דרושים » אבטחת מידע וסייבר » Offensive Security Consultant

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
2 ימים
דרושים ביוניטסק
Job Type: Full Time and Hybrid work
Offensive Security Consultant

We are looking for an Offensive Security Consultant to perform hands-on penetration testing and offensive security assessments for local and global clients. The role covers a wide range of technologies, including Infrastructure, Web Mobile Applications, Red Team, Purple Team, Thick Client and Web3.

What Youll Do:

Perform hands-on Penetration Testing and Offensive Security assessments.
Identify and exploit security vulnerabilities across applications and infrastructure.
Conduct internal and external network assessments.
Work directly with clients to explain findings and support remediation.
Lead engagements from testing and analysis through professional reporting.
Provide practical risk-based security and hardening recommendations.
Requirements:
Requirements
3+ years of hands-on experience in Infrastructure, Networking, system Administration or IT Operations.
1+ year of experience in Offensive Security, including Application and/or Infrastructure Penetration Testing.
Hands-on experience identifying and exploiting security vulnerabilities.
Experience with Burp Suite, Kali Linux, Nmap, Metasploit, Nessus and Wireshark.
Strong communication and technical writing skills.
Ability to work independently and as part of a consulting team.
Advantages
Knowledge of OWASP, PTES or MITRE ATT CK.
Strong TCP/IP and Networking knowledge.
Experience with Active Directory, Windows Domains and Privilege Escalation.
Infrastructure Penetration Testing experience.
Offensive Security certifications.
Experience with Azure, AWS or GCP.
Source Code Review or Database Security experience.
This position is open to all candidates.
 
Hide
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8798482
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 14 שעות
דרושים בAlljobs Match
Job Type: Full Time
AllJobs, located in Netanya, is looking for an Information Security & Cybersecurity Specialist.
Responsibilities

Ongoing monitoring of security systems, including alerts received from SOC and SIEM platforms.
Receiving alerts and providing initial response to information security incidents as part of a 24/7 on-call rotation.
Conducting initial investigations of security alerts and incidents, assessing their severity, and determining the appropriate course of action.
Escalating critical incidents and engaging IT, infrastructure, development teams, and external security vendors as needed.
Managing information security incidents and tracking them through full resolution.
Continuously monitoring security vulnerabilities and CVEs relevant to the companys systems.
Assessing vulnerability severity, prioritizing remediation efforts, and coordinating the installation of security updates.
Working with Radware WAF systems, including log analysis, reviewing blocked traffic, handling exceptions, and updating security rules.
Working with Firewall systems, including reviewing rules, opening network access, reducing permissions, and analyzing logs.
Handling employee reports regarding phishing messages or suspicious activity.
Reviewing links, attachments, sender identity, and additional recipients in suspected phishing incidents.
Conducting phishing simulations for employees, analyzing results, and producing insights and recommendations.
Delivering training sessions and presentations to raise awareness of information security and cyber risks.
Writing, updating, and implementing information security policies and procedures across the group of companies.
Conducting periodic audits related to permissions, data retention, data transfer, and system access.
Documenting security incidents, findings, actions taken, and recommendations for future improvement.
Preparing periodic reports covering incidents, open vulnerabilities, remediation status, and key risks.
Requirements:
3-5 years of hands-on experience in information security, cyber operations, or Security Operations roles.
Experience working with SIEM systems or with a SOC team.
Ability to read, analyze, and investigate logs from security systems, servers, and network components.
Hands-on experience responding to information security alerts and incidents in real time.
Experience working with Firewall systems and analyzing network rules.
Hands-on experience working with WAF systems.
Experience in vulnerability management, CVE monitoring, and prioritizing security updates.
Strong understanding of network protocols, IP addresses, ports, DNS, HTTP, and HTTPS.
Good knowledge of Windows environments, Active Directory, user permissions, and endpoints.
Experience handling phishing incidents and suspicious email messages.
Ability to write procedures, working documents, and incident investigation reports.
Ability to work independently and make decisions under pressure.
Ability to manage multiple incidents and tasks simultaneously and follow them through to completion.
Ability to work effectively with both technical and non-technical stakeholders.
Ability to deliver clear and accessible security training to employees.
Willingness to participate in a 24/7 on-call rotation and handle information security incidents outside regular working hours, including evenings, nights, weekends, and holidays, depending on the nature and severity of the incident.
Ability to respond quickly, connect remotely, and begin investigating and handling critical incidents.
Availability to engage IT, infrastructure, development teams, and external vendors when required.
Good technical English.

