דרושים » אבטחת מידע וסייבר » IT Operations & Security Specialist

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for an IT Operations & Security Specialist to join our IT & Security team. IT operations will be your primary domain - keeping global infrastructure running, employees productive, and office environments stable across Israel, Europe, and the US - with security work (endpoint monitoring, SaaS risk assessments, access governance, and customer-facing security reviews) as a natural extension of that ownership.
What You'll Do
Deliver Tier 1 and Tier 2 global technical support on a shifted schedule, covering employees across Tel Aviv, Europe, and the US.
Own the full employee onboarding and offboarding lifecycle - device provisioning, access activation, and secure asset retrieval and revocation.
Administer the full identity lifecycle across the core SaaS stack (Okta, Google Workspace), enforcing role-based access controls and license hygiene.
Manage the global hardware lifecycle and asset register, from shipping logistics through secure offboarding and inventory tracking.
Own the office infrastructure environment - network hardware, physical security systems, cabling, and AV/video conferencing setups.
Execute customer-facing security questionnaires and vendor assessments as the operational point of contact for sales-driven security reviews.
Monitor and maintain endpoint health across EDR (CrowdStrike) and MDM (JumpCloud), flagging and remediating non-compliant devices.
Conduct security risk assessments on new SaaS applications and support SOC 2 / ISO 27001 compliance initiatives and audits.
Requirements:
Must-have
3-5 years in IT Operations or Systems Administration within a global high-tech environment, with hands-on expertise troubleshooting, configuring, and deploying macOS and Linux systems.
Proven experience managing the full IT employee lifecycle - provisioning, identity/access setup, and secure offboarding.
Proven experience managing device fleets via enterprise MDM platforms (JumpCloud, Jamf) and administering IAM/SSO platforms (Okta, Google Workspace).
Solid understanding of enterprise networking (TCP/IP, DNS, DHCP, VLANs, firewall policies), with hands-on experience deploying physical network infrastructure; Cisco Meraki experience a strong advantage.
Hands-on security operations experience, including active management of enterprise EDR tooling such as CrowdStrike Falcon.
Ability to work a shifted schedule with dedicated overlap with US business hours.
Fluent English (written and verbal) with a service-oriented mindset for supporting global employees and vendors.
Comfortable with the physical demands of IT work - office setups, cabling, monitor installation, hardware inventory.
Nice to have
Prior experience with customer security questionnaires, SOC 2 / ISO 27001 audits, or vendor risk assessments.
Hands-on experience with hardware in Zoom Rooms environments.
Experience with low-code tools (Make.com, n8n) or basic scripting (Bash/Zsh).
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8797626
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
18/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Security Engineer with 1-2 years of experience to join our Internal Security team.
This role combines hands-on cloud and security operations with support for GRC and compliance activities.
You will be involved in securing our cloud, SaaS, and AI-driven systems, monitoring security events, and helping maintain our overall security posture. In parallel, you will support customer security questionnaires and compliance processes.

