דרושים » ניהול ביניים » Senior Cybersecurity Consultant

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
EY Israels Advanced Cybersecurity Center empowers global and Israeli organizations to build cyber resilience. As a Senior Cybersecurity Consultant on our Defensive Cybersecurity team, you will lead consulting engagements with strategic clients across multiple domains-including compliance, cloud security, application security, and more. You will conduct cyber risk assessments, design mitigation strategies, and guide clients through complex security challenges with confidence and clarity.
Job description
Lead end-to-end delivery of defensive cybersecurity consulting engagements-from scoping to executive read-out-covering Risk & Compliance, Cloud and Application Security, Security Operations, and more.
Advise CISOs and senior stakeholders on cybersecurity program maturity and co-develop strategic roadmaps toward enhanced cyber resilience.
Design actionable remediation plans and oversee their implementation to ensure measurable progress.
Collaborate cross-functionally to develop innovative service offerings, reusable accelerators, and thought leadership content.
Requirements:
3-5 years of hands-on experience in cybersecurity across multiple domains (e.g., cloud, network, application), ideally including consulting roles.
Strong understanding of networking and cloud fundamentals, with the ability to translate technical concepts into business language.
Proficiency in risk assessment and management methodologies, including familiarity with leading frameworks such as NIST CSF or ISO 27005.
Excellent analytical skills, project management discipline, and fluency in both English and Hebrew (written and spoken).
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8773414
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
Required Director Application Security
About the Role:
As the Director of Product Security, you will spearhead our efforts to fortify and enhance the security posture of our products and runtime environments and play a critical leadership role in overseeing the design, implementation, and maintenance of security controls for the organizations complex product applications, platform, development and cloud infrastructure.
You will lead a team of security experts and collaborate closely with engineering, product, and other business units to ensure the security and integrity of our applications, platforms, cloud infrastructure, and code stack against current & evolving threats.
Your leadership will be instrumental in embedding security best practices throughout the development and operations pipeline, ensuring a secure and scalable product environment. You will also drive the strategy, development, and implementation of a comprehensive application security program across our cloud-based applications.
Reporting line: VP Security Engineering
What Youll Do:
Strategic Leadership and Team Management:
Strong leadership skills to develop and lead the strategic direction for the Application and Cloud Security teams.
Lead risk assessments, threat modeling, and secure design reviews of cloud platforms to proactively identify vulnerabilities and ensure compliance with security standards.
Oversee the design, implementation, and maintenance of security controls across multi-cloud environments (AWS, GCP, Azure) to protect infrastructure and applications.
Experience in collaborating with cross-functional teams, including engineering, product management, and customer support, to embed security into product development and all aspects of cloud deployments.
Requirements:
Expertise in Application & Cloud Security Technologies:
Strong background in hands-on development skills, deep knowledge of AWS & Azure cloud platforms with a focus on offensive security techniques.
Familiarity with application security practices, threat modeling, penetration testing, red teaming, and fuzz testing, to identify and remediate vulnerabilities in applications and cloud environments.
Drive the adoption of cutting-edge infrastructure cloud security technologies, including data security, encryption, identity and access management (IAM), and network security.
Expertise in using tools (e.g. CSPM, IaC, SAST, secrets management etc) and methodologies for advanced security analysis, triage of vulnerabilities and other security operations.
Advantage: Knowledge of cryptographic principles and best practices, including the implementation of encryption, hashing, and digital signatures in applications and managing keys and secrets in cloud environments.
Requirements:
At least 7+ years of experience in security architecture, software development, cloud security, or a related field
At least 5 years in a leadership role.
Engineering background - MUST
Proven leadership skills with a track record of leading high-performing security teams in a fast-paced, technology-driven environment.
