דרושים » אבטחת מידע וסייבר » Senior Application Security Engineer

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
5 ימים
Location: Petah Tikva
Job Type: Full Time
our company seeks a Senior Application Security Engineer to serve as the technical core of our bug bounty program within the Product Security Incident Response Team (PSIRT). This is the senior engineer who owns bug bounty reports from intake through resolution: reproducing and validating the vulnerability, assessing its severity, and seeing it through to a verified fix.
The work is deeply technical. Reproducing a vulnerability is only the starting point. From there you read the underlying code, identify root cause, and either propose the fix or design it alongside engineering before confirming it holds. You are also the person researchers deal with directly, which makes clear, credible communication as central to the role as the technical analysis itself.
As one of the most senior engineers on the team, you will set the standard for how triage is done and mentor earlier-career engineers. Beyond the bug bounty queue, you will conduct variant hunts, perform original platform security research, lead major product security incidents, and run forensic postmortems when a significant issue reaches production.
Key Responsibilities
Triage and Resolve Bug Bounty Reports
Own incoming reports end-to-end: intake, reproduction, severity scoring, root cause analysis, fix verification, and final disposition.
Reproduce and validate reported vulnerabilities, building out incomplete proof-of-concept code where needed.
Serve as the technical escalation point for the most complex and highest-severity reports, including multi-step exploit chains and cross-system issues.
Perform code review and root cause analysis to identify the underlying defect rather than the reported symptom.
Propose remediations, or design them with engineering, and verify the fix resolves the issue.
Assign and defend severity ratings using the program's severity framework.
Route issues to owning teams, file and track defects, and keep vulnerability records accurate through closure.
Own Researcher and Stakeholder Communication
Act as our company's primary technical point of contact for bug bounty researchers across the full lifecycle of a report.
Handle severity and validity disputes directly, keeping every exchange clear, timely, respectful, and technically credible.
Translate technical findings for internal stakeholders and keep engineering and leadership current on status and risk.
Mentor the Team and Raise Triage Standards
Provide technical mentorship to earlier-career PSIRT engineers, developing depth in reproduction, code analysis, severity judgment, and communication.
Set and maintain the bar for triage quality and strengthen program practices over time.
Lead Advanced Security Work Beyond Triage
Conduct variant hunts to find related instances of reported vulnerabilities before they are discovered externally.
Perform original platform security research to surface issues ahead of external researchers.
Lead major product security incidents on the PSIRT side, coordinating response across teams under pressure.
Run forensic postmortems after significant incidents to determine how the issue reached production, including how design-level flaws bypassed release processes, and confirm that remediations hold.
Requirements:
To be successful in this role, you have:
8+ years of hands-on experience in product security, application security, penetration testing, or vulnerability research. Depth of expertise matters more than years.
Expertise in:
Common web and application vulnerability classes and exploitation techniques.
Vulnerability reproduction, severity assessment, and defensible risk scoring under ambiguity.
Coordinated vulnerability disclosure.
Code and development fluency:
Strong code comprehension in Java, JavaScript, and Python, with the ability to trace root cause in large, unfamiliar codebases and review pull requests.
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8808486
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
דרושים בעידור מחשבים בע"מ
Job Type: More than one
Additional Benefits: החזר הוצאות, קרן השתלמות
Technical GRC Lead
- Lead client-facing security consulting engagements across a variety of domains - security project management, risk assessments, and end-to-end compliance programs.
- Drive ISO and framework compliance (ISO 27001, NIST CSF, SOC 2, CIS Controls, GDPR,חוק הגנת הפרטיות ותיקון 13 and similar), owning control matrices, evidence repositories, and audit readiness from kick-off to certification.
- Validate controls hands-on, not just on paper - assess cloud environments (AWS/Azure/GCP), IAM configurations, logging/monitoring setups, and general network and application security posture to confirm real-world control effectiveness.
- Champion AI-driven GRC automation - build and deploy AI/LLM-enabled workflows for risk assessment, control testing, evidence collection, and policy generation, and help clients establish safe frameworks for adopting Generative AI internally.
Requirements:
Experience Certifications
- 5+ years of experience in GRC, Information Security, or a related governance, risk, or compliance role.
- Certified in at least one of: CISM, CISSP, CRISC, CISA.
- Cloud security certification (AWS, Azure, or GCP) is a plus, or equivalent hands-on experience.
- DPO Certification is advantage.
GRC Compliance
- Deep experience with major frameworks and standards implementations.
- Control ownership and audit readiness - you can run an audit, not just prepare for one.
Technical Fluency (enough to assess and challenge - not to architect)
- Working knowledge of cloud security across AWS/Azure/GCP: IAM, logging/monitoring, configuration management, and CSPM concepts.
- Familiarity with core network and application security concepts (segmentation, Zero Trust principles, secure SDLC, vulnerability management) sufficient to evaluate a client's posture
This position is open to all candidates.
 
