דרושים » אבטחת מידע וסייבר » Cloud Security Engineer

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
 
משרה בלעדית
3 ימים
משרה זו סומנה ע"י המעסיק כלא אקטואלית יותר
סוג משרה: משרה מלאה
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
לפני 7 שעות
דרושים בלוגיקה IT
סוג משרה: משרה מלאה ועבודה היברידית
?Ready to Power Up Your Career

Cloud Security Engineer

תל אביב | משרה מלאה | היברידי

בואו להיות חלק מהעשייה הטכנולוגית שמשפיעה על הבריאות בישראל!
בחטיבת הטכנולוגיות אנחנו משלבים בין חדשנות טכנולוגית לשליחות אמיתית, כדי להמשיך ולפתח מערכת בריאות טובה ומתקדמת יותר עבור מיליוני חברי הארגון.
אצלנו תמצאו סביבת עבודה דינמית וחדשנית הכוללת שימוש בטכנולוגיות מובילות כמו ענן, בינה מלאכותית (AI) ופתרונות דיגיטליים חוצי-ארגון.
אנחנו מאמינים בשותפות ובפיתוח אישי ומקצועי, בסביבת עבודה נעימה שמורכבת מעובדים שמגיעים כל בוקר מתוך רצון להשפיע ולעשות טוב.

על המשרה:

אחריות לזמינות, אמינות וביצועים של מערכות אבטחה בענן
ניהול שוטף של מעטפת האבטחה במספר Landing Zones בענן ציבורי
ניהול שינויים דרך תהליכי CI/CD מאובטחים IaC ושימוש ב Terraform
בעלות מקצועית על מערכות אבטחה בקטגוריות  CNAPP, SAST, SCA
שותפ/ה בתכנון Landing Zones חדשים ובפרויקטים אסטרטגיים של עליה לענן
דרישות:
תואר במדעי המחשב/ הנדסת מחשבים / מערכות מידע /יוצא יחידות צבאיות/קורסים מתקדמים בתחום חובה
ניסיון של לפחות 7 שנים ביישומי באבטחת מידע, מתוכן לפחות 3 שנים בענן ציבורי (Azure יתרון משמעותי)
היכרות ועבודה עם ארכיטקטורות ענן בארגוני Enterprise
ניסיון בעבודה עם רכיבי אבטחה בענן כגון: Firewall, API GW, WAF, Azure Policy, APM
רקע משמעותי ב כתיבת תשתיות באמצעות IaC (Terraform או שווה ערך)
ניסיון באבטחת Kubernetes (AKS / OpenShift) הכולל Network Policies, RBAC, Secrets Management, Image Scanning, Admission Control
ניסיון רב-עננים (Multi-Cloud) AWS / GCP בנוסף ל-Azure- יתרון משמעותי
ניסיון בעבודה במודל CCoE / Platform Team / Enterprise Architecture- יתרון משמעותי


הבנה טכנולוגית גבוהה ויחסי אנוש מעולים
ראייה מערכתית רחבה ויכולת חשיבה ארכיטקטונית
יכולת עבודה עצמאית, עבודת צוות ויכולת לימוד עצמי מהיר
שליטה מלאה בעברית ואנגלית ויכולת ניסוח טובה בעל-פה ובכתב המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8743927
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
1 ימים
דרושים בלוגיקה IT
סוג משרה: משרה מלאה ועבודה היברידית
ארכיטקט/ית אבטחת מידע תשתיתי
תל אביב | עבודה היברידית לאחר תקופת ההכשרה

הזדמנות להשתלב בתפקיד ארכיטקטורה משמעותי בסביבת Enterprise גדולה ומורכבת, ולהשפיע על הדרך שבה מתוכננים ומאובטחים תשתיות, ענן ומערכות קריטיות בארגון.