Excellent communication and interpersonal skills, with the ability to articulate complex security concepts to technical and non-technical audiences.
Professional security certifications (e.g., CISSP, CISM, CCSP, OSCP) are highly desirable.
Strong technical background in cloud services, DevOps, orchestration tools (e.g., Kubernetes), and cloud-native security tools (CSPM, CWPP).
Excellent communication and stakeholder management skills, with the ability to influence security initiatives across cross-functional teams.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8794651
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
7 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
our companys Harmony SASE is looking for an Information Security Manager to join its staff.
This is a unique opportunity for you to work in the #1 worldwide Cyber Security Company, gain expertise and experience leading the information security program for the best of SASE (Secure Access Service Edge).
Key Responsibilities
As Information Security Manager you will:
Governance, Risk & Compliance
Lead and manage the Product Security team
Build, operate, and continuously improve the Harmony SASE Information Security Management System (ISMS), aligning policies, standards, and controls with our company and industry best practices.
Own the Harmony SASE compliance roadmap - lead and maintain certifications and attestations including ISO/IEC 27001, SOC 2 Type II, GDPR, IRAP and C5
Lead enterprise risk assessments and the third-party / vendor risk program, ensuring risks are identified, prioritized, and treated.
Coordinate internal and external audits, manage evidence collection, and remediate findings to closure.
Product & Application Security
Develop and implement a comprehensive AI - Secure Software Development Lifecycle (AI S-SDLC) framework, embedding security into every phase of the SDLC and CI/CD pipelines.
Conduct threat modeling and secure architecture reviews for new and existing Harmony SASE features, partnering with R&D to mitigate vulnerabilities by design.
Operate the application security tooling stack - ASPM, SAST, DAST, SCA, AI Security Scanning and secret scanning - at scale, and partner with development teams to drive findings to remediation while maintaining developer productivity.
Champion secure coding practices and OWASP Top 10 awareness across R&D.
Operational Security & Incident Response
Lead security incident response for Harmony SASE - preparedness, detection, containment, eradication, recovery, and lessons-learned - covering both product and information security incidents.
Oversee identity and access governance, ensuring least-privilege, segregation of duties, and access reviews across production and corporate environments.
Design and operate security automation to enhance the efficiency and coverage of security operations.
Security Culture & Enablement
Foster a culture of security awareness and continuous improvement; deliver targeted training for engineers, operations, and broader staff.
Lead responses to customer security questionnaires, RFPs, and due-diligence requests, representing Harmony SASEs security posture to customers and partners.
Stay current on the evolving Threats Landscape, regulations, and technologies, and translate them into pragmatic improvements to the security program.
Requirements:
We are looking for you:
Bachelors degree in computer science, Information Security, or related field.
Minimum of 5 years of experience in information security or application/product security, with at least 2 year in a leadership role.
Proven experience building or operating an Information Security Management System (ISMS) and leading certifications such as ISO/IEC 27001 and SOC 2.
Working knowledge of GDPR, PCI-DSS, and NIST CSF / 800-53; familiarity with HIPAA, FedRAMP, DORA, Cyber Essentials, C5, IRAP, AI Security Frameworks and the Cloud Controls Matrix (CCM).
Hands-on experience with S-SDLC, threat modeling, and application security tooling such as ASPM, SAST, and DAST in complex, high-scale environments.
Strong understanding of risk management, third-party risk, identity and access governance, and incident response.
Excellent communication and leadership skills, with the ability and passion to drive change across R&D and the broader organization.
Reports to the Harmony SASE Head of Architecture (R&D Director) and partners closely with R&D, DevOps, IT, Legal, and the company Corporate Security organization.
Relevant certifications such as CISM (preferred), CISSP, CCSP, ISO 27001 Lead Auditor / Lead Implementer, CCSP or CSSLP are desirable.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8785659
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking a talented Penetration Tester & Researcher to lead complex offensive security engagements and groundbreaking research. You will execute sophisticated attack simulations, identify high-value vulnerabilities, and collaborate with clients to enhance their security posture.