What You'll Do:
Monitor, triage, and investigate security alerts and incidents across cloud and security tools (EDR, CASB, ZTNA, SaaS security platforms, and identity providers), and support response and remediation activities
Assist in securing cloud environments (AWS/GCP/Azure), including IAM, access controls, network security, and CI/CD pipeline security
Work closely with DevOps and IT teams to implement and enforce security best practices across infrastructure, endpoints, and SaaS systems
Support vulnerability management processes, including scanning, prioritization, and remediation tracking
Support risk management processes by identifying, assessing, and tracking risks, including vulnerability management, remediation efforts, and control gaps
Support customer security questionnaires (RFPs/RFIs) with accurate technical responses
Assist in maintaining compliance with frameworks such as SOC 2 and ISO 27001, including preparing audit evidence and documentation
Requirements:
Who You Are?
1-2 years of experience in cybersecurity, cloud security, and security operations
Basic hands-on experience with cloud platforms (AWS, GCP, or Azure)
Understanding of core security concepts: IAM, networking, least privilege, and secure configurations
Experience or strong interest in collaborating with DevOps and IT teams, alongside a focus on AI security, data protection, and emerging technologies
Familiarity with security tools such as EDR, vulnerability scanners, or SaaS security solutions
Strong analytical and troubleshooting skills, with high attention to detail and the ability to manage multiple tasks
Good communication skills and ability to work cross-functionally
Willingness to learn and grow in both technical security and GRC domains
Nice to Have:
Experience with cloud security best practices and securing CI/CD pipelines and infrastructure-as-code (Terraform, etc.)
Familiarity with identity systems (Okta, Azure AD, etc.)
Familiarity with compliance frameworks such as SOC 2, ISO 27001, or NIST
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8787070
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
11/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
In this position, you will have the autonomy to choose the best tools for the job, manage our corporate environment from the ground up, and have a direct impact on protecting the financial data of global enterprises while ensuring our team has the best technical tools to succeed.

What youll do
IT Operations & Employee Experience

Youll work closely with the CTO, engineering, and business teams, combining hands-on execution with real ownership and impact.
Manage corporate SaaS platforms, identity management (SSO), and Google Workspace.
Compliance & audits (SOC2, PCI)
Acting as the security point of contact for customers, auditors, and internal teams
Act as the primary technical point of contact for all employees, providing hands-on support and troubleshooting.
Deploy and operate endpoint security and management tools (EDR, MDM, DLP) across a distributed workforce.
Cloud & Infrastructure Security

Improve and maintain the security posture of our AWS/GCP-based cloud infrastructure.
Operate cloud security platforms, such as Upwind / Wiz / Oligo, or similar solutions to prioritize and remediate risks.
Design and enforce secure access controls and least-privilege IAM policies.
Investigate cloud security alerts and support incident response.
Application Security

Integrate security into the SDLC and CI/CD pipelines by automating SAST, SCA, and secret scanning.
Secure containerized workloads (Kubernetes / EKS) focusing on runtime protection and image hardening.
Provide guidelines and safeguards for AI-powered development processes and AI models within our SaaS platform.
Compliance & Security Culture