Advantages

Hands-on experience with WAF systems.
Experience working with an external SOC or MSSP.
Experience working within a group of companies or in a multi-system environment.
Familiarity with Microsoft 365, Azure, or another cloud environment.
This position is open to all candidates.
 
Show more...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8759855
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking a talented Penetration Tester & Researcher to lead complex offensive security engagements and groundbreaking research. You will execute sophisticated attack simulations, identify high-value vulnerabilities, and collaborate with clients to enhance their security posture.

This role offers a balance between hands-on technical assessments and original research that shapes the broader cybersecurity community.

Roles and Responsibilities:
Conduct advanced penetration tests across web, mobile, and thick-client applications.
Contribute to internal tools, scripts, and methodologies that enhance efficiency.
Design and simulate real-world attack chains reflecting modern threat actors.
Perform vulnerability research, exploit development, and threat modeling.
Research, develop, and implement offensive security methodologies utilizing AI technologies.
Produce detailed technical reports with actionable remediation strategies.
Collaborate directly with clients to guide mitigation and improve resilience.
Publish research, present findings, and represent us at conferences or in public forums.
Requirements:
Requirements
2-3 years of experience in application penetration testing, including mobile, web, and thick-client applications.
Hands-on experience using AI offensively and attacking AI-powered systems.
Solid technical foundation in networking, operating systems, and cloud.
Excellent communication and presentation skills.
Fluency in Hebrew and English.


Preferred Skills
Active participation in bug bounty programs or responsible disclosure initiatives.
Industry certifications such as OSCP, OSWA, OSWE, or OSCE.
Familiarity with cloud and container security, Kubernetes, and IaC.
Experience integrating security practices within development lifecycles.
Proven ability to lead or publish offensive research.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8745599
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
3 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
our company's attack surface spans several distinct businesses: the engine and editor developers build on, a wide portfolio of cloud products and services, a large monetization business, and a growing set of AI-assisted creation tools. Code built with our company runs everywhere from a developer's workstation to billions of end-user devices, so targets range from native binaries to distributed cloud systems to AI pipelines, and findings here matter.
This role brings an attacker's mindset to that landscape: penetration testing and red team engagements built on complex attack chains. You would combine manual techniques with automation and tooling you develop as part of your craft, extending your reach across the company ecosystem.
What you'll be doing
Plan and execute objective-based penetration tests and red team engagements across our company's products, cloud services, and infrastructure
Find and validate exploitable vulnerabilities, chain them into realistic attack paths, and demonstrate impact with reproducible proofs of concept
Develop the automation and tooling that extend the team's offensive reach across the company ecosystem
Run joint exercises with the SOC and detection engineering teams to validate telemetry and improve detections
Deliver clear findings to engineering teams and surface recurring risk patterns to security leadership.
Requirements:
5+ years of hands-on experience in offensive security, penetration testing, or red teaming
Proven ability to find, exploit, and chain vulnerabilities across applications
Deep understanding of how modern web applications and APIs break
Hands-on experience assessing cloud environments (AWS or GCP)
Strong ability to develop and validate offensive tooling
You might also have
Adversary emulation experience: designing engagements around real threat actor TTPs
Security research in real-time 3D, game engines or SDKs, or mobile runtimes
Experience attacking CI/CD and build systems.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8796320
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Herzliya
Job Type: Full Time
We are looking for a highly skilled and security-savvy Application Security Engineer to lead our product and application security efforts. In this role, you will drive security design, ensure secure coding practices, and validate our services and environments against the highest security standards.