This role offers a balance between hands-on technical assessments and original research that shapes the broader cybersecurity community.

Roles and Responsibilities:
Conduct advanced penetration tests across web, mobile, and thick-client applications.
Contribute to internal tools, scripts, and methodologies that enhance efficiency.
Design and simulate real-world attack chains reflecting modern threat actors.
Perform vulnerability research, exploit development, and threat modeling.
Research, develop, and implement offensive security methodologies utilizing AI technologies.
Produce detailed technical reports with actionable remediation strategies.
Collaborate directly with clients to guide mitigation and improve resilience.
Publish research, present findings, and represent us at conferences or in public forums.
Requirements:
Requirements
2-3 years of experience in application penetration testing, including mobile, web, and thick-client applications.
Hands-on experience using AI offensively and attacking AI-powered systems.
Solid technical foundation in networking, operating systems, and cloud.
Excellent communication and presentation skills.
Fluency in Hebrew and English.


Preferred Skills
Active participation in bug bounty programs or responsible disclosure initiatives.
Industry certifications such as OSCP, OSWA, OSWE, or OSCE.
Familiarity with cloud and container security, Kubernetes, and IaC.
Experience integrating security practices within development lifecycles.
Proven ability to lead or publish offensive research.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8745599
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
7 ימים
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Security Engineer with 1-2 years of experience to join our Internal Security team.
This role combines hands-on cloud and security operations with support for GRC and compliance activities.
You will be involved in securing our cloud, SaaS, and AI-driven systems, monitoring security events, and helping maintain our overall security posture. In parallel, you will support customer security questionnaires and compliance processes.

What You'll Do:
Monitor, triage, and investigate security alerts and incidents across cloud and security tools (EDR, CASB, ZTNA, SaaS security platforms, and identity providers), and support response and remediation activities
Assist in securing cloud environments (AWS/GCP/Azure), including IAM, access controls, network security, and CI/CD pipeline security
Work closely with DevOps and IT teams to implement and enforce security best practices across infrastructure, endpoints, and SaaS systems
Support vulnerability management processes, including scanning, prioritization, and remediation tracking
Support risk management processes by identifying, assessing, and tracking risks, including vulnerability management, remediation efforts, and control gaps
Support customer security questionnaires (RFPs/RFIs) with accurate technical responses
Assist in maintaining compliance with frameworks such as SOC 2 and ISO 27001, including preparing audit evidence and documentation
Requirements:
Who You Are?
1-2 years of experience in cybersecurity, cloud security, and security operations
Basic hands-on experience with cloud platforms (AWS, GCP, or Azure)
Understanding of core security concepts: IAM, networking, least privilege, and secure configurations
Experience or strong interest in collaborating with DevOps and IT teams, alongside a focus on AI security, data protection, and emerging technologies
Familiarity with security tools such as EDR, vulnerability scanners, or SaaS security solutions
Strong analytical and troubleshooting skills, with high attention to detail and the ability to manage multiple tasks
Good communication skills and ability to work cross-functionally
Willingness to learn and grow in both technical security and GRC domains
Nice to Have:
Experience with cloud security best practices and securing CI/CD pipelines and infrastructure-as-code (Terraform, etc.)
Familiarity with identity systems (Okta, Azure AD, etc.)
Familiarity with compliance frameworks such as SOC 2, ISO 27001, or NIST
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8787070
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 3 שעות
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time and Travel Required
We are looking for talented hackers to join our unique Adversarial Tactics Department. As a Red Team Expert ,you will work with clients to build their resiliency, i.e their capability to prevent and to sustain attacks. You will also be involved in IR engagements with companies that were attacked by adversaries, learn new TTPs and apply those in Red and Purple team engagements.