Show more...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8810028
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
2 ימים
דרושים בלוגיקה IT
סוג משרה: משרה מלאה ועבודה היברידית
?Ready to Power Up Your Career

Cloud Security Engineer

תל אביב | משרה מלאה | היברידי

בואו להיות חלק מהעשייה הטכנולוגית שמשפיעה על הבריאות בישראל!
בחטיבת הטכנולוגיות אנחנו משלבים בין חדשנות טכנולוגית לשליחות אמיתית, כדי להמשיך ולפתח מערכת בריאות טובה ומתקדמת יותר עבור מיליוני חברי הארגון.
אצלנו תמצאו סביבת עבודה דינמית וחדשנית הכוללת שימוש בטכנולוגיות מובילות כמו ענן, בינה מלאכותית (AI) ופתרונות דיגיטליים חוצי-ארגון.
אנחנו מאמינים בשותפות ובפיתוח אישי ומקצועי, בסביבת עבודה נעימה שמורכבת מעובדים שמגיעים כל בוקר מתוך רצון להשפיע ולעשות טוב.

על המשרה:

אחריות לזמינות, אמינות וביצועים של מערכות אבטחה בענן
ניהול שוטף של מעטפת האבטחה במספר Landing Zones בענן ציבורי
ניהול שינויים דרך תהליכי CI/CD מאובטחים IaC ושימוש ב Terraform
בעלות מקצועית על מערכות אבטחה בקטגוריות  CNAPP, SAST, SCA
שותפ/ה בתכנון Landing Zones חדשים ובפרויקטים אסטרטגיים של עליה לענן
דרישות:
תואר במדעי המחשב/ הנדסת מחשבים / מערכות מידע /יוצא יחידות צבאיות/קורסים מתקדמים בתחום חובה
ניסיון של לפחות 7 שנים ביישומי באבטחת מידע, מתוכן לפחות 3 שנים בענן ציבורי (Azure יתרון משמעותי)
היכרות ועבודה עם ארכיטקטורות ענן בארגוני Enterprise
ניסיון בעבודה עם רכיבי אבטחה בענן כגון: Firewall, API GW, WAF, Azure Policy, APM
רקע משמעותי ב כתיבת תשתיות באמצעות IaC (Terraform או שווה ערך)
ניסיון באבטחת Kubernetes (AKS / OpenShift) הכולל Network Policies, RBAC, Secrets Management, Image Scanning, Admission Control
ניסיון רב-עננים (Multi-Cloud) AWS / GCP בנוסף ל-Azure- יתרון משמעותי
ניסיון בעבודה במודל CCoE / Platform Team / Enterprise Architecture- יתרון משמעותי


