דרושים » ניהול ביניים » WAF Security Specialist

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 11 שעות
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a WAF Security Specialist.
What You'll Do:
Create - Produce production WAF rules across providers for high-impact CVEs and customer findings - driving the Copilot harness on most of them, writing the expression yourself on the hard ones (no public PoC, exploitable path reasoned out of a patch diff, urgent customer coverage). Your rules ship, and they set the bar generated rules are measured against.
**Optimize -**Tighten generated rules for real production constraints: WCU and rule-capacity budgets, latency, provider expression limits, and the anchoring required for a rule that fires against all traffic behind a shared Web ACL - not just the vulnerable app.
Validate - Own the adversarial pass. Build exploit variants the PoC doesn't cover, hunt bypasses in our own rules, and run the false-positive side seriously - verifying against how the legitimate client actually behaves on the wire, not against an assumption.
Monitor - Watch deployed rules in production: false-positive signals, hit patterns, coverage drift as managed rulesets shift underneath us, and the log→block promotion decision. Retire what no longer earns its capacity.
Make it reproducible - Turn every finding into a regression test. Build and curate the golden CVE datasets and scoring rubrics that gate whether a new Copilot version ships.
Set the coverage line. Judge which CVEs are genuinely WAF-mitigatable and which aren't, and make the call on what enters and leaves our managed rulesets - with the reasoning written down.
Requirements:
Deep, hands-on WAF expertise across multiple major providers - you've written, tuned, and operated real rules in production on several of: AWS WAFv2, Cloudflare, F5, Imperva, Akamai, Azure, GCP, Fortinet, ModSecurity/CRS. Not "managed a WAF vendor relationship" - written the rules.
You know the caveats cold. Body-inspection limits and oversize handling, text transformations and normalization order, encoding and unicode evasion, parameter pollution, chunked and multipart edge cases, rule precedence and evaluation order, WCU/capacity economics, and how each provider's expression language quietly differs from the others.
Strong security research background - application security, vulnerability research, or offensive security. You can read an advisory, build the PoC, derive the variants nobody published, and explain exactly which request component carries the exploit primitive.
A real feel for the false-positive tradeoff. You've had to defend a blocking decision to someone whose production traffic you broke, and you know why "block everything suspicious" is not a security posture.
Comfortable in code. Enough Python (or similar) to automate replay, build variant generators, and query exploit and traffic data yourself rather than waiting on someone.
Fast under pressure, systematic afterward. You can get a solid rule out the door when a customer needs one today - and your instinct once it ships is to build the check that catches the whole class, not just the instance you fixed.
Advantage: virtual patching / vulnerability-mitigation experience, or time on a WAF vendor's rules or research team.
Advantage: hands-on with LLMs and agentic tooling - you'll be shaping an AI system's output, and it helps to understand how it fails.
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8800121
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
30/07/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for a Security Researcher to join our team at the intersection of security research, AI, and product. This isn't a traditional research role - you'll be deeply embedded in how the platform is built, working side by side with R&D, Product, and AI teams to make sure security expertise is baked into every layer of what we ship. You'll own detection and analytics research across cloud, identity, endpoint, and beyond, while actively shaping how AI capabilities are applied to solve real security problems at scale.





