דרושים » אבטחת מידע וסייבר » Cybersecurity Incident Manager 2516

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Merkaz
We are looking for an experienced Cybersecurity Incident Managr to join our dynamic team of cybersecurity professionals.
עוד על התפקיד
Lead, manage and coordinate incident response efforts, participate in forensic and incident response investigations, including large scale sophisticated attacks, conduct log analysis, host and network-based forensics
Collaborate with IT and Security teams during investigation
Generate and present a comprehensive and professional report of findings from investigation
Serve as the primary point of contact during major incidents, strategies to minimize the impact on the organization.
Requirements:
BSc in Software Engineering\Computer Science or related fields
3+ years of experience in information security, network security, incident response or similar role
Deep technical understanding of network fundamentals and common internet protocol
Comprehensive understanding of system and security controls in operating system
Familiarity with cloud services, firewalls, threat detection
כישורים נדרשים
Certification such as CISSP, CCNA, CISO, CISA.
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8835728
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
10/09/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are seeking a deeply experienced Security Analyst - Tier 3 for its Security Operations Center (SOC). This role is a senior individual-contributor position, leading challenging investigations, setting the standards the SOC operates by. This role reports to the SOC Manager, under the Detection and Response function within the CISO Office.

Your responsibilities will include:

Lead complex, multi-stage, multi-domain investigations end to end, from scoping through deep technical analysis to a clear determination of impact and root cause.
Serve as the SOC's senior escalation point and the quality gate for investigations across the team.
Support the Incident Response team during confirmed incidents with continued telemetry investigation, scoping, and analytical depth.
Continuously sharpen how the SOC investigates, identifying gaps in methods, runbooks, and tooling through daily casework and turning them into concrete improvements.
Mentor Tier 1 and Tier 2 analysts through case reviews, coaching, and pairing during investigations.
Partner with Security Engineering, Platform Security, Threat Intelligence, SOC Automation, and additional teams to turn what the SOC learns into stronger detection and response across .
Participate in readiness activities - tabletops, post-incident reviews, and purple-team engagements.
Participate in the on-call rotation as the senior point of contact outside business hours.
Requirements:
Around 8-10 years of hands-on experience in security operations or incident response, with a track record of leading complex investigations.
Technical Expertise

Expert-level investigation capability across multiple domains: endpoint, identity, cloud, and network.
Solid understanding of cloud-native environments, including containers, Kubernetes.
Deep practical fluency with EDR, SIEM query languages, and log analysis.
Deep knowledge of Windows and Linux internals, applied to artifact and behavioral analysis.
Fluency in attacker TTPs (MITRE ATT&CK), including the Cloud and Containers matrices.
Strong scripting and data-analysis skills (Python, SQL/KQL) for investigation at scale, with the ability to validate findings independently and challenge assumptions.
Advanced certifications such as GCIH, GCFA, GNFA, GCFE, or OSCP are an advantage.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8818085
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
10/09/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are seeking an experienced Security Analyst - Tier 2 for its Security Operations Center (SOC). This role is a hands-on position built for depth, serving as the investigative core of the SOC, focused on evidence and grounded conclusions. This role reports to the SOC Manager, under the Detection and Response function within the CISO Office.

You are welcome to work in our offices in Tel Aviv, Israel.

Key Responsibilities
Investigate escalated security alerts across endpoint, identity, cloud, email, and network layers.
Determine scope, impact, and root cause using EDR, SIEM, and supporting telemetry.
Escalate suspected incidents to the Incident Response team and complex investigations to Tier 3.
Provide structured feedback to relevant stakeholders on detection or prevention quality, false-positive patterns, and coverage gaps discovered during investigations.
Contribute to and refine SOC runbooks, triage guides, and investigation procedures.
Review Tier 1 escalations, coach on handoff quality, and act as the analytical reference during triage.
Document investigations to a standard that supports handoff, quality review, and lessons learned.
Participate in the on-call rotation, acting as the investigative point of contact outside business hours.
Requirements:
Around 5-7 years of hands-on security operations experience, with proven depth in alert investigation.
Experience taking investigations to a clear verdict, including confirmed incidents.
Technical Expertise

Strong working command of EDR platforms and SIEM-based investigation, including writing and adapting queries independently.
Solid understanding of attacker techniques, with the ability to map findings to MITRE ATT&CK in analysis and reporting.
Investigation capability across at least two of: endpoint, identity, cloud, email, or network domains.
Windows and Linux internals at the depth required for log and artifact analysis: processes, authentication flows, and persistence mechanisms.
Solid networking fundamentals: TCP/IP, DNS, HTTP/S, and the ability to interpret network telemetry.
Scripting ability (Python or similar) for analysis at scale, and familiarity with SOAR platforms.
Certifications such as BTL2, OSDA, or CDSA are an advantage.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8818090
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Job Type: Full Time
We are looking for an experienced and highly driven Head of Security to join our Security leadership team, reporting directly to the CISO.