Your responsibility as a Cyber consultant is to bring the attackers perspective to engagements. You will help design, create and execute Adversary Simulation exercises, and perform attacks against client services, platforms and infrastructure. This will include, among other things, identifying vulnerabilities through simulated external and internal attacks, validating and enhancing an organizations ability to respond and recover from targeted attacks and persistent adversaries.
Requirements:
5+ years of Red Teaming or Adversarial Simulation Experience.
Experience conducting internal and external penetration testing.
Experience designing and/or executing phishing campaigns.
Experience in social engineering.
Experience with EDR/XDR evasion and bypass techniques.
Deep familiarity with Active Directory attacks and defenses.
Extensive experience in penetration testing methodologies and tools.
Deep technical understanding of a broad technology set and the ability to learn new information at a rapid pace.
Proven presentation skills.
Developing, extending, or modifying exploits, shellcode or exploit tools.
Willingness to travel abroad.
Advantages:
Background in application security.
Experience developing tools in one or more of the following: C/C++, Bash, C#, Python, Java, or PowerShell.
Experience with cloud penetration testing (AWS, Azure, Google Cloud Platform).
Fluent English (written and spoken).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8796330
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Job Type: Full Time
We are looking for an experienced and highly driven Deputy CISO to join Sunbit's Security leadership team, reporting directly to the CISO.
This is a unique opportunity to play a key leadership role in shaping and scaling the security program of a fast-growing fintech company. As Deputy CISO, you will serve as the CISO's trusted partner, helping drive the organization's security strategy while leading day-to-day execution across multiple security domains.
Yo will oversee both the Security Operations , Security Engineering and GRC organizations, managing team leads and security professionals across Israel and abroad. This role requires a strong combination of strategic thinking, technical depth, operational excellence, and people leadership.
The ideal candidate brings experience from large-scale, cloud-native environments and has successfully led security programs spanning Security Operations, Security Engineering, Compliance, Risk Management, and Security Architecture. You will work closely with Engineering, Infrastructure, IT, Product, Legal, Compliance, and executive leadership teams to continuously strengthen Sunbit's security posture while enabling business growth.
What You'll Do:
Drive execution of strategic security initiatives across the organization
Partner closely with the CISO to define and execute Sunbit's security strategy and roadmap
Translate business objectives into scalable security programs and controls
Act as a key stakeholder in security governance, risk management, and decision-making processes
Help shape the future of Security at Sunbit, including emerging domains such as AI Security and Security Automation
Requirements:
10+ years of experience in Information Security, Cybersecurity, or Security Engineering roles
5+ years of leadership experience managing security teams and managers
Proven experience leading security programs in large-scale, high-growth organizations
Strong background across multiple security domains, including Security Engineering, Security Operations, Cloud Security, Incident Response, Vulnerability Management, and Governance
Extensive experience securing cloud-native environments (AWS, GCP, Azure)
Deep understanding of security architecture, security controls, and modern security technologies
Experience working with regulatory frameworks, audits, compliance programs, and risk management processes
Demonstrated ability to lead cross-functional initiatives across Engineering, Infrastructure, Product, and Business teams
Strong communication and stakeholder management skills
Fluent English, with extensive experience working with global teams and international stakeholders
Nice to have :
Experience in fintech, financial services, or highly regulated environments
Experience leading AI Security initiatives or security automation programs
Hands-on experience with modern security platforms such as CrowdStrike, Wiz, Okta, SIEM, and Identity solutions
Relevant certifications such as CISSP, CISM, CCSP, CRISC, or equivalent
Experience building and scaling security organizations
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8773664
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
04/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
As an AI Security Researcher , you will play a key role in shaping the future of modern runtime AI security. You will investigate how real-world attacks unfold across AI-enabled applications, agents, tools, executed in cloud environments, and turn those insights into innovative, production-grade security capabilities across our AI Security Posture Management (AI-SPM) and AI Detection & Response (AI-DR) products.

