.
Here are a few of the things you'll do:
Technical Strategy & Architecture: Partner with the Fraud Prevention Director to define the long-term technical roadmap, moving us toward an AI-first, autonomous fraud detection ecosystem.
AI & LLM Integration: Design and implement Generative AI agents and LLM-powered workflows to automate complex forensic investigations, reducing the time-to-detect for emerging fraud vectors.
Advanced Detection Modeling: Develop and prototype sophisticated ML models and graph-based heuristics to identify collusion, synthetic identities, and fraud rings.
Cross-Functional Technical Lead: Serve as the primary technical consultant to Product and Engineering, ensuring that new payment features (like RTP or international expansion) are built with scalable, AI-driven safeguards from day one.
Expert Forensics: Act as an escalation point on high-stakes, large-scale fraud attacks, utilizing advanced Python and network analytics to deconstruct and mitigate threats.
Data Excellence: Set the standard for the fraud teams technical stack. You will optimize our SQL/Python environments and ensure our data infrastructure is capable of supporting real-time AI inference.
Requirements:
5+ years of experience in fintech or payments fraud analytics. You are a seasoned IC who has scaled fraud programs in complex, high-volume environments.
AI/ML Expertise: Proven experience leveraging Generative AI, LLMs (e.g., RAG, agentic workflows), and Machine Learning to solve real-world risk problems. You don't just use these tools; you know how to build with them.
Technical Powerhouse: Mastery of Python (for data science and automation) and SQL (performance tuning, CTEs, window functions). You are comfortable working alongside engineers and data scientists.
Network Analysis: Deep experience with graph databases (Neo4j, TigerGraph) and link-analysis techniques to identify organized criminal networks.
Demonstrated ability to translate complex quantitative findings into executive‑level insights and influence roadmaps across product, engineering, finance, and support.
Strategic Influence: While this is not a management role, you have a track record of influencing technical roadmaps and advising senior leadership on risk-reward trade-offs.
Advanced data‑visualization skills (Looker, Tableau, Omni, Superset, or equivalent) with a portfolio of self‑service dashboards adopted by the company‑wide.
Domain Depth: Expert knowledge of the payments lifecycle, including CNP, ACH, and RTP risk, as well as the specific fraud challenges of the SaaS and marketplace sectors.
Regulatory Fluency: A solid understanding of PCI DSS, Nacha rules, and the emerging regulatory landscape surrounding AI in financial services.
Prior experience scaling fraud programs in a marketplace, SaaS, or creator‑economy context - Advantage.
Education: Bachelors or Masters degree in a quantitative field (e.g., CS, Statistics, Mathematics, Economics) or equivalent technical experience- Advantage..
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8795241
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
7 ימים
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are on an expedition to find you, a CTI Analyst who is passionate about turning raw threat data into clear, evidence-backed intelligence and operational outcomes. Youll play a major role in advancing our next-gen CTI platform across threat actor attribution, adversary infrastructure analysis, External Attack Surface Management (EASM), and STIX-based knowledge management - Working closely with the Engineering, MLOps, and Data teams to deliver high-signal intelligence that drives action.
:Responsibilities
Execute the CTI research roadmap across threat actor attribution, adversary infrastructure analysis, EASM insights, and STIX-based knowledge management.
Conduct in-depth infrastructure and campaign analysis, including domain/IP relationships, hosting patterns and certificates.
Identify, validate, and track Indicators of Compromise (IOCs) and emerging threats using passive sources and approved active techniques.
Normalize, enrich, deduplicate, and maintain intelligence in STIX 2.1, aligned with internal ontology and quality standards.
Collaborate with the Engineering, MLOps, and Data teams to translate intelligence into actionable intelligence, alerts, and customer-facing outputs.
Produce high-quality intelligence reports, threat briefs, watchlists, and early-warning assessments for internal teams and customers.
Support investigations by providing contextual analysis, confidence scoring, and evidence-backed assessments.
Ensure adherence to governance, ethics, sourcing, provenance, and data-quality standards across all intelligence outputs.
Requirements:
3-6+ years of experience in Cyber Threat Intelligence, SOC/IR intelligence support, EASM, or adversary infrastructure analysis.
Strong understanding of DNS, IPs, ASNs, hosting/cloud providers, TLS/PKI, domain lifecycle, and phishing infrastructure.
Hands-on experience with open-source and commercial CTI sources (OSINT, feeds, telemetry, reputation systems).
Practical knowledge of STIX 2.1, MITRE ATT&CK, TAXII; experience with OpenCTI and/or MISP is a strong advantage.
Ability to perform passive discovery and controlled active validation, with a focus on accuracy, evidence discipline, and noise reduction.
Experience using Python for analysis and enrichment (pandas, notebooks); familiarity with Neo4j or Elasticsearch is a plus.
Strong analytical and threat-intelligence writing skills, able to translate technical findings into clear, actionable insights.
Comfortable working in a collaborative, version-controlled environment (Git), with attention to documentation and reproducibility.
Curious, methodical, and impact-driven mindset with a strong sense of intelligence rigor and accountability.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8786712
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
10/08/2026
חברה חסויה
Location: Ramat Gan
Job Type: Full Time and Temporary
Alice is seeking to hire a Fraud Threat Analyst to join the Fraud team. In this role, you will be responsible for researching, evaluating, and analyzing fraud detection mechanisms and vulnerabilities across various platforms and solutions. You will generate strategic insights from diverse intelligence sources, conduct OSINT investigations to identify fraud risks, and monitor online platforms to detect malicious activities. You will also focus on uncovering fraud tactics, behavioral vulnerabilities, and process bypasses while delivering actionable mitigation recommendations to clients. Key Responsibilities:
* Conduct investigations and identify fraud methods across web and mobile platforms (social media, forums, apps, and the darknet).
* Analyze large datasets to uncover patterns and deliver actionable insights.
* Monitor third-party websites and channels for malicious activities and fraud risks.
* Prepare detailed reports with findings, insights, and actionable recommendations.

About Alice:
Alice is a trust, safety, and security company built for the AI era. We safeguard the communicative technologies people use to create, collaborate, and interact- whether with each other or with machines. In a world where AI has fundamentally changed the nature of risk, Alice provides end-to-end coverage across the entire AI lifecycle. We support frontier model labs, enterprises, and UGC platforms with a comprehensive suite of solutions: from model hardening evaluations and pre-deployment red-teaming to runtime guardrails and ongoing drift detection. Alice is widely considered a global leader in online safety and AI security. We have some of the most forward-thinking and passionate minds in the world working to safeguard over 3 billion users across the largest AI and tech platforms. If you're creative and driven to secure the future of AI, we want to hear from you!
Requirements:
Required Skills & Experience:
* 3+ years of experience in intelligence analysis, CTI, or fraud detection.
* Strong understanding of OPSEC principles.
* Strong knowledge of web intelligence (WEBINT) and OSINT, including social media, apps, and the dark web.
* Strong analytical, communication, and reporting skills.
* Proactive, creative, and quick to learn new tools and practices.
* Fluent in English (additional languages are a plus).
* Comfortable with sensitive content. Advantage:
* Experience in conducting red team exercises on online platforms to uncover potential abuse methods and bypass mechanisms
* Experience with multiple languages.
* Platform familiarity: Hands-on experience with social media, apps, and forums.
* Experience with automation tools or scripting.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8571820
סגור
שירות זה פתוח ללקוחות VIP בלבד