מה בתפקיד?
תכנון והובלת ארכיטקטורת אבטחת מידע בסביבות On-Prem ו-Cloud
ליווי פרויקטים בתחומי תשתיות, תקשורת, ענן ודיגיטל
אפיון פתרונות ובקרות אבטחה והובלת תהליכי Architecture Review
עבודה מול צוותי תשתיות, Cloud, Network, system, SOC ופיתוח
בניית Reference Architectures, סטנדרטים ותוכניות הגנה
דרישות:
מה אנחנו מחפשים?
5+ שנות ניסיון באבטחת מידע וסייבר
3+ שנות ניסיון בארכיטקטורת תשתיות / אבטחת מידע תשתיתית, או בתפקיד בכיר בעולמות Cloud, Network, Infrastructure או Security
ניסיון בתכנון פתרונות אבטחה לסביבות Enterprise ו-Cloud
היכרות מעמיקה עם תחומים כמו Azure/AWS/GCP, IAM, Entra ID, Zero Trust, Network Security, XDR/ SIEM, Kubernetes או Container Security

יתרונות
ניסיון ב-Multi-Cloud, PAM, CNAPP/CSPM, ZTNA
ניסיון בארכיטקטורת אבטחה בעולמות AI ו-GenAI המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8795755
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 2 שעות
דרושים בGtech
מיקום המשרה: תל אביב יפו
סוג משרה: משרה מלאה ועבודה היברידית
אנו מגייסים סגן/ית מנהל /ת הגנת המידע והסייבר, לתפקיד ניהולי מרכזי המהווה יד ימינו של מנהל המחלקה, עם אחריות על הובלת היישום האסטרטגי, הטכנולוגי והניהולי של תוכנית הסייבר הארגונית.

התפקיד כולל אחריות רחבה על תחומי ארכיטקטורת הסייבר, ניהול פורטפוליו פרויקטים, תקציב, רכש ובקרה, לצד ניהול צוותי מנהלים ומומחים והובלת תהליכי שינוי וטרנספורמציה ארגוניים.
ניהול צוותי מנהלים, ארכיטקטים ומנהלי פרויקטים בעולמות הסייבר.
הובלת ארכיטקטורת ההגנה, Zero Trust ו-Secure by Design.
ניהול פורטפוליו פרויקטי הסייבר, כולל תכנון, תעדוף, תקציב ובקרה.
ניהול תקציבים, רכש, ספקים והתקשרויות טכנולוגיות.
גיבוש Roadmap ותוכניות עבודה רב-שנתיות בתחום הסייבר.
הובלת תהליכי שינוי, טרנספורמציה והתייעלות ארגונית.
עבודה מול הנהלה בכירה וממשקים רבים בארגון - תשתיות, פיתוח, ענן, דאטה, דיגיטל ותפעול.
הובלת פורומים מקצועיים, ועדות היגוי ותהליכי קבלת החלטות.
דרישות:
10+ שנות ניסיון בסייבר ואבטחת מידע, מתוכן 5+ שנות ניסיון בניהול צוותים ומנהלים.
ניסיון בניהול ארכיטקטים, מומחי סייבר ומנהלי פרויקטים.
ניסיון בהובלת תוכניות עבודה ופרויקטים מורכבים בארגונים גדולים.
ניסיון בניהול תקציבים בהיקפים של מיליוני, רכש וספקים.
ניסיון בתכנון ויישום ארכיטקטורת הגנת סייבר, Zero Trust ו-Secure by Design.
ניסיון באבטחת Azure וסביבות Multi-Cloud, כולל Cloud Governance.
היכרות עם CNAPP, CSPM, CWPP, Kubernetes Security, DSPM ו-DLP.
היכרות עם data Classification, Privacy by Design, הצפנה והגנת מידע.
היכרות עם AI Security, AI Agents, AI Governance וניהול סיכוני זליגת מידע.
ניסיון בעבודה מול הנהלות בכירות ובהובלת תהליכי שינוי וטרנספורמציה.
ראייה מערכתית ואסטרטגית, יכולת הובלה, חשיבה ביקורתית ויחסי אנוש מצוינים המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8798686
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 4 שעות
דרושים בבזק
מיקום המשרה: חולון
סוג משרה: משרה מלאה
למחלקת אבטחת המידע בארגון גדול ומוביל דרוש.ה מומחה.ית Microsoft לתפקיד מאתגר הכולל ניהול,
תחזוקה והקשחה של מערכות אבטחה בסביבת ארגון מורכבת ורגישה.
התפקיד משלב הבנה עמוקה בטכנולוגיות Microsoft ובטכנולוגיות נוספות, יכולות תחקור ואוטומציה, וכן הובלה טכנולוגית של הקמה ואבטחת סביבות הענן של הארגון, בדגש על סביבת Multi-Cloud.