הבנה טכנולוגית גבוהה ויחסי אנוש מעולים
ראייה מערכתית רחבה ויכולת חשיבה ארכיטקטונית
יכולת עבודה עצמאית, עבודת צוות ויכולת לימוד עצמי מהיר
שליטה מלאה בעברית ואנגלית ויכולת ניסוח טובה בעל-פה ובכתב המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8743927
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
דרושים בעידור מחשבים בע"מ
סוג משרה: מספר סוגים
תנאים נוספים:החזר הוצאות, קרן השתלמות
בואו להיות חלק מהעשייה הטכנולוגית שמשפיעה על הבריאות בישראל!
ארגון בתחום הבריאות מגייס ארכיטקט/ית אפליקטיבי אבטחת מידע
התפקיד כולל אחריות על הגדרת ארכיטקטורת אבטחת המידע והסייבר עבור תשתיות הארגון, סביבות הענן, מרכזי הנתונים, התקשורת, מערכות ההפעלה ושירותי הזהויות
הובלה וליווי של פרויקטים טכנולוגיים בתחומי תשתיות, תקשורת, ענן, דיגיטל וטרנספורמציה טכנולוגית בהיבטי אבטחת מידע וסייבר
בחינת טכנולוגיות חדשות, תכנון שכבות ההגנה הארגוניות ואפיון פתרונות אבטחת מידע בהתאם לדרישות העסקיות והרגולטוריות
חבר.ה בצוות ארכיטקטורת הגנת הסייבר והשתלבות בצוותים מקצועיים ומול גופי תשתיות, תקשורת, ענן, פיתוח ותפעול
אפיון תצורת בקרות אבטחת מידע לתשתיות IT ו-Cloud, מערכות תקשורת, פתרונות זהויות והרשאות, מערכות קצה וסביבות עבודה היברידיות
גיבוש הנחיות, תקנים וארכיטקטורות ייחוס (Reference Architectures) עבור פרויקטים ארגוניים ותשתיות ליבה
הובלת תהליכי בחינה ואישור ארכיטקטורה בהיבטי אבטחת מידע וסייבר
דרישות:
תואר במדעי המחשב/ הנדסת מחשבים / הנדסת תוכנה / מערכות מידע או בוגר יחידה טכנולוגית מובחרת בצה"ל- חובה
ניסיון של 5 שנים לפחות בתחום אבטחת מידע וסייבר- חובה
ניסיון של 3 שנים לפחות בארכיטקטורת תשתיות או בתפקיד בכיר בתחומי תשתיות, תקשורת, ענן או אבטחת מידע- חובה
ניסיון בתכנון ואפיון פתרונות אבטחת מידע עבור סביבות On-Prem ו-Cloud
ניסיון בעבודה מול צוותי תשתיות, תקשורת, סיסטם, ענן ואבטחת מידע
ניסיון בליווי והובלת פרויקטים טכנולוגיים מורכבים
ידע והיכרות מעמיקה עם אחד או יותר מהנושאים הבאים:

Azure / AWS / GCP
Zero Trust Architecture
Identity Access Management
Microsoft Entra ID (Azure AD)
Network Security
Micro Segmentation
Endpoint Security
Email Security
SIEM / XDR
Container Security
Kubernetes Security המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8810597
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
דרושים בComblack
מיקום המשרה: פתח תקווה
סוג משרה: משרה מלאה