WHAT YOU WILL DO

Research and develop sophisticated detections and behavioral analytics across multiple security landscapes - cloud, identity, endpoint, network, and application - with a focus on coverage that scales across customer environments.
Work closely with R&D, Product, and AI teams as the security authority - reviewing features, shaping designs, and ensuring security logic is sound, practical, and impactful.
Apply an AI-native approach to detection and analytics challenges - leveraging LLMs, ML signals, and AI-assisted workflows to do things that rule-based approaches can't.
Identify gaps in detection coverage and analytical capabilities, and drive those findings directly into the product roadmap.
Analyze real-world attacker techniques and translate them into detection logic, hunting content, and analytical frameworks that ship as part of the platform.
Evaluate detection quality rigorously - measuring fidelity, coverage, and performance against real attacker behavior and production telemetry.
Stay sharp on the evolving threat landscape and rapidly incorporate new techniques, campaigns, and attacker tooling into our detection library.
Contribute to external research output - blog posts, talks, open-source tooling - that reflects our depth and point of view in the security community.
Requirements:
6+ years of hands-on experience in detection engineering, security research or incident response - working with real production data at scale.
Deep knowledge of attacker techniques and behavior across at least 2 from: cloud, identity, endpoint, and network environments, with the ability to translate that directly into high-fidelity detection logic.
An AI-native mindset - you've built or applied AI-powered tooling in a security context (detection pipelines, alert investigation, hunting workflows) and you default to AI-powered approaches before reaching for manual ones.
Experience working within or alongside a product or engineering team - you understand how software gets built, and you know how to make your security expertise actionable for R&D and Product.
Strong coding skills (Python or similar), used for research, data analysis, detection development, and tooling.
A product-oriented approach to research - you think about scale, usability, and customer impact, not just technical correctness.
Self-directed and a strong self-learner - you don't wait to be pointed at problems, and you move fast when you find them.
Strong written and verbal communication skills in English, with the ability to explain complex security concepts clearly to both technical and non-technical audiences.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8762138
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
11/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for a Principal Cloud Security Researcher to serve as a senior technical leader within our Research team. This is a high-impact individual contributor role -- you won't manage people, but you'll shape the direction of our entire research function, mentor researchers, and act as a force multiplier across the organization.

You'll be the person who takes a vague threat signal and turns it into a detection strategy, a published finding, or a product capability. You'll operate as a trusted deputy to the research team lead, owning the most complex and ambiguous research challenges while raising the technical bar for the team.

What You'll Do
Drive Groundbreaking Research

Own and drive our most critical research initiatives end-to-end - from initial threat hypothesis through detection logic, product integration, and external publication.
Set the technical direction for cloud threat research across AWS, Azure, and GCP, identifying emerging attack surfaces and novel techniques before they become mainstream threats.
Investigate real-world cloud and SaaS security incidents, dissecting attacker tradecraft and extracting insights that evolve our detection capabilities.
Pioneer new forensic investigation techniques and detection methodologies for cloud-native and SaaS environments - pushing the state of the art, not just following it.
Be a Voice in the Community

Represent our company as a thought leader through high-quality research publications, conference presentations (BlackHat, DEF CON, RSA, fwd:cloudsec, and similar venues), and open-source contributions.
Build and maintain our reputation as a research-driven company that advances the field - not just a vendor with a blog.
Engage with the broader security research community, fostering relationships and collaborative knowledge-sharing.
Shape the Product

Bridge research and product - translate threat findings into actionable product requirements, working closely with engineering and product teams to ensure our CDR platform stays ahead of evolving threats.
Design and develop advanced detection algorithms that directly feed into our platform, closing the gap between research insight and customer protection.
Elevate the Team

Act as the team's go-to technical authority. When researchers hit a wall on complex cloud attack chains, IAM edge cases, or detection gaps - you're who they turn to.
Mentor and grow other researchers through research reviews, pair investigations, code reviews, and by setting quality standards and methodology best practices.
Influence technical decisions org-wide - contributing to architecture, tooling, and strategic research priorities.
Step in as the research team lead's deputy when needed - driving prioritization, representing research cross-functionally, and ensuring continuity.
דרישות:
8+ years in security research, threat research, or closely related fields (offensive security, detection engineering, incident response, cloud security engineering). Fewer years are fine if your depth and track record are exceptional.
Deep multi-cloud expertise - strong hands-on experience across at least two of the major cloud providers (AWS, Azure, GCP), with working knowledge of the third. You understand the IAM models, logging pipelines, APIs, and attack surfaces that matter in each.
A track record of original research - you've published meaningful technical findings through blog posts, conference talks, open-source tools, or vulnerability discoveries that moved the needle. We want someone who doesn't just consume research - you produce it.
Strong adversarial mindset and critical thinking - you think like an attacker targeting cloud infrastructure, SaaS platforms, identity systems, and Kubernetes. You can model threat scenarios, map out attack paths, and poke holes in defenses.
Ability to operate autonomously on ambiguous, high-stakes problems. You don't wait for detailed specs - you identify what matters and drive it forward.#ENGLI המשרה מיועדת לנשים ולגברים כאחד.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8777209
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
You will own security end to end: strategy and execution, both. You inherit a working program, with an annual SOC 2 Type II audit, an established tool stack, and clear vendor-gating rules already in place. You will work closely with our Application Architect, our IT team, Legal, and engineering leads across Israel, the US and the UK. The role reports to a member of the executive team.