You will work closely with our R&D and Product teams to identify, mitigate, and prevent security risks throughout the software development lifecycle (SDLC). You will own security initiatives, mentor developers on security best practices, and play a key role in shaping the security posture of our products.

The ideal candidate is highly motivated, eager to learn, and has a security by design mindset. This role provides career growth opportunities, enabling you to deepen your expertise in AppSec, DevSecOps, and cloud security.

What you'll do:
Partner with development and product teams to integrate security best practices into the SDLC.
Lead threat modeling and architecture security reviews to proactively identify and mitigate risks.
Conduct security assessments, including code reviews, vulnerability scans, penetration testing, and secure product design reviews.
Stay up to date with emerging security threats, vulnerabilities, and industry trends, ensuring we remains ahead of evolving risks.
Support and contribute to security incident response activities, including root cause analysis and post-incident improvements.
Automate security processes and integrate security tools within CI/CD pipelines.
Develop and deliver secure coding training to engineering teams.
Requirements:
What you have:
3+ years of experience in Application Security, Penetration Testing, or Product Security in a SaaS company
Deep understanding and hands-on experience of web application security, including OWASP Top 10, authentication, encryption, and secure coding principles
Proficiency in scripting or programming languages (Terraform, Python, JavaScript, Go, etc.) for security automation and infrastructure.
Experience with cloud security best practices (AWS, GCP, or Azure)
Strong communication skills, with the ability to explain security risks and recommendations to technical and non-technical stakeholders, including executive management
Experience working with large-scale, complex R&D environments

Bonus Points:
Hands-on experience with DevSecOps and integrating security tools into CI/CD pipelines
Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent experience)
Being introduced by an AppsFlyer team member
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8788766
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time and Travel Required
We are looking for talented hackers to join our unique Adversarial Tactics Department. As a Red Team Expert ,you will work with clients to build their resiliency, i.e their capability to prevent and to sustain attacks. You will also be involved in IR engagements with companies that were attacked by adversaries, learn new TTPs and apply those in Red and Purple team engagements.
Your responsibility as a Cyber consultant is to bring the attackers perspective to engagements. You will help design, create and execute Adversary Simulation exercises, and perform attacks against client services, platforms and infrastructure. This will include, among other things, identifying vulnerabilities through simulated external and internal attacks, validating and enhancing an organizations ability to respond and recover from targeted attacks and persistent adversaries.
Requirements:
5+ years of Red Teaming or Adversarial Simulation Experience.
Experience conducting internal and external penetration testing.
Experience designing and/or executing phishing campaigns.
Experience in social engineering.
Experience with EDR/XDR evasion and bypass techniques.
Deep familiarity with Active Directory attacks and defenses.
Extensive experience in penetration testing methodologies and tools.
Deep technical understanding of a broad technology set and the ability to learn new information at a rapid pace.
Proven presentation skills.
Developing, extending, or modifying exploits, shellcode or exploit tools.
Willingness to travel abroad.
Advantages:
Background in application security.
Experience developing tools in one or more of the following: C/C++, Bash, C#, Python, Java, or PowerShell.
Experience with cloud penetration testing (AWS, Azure, Google Cloud Platform).
Fluent English (written and spoken).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8796330
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
Were looking for a Pentest Product Associate to join our Product team and help expand our power. In this pivotal role, you will be the primary operator of our cutting-edge AI-driven Dynamic Application Security Testing (DAST) agent while simultaneously innovating detection mechanisms for cloud-native technologies. You will bridge the gap between automated AI testing and cloud infrastructure, defining the "rules of engagement" for our agents to ensure they effectively simulate sophisticated attacks and accurately classify the modern attack surface.
Responsibilities:
Develop advanced detection algorithms to classify cloud technologies while fine-tuning the attack policies that define how our agents identify and exploit vulnerabilities.
Analyze cloud services, APIs, and log payloads to review complex attack paths, reducing false positives and ensuring compliance with industry standards.
Stay at the forefront of novel attack vectors and emerging cloud/API threats, translating new techniques into executable behaviors for the DAST engine.
Collaborate directly with Research, Backend, and R&D teams to turn operational insights into feature requests, positioning us as the market leader in vulnerability management.
Requirements:
Minimum Qualifications:
2 years of hands-on experience in AppSec or penetration testing, including proficiency with enterprise tools like Burp Suite, OWASP ZAP, or Acunetix.
Hands-on experience with Linux, Windows, Docker, Kubernetes, web protocols (HTTP/S, REST, GraphQL), and authentication mechanisms (OAuth, SAML).
Proficiency in scripting languages such as Python, Bash, or Go to automate security tasks and interact with codebases.
Solid knowledge of networking concepts, the OSI model, and cloud infrastructure (AWS, Azure, or GCP).
Preferred Qualifications:
Knowledge of AI/ML and how LLMs or reinforcement learning agents operate within a cybersecurity context.
SaaS and cloud experience, with familiarity in AWS, Azure, or GCP environments and modern cloud-native architectures.
A red teaming background, with experience in simulated adversarial attacks and bypassing standard WAF or security controls.
An analytical mindset with the ability to diagnose complex logs and scans to distinguish between tool failures, configuration issues, and valid security findings.
Self-motivated with the ability to work collaboratively and communicate high-stakes security concepts effectively across teams.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8798539
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 13 שעות
חברה חסויה
Location: Ramat Gan
Job Type: Full Time
As a Cybersecurity GRC Specialist at our innovative healthcare startup, you will own our information security program end to end. We are on a mission to bring the first Hybrid Drug to market: a groundbreaking therapeutic entity that integrates mobile apps with traditional medication. Operating at the intersection of digital health and pharma means security, privacy, and compliance are core to what we build - and you'll be the one making sure we get it right. If you're excited to shape and lead the security function of a growing company (rather than inherit one), read on