חברת COMBLACK מגייסת מנהל /ת מחלקת בקרה וניטור אבטחת מידע וסייבר לארגון מוביל במרכז!
הזדמנות להוביל מערך בקרה וניטור רחב היקף, לנהל צוותים מקצועיים ולהוביל תהליכים חוצי ארגון בעולמות הסייבר, אבטחת המידע וניהול הסיכונים.
דרישות:
5+ שנות ניסיון בתחומי אבטחת מידע, סייבר או תשתיות טכנולוגיות - חובה
ניסיון בניהול והובלת צוותים מקצועיים - חובה
ניסיון בהובלת תהליכים חוצי ארגון ועבודה מול ממשקים עסקיים - חובה
ניסיון בניהול סיכוני סייבר, ניטור ובקרה בסביבות מורכבות - חובהניסיון בעבודה בסביבה היברידית, On Premise, Cloud - חובה
ניסיון בעולמות SOC, DLP, IAM, Vulnerability Management, Cyber Threat Intelligence - יתרון משמעותי
היכרות עם רגולציה והסמכות מקצועיות בתחום - יתרון משמעותי המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8680670
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
2 ימים
דרושים בSQLink
סוג משרה: משרה מלאה
ארגון בריאות במרכז מגייס ארכיטקט/ית אבטחת מידע תשתיתי להצטרפות לצוות ארכיטקטורת הגנת הסייבר.
התפקיד כולל: אחריות על ארכיטקטורת אבטחת המידע והסייבר בתשתיות הארגון, סביבות Cloud, מרכזי נתונים, תקשורת ושירותי זהויות, הובלה וליווי של פרויקטים טכנולוגיים בהיבטי אבטחת מידע, אפיון פתרונות ובקרות אבטחה, בחינת טכנולוגיות חדשות וגיבוש ארכיטקטורות והנחיות אבטחה, לצד עבודה שוטפת מול צוותי תשתיות, תקשורת, ענן, פיתוח ותפעול ועוד.
דרישות:
- ניסיון של 5 שנים לפחות בתחום אבטחת מידע וסייבר - חובה
- ניסיון של 3 שנים לפחות בארכיטקטורת תשתיות או בתפקיד בכיר בתחומי תשתיות, תקשורת, ענן או אבטחת מידע - חובה
- ניסיון בתכנון ואפיון פתרונות אבטחת מידע בסביבות On-Prem ו-Cloud, כולל עבודה מול צוותי תשתיות, תקשורת, סיסטם, ענן ואבטחת מידע
- ניסיון בליווי והובלת פרויקטים טכנולוגיים מורכבים
- ידע והיכרות מעמיקה עם אחד או יותר מהנושאים הבאים: Azure / AWS / GCP, Zero Trust Architecture, Identity & Access Management, Microsoft Entra ID, Network Security, Micro Segmentation, Endpoint Security המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8803032
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
דרושים בנועה גיוס והשמה
סוג משרה: משרה מלאה
שכר: 15,000-18,000
נמצאים בתל אביב, כ 60 אנשים.
חברת הפצה מהגדולות בתחום המיחשוב: מוצרי תוכנה וחומרה, אחסון ואבטחת מידע, ומוצרי תקשורת.
החברה מוכרת לכ1,500 משווקים מידי שנה מכל הסגמנטים (SMB+ENT).
שכר מוצע - 15-17 ברוטו + רכב. (שכר מורכב מבסיס +עמלות. הבסיס ייקבע על פי כישורי המועמד ומו"מ)