Support SOC2 and PCI DSS compliance initiatives and audit readiness.
Serve as the primary security focal point for external auditors.
Contribute to security awareness and best practices across the company, explaining the rationale behind security requirements.
Requirements:
5+ years of experience in Security Operations, Cloud Security, or IT Systems Administration in a high-growth environment.
Experience owning and managing employee-facing systems and IT environments- a must
Strong hands-on experience with cloud platforms (preferably AWS) - a must.
Experience with identity platforms and SaaS security (Google Workspace / SSO).
Familiarity with cloud security platforms (Upwind / Wiz / Orca or similar).
Experience securing container environments (Kubernetes / AWS EKS).
Strong Service-oriented mindset with excellent collaboration and communication skills.
Fluent English
Nice to Have
Experience in fintech or highly regulated environments.
Practical experience with PCI DSS and SOC2 audits.
Familiarity with MDM solutions (e.g., Kandji, Jamf) and EDR tools.
Working experience with Jira and GitHub.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8777338
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are revolutionizing legal tech with an AI-powered Legal Intelligence Platform trusted by some of the world's fastest-growing companies including Wiz, Socure, and Fiverr.
We integrate seamlessly with Salesforce and other systems to help in-house legal teams accelerate negotiations, reduce risk, and unlock institutional knowledge through automated workflows.
We're solving complex problems at the intersection of AI and legal operations. Join us as we scale our impact globally.
About the Role
We're looking for a Head of Security to own security end-to-end at our company- from the architecture of our product to the systems our own team runs on.
We handle some of the most sensitive documents our customers have, and our buyers' security teams scrutinize us accordingly.
You'll be our first dedicated security hire and the sole internal authority on the subject: setting the standards our engineers build against, owning our compliance posture, and sitting across the table from customer CISOs to defend it.
This is a hands-on role with real strategic weight - if you want to build a security function from scratch at a company where security is a deal-maker, we want to hear from you.
What You'll Do
Design, architect, and implement security directly into our product and codebase
Own our internal security posture: corporate IT, access management, endpoint, and employee security practices
Lead customer-facing security engagements - pre-sales security reviews, CISO-level discussions, security questionnaires, and enterprise assessments - representing our company's posture to buyers who evaluate us seriously
Own our compliance program end-to-end, including audits, evidence, and vendor risk
Set security standards and best practices across R&D and product as the internal authority on the subject
Build the security review process for how we ship AI features - threat modeling around LLMs, agentic workflows, and customer data boundaries
Partner with DevOps and engineering on cloud security, secure architecture, and incident readiness
Grow the security function as we scale, from process to headcount.
Requirements:
Passion to own and deliver - you take full responsibility for security outcomes and drive initiatives from idea to production
Curiosity and adoption of AI tools - you actively use tools like Cursor or Claude Code and are excited about how AI is transforming both software development and the threat landscape
7+ years of hands-on security experience, with real depth in product or application security
Experience in customer-facing security roles, representing a company to client CISOs, IT directors, and security teams across enterprise and SMB
Strong command of cloud security (AWS/GCP/Azure), web application security, and secure architecture design
Hands-on experience running or building a compliance program (SOC 2, ISO 27001, or equivalent)
A builder's mindset - comfortable establishing process and structure where none exists
Ability to thrive in a fast-paced environment, balancing deep technical execution with high-level strategic and client conversations
Strong communication skills, effective in a fast-paced startup environment
Bonus Points
Experience securing LLM-powered applications, agentic systems, or AI infrastructure
Background working with legal, financial, or other high-stakes documentheavy domains
Hands-on coding ability in Python or TypeScript
Experience building a security function from scratch, especially as a founding or first security hire
Familiarity with Kubernetes, infrastructure-as-code, and cloud-native architectures.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8796752
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
17/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
our companys Harmony SASE is looking for an Information Security Manager to join its staff.
This is a unique opportunity for you to work in the #1 worldwide Cyber Security Company, gain expertise and experience leading the information security program for the best of SASE (Secure Access Service Edge).
Key Responsibilities
As Information Security Manager you will:
Governance, Risk & Compliance
Lead and manage the Product Security team
Build, operate, and continuously improve the Harmony SASE Information Security Management System (ISMS), aligning policies, standards, and controls with our company and industry best practices.
Own the Harmony SASE compliance roadmap - lead and maintain certifications and attestations including ISO/IEC 27001, SOC 2 Type II, GDPR, IRAP and C5
Lead enterprise risk assessments and the third-party / vendor risk program, ensuring risks are identified, prioritized, and treated.
Coordinate internal and external audits, manage evidence collection, and remediate findings to closure.
Product & Application Security
Develop and implement a comprehensive AI - Secure Software Development Lifecycle (AI S-SDLC) framework, embedding security into every phase of the SDLC and CI/CD pipelines.
Conduct threat modeling and secure architecture reviews for new and existing Harmony SASE features, partnering with R&D to mitigate vulnerabilities by design.
Operate the application security tooling stack - ASPM, SAST, DAST, SCA, AI Security Scanning and secret scanning - at scale, and partner with development teams to drive findings to remediation while maintaining developer productivity.
Champion secure coding practices and OWASP Top 10 awareness across R&D.
Operational Security & Incident Response
Lead security incident response for Harmony SASE - preparedness, detection, containment, eradication, recovery, and lessons-learned - covering both product and information security incidents.
Oversee identity and access governance, ensuring least-privilege, segregation of duties, and access reviews across production and corporate environments.
Design and operate security automation to enhance the efficiency and coverage of security operations.
Security Culture & Enablement
Foster a culture of security awareness and continuous improvement; deliver targeted training for engineers, operations, and broader staff.
Lead responses to customer security questionnaires, RFPs, and due-diligence requests, representing Harmony SASEs security posture to customers and partners.
Stay current on the evolving Threats Landscape, regulations, and technologies, and translate them into pragmatic improvements to the security program.
Requirements:
We are looking for you:
Bachelors degree in computer science, Information Security, or related field.
Minimum of 5 years of experience in information security or application/product security, with at least 2 year in a leadership role.
Proven experience building or operating an Information Security Management System (ISMS) and leading certifications such as ISO/IEC 27001 and SOC 2.
Working knowledge of GDPR, PCI-DSS, and NIST CSF / 800-53; familiarity with HIPAA, FedRAMP, DORA, Cyber Essentials, C5, IRAP, AI Security Frameworks and the Cloud Controls Matrix (CCM).
Hands-on experience with S-SDLC, threat modeling, and application security tooling such as ASPM, SAST, and DAST in complex, high-scale environments.
Strong understanding of risk management, third-party risk, identity and access governance, and incident response.
Excellent communication and leadership skills, with the ability and passion to drive change across R&D and the broader organization.
Reports to the Harmony SASE Head of Architecture (R&D Director) and partners closely with R&D, DevOps, IT, Legal, and the company Corporate Security organization.
Relevant certifications such as CISM (preferred), CISSP, CCSP, ISO 27001 Lead Auditor / Lead Implementer, CCSP or CSSLP are desirable.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8785659
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
30/07/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking an experienced Data Protection Lead to join the Cyber Security organization.