This is a unique opportunity to play a key leadership role in shaping and scaling the security program of a fast-growing fintech company. As Head of Security, you will serve as the CISO's trusted partner, helping drive the organization's security strategy while leading day-to-day execution across multiple security domains.

Yo will oversee both the Security Operations , Security Engineering and GRC organizations, managing team leads and security professionals across Israel and abroad. This role requires a strong combination of strategic thinking, technical depth, operational excellence, and people leadership.

The ideal candidate brings experience from large-scale, cloud-native environments and has successfully led security programs spanning Security Operations, Security Engineering, Compliance, Risk Management, and Security Architecture. You will work closely with Engineering, Infrastructure, IT, Product, Legal, Compliance, and executive leadership teams to continuously strengthen our security posture while enabling business growth.

What You'll Do
Drive execution of strategic security initiatives across the organization.
Partner closely with the CISO to define and execute our security strategy and roadmap.
Translate business objectives into scalable security programs and controls.
Act as a key stakeholder in security governance, risk management, and decision-making processes.
Help shape the future of Security, including emerging domains such as AI Security and Security Automation.

Organizational Leadership & Business Partnership
Lead and mentor multiple security teams, including Security Operations and Security Engineering, through direct management of team leaders and global security personnel.
Build scalable operating models, KPIs, governance processes, and organizational structures that support Sunbit's rapid growth and global expansion.
Partner closely with Engineering, Infrastructure, Product, IT, Legal, Compliance, Privacy, Risk, and Business leaders to ensure security enables business objectives while managing risk appropriately.
Collaborate extensively with US-based stakeholders and cross-functional teams in a dynamic global environment.
Drive the adoption of AI, automation, and emerging technologies to improve security effectiveness, operational efficiency, and scalability.
Requirements:
What We're Looking For:
10+ years of experience in Information Security, Cybersecurity, or Security Engineering roles.
5+ years of leadership experience managing security teams and managers.
Proven experience leading security programs in large-scale, high-growth organizations.
Strong background across multiple security domains, including Security Engineering, Security Operations, Cloud Security, Incident Response, Vulnerability Management, and Governance.
Extensive experience securing cloud-native environments (AWS, GCP, Azure).
Deep understanding of security architecture, security controls, and modern security technologies.
Experience working with regulatory frameworks, audits, compliance programs, and risk management processes.
Demonstrated ability to lead cross-functional initiatives across Engineering, Infrastructure, Product, and Business teams.
Strong communication and stakeholder management skills.
Fluent English, with extensive experience working with global teams and international stakeholders.

Nice to have
Experience in fintech, financial services, or highly regulated environments.
Experience leading AI Security initiatives or security automation programs.
Hands-on experience with modern security platforms such as CrowdStrike, Wiz, Okta, SIEM, and Identity solutions.
Relevant certifications such as CISSP, CISM, CCSP, CRISC, or equivalent
Experience building and scaling security organizations.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8831058
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time and Hybrid work
We are growing and are looking for a Senior Information Security Manager JD to join our mission to increase access to life-saving treatments.

The Role:

Lead and maintain all certification and compliance efforts, including SOC 2, ISO 27001, ISO 42001, HIPAA, GDPR, and CIS benchmarks

Serve as the primary point of contact for all security questions and concerns, internal and external

Own global security awareness strategy and programs, including annual employee training, ongoing awareness campaigns, and phishing simulations

Respond to customer and prospect security questionnaires while maintaining agreed turnaround times

Oversee SOC (Security Operations Center) operations, including log source coverage, detection rule creation and tuning, and SLA/KPI management

Build and manage the Third-Party Risk Management, Business Continuity, and Disaster Recovery programs

Run the vulnerability steering committee across corporate and production environments

Manage vendor risk and the security risk register

Monitor and manage the company's external digital footprint using third-party attack surface management tools

Act as incident commander for security incidents - analyze, escalate, coordinate response, and drive remediation

Help design and execute the annual security roadmap

Manage the company Trust Center

Lead the internal security policy lifecycle - creation, updates, approvals, and distribution

Audit onboarding and offboarding processes from a security perspective
Requirements:
5+ years of experience in information security, with meaningful time in GRC, security operations, or a hybrid role

Hands-on experience leading or supporting SOC 2, ISO 27001, HIPAA, and GDPR certifications and audits