תחומי אחריות:
תכנון, הקמה ואבטחת תשתיות ענן (Cloud Architecture): בניית סביבות ענן מאובטחות מאפס (כגון Azure Landing Zones), הגדרת תשתיות IaaS/PaaS וניהול בקרות הגנה בענן (CSPM/CWPP).
תכנון, ניהול ואבטחה של סביבות ענן נוספות כגון AWSו GCP -וחיבורן למערך האבטחה המרכזי של הארגון.
יישום וניהול פתרונות אבטחה על תחנות קצה, תפעול שוטף של מערכות: EDR, AV, Firewall, NAC, SIEM, Mail.
ניהול ותחזוקה של Microsoft Entra (Azure AD), Defender for Endpoint/Identity/Cloud, Intune.
מענה לאירועי אבטחת מידע בזמן אמת (חקירה, תגובה, תיעוד).
יישום ותחזוקת פתרונות ניהול זהויות, הרשאות וגישה (IAM, PAM).
ביצוע הקשחת ותחזוקה שוטפת של מערכות קצה ותשתיות ענן בהתאם למדיניות האבטחה הארגונית.
שותפות בגיבוש מדיניות אבטחת מידע ארגונית.
עבודה מול צוותים פנימיים: IT, תקשורת, תשתיות, SOC ועוד.
דרישות:
כישורים:
יכולת למידה מהירה והתמודדות עם טכנולוגיות חדשות.
אחריות אישית ויכולת ניהול עצמי.
חשיבה אבטחתית, אנליטית ופרואקטיבית.
עבודה דינמית בצוות עם אחריות רב תחומית בארגון.

דרישות חובה:
ניסיון של לפחות 3 שנים בניהול סביבות Microsoft מורכבות בארגונים בינוניים/גדולים.
ניסיון מוכח בהקמת תשתיות ענן (Azure) כולל הבנה מעמיקה בתקשורת עננית (VNet, NSG, Azure Firewall) ובקרות אבטחה מובנות.
היכרות או ידע מוכח בארכיטקטורה והקמה של סביבות ענן ציבורי נוספות AWS / GCP.
שליטה מעמיקה ב-Microsoft Entra, Intune, GPO.
ניסיון עם פתרונות אבטחה של Microsoft (Defender Suite).
ניסיון בהקשחת מערכות לפי סטנדרטים (CIS, ISO, NIST) בסביבות On-Premise ובענן.
יכולת כתיבה ב-PowerShell ברמה טובה (ניסיון ב-IaC כמו Terraform / ARM / Bicep - יתרון).
הבנה במבנה הרשאות, פרוטוקולי אימות (LDAP, Kerberos), SSO.
יכולת כתיבה וקריאה של מסמכים טכניים באנגלית.
יתרון משמעותי:
ניסיון בעבודה ואבטחת סביבות מרובות עננים Multi-Cloud Environment
ניסיון בעבודה עם Microsoft Sentinel כולל חיבור לוגים מעננים נוספים
ניסיון בתגובה לאירועי סייבר (Incident Response).
הסמכות רלוונטיות Microsoft Certified: Security, Compliance, and Identity Fundamentals / SC-300 / AZ-500 / AZ-305 / הסמכות מקבילות של AWS/GCP

* המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8715831
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 5 שעות
דרושים בMertens – Malam Team
מיקום המשרה: מספר מקומות
סוג משרה: מספר סוגים
חברת Mertens Malam Team מגייסת ארכיטקט.ית אבטחת מידע בענן לארגון פיננסי מוביל בראשון לציון.
במסגרת התפקיד הובלת תכנון ויישום ארכיטקטורת אבטחה עבור סביבות ענן AWS ו-Azure, הגדרת בקרות אבטחה, ניהול זהויות, הצפנה וסגמנטציה, וליווי פרויקטים בהיבטי Security by Design.
עבודה עם AWS, Azure, Kubernetes, Containers, IAM וכלי Cloud Security מתקדמים כגון WIZ ו-RECO.
התפקיד כולל עבודה מול צוותי DevOps, פיתוח ותשתיות, הובלת סקרי סיכונים ותהליכי רגולציה וציות בסביבה פיננסית מתקדמת
דרישות:
ניסיון של לפחות 5 שנים בתחום אבטחת מידע וארכיטקטורת ענן מאובטחת.
ניסיון מעשי עם AWS ו-Azure.
ידע מעמיק ב-IAM, Networking, Containers ו-Kubernetes.
ניסיון בעבודה עם כלי Cloud Security כגון WIZ ו-RECO.
ניסיון בהובלת פרויקטים טכנולוגיים ועבודה מול צוותי DevOps ופיתוח. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8738722
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 8 שעות
סוג משרה: משרה מלאה
התפקיד כולל הובלת תפיסת ההגנה הארגונית, תכנון ארכיטקטורת אבטחת מידע
והשפעה על בחירת טכנולוגיות ופתרונות אבטחה מתקדמים.
עבודה מול מגוון רחב של ממשקים, בהם צוותי פיתוח, תשתיות, ענן ואבטחת מידע,
הובלת תהליכים ופרויקטים חוצי ארגון, גיבוש תפיסות הגנה ופתרונות אבטחה מתקדמים,
ומתן ייעוץ והכוונה מקצועית לגורמים טכנולוגיים ועסקיים.
דרישות:
לפחות 5 שנות ניסיון כארכיטקט/ית סייבר או מומחה/ית סייבר בכיר/ה.
ניסיון בבניית ארכיטקטורת הגנה למערכות מידע ותשתיות.
ניסיון מעשי בעבודה עם סביבות Cloud ו-On-Prem.
ניסיון באפיון והגדרת בקרות אבטחת מידע.
ניסיון בהובלת פרויקטים מורכבים בארגון גדול.
יכולת הובלה מקצועית והנעת ממשקים מרובים. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8680984
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 5 שעות
דרושים בMertens – Malam Team
סוג משרה: מספר סוגים
חברת Mertens Malam Team מגייסת ארכיטקט.ית אבטחת מידע בענן לארגון פיננסי מוביל בראשון לציון.
התפקיד כולל הובלת תכנון ויישום ארכיטקטורת אבטחה עבור סביבות ענן AWS ו-Azure וליווי פרויקטים בהיבטי Security by Design, עבודה עם AWS, Azure, Kubernetes, Containers, IAM וכלי Cloud Security מתקדמים כגון WIZ ו-RECO,
עבודה מול צוותי DevOps, פיתוח ותשתיות והובלת סקרי סיכונים ותהליכי רגולציה וציות, השתלבות בסביבה פיננסית מתקדמת עם טכנולוגיות ענן מתקדמות.
דרישות:
ניסיון של לפחות 5 שנים בתחום אבטחת מידע וארכיטקטורת ענן מאובטחת.
ניסיון מעשי עם AWS ו-Azure.
ידע מעמיק ב-IAM, Networking, Containers ו-Kubernetes.
ניסיון בעבודה עם כלי Cloud Security כגון WIZ ו-RECO.
ניסיון בהובלת פרויקטים טכנולוגיים ועבודה מול צוותי DevOps ופיתוח. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8649874
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
05/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
As a Cloud Security Lead (Cloud Security Architecture & Hardening) , you will design, implement, and enhance the security of our mission-critical cloud infrastructure and the Enterprise Browser by establishing robust security architectures, implementing proactive hardening controls, and driving continuous operational excellence. You will play a critical role in safeguarding our cloud environment, shaping the foundational security posture through precision, innovation, and design foresight.