This role is ideal for a deeply technical researcher who is driven to understand AI attacks at their core - not just identify suspicious prompts or surface-level indicators. You will research how prompt injection, tool misuse, agent drift, model abuse, and other emerging AI attack techniques translate into real runtime behavior and security impact. You will then apply that knowledge to build protections that are precise, resilient, scalable, and grounded in how attacks actually work in production.

Specifically, you will:

Research real-world attacks targeting models, agents, MCP/tooling ecosystems, RAG applications, and AI-enabled production systems.
Drive research end-to-end - explore, design, develop, validate, and deploy detection logic and protections based on runtime telemetry, exploit PoCs, technical analysis, and threat intelligence.
Shape AI-SPM capabilities by identifying what telemetry, signals, and modeling are required to continuously discover AI components, classify AI behavior, map risk, and detect unsafe or anomalous usage in production.
Shape AI-DR capabilities by researching how to detect AI-driven attacks, prove runtime impact, establish causality, and distinguish failed attempts from real compromise.
Work closely with engineering and product teams to turn deep technical research into practical security capabilities that deliver clear customer value.
Requirements:
5+ years of experience in security research, vulnerability research, detection engineering, threat research, application security, or a related technical security role.
Strong understanding of modern attack techniques, including the ability to analyze vulnerabilities, exploitation flows, and attacker behavior in real systems.
Familiarity with AI application architectures and concepts, including LLM-based applications, agents, tooling layers, models, RAG.
Experience designing and conducting hands-on technical research, including investigations, experiments, exploit analysis, and PoC development.
Strong programming skills for code analysis, research tooling, proof-of-concepts, and building vulnerable or instrumented test environments.
Experience working with runtime telemetry, behavioral signals, or detection-oriented datasets, and the ability to translate research into scalable detection logic.
High degree of ownership and ability to independently navigate ambiguous technical problem spaces and turn them into structured research plans and actionable outcomes.
Strong communication and teamwork skills, with a collaborative approach to problem-solving across research, engineering, and product teams.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8768190
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 36 דקות
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are revolutionizing legal tech with an AI-powered Legal Intelligence Platform trusted by some of the world's fastest-growing companies including Wiz, Socure, and Fiverr.
We integrate seamlessly with Salesforce and other systems to help in-house legal teams accelerate negotiations, reduce risk, and unlock institutional knowledge through automated workflows.
We're solving complex problems at the intersection of AI and legal operations. Join us as we scale our impact globally.
About the Role
We're looking for a Head of Security to own security end-to-end at our company- from the architecture of our product to the systems our own team runs on.
We handle some of the most sensitive documents our customers have, and our buyers' security teams scrutinize us accordingly.
You'll be our first dedicated security hire and the sole internal authority on the subject: setting the standards our engineers build against, owning our compliance posture, and sitting across the table from customer CISOs to defend it.
This is a hands-on role with real strategic weight - if you want to build a security function from scratch at a company where security is a deal-maker, we want to hear from you.
What You'll Do
Design, architect, and implement security directly into our product and codebase
Own our internal security posture: corporate IT, access management, endpoint, and employee security practices
Lead customer-facing security engagements - pre-sales security reviews, CISO-level discussions, security questionnaires, and enterprise assessments - representing our company's posture to buyers who evaluate us seriously
Own our compliance program end-to-end, including audits, evidence, and vendor risk
Set security standards and best practices across R&D and product as the internal authority on the subject
Build the security review process for how we ship AI features - threat modeling around LLMs, agentic workflows, and customer data boundaries
Partner with DevOps and engineering on cloud security, secure architecture, and incident readiness
Grow the security function as we scale, from process to headcount.
Requirements:
Passion to own and deliver - you take full responsibility for security outcomes and drive initiatives from idea to production
Curiosity and adoption of AI tools - you actively use tools like Cursor or Claude Code and are excited about how AI is transforming both software development and the threat landscape
7+ years of hands-on security experience, with real depth in product or application security
Experience in customer-facing security roles, representing a company to client CISOs, IT directors, and security teams across enterprise and SMB
Strong command of cloud security (AWS/GCP/Azure), web application security, and secure architecture design
Hands-on experience running or building a compliance program (SOC 2, ISO 27001, or equivalent)
A builder's mindset - comfortable establishing process and structure where none exists
Ability to thrive in a fast-paced environment, balancing deep technical execution with high-level strategic and client conversations
Strong communication skills, effective in a fast-paced startup environment
Bonus Points
Experience securing LLM-powered applications, agentic systems, or AI infrastructure
Background working with legal, financial, or other high-stakes documentheavy domains
Hands-on coding ability in Python or TypeScript
Experience building a security function from scratch, especially as a founding or first security hire
Familiarity with Kubernetes, infrastructure-as-code, and cloud-native architectures.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8796752
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
30/07/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking an experienced Data Protection Lead to join the Cyber Security organization.

This role combines hands-on Data Leakage Prevention (DLP) engineering with Data Security Posture Management (DSPM) to deliver end-to-end data protection across corporate, cloud, and SaaS environments. You will not only define strategy and standards - you will build, configure, tune, and operate the technical controls that enforce them.

You will own the data protection lifecycle from discovery and classification through policy enforcement and incident response. The role requires deep technical proficiency in DLP platforms and DSPM tooling, combined with the ability to collaborate with Security, IT, Engineering, Product, Privacy and GRC teams to reduce data exposure risks and embed strong data governance practices.