Strong understanding of SOC operations, SIEM tooling, detection engineering concepts, and incident response

Experience building or running a Third-Party Risk Management program

Experience acting as incident commander or lead responder for security incidents

Familiarity with vulnerability management programs across cloud and corporate environments

Strong written and verbal communication skills in English, able to represent security to customers, auditors, and executives
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8818572
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
28/08/2026
חברה חסויה
Location: Ramat Gan
Job Type: Full Time
As a Cybersecurity GRC Specialist at our innovative healthcare startup, you will own our information security program end to end. We are on a mission to bring the first Hybrid Drug to market: a groundbreaking therapeutic entity that integrates mobile apps with traditional medication. Operating at the intersection of digital health and pharma means security, privacy, and compliance are core to what we build - and you'll be the one making sure we get it right. If you're excited to shape and lead the security function of a growing company (rather than inherit one), read on

About the Role
This is a hands-on role with broad ownership. You'll act as our security lead, serving as the go-to person for all things governance, risk, and compliance - working directly with leadership, engineering, quality, and clinical teams. It's a great fit for someone with a few years of GRC experience who's ready to take on company-wide responsibility, not a traditional executive CISO position.

‍

Responsibilities
Governance & Security Program
Build, implement, and maintain our Information Security Management System (ISMS) in line with ISO 27001.
Develop and enforce security policies, standards, guidelines, and procedures across the company.
Foster a culture of security awareness through training and ongoing communication.
Risk Management
Identify, assess, and prioritize cyber risks across our products, infrastructure, and vendors.
Conduct Business Impact Analyses (BIA) to map critical business functions and potential disruptions.
Own the risk register and drive mitigation plans with relevant stakeholders.
‍
Compliance & Regulatory Alignment
Ensure compliance with healthcare and privacy regulations, including HIPAA and GDPR.
Support regulatory and quality processes relevant to medical device software (e.g., working alongside our QA/RA team on standards such as ISO 13485 and IEC 62304 where security intersects).
Manage security aspects of customer, partner, and vendor due diligence, including security questionnaires and audits.
Resilience & Incident Preparedness
Design and maintain Business Continuity (BCP) and Disaster Recovery (DRP) plans.
Define and test incident response procedures; lead response efforts when needed.
Run periodic tabletop exercises and recovery drills.
Security Operations & Engineering Collaboration
Work with engineering to embed security requirements into the development lifecycle of our mobile and cloud platforms.
Coordinate penetration tests, vulnerability assessments, and remediation follow-up.
Evaluate and manage security tooling appropriate to our size and needs.
Requirements:
2-4 years of hands-on experience in a GRC, information security, or IT security role - ideally in healthcare, medtech, or another regulated industry.