This is a player-coach role. One week you present the annual risk review to management; the next you are pulling audit evidence, tuning a cloud alert rule, or reading a vendor's risk scan yourself. If you need a large team under you to be effective, this is probably not the right fit. If you like owning the whole problem, it is a good one.

What you will do:

Own the annual SOC 2 Type II audit end to end: controls, evidence collection, external auditors and consultants. The bar we hold ourselves to is zero deviations.
Run supply-chain security: vendor risk assessments and security questionnaires, gating rules for new vendors, and contract security terms together with Legal. We do not onboard vendors without SOC 2 or ISO 27001, and critical findings block the deal.
Own application security with runtime-context prioritization: focus engineering on what is actually exploitable in production, and filter out the scanner noise.
Run day-to-day security operations: cloud security posture across AWS and GCP, EDR, email security, identity and zero-trust access, alert triage and remediation follow-up with the owning teams.
Manage the annual penetration-testing program: scoping, vendor selection, findings triage and remediation tracking with R&D.
Own incident response: keep the plan current, run it when needed, and handle notification duties toward our cyber insurer.
Run the security awareness program and the security portion of employee onboarding.
Manage the security budget, tool renewals and vendor relationships.
Set governance for AI tools used across the company: usage guidelines, risk registers, and security review of new AI vendors.
Requirements:
What you will bring:
7+ years in information security, including at least 2 years owning a security function or leading the work of others.
Hands-on cloud security experience in AWS (GCP is a plus). You can read an alert, form an opinion and act on it yourself.
You have taken a company through SOC 2 or ISO 27001 audits personally, evidence included, not just from the steering committee.
Working knowledge of application security, and the ability to talk with developers in their own language.
Experience running third-party and vendor risk.
Clear written English. The role works daily with US and UK teams, auditors and vendors.
Comfort using automation and AI tools to multiply what a small team can do.