This role combines hands-on Data Leakage Prevention (DLP) engineering with Data Security Posture Management (DSPM) to deliver end-to-end data protection across corporate, cloud, and SaaS environments. You will not only define strategy and standards - you will build, configure, tune, and operate the technical controls that enforce them.

You will own the data protection lifecycle from discovery and classification through policy enforcement and incident response. The role requires deep technical proficiency in DLP platforms and DSPM tooling, combined with the ability to collaborate with Security, IT, Engineering, Product, Privacy and GRC teams to reduce data exposure risks and embed strong data governance practices.

Your responsibilities will include:
Lead and own the organizations data protection domain, including strategy, standards, and hands-on technical implementation
Engineer, deploy, and continuously tune DLP policies across endpoints, email, SaaS, network proxies, and cloud platforms - covering both inline and API-based enforcement modes.
Design and implement DSPM solutions to gain continuous visibility into sensitive data posture, data flows, misconfigurations, and exposure risks across cloud and multi-cloud environments.
Drive data discovery initiatives to identify and inventory sensitive data across databases, SaaS applications, endpoints, and cloud storage.
Define and implement data classification frameworks, labeling standards, and data handling policies integrated with DLP and DSPM controls.
Build and maintain DLP detection rules, regular expressions, fingerprinting, and machine learning-based classifiers to minimize false positives and maximize coverage.
Integrate DSPM findings into DLP enforcement workflows to create a closed-loop data protection architecture.
Define and enforce data access governance, including least-privilege principles and monitoring of sensitive data access patterns.
Monitor, triage, and investigate DLP alerts and DSPM-identified risks, collaborating with SOC and Security teams on escalation and remediation.
Conduct risk assessments and identify gaps in data protection controls across systems, pipelines, and business processes.
Support compliance and regulatory requirements (e.g., GDPR, ISO 27001, SOC 2) related to data security and privacy.
Collaborate with Engineering, IT, Product, and GRC teams to embed data security controls into CI/CD pipelines, systems, and workflows.
Maintain documentation, runbooks, and guidelines for DLP operations, DSPM posture management, and data security practices.
Requirements:
We expect you to have:
6+ years of experience in cyber security, with a strong focus on data security, data protection, or information security.
Proven hands-on engineering experience with enterprise DLP platforms - including policy authoring, rule tuning, incident workflow configuration, and platform administration (e.g., Microsoft Purview DLP, Symantec DLP, Forcepoint, or equivalent).
Hands-on experience deploying and operating DSPM tools (e.g., Cyera, Varonis, Rubrik Security Cloud, Normalyze, Securiti, or equivalent) to manage cloud data exposure and classification at scale.
Deep understanding of DLP enforcement mechanisms: endpoint DLP, network DLP, email DLP, and cloud/API-based DLP controls.
Strong experience with data discovery and classification across cloud environments (AWS, Azure, GCP), SaaS platforms, and on-premises systems.
Ability to write and optimize detection logic - regular expressions, data fingerprinting, document fingerprinting, and EDM (Exact Data Matching).
Experience integrating DLP and DSPM tools with SIEM, SOAR, and ticketing systems for alert routing and automated response.
Experience securing data across cloud environments and SaaS platforms, including shadow IT and unmanaged data stores.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8761546
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
30/07/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
This role focuses on designing and implementing secure architectures across corporate networks and cloud environments. You will play a key role in defining secure solutions, reviewing system designs, and ensuring security is embedded across enterprise infrastructure.