Key Responsibilities

Cloud Security Architecture & Hardening: Design and enforce security baselines, configurations, and reference architectures across our multi-cloud footprint (AWS/GCP/Azure). Evaluate new cloud services and features for security implications and create hardened deployment standards for IaaS, PaaS, and serverless components.
Security Engineering & Automation: Develop and deploy security-as-code solutions, integrating security controls directly into CI/CD pipelines and leveraging Infrastructure-as-Code (IaC) tools to ensure continuous configuration integrity and compliance. Develop custom automation for detection, alerting, and triage workflows, leveraging cloud SDKs and APIs.
Cloud Security Monitoring & Observability: Design, implement, and maintain cloud-native security monitoring solutions (e.g., utilizing services like CloudTrail, GuardDuty, Security Command Center) to ensure comprehensive visibility across the cloud control plane and data plane.
Incident Triage & Response: Support the security team in investigating and responding to critical security events and vulnerabilities, creating runbooks, and contributing to post-incident remediation and architectural improvements.
Security Enablement & Awareness: Collaborate with product, engineering, and IT teams to improve security awareness, deliver training, and drive adoption of security best practices across , specifically for IaaS, PaaS, and secure DevOps practices.
Requirements:
Deep expertise in designing, implementing, and reviewing secure cloud architectures, including network segmentation, policy enforcement, and infrastructure hardening.
Expert knowledge of cloud security principles and secure DevSecOps practices, including experience securing Kubernetes/containerized workloads, managing cloud identity (IAM), and establishing security baselines.
Proficiency in scripting and automation (e.g., Python, Bash, PowerShell) to build scalable security tooling, including extensive experience with Infrastructure-as-Code (IaC) security and policy-as-code tools.
Strong understanding of detection engineering, security operations workflows, and vulnerability management, with a specific focus on protecting cloud infrastructure and services.
Hands-on experience (3+ years) with Cloud Security Posture Management (CSPM) tools, cloud security monitoring solutions, and security information/event management (SIEM).
Solid grasp of modern attack techniques, threat actor behaviors, and vulnerability exploitation patterns in cloud environments (e.g., misconfigurations, cloud identity compromises).
Curiosity-driven, operations-focused mindset with a passion for keeping adversaries out and operations resilient.
Experience in building or running purple teaming activities is a strong plus, particularly penetration testing of cloud infrastructure and identifying design flaws.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8769508
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
05/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
As a Product Security Architect , you will be responsible for designing, shaping, and evolving the security architecture of the Enterprise Browser. This role combines deep technical expertise with strategic thinking, focusing on proactively reducing risk through secure design, architectural reviews, and close collaboration with engineering and product teams. You will play a key role in defining security standards, guiding threat modeling efforts, and ensuring security is built into the product from its earliest design stages throughout its production lifecycle and evolutions.