Nice to have:
Media, ad-tech or other high-traffic consumer-web experience.
Security due diligence on M&A.
Experience presenting risk to executive management.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8761684
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 8 שעות
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a Lead Security Researcher.
You will lead security research. This is not a bug hunting role. Your job is to invent the approaches that become product capabilities: new ways to detect, triage, and remediate vulnerabilities using LLMs and program analysis, proven on real data before a customer ever sees them.
You own the path from idea to shipped capability. You form the hypothesis, build the proof of concept, measure whether it actually works, and partner with engineering until it is in the product. You also own the quality bar: the benchmarks and evaluations that decide whether what we ship is good enough to put in front of customers.
You will set the research agenda, not just execute one. As the team grows, you will shape how research works here.
Requirements:
Experience. 8+ years in security research, vulnerability analysis, or applied security engineering.
Startup DNA. You have worked in an early stage or 0 to 1 environment. Comfortable with ambiguity, shipping without a big org behind you, and changing direction when the data says so. This is a requirement, not a bonus.
Research to product track record. You have turned research into things that shipped: features, tools, detections in production. Not just papers or reports.
Technical depth. Deep expertise in modern application stacks (microservices, containers, cloud platforms). You understand how these systems actually break.
Builder skills. Strong programming ability in at least one modern language (Python, Go, TypeScript). Comfortable writing production quality code.
Data rigor. Experience designing experiments, building datasets or benchmarks, and measuring quality quantitatively. You do not ship on vibes.
LLM fluency. Hands on experience applying LLMs to real problems, whether evaluation, prompting, fine tuning, or agentic systems, or a demonstrated ability to get there fast.
Proven findings. A history of discovering serious vulnerabilities (CVEs welcome) and responsible disclosure.
Communication. You can explain a complex attack and its real impact clearly to engineers, executives, and customers.
Work authorization. Permanent authorization to work in the US for the San Francisco role, or in Israel for the Israel role.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8800513
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
18/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a Product Marketing
You'd be one of a small, senior team where everyone ships. There's a category to define and a product story to make legible and credible to some of the most sophisticated and skeptical buyers in the world: national CISOs, procurement officers, defense evaluators, and the researchers who advise them.
Two things make this role unusual. First, the pace: we move like an early-stage company at nation-state stakes, and you'll work directly with researchers, operators, and sales without a layer of process between you and the output. Second, the bar: your writing doesn't get skimmed by a mid-funnel lead. It gets scrutinized by governments deciding whether to trust their national infrastructure to us.
:Responsibilities
Product and feature positioning. Translate cyberdefense and sovereign AI capabilities into messaging that holds up in front of CISOs, procurement officers, and national security evaluators. Cascade the company story down to the feature level, and keep it coherent as the product moves fast.
Storytelling at every altitude. The same capability needs to land as a two-line answer for a minister, a technical brief for a national SOC team, and a narrative arc for a keynote. You own the craft of making one truth work at all three altitudes.
Sales and product content. Support with white papers, research-driven reports, technical briefs, and evaluation materials that do the convincing in a relationship-driven, evidence-driven sale.
Competitive and industry research. Map the threat landscape and the competitive field with a clear-eyed view of where we win and how the sovereign category is moving. Own the intelligence layer that feeds positioning.
Launch and lifecycle work. New capabilities, new products, new markets. You'll shape how each one enters the world, from naming input to launch materials to field-ready messaging.
Requirements:
5+ years in cybersecurity. You must have deep cyber fluency. You need to read a threat report and know what matters, sit with researchers as a peer, then make their work legible to senior readers.
A native storyteller. You instinctively find the narrative inside a technical capability and can carry an audience from context to tension to conclusion.
Strong content expertise. You've owned substantial output: white papers, research reports, technical briefs, positioning docs, webinars, videos and more. You know the difference between content that fills a folder and content that moves a deal.
AI-pilled. You use AI as a core part of how you work, not as a novelty. LinkedIn AI party tricks are cool but we're looking for things that actually get the job done.
Fast-moving, cross-everything. Comfortable working across roles and seniorities, from a junior researcher's raw findings to a founder's whiteboard, in an environment where priorities shift with world events. Senior IC seat, high autonomy, no one handing you a brief.
Multi-format and distribution fluency. Content that sits in a folder does nothing. You've carried stories across formats and channels: webinars, video, events, and the follow-through that gets the right material in front of the right audience.
Strong advantages:
Experience marketing to government, defense, or public-sector buyers, where deals are won on trust and evidence rather than funnels
Background in or alongside threat intelligence teams; experience producing flagship research reports
Familiarity with the evaluator ecosystem that matters in government sales
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8786697
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
04/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
As an AI Security Researcher , you will play a key role in shaping the future of modern runtime AI security. You will investigate how real-world attacks unfold across AI-enabled applications, agents, tools, executed in cloud environments, and turn those insights into innovative, production-grade security capabilities across our AI Security Posture Management (AI-SPM) and AI Detection & Response (AI-DR) products.

This role is ideal for a deeply technical researcher who is driven to understand AI attacks at their core - not just identify suspicious prompts or surface-level indicators. You will research how prompt injection, tool misuse, agent drift, model abuse, and other emerging AI attack techniques translate into real runtime behavior and security impact. You will then apply that knowledge to build protections that are precise, resilient, scalable, and grounded in how attacks actually work in production.

Specifically, you will:

Research real-world attacks targeting models, agents, MCP/tooling ecosystems, RAG applications, and AI-enabled production systems.
Drive research end-to-end - explore, design, develop, validate, and deploy detection logic and protections based on runtime telemetry, exploit PoCs, technical analysis, and threat intelligence.
Shape AI-SPM capabilities by identifying what telemetry, signals, and modeling are required to continuously discover AI components, classify AI behavior, map risk, and detect unsafe or anomalous usage in production.
Shape AI-DR capabilities by researching how to detect AI-driven attacks, prove runtime impact, establish causality, and distinguish failed attempts from real compromise.
Work closely with engineering and product teams to turn deep technical research into practical security capabilities that deliver clear customer value.
Requirements:
5+ years of experience in security research, vulnerability research, detection engineering, threat research, application security, or a related technical security role.
Strong understanding of modern attack techniques, including the ability to analyze vulnerabilities, exploitation flows, and attacker behavior in real systems.
Familiarity with AI application architectures and concepts, including LLM-based applications, agents, tooling layers, models, RAG.
Experience designing and conducting hands-on technical research, including investigations, experiments, exploit analysis, and PoC development.
Strong programming skills for code analysis, research tooling, proof-of-concepts, and building vulnerable or instrumented test environments.
Experience working with runtime telemetry, behavioral signals, or detection-oriented datasets, and the ability to translate research into scalable detection logic.
High degree of ownership and ability to independently navigate ambiguous technical problem spaces and turn them into structured research plans and actionable outcomes.
Strong communication and teamwork skills, with a collaborative approach to problem-solving across research, engineering, and product teams.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8768190
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
04/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
As a Vulnerability Researcher, you'll build first-principles understanding of the technologies and systems you investigate, then go looking for what's wrong with them: the flawed assumptions baked into established paradigms, the gap between how a system is meant to behave and how it actually behaves, and the novel vulnerabilities and exploitation techniques no one has named yet. This is hands-on, deep technical work - reverse-engineering, breaking, and finding what's exploitable before an attacker does.
What you will Do:

Hunt for what established security paradigms miss: flawed assumptions, gaps between specified and actual behavior, and novel vulnerability classes and exploitation techniques that don't yet have names.

Reverse-engineer and deeply understand systems, protocols, and architectures at the implementation level - developing a precise understanding of how they actually work, rather than what their designers intended.

Develop hypotheses and convert them into working proof-of-concept exploits that demonstrate real-world risk before attackers do.

Own research threads end-to-end, from an early exploration, developing and following hunches all the way through to a proof of concept, responsible disclosure or publication, following the evidence wherever it leads without waiting for a defined playbook.

Ground understanding of exploitability in attacker reality - when research surfaces findings relevant to how the platform models identity attack surface across human and non-human identities, bring that signal in.

Promote standing in the security community through original research, CVEs, and technical thought leadership that advances the field and earns trust on its merits.
Requirements:
6+ years of hands-on vulnerability research, reverse engineering, or offensive security, with a proven track record of finding non-trivial flaws and the depth in systems, protocols, and architectures to understand precisely why they exist.

A first-principles approach to how things actually work, not how they're documented to work: you pull the thread until you hit ground truth, and you're not satisfied until you do.

The instinct and ability to see what others overlook - the unquestioned assumptions in established systems, the edges no one has tested, the failure modes that live in the gap between spec and implementation.

End-to-end ownership of research: you drive hypotheses to conclusions through dead ends, changes of directions and reach hard proofs

Strong hands-on expertise, converting theories and research into a working chain and proof of concept.

Result driven depth: you go as far as a problem deserves, because the result is worth it, and you know when it is.