The ideal candidate brings strong hands-on expertise in network and cloud security, along with the ability to work closely with IT, Infrastructure, DevOps, and Engineering teams to drive secure and scalable implementations.

Youre welcome to work in our offices in Amsterdam.

Your responsibilities will include:

Design and implement secure architectures across corporate networks, cloud platforms, and hybrid environments.
Define and maintain security standards, guidelines, and reference architectures aligned with organizational requirements.
Review and approve architecture and design of new systems, infrastructure, and network changes.
Design and support secure enterprise network architectures, including segmentation, Zero Trust, and remote access solutions.
Define and implement controls for firewalls, ZTNA, proxies, and network access control (NAC).
Design secure cloud architectures including IAM, networking, and workload protection.
Ensure proper implementation of cloud security controls such as segmentation, encryption, and monitoring.
Define and support identity and access management controls, including SSO, MFA, and privileged access.
Contribute to endpoint security architecture, including EDR/XDR and device hardening standards.
Identify security risks and architectural gaps and recommend mitigation strategies.
Participate in architecture reviews, risk assessments, and security design discussions.
Collaborate with SOC, Vulnerability Management, IT, and Engineering teams to improve overall security posture.
Support implementation of security architecture initiatives and improvements across the organization.
Requirements:
We expect you to have:

5+ years of experience in cyber security, with a focus on cloud security, networks, and/or SDLC
Experience working with cloud platforms (AWS, GCP, Azure) and cloud security best practices.
Strong hands-on experience in enterprise network security (firewalls, segmentation, VPN, proxies, NAC, etc.).
Solid understanding of identity and access management (IAM), Active Directory / Entra ID, and access control models.
Experience working in hybrid environments (on-premise + cloud).
Strong understanding of security architecture principles and risk-based design.
Experience working cross-functionally with IT, Infrastructure, DevOps, and Engineering teams.
Strong analytical and problem-solving skills.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8761418
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for an experienced IT Security Engineer to join our IT team and help secure our modern, cloud-first enterprise environment.
In this role, you'll take ownership of key security technologies, strengthen our overall security posture, improve and automate security operations, and collaborate closely with IT, R&D, DevOps, and business teams to enable secure business growth.
This is a hands-on role with broad ownership across endpoint, identity, network, SaaS, email, and AI security, offering the opportunity to make a real impact on the organization's security strategy and day-to-day operations.
Requirements:
5+ years of experience in Enterprise Security or Security Engineering.
Strong experience with EDR/XDR platforms.
Strong experience with CASB/SASE solutions.
Experience securing SaaS environments.
Experience with MDM platforms.
Experience managing and securing Google Workspace environments.
Strong networking knowledge (TCP/IP, VPN, DNS, Routing, Firewalls).
Excellent troubleshooting and problem-solving skills.
Strong sense of ownership and a proactive mindset.
Advantages:
Python or PowerShell.
API integrations.
SOAR or security automation.
Cloud Security (AWS/GCP).
Identity & Access Management (IAM).
AI Security Governance.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8764668
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
You will own security end to end: strategy and execution, both. You inherit a working program, with an annual SOC 2 Type II audit, an established tool stack, and clear vendor-gating rules already in place. You will work closely with our Application Architect, our IT team, Legal, and engineering leads across Israel, the US and the UK. The role reports to a member of the executive team.