About the Role
This is a hands-on role with broad ownership. You'll act as our security lead, serving as the go-to person for all things governance, risk, and compliance - working directly with leadership, engineering, quality, and clinical teams. It's a great fit for someone with a few years of GRC experience who's ready to take on company-wide responsibility, not a traditional executive CISO position.



Responsibilities
Governance & Security Program
Build, implement, and maintain our Information Security Management System (ISMS) in line with ISO 27001.
Develop and enforce security policies, standards, guidelines, and procedures across the company.
Foster a culture of security awareness through training and ongoing communication.
Risk Management
Identify, assess, and prioritize cyber risks across our products, infrastructure, and vendors.
Conduct Business Impact Analyses (BIA) to map critical business functions and potential disruptions.
Own the risk register and drive mitigation plans with relevant stakeholders.

Compliance & Regulatory Alignment
Ensure compliance with healthcare and privacy regulations, including HIPAA and GDPR.
Support regulatory and quality processes relevant to medical device software (e.g., working alongside our QA/RA team on standards such as ISO 13485 and IEC 62304 where security intersects).
Manage security aspects of customer, partner, and vendor due diligence, including security questionnaires and audits.
Resilience & Incident Preparedness
Design and maintain Business Continuity (BCP) and Disaster Recovery (DRP) plans.
Define and test incident response procedures; lead response efforts when needed.
Run periodic tabletop exercises and recovery drills.
Security Operations & Engineering Collaboration
Work with engineering to embed security requirements into the development lifecycle of our mobile and cloud platforms.
Coordinate penetration tests, vulnerability assessments, and remediation follow-up.
Evaluate and manage security tooling appropriate to our size and needs.
Requirements:
2-4 years of hands-on experience in a GRC, information security, or IT security role - ideally in healthcare, medtech, or another regulated industry.