A track record of original significant discoveries - published CVEs, novel vulnerability classes or exploitation techniques, research that named a problem the field didn't have words for yet.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8767727
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
10/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
Required Security Operations & Automation
About Your Day-to-Day:
As a Security Operations & Automation, you'll be the hands-on architect of how we detect, investigates, and responds to threats - built around AI agents and deep tooling integrations, not manual triage. You'll own incident response across corporate systems, workstations, and identity, unify alerts from every source - including cloud-originated signals that need a response - into a single SOAR/XDR fabric, and deploy AI agents to handle first-line investigation and response.
You'll work closely with IT and the Cloud Security team - taking the lead on investigation, triage, and response while they own the underlying cloud and SDLC architecture - and turn complex security signals into structured, AI-assisted, largely autonomous outcomes - fighting fire with fire.
Responsibilities:
Architect and own our AI-driven detection and response stack, integrating SIEM, XDR, SOAR, EDR, and IAM into a single automated fabric rather than siloed tools.
Deploy and tune AI agents to handle first-line alert triage, enrichment, and investigation, with humans engaged only for true edge cases - manual L1 triage is the exception, not the default.
Build SOAR playbooks and integrations across the security and IT toolchain (endpoint, identity, ticketing, chat) so detection, enrichment, and remediation run automatically end to end - regardless of which system or platform an alert originates from.
Own the alert pipeline as a whole: unify signals from EDR, IAM, and other sources - including cloud and SaaS alerts surfaced by the Cloud Security team - into one triage and response workflow, so nothing falls through the cracks between tools.
Evaluate and integrate best-of-breed, AI-native security tools - SIEM, XDR, SOAR, EDR, email security, AI guardrails, ZTNA, and others - wiring each into the unified detection and response fabric rather than running them as siloed point solutions. Hands-on tool integration (APIs, connectors, log and telemetry ingestion) is a core skill for this role, not an occasional task.
Drive vulnerability and patch management across corporate systems and endpoints, automating prioritization and remediation workflows and coordinating with IT against strict SLAs.
Build and tune detection rules specific to our environment, treating detection as code and feeding AI-driven correlation across the XDR layer.
Maintain security dashboards (MTTD/MTTR, automation rate, % of alerts resolved without human touch) and report on how automation is cutting noise and response time.
דרישות:
5+ years of experience in security operations, SecOps, or security engineering roles.
Hands-on experience operating EDR/XDR. SOAR/XSOAR, SIEM platforms and cloud security services (IAM, CSPM, SSPM).
Experience building automations and playbooks using SOAR platforms or scripting (Python, Bash).
Strong incident response skills, including triaging alerts and conducting root cause analysis.
Hybrid position based in our Tel Aviv office.
Excellent written and verbal English skills
Personal Attributes & Mindset:
High ownership mentality: You take responsibility for the security stack and follow through on every alert.
Strong sense of structure: You can manage vulnerability SLAs and maintain precise security policies.
Comfortable with ambiguity: You can take a vague threat and turn it into a clear detection rule or automated playbook.
Collaborative by nature: You enjoy working as a partner to R&D to solve security challenges without slowing down development.
Curious and self-driven: You are motivated to stay ahead of emerging threats and continuously improve Port's defenses.
Nice to Have:
Relevant certifications: CompTIA Security+, GSEC, CySA+, or AWS Security Specialty.
Deep understanding of the SDLC and experience embedding security tools (SAST, SCA) into CI/CD pipelines.
Experience with CNAPP/CSPM or code security platforms.
Familiarity with compliance frameworks (SOC 2, ISO המשרה מיועדת לנשים ולגברים כאחד.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8775548
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are revolutionizing legal tech with an AI-powered Legal Intelligence Platform trusted by some of the world's fastest-growing companies including Wiz, Socure, and Fiverr.
We integrate seamlessly with Salesforce and other systems to help in-house legal teams accelerate negotiations, reduce risk, and unlock institutional knowledge through automated workflows.
We're solving complex problems at the intersection of AI and legal operations. Join us as we scale our impact globally.
About the Role
We're looking for a Head of Security to own security end-to-end at our company- from the architecture of our product to the systems our own team runs on.
We handle some of the most sensitive documents our customers have, and our buyers' security teams scrutinize us accordingly.
You'll be our first dedicated security hire and the sole internal authority on the subject: setting the standards our engineers build against, owning our compliance posture, and sitting across the table from customer CISOs to defend it.
This is a hands-on role with real strategic weight - if you want to build a security function from scratch at a company where security is a deal-maker, we want to hear from you.
What You'll Do
Design, architect, and implement security directly into our product and codebase
Own our internal security posture: corporate IT, access management, endpoint, and employee security practices