This is a player-coach role. One week you present the annual risk review to management; the next you are pulling audit evidence, tuning a cloud alert rule, or reading a vendor's risk scan yourself. If you need a large team under you to be effective, this is probably not the right fit. If you like owning the whole problem, it is a good one.

What you will do:

Own the annual SOC 2 Type II audit end to end: controls, evidence collection, external auditors and consultants. The bar we hold ourselves to is zero deviations.
Run supply-chain security: vendor risk assessments and security questionnaires, gating rules for new vendors, and contract security terms together with Legal. We do not onboard vendors without SOC 2 or ISO 27001, and critical findings block the deal.
Own application security with runtime-context prioritization: focus engineering on what is actually exploitable in production, and filter out the scanner noise.
Run day-to-day security operations: cloud security posture across AWS and GCP, EDR, email security, identity and zero-trust access, alert triage and remediation follow-up with the owning teams.
Manage the annual penetration-testing program: scoping, vendor selection, findings triage and remediation tracking with R&D.
Own incident response: keep the plan current, run it when needed, and handle notification duties toward our cyber insurer.
Run the security awareness program and the security portion of employee onboarding.
Manage the security budget, tool renewals and vendor relationships.
Set governance for AI tools used across the company: usage guidelines, risk registers, and security review of new AI vendors.
Requirements:
What you will bring:
7+ years in information security, including at least 2 years owning a security function or leading the work of others.
Hands-on cloud security experience in AWS (GCP is a plus). You can read an alert, form an opinion and act on it yourself.
You have taken a company through SOC 2 or ISO 27001 audits personally, evidence included, not just from the steering committee.
Working knowledge of application security, and the ability to talk with developers in their own language.
Experience running third-party and vendor risk.
Clear written English. The role works daily with US and UK teams, auditors and vendors.
Comfort using automation and AI tools to multiply what a small team can do.