Key Responsibilities:

Security Architecture & Design: Define and own product security architecture across browser components, OS integrations, and enterprise-facing features, ensuring security-by-design principles are consistently applied.
Threat Modeling & Risk Assessment: Lead threat modeling efforts for new features and architectural changes, identifying attack surfaces, trust boundaries, and mitigation strategies in collaboration with engineers and product leaders.
Security Reviews & Guidance: Perform architecture and design reviews, providing actionable security recommendations and guiding teams on secure implementation patterns.
Vulnerability & Attack Surface Analysis: Proactively assess systemic risks, design flaws, and high-impact vulnerability classes relevant to browsers and enterprise platforms.
Security Standards & Enablement: Develop and maintain security guidelines, patterns, and reference architectures; support teams in adopting secure coding and design practices.
Cross-Functional Collaboration: Partner closely with engineering, product, and product security leadership to balance security, usability, and performance tradeoffs.
Security Strategy & Innovation: Track emerging threats, exploitation techniques, and industry trends to continuously improve long-term security posture.
Requirements:
Strong background in security architecture, secure systems design, or product security engineering.
Deep understanding of browser security models, OS security primitives, or application-level security.
Experience conducting threat modeling, design reviews, and architectural risk assessments.
Proficiency in one or more programming languages (e.g., Python, JavaScript, C/C++, Go) with the ability to reason about implementation-level risk.
Solid knowledge of common vulnerability classes and systemic security failures (e.g., sandbox escapes, RCE, privilege escalation).
Ability to translate complex security concepts into clear guidance for engineering teams.
Security research or vulnerability research experience is a strong advantage.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8769489
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time and Hybrid work
We are looking for a Senior Cloud Security Engineer to help build secure-by-default cloud platforms across Azure and AWS. This is an engineering-focused role centered on preventive controls, scalable guardrails, Kubernetes security, network security, and automation, not a SOC or incident-response-first position.
Primary focus areas: cloud security guardrails, Kubernetes security, cloud network controls, and automation across Azure and AWS
What You Will Do?
You will own the security architecture, guardrails, and automation patterns, while partnering with platform and infrastructure teams on implementation.
Own and evolve Cloud Security Posture Management (CSPM) capabilities, including policies, guardrails, and automated remediation.
Engineer and maintain cloud network security controls, including network segmentation and isolation, cloud-native firewalls and security groups, Application Gateway / WAF configurations, and secure ingress and egress patterns.
Define and enforce security best practices for Kubernetes environments (AKS/EKS), including RBAC, network policies, workload isolation, and cluster hardening.
Partner with engineering teams on architecture reviews for new services, platforms, and major changes, helping teams design secure, compliant, and practical solutions.
Engineer and maintain identity and access security controls for cloud and production environments, including least privilege, workload identity, service principals, and conditional access.
Apply a security lens to FinOps, defining guardrails that balance cost optimization with security and compliance.
Develop tooling, automation, and self-service workflows that reduce manal effort and improve consistency across security programs.
Communicate complex security risks and technical recommendations clearly to engineering teams, leadership, and cross-functional stakeholders.
Mentor junior engineers and contribute to raising the overall security maturity of the organization.
Requirements:
6+ years of experience in cloud security, security engineering, or cloud platform engineering roles.
Deep hands-on security experience in Azure or AWS is required; experience across both is strongly preferred.
Hands-on experience securing production AKS/EKS environments, including RBAC, network policies, workload identity, admission controls, image/runtime controls, and cluster hardening.
Proven experience with cloud network security, including firewalls, WAFs, network segmentation, and secure connectivity patterns.
Strong understanding of cloud security architecture, including shared responsibility models, secure service design, and defense-in-depth.
Experience with preventative security controls, including CSPM, policy enforcement, and secure cloud baselines.
Cloud automation experience using Infrastructure as Code tools such as Terraform, Bicep, or CloudFormation, plus scripting with Python, PowerShell, Bash, or similar languages.
Ability to operate independently, own complex problem spaces, and deliver practical, scalable solutions.
Strong communication skills and comfort providing architecture-level guidance to engineering teams.
Experience working in regulated environments
Bonus Points:
Experience contributing to or supporting compliance programs such as FedRAMP, SOC 2, ISO 27001, or NIST frameworks.
Familiarity with CI/CD pipelines and DevSecOps practices.
Experience with identity and access management in cloud environments (RBAC, workload identity, service principals) is a strong plus.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8757728
סגור
שירות זה פתוח ללקוחות VIP בלבד