חנייה תנתן.

כרטיס סיבוס - 30 ש"ח ביום. השאר על העובד.

הוצאות כמובן.

מחשב נייד.
דרישות:
ניסיון של 2-4 שנים במכירות B2B בתחום טכנולוגיות המידע.
* ניסיון מוכח במכירת פתרונות ושירותים בתחומי אבטחת מידע, סייבר, גיבוי, תשתיות IT או תקשורת
* ניסיון בניהול תהליכי מכירה מורכבים, כולל ניהול משא ומתן מול מנהלים בכירים ( C -Level), מנהלי מערכות מידע ( CIO ) ומנהלי אבטחת מידע ( CISO ).
* היכרות מעמיקה עם פתרונות IT Infrastructure, תקשורת, Cyber security, Cloud ו-Backup
* ניסיון קודם בעבודה בחברת אינטגרציה או מפיץ ערך מוסף (יתרון משמעותי.)
* אוריינטציה עסקית גבוהה, יכולת ניהול מו"מ וכישורי פרזנטציה מצוינים.
* עברית ואנגלית ברמה גבוהה (דיבור, קריאה וכתיבה).
* רישיון נהיגה בתוקף ונכונות לנסיעות ברחבי הארץ.

יתרון משמעותי
* ניסיון במכירת פתרונות של יצרנים מובילים כגון CrowdStrike, Sophos, Veeam, Commvault או פתרונות דומים.
* ניסיון בעבודה מול יצרנים בינלאומיים ושותפים עסקיים. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8796181
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
5 ימים
חברה חסויה
Location: Petah Tikva
Job Type: Full Time
This is a hands-on architecture role: deep research, secure systems design, and prototyping, applied across product lines with minimal direction and broad latitude to set the technical agenda. You will set platform-wide direction for securing the AI development lifecycle, define the security architecture, agents, and models operating within it, and represent our company's AI security point of view externally. You'll be a technical authority other engineers and other teams look to on emerging AI-specific threats, working in close partnership with the AI security research team - drawing on their findings and feeding real-world attack surfaces back into their agenda.
What you'll do
Own the security strategy and architecture for our Agentic AI ecosystem, LLMs, and models across product lines
Lead threat modeling for the most complex and novel GenAI/agentic surfaces: cross-agent autonomy, multi-agent tool orchestration, and emerging attack classes not yet standardised in the industry
Set the architectural standard for securing model/RAG/data pipelines platform-wide, including access-control and data-boundary models that other teams are expected to build against
Define what "secure-by-design" means for agentic systems at our company, and drive adoption across engineering orgs
Represent our company's AI security posture externally (standards bodies, industry publications, conferences) and internally to executive stakeholders
Mentor and technically guide engineers on AI-specific security work.
Requirements:
To succeed in this role, youll need:
Bachelors / Master's degree or PhD in Computer Science or a related technical field, specialisation in Security or AI/ML or an exceptional, well-evidenced track record substituting for it
10+ years of software engineering experience, including a track record of owning the architecture of complex systems at enterprise scale
A track record of setting technical direction beyond your own team - architecture or standards other teams adopted, senior engineers you've levelled up, and comfort operating where the problem isn't yet defined
7+ years in security engineering - network and systems security, security protocols, design reviews, and threat modeling - with a focus on AI-specific work in recent years
Multiple demonstrated engagements threat modeling and/or securing LLM, GenAI, or agentic systems, with evidence of platform-level or cross-team impact
Personal ownership of prompt injection / jailbreak defense, guardrail architecture, or AI red-teaming programs - ideally having built the program/methodology, not just executed within one
Deep, applied experience securing model, RAG, or data pipelines, including having designed the access-control and data-governance model others build against
Fluency with the OWASP LLM Top 10 (or equivalent) to the point of extending, critiquing, or contributing to such frameworks - not just applying them
Deep hands-on experience with agentic AI frameworks (e.g., LangChain, LangGraph)
Clear communication, a collaborative default, and a bias toward learning fast in a field that changes constantly
Bonus
Strong command of auth protocols (OAuth 2.0, OIDC, PKCE, API Keys) and agentic protocols (MCP, A2A), including having designed identity/consent models for them
Built and open-sourced (or productized) security tooling/automation for AI systems now used beyond one team
Track record of CVEs, top-tier publications, or invited talks specifically in AI/ML or LLM security
Prior experience setting AI security strategy at a platform or company level, not just a single product
5+ years of programming experience in Java or Python.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8808482
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Petah Tikva
Job Type: Full Time
we are looking for a hands-on Security Operations Engineer to join our IT and Cybersecurity team.

You will take ownership of implementing, configuring, and operating security tools and controls across the organization. The role combines security operations, incident response, technical policy implementation, and compliance support.