Nice to have:
Media, ad-tech or other high-traffic consumer-web experience.
Security due diligence on M&A.
Experience presenting risk to executive management.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8761684
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Security Engineer to join our Security Engineering team. This is a generalist, "all-rounder" role - you will work across all security domains, while leading and owning a specific security domain based on your expertise.
You will define and drive security programs, design and implement security controls, and make architecture-level decisions across your domain. You will work closely with R&D, DevOps, and engineering teams, embedding security into how we build and operate at scale, and help shape a security-first culture across the organization.
What You'll Work On:
Define and maintain security standards, policies, and controls across all security domains - including SSDLC processes and secure development standards across R&D
Work hands-on alongside R&D, engineering, and IT teams to implement security controls, drive adoption, and ensure execution
Lead and contribute to large-scale security projects with real organizational impact
Evaluate, integrate, and operate industry-leading security tooling and platforms - including emerging startups with cutting-edge technologies
Build automation, tools, internal processes, Terraform modules, GitHub Actions, and AI agents for engineering teams and for your own team
Conduct security assessments and threat modeling.
Lead containment, investigation, and forensic analysis during security incidents
Identify security gaps and misconfigurations across cloud environments, infrastructure, and internal processes - and drive remediation through scalable, long-term solutions
Contribute across all security domains - cloud, application, AI security, detection engineering, IT, and more
Requirements:
5+ years in security engineering with strong hands-on expertise across both application and cloud/infrastructure security
Hands-on experience with SAST, DAST, SCA, WAF, threat modeling, secure code review, and API security
Experience defining and driving secure development lifecycle programs (SSDLC), including embedding security gates into CI/CD pipelines and GitOps workflows
Experience securing cloud-native environments (AWS preferred, GCP/Azure a plus), including containers, Kubernetes workloads, and microservices
Hands-on experience with Terraform, CSPM/CNAPP tooling, and misconfiguration remediation
Solid understanding of networking fundamentals (TCP/IP, DNS, TLS, network segmentation) with practical experience implementing zero trust architectures and ZTNA
Experience with Okta, Google Workspace, SSO/SAML/OIDC, and least-privilege access models
Familiarity with industry-leading security platforms and tooling across MDM, EDR, SIEM, CSPM/CNAPP, ASPM, WAF, DAST/SAST, ZTNA, and identity security platforms
Proficiency in scripting and automation - Python, JavaScript, Bash, or similar
Broad generalist mindset with the ability to operate across multiple security domains and connect the dots between them
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8773641
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
20/07/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a SecOps Detection & Response.
As a Security Operations Analyst, Detection & Response, you will help protect Aidocs cloud environments, products, corporate systems, and sensitive healthcare data by investigating SIEM alerts, supporting incident response, and improving the quality of security monitoring.
This is a hands-on security operations role for someone who can analyze security signals, understand real risk, communicate clearly, and help the organization respond quickly and effectively to security events.
You will work closely with real production environments, where accurate investigation, clear documentation, and practical escalation are critical to protecting sensitive healthcare data, customer trust, and the reliability of Aidocs clinical AI platform.
Responsibilities:
Own the end-to-end investigation of SIEM alerts across cloud, product, identity, endpoint, and SaaS environments: analyze the relevant evidence, separate false positives from real threats, and prioritize cases based on risk and impact.
Escalate high-risk findings with a clear summary of what happened, what is affected, why it matters, and what actions are required.
Support incident response by collecting evidence, assisting with containment, tracking remediation, and maintaining clear investigation records for internal reviews, compliance needs, and post-incident learning.
Improve SIEM rules, dashboards, alert logic, playbooks, telemetry coverage, and detection quality to reduce noise and strengthen security monitoring.
Work with Security, IT, DevOps, R&D, Product Security, and Compliance teams to resolve issues and improve security operations.
Requirements:
2+ years of experience in Security Operations, SOC analysis, detection and response, incident response, cloud security operations, or a similar hands-on security role.
Hands-on experience with SIEM-based investigations, including alert triage, log analysis, event correlation, evidence review, case prioritization, and escalation.
Experience working with security telemetry from cloud platforms, identity providers, endpoints, SaaS systems, network tools, application logs, and production environments.
Familiarity with cloud-native environments, including IAM, storage access, workloads, Kubernetes, containers, APIs, logging, monitoring, and CI/CD pipelines.
Understanding of common attack techniques, including credential compromise, phishing, privilege escalation, suspicious API activity, malware, data exposure, lateral movement, and cloud misconfigurations.
Experience with identity and endpoint investigation, including SSO, MFA, service accounts, privileged access, EDR alerts, and suspicious user or device activity.
Ability to use query or scripting languages such as KQL, SPL, SQL, Python, Bash, or similar.
Familiarity with incident response workflows, case management, evidence collection, remediation tracking, and post-incident review.
Strong analytical judgment, with the ability to separate false positives from real risk and explain findings clearly.
Ability to work independently, document investigations clearly, and escalate issues with the right level of urgency.
Strong communication skills and the ability to work with Security, IT, DevOps, R&D, Product Security, Compliance, and business stakeholders.
Close attention to detail, strong ownership, and comfort working in a fast-moving production environment.
Additional Strengths
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8745764
סגור
שירות זה פתוח ללקוחות VIP בלבד