Knowledge
Practical experience implementing or maintaining ISO 27001-based ISMS (certification project experience is a strong plus).
Solid understanding of risk management methodologies, BIA, BCP, and DRP.
Familiarity with privacy and healthcare regulations such as GDPR and HIPAA.
Skills & Mindset
Strong ability to translate security and compliance requirements into practical, business-aligned actions.
Comfortable working independently and owning a domain across the whole company.
Excellent communication skills - you can explain risk to engineers, executives, and auditors alike.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8800876
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
13/08/2026
חברה חסויה
Location: Ramat Gan
Job Type: Full Time
We are seeking a skilled and experienced InfoSec & SecOps Lead to join Alice (Formerly ActiveFence) CISO team. The ideal candidate will be responsible for driving the security initiatives. Responsibilities:
* Maintain holistically security corporate architecture and Hardening, including network, systems, applications. Evaluate and implement security remediations to enhance the organization security posture.
* Corporate Security: Oversee security measures, including access control, surveillance, and emergency response planning. Manage relationships with external security vendors related to TPRM and IR.
* Experience among others on SSPM/SaaS security, IDP, SIEM/SOC, Including conducting threat modeling exercises to identify potential vulnerabilities and risks where required.
* Security Operations: Oversee the day-to-day security operations, including monitoring, incident response, Analyze security logs and alerts to identify & respond to security incidents. Conduct regular security assessments and manage the remediations program. Develop and maintain an effective incident response plan.Conduct post-incident reviews to identify lessons learned and improve future response efforts.
* Experience with Vulnerability Management: Identify, prioritize vulnerabilities. Monitor and track vulnerability remediation efforts.
* Collaborate with other teams within the organization to ensure the overall security posture is maintained. This may include working with IT, Devops, R&D, G&A to implement security policies and technical security procedures. Including all business units, educate employees on security best practices.
* AI Governance: Partner with Business Units to create safe-use guardrails for AI. Conduct security reviews for internal AI implementations, ensuring adherence to frameworks like the OWASP Top 10 for LLMs.
* Data Driven Metrics: Develop automated dashboards that track real-time security health, focusing on MTTR and reducing manual "toil" for the Security.