Responsibilities
Implement, configure, and maintain security systems and policies.
Monitor and investigate security alerts and coordinate remediation.
Manage endpoint, identity, device, network, and cloud security controls.
Improve security coverage across endpoints, servers, users, and corporate systems.
Manage vulnerabilities and track remediation through completion.
Develop and maintain incident-response procedures and playbooks.
Translate security policies and regulatory requirements into technical controls.
Support security audits, evidence collection, risk assessments, and compliance activities.
Work closely with IT and R&D teams, business stakeholders, security vendors, and external providers.
Maintain security documentation, operational procedures, and management reports.
Requirements:
3+ years of hands-on experience in security operations, cybersecurity engineering, or a similar role.
Practical experience implementing and managing enterprise security systems.
Experience with technologies such as EDR/XDR, SIEM, MDM/UEM, IAM, SSO, MFA, firewalls, VPN, DNS security, and vulnerability management.
Knowledge of Windows, Microsoft 365, Entra ID, networking, and enterprise infrastructure.
Experience investigating security events and managing technical remediation.
Working knowledge of ISO 27001, SOC 2, and the NIST Cybersecurity Framework.
Strong troubleshooting, documentation, communication, and prioritization skills.
Ability to work independently and take ownership from identification through resolution.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8808648
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Petah Tikva
Job Type: Full Time
Lead the design, implementation, and management of security controls across three critical domains: Endpoint Security, Identity & Access Management, and AI Security, safeguarding Palo Alto Networks' global infrastructure with a Zero Trust approach.
Key Responsibilities
Design, build and implement enterprise security capabilities to protect Palo Alto Networks global infrastructure
Develop strategies to maintain security architecture, prevent unauthorized access, and ensure identity governance across the enterprise
Establish, maintain, and enforce hardened security baselines for Endpoints, Identity, and AI tools
Lead AI security governance, define controls, policies, and threat models for safe enterprise adoption of AI tools and models
Evaluate and secure AI-related data flows, including prompt injection risks, model access controls, and data exfiltration vectors
Implement and manage Identity Security, Endpoint security, and Access Management capabilities with a Zero Trust approach
Design and enforce endpoint hardening strategies across managed and unmanaged devices, endpoint DLP controls, drive mobile security and BYOD posture management
Be the first customer for Palo Alto Networks products and provide practitioner feedback to the product teams
Perform threat modeling and security architecture reviews for complex enterprise systems, infrastructure, and third-party integrations
Work with Security Operations team to investigate identity and endpoint breach incidents, identify root cause and provide appropriate remediation or risk reduction plans
Collaborate with legal and governance, risk and compliance (GRC) teams to ensure adherence to Identity and data protection regulations
Evaluate ongoing practices and procedures, technical documentation, and diagrams for appropriate security measure maturity and effectiveness
Lead hands-on POCs and technology evaluations with rigorous benchmarks; champion adoption with a collaborative team mindset
Be a strong thought leader and clearly communicate and build support for your ideas.
Requirements:
8+ years of hands-on experience in enterprise security engineering, spanning identity & access management, endpoint security, and/or cloud security, with a Zero Trust mindset
Deep understanding of the AI security domain, trends, and risks, with hands-on experience securing AI models, LLM integrations, and implementing enterprise security controls
Strong experience in designing and securing Enterprise Identity architecture, including Identity Providers (Okta, Ping, Entra ID), Access Governance & IGA (SailPoint, Saviynt), and directory services (Active Directory, RedHat)
In depth knowledge of public cloud architecture, such as GCP, AWS and Azure, with focus on securing Identities in the cloud environments
Hands-on experience with endpoint security platforms like Palo Alto Networks XDR, device management (Microsoft Intune, JAMF), and endpoint DLP
In depth knowledge of threat model, application security assessments, network security, encryption, authentication and authorization
Proficiency in programming / scripting / automation (e.g. Python, Golang, or Powershell) for security engineering workflows
Bachelor's degree or equivalent training and education.
Preferred Qualifications
Experience in security engineering related to identity & access, data security, network security, intrusion prevention, monitoring, analytical and correlation tools a PLUS
Certification in any of the following is a plus: Google Cloud Architect; AWS Cloud Architect, CISSP-ISSEP - Sec. Eng. Professional, GIAC Certified Enterprise Defender (GCED), CCSP.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8782301
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
30/08/2026
Location: Petah Tikva
Job Type: Full Time
We are looking for an Information Security and Cyber Specialist with hands-on experience in information security systems to join the company’s Information Security team. The role includes responsibility for the operation and management of security systems, the investigation of information security incidents, and advanced technological areas within the Information Security Department.

Responsibilities:

* Monitoring, operation, and maintenance of information security systems.
* Handling and analyzing information security incidents at the Tier 2 level.
* Conducting initial and advanced investigations of cyber incidents.
* Working with IT and DevOps teams and external vendors.
* Writing procedures and technical documentation.
* Assisting with regulatory controls, risk assessments, and audits.
* In-depth knowledge of Microsoft 365 and Azure Security systems.
* Experience in managing and implementing EDR/XDR and SIEM systems and endpoint protection solutions.
* In-depth understanding of networking and Windows and Linux operating systems.
* Experience working with firewalls, VPN, NAC, and network security solutions.
* Ability to work independently, learn quickly, and maintain a system-wide perspective.
Requirements:
Mandatory Requirements
* At least five years of experience in information security and cybersecurity.
* Experience working with Microsoft 365 Security and Defender.
* Experience with EDR/XDR or SIEM systems.
* Knowledge of networking, Active Directory, Windows Server, and Entra ID.
* Experience handling information security incidents.
* Strong self-learning capabilities and the ability to work independently.
Preferred Qualifications
* Experience in Azure and on-premises environments.
* Knowledge of PowerShell or Python.
* Experience working with information security standards and regulatory requirements.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8801753
סגור
שירות זה פתוח ללקוחות VIP בלבד