Lead customer-facing security engagements - pre-sales security reviews, CISO-level discussions, security questionnaires, and enterprise assessments - representing our company's posture to buyers who evaluate us seriously
Own our compliance program end-to-end, including audits, evidence, and vendor risk
Set security standards and best practices across R&D and product as the internal authority on the subject
Build the security review process for how we ship AI features - threat modeling around LLMs, agentic workflows, and customer data boundaries
Partner with DevOps and engineering on cloud security, secure architecture, and incident readiness
Grow the security function as we scale, from process to headcount.
Requirements:
Passion to own and deliver - you take full responsibility for security outcomes and drive initiatives from idea to production
Curiosity and adoption of AI tools - you actively use tools like Cursor or Claude Code and are excited about how AI is transforming both software development and the threat landscape
7+ years of hands-on security experience, with real depth in product or application security
Experience in customer-facing security roles, representing a company to client CISOs, IT directors, and security teams across enterprise and SMB
Strong command of cloud security (AWS/GCP/Azure), web application security, and secure architecture design
Hands-on experience running or building a compliance program (SOC 2, ISO 27001, or equivalent)
A builder's mindset - comfortable establishing process and structure where none exists
Ability to thrive in a fast-paced environment, balancing deep technical execution with high-level strategic and client conversations
Strong communication skills, effective in a fast-paced startup environment
Bonus Points
Experience securing LLM-powered applications, agentic systems, or AI infrastructure
Background working with legal, financial, or other high-stakes documentheavy domains
Hands-on coding ability in Python or TypeScript
Experience building a security function from scratch, especially as a founding or first security hire
Familiarity with Kubernetes, infrastructure-as-code, and cloud-native architectures.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8796752
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
09/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for a research-minded, DevOps-fluent Security Researcher to own the "left" side of the platform - from source code and IaC, through CI/CD pipelines, into running cloud workloads and the sensitive data they touch. You'll trace how risk originates in a commit or a data store and follows an attack path all the way to runtime, then turn that research into the posture logic that powers our code-to-cloud, CSPM and DSPM capabilities. This role sits at the intersection of DevSecOps, cloud, data security, and AI systems.
Conduct deep technical research across the full software development lifecycle - source code, IaC, dependencies, CI/CD pipelines, artifacts, and runtime - to map the environment and discover novel risks, misconfigurations, and end-to-end attack paths (code-to-cloud), then enrich findings with context and generate meaningful, actionable remediation.
Lead research into Data Security Posture Management (DSPM): how sensitive data is stored, classified, moves, and gets exposed across cloud data stores, and translate this into data discovery, classification, and data-flow risk logic.
Correlate runtime context from our eBPF sensors with code, pipeline, and data findings to prioritize what is actually reachable and exploitable - not just theoretically vulnerable.
Research and apply AI and ML techniques to strengthen the policy engine itself - improving detection accuracy and coverage, reducing false positives, and making risk prioritization and analytics smarter across code, cloud, data, and runtime signals.
Lead product initiatives from inception to production. Collaborate closely with product, backend, and GTM, translating research into shipped product capabilities.
Define and build complex policy and risk-prioritization logic spanning code, cloud, data, and runtime.
Requirements:
5+ years of experience in Cyber Security research, cloud security, or DevSecOps, particularly in cloud environments.
Military background experience, University Degree, or Ex-CNAPP.
Deep understanding of modern DevOps and CI/CD environments - pipelines (e.g., GitHub Actions, GitLab CI, Jenkins), Infrastructure-as-Code (e.g., Terraform, CloudFormation), containers, and Kubernetes.
Hands-on experience with at least one major cloud provider (AWS, GCP, or Azure) and its data and identity services.
Ability to learn the inner mechanisms of complex architectures - low level, cloud, and data.
Hands-on skills with scripting languages (e.g., Python) and query languages (e.g., SQL); comfort reasoning about data stores and data flows.
Ability to work independently in a dynamic, fast-moving, and demanding environment - owning research initiatives end-to-end and leading projects on your own across product, backend, and GTM teams.
Excellent written and oral communication skills in English.
Advantages:
Experience in AI Security Research, or securing AI/ML pipelines and workloads.
Experience with DSPM, data classification, or data security tooling.
Knowledge of graph and data science algorithms (e.g., graph analytics, clustering, anomaly detection, statistical modeling).
Experience with software supply chain security (SBOM, dependency and artifact/registry security).
Contributions to open-source security tooling.
Experience in public-facing work, such as presenting at recognized industry conferences, authoring technical blog posts, or publishing research.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8773769
סגור
שירות זה פתוח ללקוחות VIP בלבד