About Alice:
Alice is a trust, safety, and security company built for the AI era. We safeguard the communicative technologies people use to create, collaborate, and interact- whether with each other or with machines. In a world where AI has fundamentally changed the nature of risk, Alice provides end-to-end coverage across the entire AI lifecycle. We support frontier model labs, enterprises, and UGC platforms with a comprehensive suite of solutions: from model hardening evaluations and pre-deployment red-teaming to runtime guardrails and ongoing drift detection. Alice is widely considered a global leader in online safety and AI security. We have some of the most forward-thinking and passionate minds in the world working to safeguard over 3 billion users across the largest AI and tech platforms. If you're creative and driven to secure the future of AI, we want to hear from you!
Requirements:
Must have-
* Security Automation & Orchestration: Proven ability to transition from manual SOC workflows to Automated Incident Response. You must have hands-on experience building playbooks that automate repetitive tasks.
* AI-Driven Threat Detection: Experience leveraging AI/ML capabilities within modern stacks (e.g., Coralogix/Splunk anomaly detection or Okta Identity Threat Protection) to identify "low and slow" attacks that bypass traditional signature based rules.
* Secure AI Adoption: Foundational knowledge of securing LLMs and Generative AI tools. Ability to evaluate risk in the AI supply chain.
* Bachelor's degree in Computer Science, Information Security, or a related field.
* 4+ years of Infosec & Secops Hands-On experience, among others in the start-up and fully cloud based industries.
* Strong Experience among others with Okta, Adaptive Shield/Astrix, Coralogix/Splunk, Endpoint security, Network security, and similar security tools.
* Expertise in security technologies, WAF, endpoint security solutions. Knowledg
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8781135
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time and English Speakers
EY Israels Advanced Cybersecurity Center empowers global and Israeli organizations to build cyber resilience. As a Senior Cybersecurity Consultant on our Defensive Cybersecurity team, you will lead consulting engagements with strategic clients across multiple domains-including compliance, cloud security, application security, and more. You will conduct cyber risk assessments, design mitigation strategies, and guide clients through complex security challenges with confidence and clarity.
Job description
Lead end-to-end delivery of defensive cybersecurity consulting engagements-from scoping to executive read-out-covering Risk & Compliance, Cloud and Application Security, Security Operations, and more.
Advise CISOs and senior stakeholders on cybersecurity program maturity and co-develop strategic roadmaps toward enhanced cyber resilience.
Design actionable remediation plans and oversee their implementation to ensure measurable progress.
Collaborate cross-functionally to develop innovative service offerings, reusable accelerators, and thought leadership content.
Requirements:
3-5 years of hands-on experience in cybersecurity across multiple domains (e.g., cloud, network, application), ideally including consulting roles.
Strong understanding of networking and cloud fundamentals, with the ability to translate technical concepts into business language.
Proficiency in risk assessment and management methodologies, including familiarity with leading frameworks such as NIST CSF or ISO 27005.
Excellent analytical skills, project management discipline, and fluency in both English and Hebrew (written and spoken).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8773414
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for an IT Operations & Security Specialist to join our IT & Security team. IT operations will be your primary domain - keeping global infrastructure running, employees productive, and office environments stable across Israel, Europe, and the US - with security work (endpoint monitoring, SaaS risk assessments, access governance, and customer-facing security reviews) as a natural extension of that ownership.
What You'll Do
Deliver Tier 1 and Tier 2 global technical support on a shifted schedule, covering employees across Tel Aviv, Europe, and the US.
Own the full employee onboarding and offboarding lifecycle - device provisioning, access activation, and secure asset retrieval and revocation.
Administer the full identity lifecycle across the core SaaS stack (Okta, Google Workspace), enforcing role-based access controls and license hygiene.
Manage the global hardware lifecycle and asset register, from shipping logistics through secure offboarding and inventory tracking.
Own the office infrastructure environment - network hardware, physical security systems, cabling, and AV/video conferencing setups.
Execute customer-facing security questionnaires and vendor assessments as the operational point of contact for sales-driven security reviews.
Monitor and maintain endpoint health across EDR (CrowdStrike) and MDM (JumpCloud), flagging and remediating non-compliant devices.
Conduct security risk assessments on new SaaS applications and support SOC 2 / ISO 27001 compliance initiatives and audits.
Requirements:
Must-have
3-5 years in IT Operations or Systems Administration within a global high-tech environment, with hands-on expertise troubleshooting, configuring, and deploying macOS and Linux systems.
Proven experience managing the full IT employee lifecycle - provisioning, identity/access setup, and secure offboarding.
Proven experience managing device fleets via enterprise MDM platforms (JumpCloud, Jamf) and administering IAM/SSO platforms (Okta, Google Workspace).
Solid understanding of enterprise networking (TCP/IP, DNS, DHCP, VLANs, firewall policies), with hands-on experience deploying physical network infrastructure; Cisco Meraki experience a strong advantage.
Hands-on security operations experience, including active management of enterprise EDR tooling such as CrowdStrike Falcon.
Ability to work a shifted schedule with dedicated overlap with US business hours.
Fluent English (written and verbal) with a service-oriented mindset for supporting global employees and vendors.
Comfortable with the physical demands of IT work - office setups, cabling, monitor installation, hardware inventory.
Nice to have
Prior experience with customer security questionnaires, SOC 2 / ISO 27001 audits, or vendor risk assessments.
Hands-on experience with hardware in Zoom Rooms environments.
Experience with low-code tools (Make.com, n8n) or basic scripting (Bash/Zsh).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8797626
סגור
שירות זה פתוח ללקוחות VIP בלבד