Your responsibilities will include:
Lead and own the organizations data protection domain, including strategy, standards, and hands-on technical implementation
Engineer, deploy, and continuously tune DLP policies across endpoints, email, SaaS, network proxies, and cloud platforms - covering both inline and API-based enforcement modes.
Design and implement DSPM solutions to gain continuous visibility into sensitive data posture, data flows, misconfigurations, and exposure risks across cloud and multi-cloud environments.
Drive data discovery initiatives to identify and inventory sensitive data across databases, SaaS applications, endpoints, and cloud storage.
Define and implement data classification frameworks, labeling standards, and data handling policies integrated with DLP and DSPM controls.
Build and maintain DLP detection rules, regular expressions, fingerprinting, and machine learning-based classifiers to minimize false positives and maximize coverage.
Integrate DSPM findings into DLP enforcement workflows to create a closed-loop data protection architecture.
Define and enforce data access governance, including least-privilege principles and monitoring of sensitive data access patterns.
Monitor, triage, and investigate DLP alerts and DSPM-identified risks, collaborating with SOC and Security teams on escalation and remediation.
Conduct risk assessments and identify gaps in data protection controls across systems, pipelines, and business processes.
Support compliance and regulatory requirements (e.g., GDPR, ISO 27001, SOC 2) related to data security and privacy.
Collaborate with Engineering, IT, Product, and GRC teams to embed data security controls into CI/CD pipelines, systems, and workflows.
Maintain documentation, runbooks, and guidelines for DLP operations, DSPM posture management, and data security practices.
Requirements:
We expect you to have:
6+ years of experience in cyber security, with a strong focus on data security, data protection, or information security.
Proven hands-on engineering experience with enterprise DLP platforms - including policy authoring, rule tuning, incident workflow configuration, and platform administration (e.g., Microsoft Purview DLP, Symantec DLP, Forcepoint, or equivalent).
Hands-on experience deploying and operating DSPM tools (e.g., Cyera, Varonis, Rubrik Security Cloud, Normalyze, Securiti, or equivalent) to manage cloud data exposure and classification at scale.
Deep understanding of DLP enforcement mechanisms: endpoint DLP, network DLP, email DLP, and cloud/API-based DLP controls.
Strong experience with data discovery and classification across cloud environments (AWS, Azure, GCP), SaaS platforms, and on-premises systems.
Ability to write and optimize detection logic - regular expressions, data fingerprinting, document fingerprinting, and EDM (Exact Data Matching).
Experience integrating DLP and DSPM tools with SIEM, SOAR, and ticketing systems for alert routing and automated response.
Experience securing data across cloud environments and SaaS platforms, including shadow IT and unmanaged data stores.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8761546
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time and Hybrid work
We are looking for a Senior Cloud Security Engineer to help build secure-by-default cloud platforms across Azure and AWS. This is an engineering-focused role centered on preventive controls, scalable guardrails, Kubernetes security, network security, and automation, not a SOC or incident-response-first position.
Primary focus areas: cloud security guardrails, Kubernetes security, cloud network controls, and automation across Azure and AWS
What You Will Do?
You will own the security architecture, guardrails, and automation patterns, while partnering with platform and infrastructure teams on implementation.
Own and evolve Cloud Security Posture Management (CSPM) capabilities, including policies, guardrails, and automated remediation.
Engineer and maintain cloud network security controls, including network segmentation and isolation, cloud-native firewalls and security groups, Application Gateway / WAF configurations, and secure ingress and egress patterns.
Define and enforce security best practices for Kubernetes environments (AKS/EKS), including RBAC, network policies, workload isolation, and cluster hardening.
Partner with engineering teams on architecture reviews for new services, platforms, and major changes, helping teams design secure, compliant, and practical solutions.
Engineer and maintain identity and access security controls for cloud and production environments, including least privilege, workload identity, service principals, and conditional access.
Apply a security lens to FinOps, defining guardrails that balance cost optimization with security and compliance.
Develop tooling, automation, and self-service workflows that reduce manal effort and improve consistency across security programs.
Communicate complex security risks and technical recommendations clearly to engineering teams, leadership, and cross-functional stakeholders.
Mentor junior engineers and contribute to raising the overall security maturity of the organization.
Requirements:
6+ years of experience in cloud security, security engineering, or cloud platform engineering roles.
Deep hands-on security experience in Azure or AWS is required; experience across both is strongly preferred.
Hands-on experience securing production AKS/EKS environments, including RBAC, network policies, workload identity, admission controls, image/runtime controls, and cluster hardening.
Proven experience with cloud network security, including firewalls, WAFs, network segmentation, and secure connectivity patterns.
Strong understanding of cloud security architecture, including shared responsibility models, secure service design, and defense-in-depth.
Experience with preventative security controls, including CSPM, policy enforcement, and secure cloud baselines.
Cloud automation experience using Infrastructure as Code tools such as Terraform, Bicep, or CloudFormation, plus scripting with Python, PowerShell, Bash, or similar languages.
Ability to operate independently, own complex problem spaces, and deliver practical, scalable solutions.
Strong communication skills and comfort providing architecture-level guidance to engineering teams.
Experience working in regulated environments
Bonus Points:
Experience contributing to or supporting compliance programs such as FedRAMP, SOC 2, ISO 27001, or NIST frameworks.
Familiarity with CI/CD pipelines and DevSecOps practices.
Experience with identity and access management in cloud environments (RBAC, workload identity, service principals) is a strong plus.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8757728
סגור
שירות זה פתוח ללקוחות VIP בלבד