Knowledge
Practical experience implementing or maintaining ISO 27001-based ISMS (certification project experience is a strong plus).
Solid understanding of risk management methodologies, BIA, BCP, and DRP.
Familiarity with privacy and healthcare regulations such as GDPR and HIPAA.
Skills & Mindset
Strong ability to translate security and compliance requirements into practical, business-aligned actions.
Comfortable working independently and owning a domain across the whole company.
Excellent communication skills - you can explain risk to engineers, executives, and auditors alike.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8800876
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
20/09/2026
חברה חסויה
Job Type: Full Time and Hybrid work
We are the global booking and payment platform for the trillion-dollar freight industry. Hundreds of airlines and ocean liners, thousands of freight companies, and over ten thousand importers and exporters use our platform to move goods around the world faster and more efficiently. This matters. Efficient freight ultimately makes things cost a little bit less when you buy them in the store. We are looking for a hybrid powerhouse: a Chief Information Security Officer. In this role, you will be the guardian of our trust. You will shape and drive our cybersecurity vision, ensuring our platform, products, people, and data remain secure while enabling innovation and business growth. You are the kind of leader who builds security into everything, protecting every digital doorway without slowing down the movement of global trade. From strategic risk management and governance to incident response and security engineering, you'll foster a culture where security is a business enabler, not a roadblock.
Responsibilities:
* Develop, implement, and continuously enhance our enterprise-wide cybersecurity strategy, policies, standards, and governance framework.
* Lead our information security program to protect the confidentiality, integrity, and availability of information assets.
* Identify, assess, and manage cybersecurity risks, ensuring appropriate controls are implemented to mitigate business and technology risks.
* Oversee security operations, including threat monitoring, vulnerability management, incident response, and remediation activities.
* Direct the development and execution of incident response, disaster recovery, and business continuity plans.
* Establish and maintain security architecture and best practices across cloud infrastructure, network, endpoint, application, and data environments.
* Ensure compliance with applicable laws, regulations, contractual obligations, and industry standards, and support internal and external audits.
* Develop and maintain security policies, procedures, and awareness programs that promote a strong culture of cybersecurity across the organization.
* Advise executive leadership and the Board of Directors on cybersecurity strategy, emerging threats, risk posture, and investment priorities.
* Lead and mentor the information security team, fostering professional development, accountability, and operational excellence.
* Manage cybersecurity budgets, evaluate emerging technologies, and recommend investments that improve the organization's security capabilities.
* Oversee identity and access management, data protection, encryption, and privileged access controls.
* Collaborate with SRE, IT, R&D, legal and business leaders to integrate security into organizational processes and strategic initiatives.
* Manage third-party and vendor cybersecurity risk assessments, ensuring external partners meet organizational security requirements.
* Monitor the evolving threat landscape and implement proactive measures to address emerging cybersecurity risks and improve the organization's overall security maturity.
Hybrid:
Yes
Requirements:
* Bachelor's degree in Information Security, Computer Science, Information Technology, Cybersecurity, or a related field.
* 10+ years of progressive experience in information security or cybersecurity.
* 5+ years of leadership experience managing security teams and programs.
* Strong understanding of cybersecurity frameworks such as NIST CSF, ISO/IEC 27001, CIS Controls, and COBIT.
* Experience presenting cybersecurity strategy to executive leadershi
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8769416
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
חברה חסויה
Location: Or Yehuda
Job Type: Full Time
We are looking for CISO to lead and strengthen the security posture of our organization. In this role, you will drive security strategy, governance, and operational excellence across customer-facing services, enabling business growth while maintaining customer trust and compliance.
Your mission:
Lead the security strategy and governance for all service-delivered platforms and environments
Define and enforce security standards across SaaS, managed services, and customer-hosted solutions
Partner with Services, R&D, IT, Product, and Customer-facing teams to embed security across operations and delivery
Lead customer-facing security engagements including audits, escalations, and due diligence processes
Establish and oversee security controls, monitoring, and incident response capabilities across production environments
Drive Secure Software Development Lifecycle practices in collaboration with R&D and Product teams
Ensure compliance with industry standards and customer security requirements including SOC2 and ISO27001
Define KPIs, reporting frameworks, and continuous improvement processes for services security.
Requirements:
Education:
Bachelors degree in Computer Science, Information Systems, Cybersecurity, Engineering, or a related technical field
MBA or advanced degree in Cybersecurity or Business - an advantage
Relevant certifications such as CISSP, CISM, CCSP, or ISO27001 Lead Auditor - strong advantage
Experience Required:
8+ years of experience in cybersecurity and information security
At least 5 years in leadership or senior management roles within SaaS, Cloud, or Services organizations
Proven experience working with enterprise customers, security audits, compliance reviews, and security questionnaires
Strong hands-on understanding of Cloud Security, Application Security, and Security Operations
Experience driving cross-functional initiatives across R&D, IT, Services, Sales, and Compliance teams
Key Personal Attributes:
Strong leadership and influence skills across multiple organizations
Business-oriented mindset with understanding of securitys impact on revenue and customer trust
Excellent communication and executive presentation abilities.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8836782
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
06/09/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a highly skilled, technical, and multidisciplinary Deputy CISO to join our Bank's Information Security team. Reporting directly to the CISO, this key position serves as a right-hand lead in shaping technological strategy, managing risk, and implementing security policy. The role operates as a Senior Individual Contributor (IC) requiring high independence and real-world hands-on capabilities, and a strong 'all hands on deck' mindset.
Responsibilities
Strategic & Tech Partnership: Collaborate with the CISO and CIO to design security architecture, implement advanced solutions, and lead end-to-end tech projects.
Cloud Security & DevSecOps: Guide development teams, define secure cloud architectures, and enforce SSDF.
Hands-on Execution: Evaluate and deploy security technologies, analyze cyber/infrastructure incidents, and write/review code and scripts.
GRC & Banking Compliance: Lead GRC end-to-end, manage external pen-testing vendors, handle third-party/supply chain risk, ensure compliance with Bank of Israel regulations, and support audits.
Requirements:
5-10 years of experience in InfoSec and technology as a senior independent function.
Strong cloud security expertise (AWS preferred; Azure/GCP accepted).
Hands-on development background or deep technical understanding of CI/CD, containers, Microservices, and API Security.
Hands-on proficiency at the code, network, and infrastructure levels.
Excellent interpersonal skills and broad business vision, and strong collaborative abilities.
Advantages
Certifications: CISSP, CISM, CISA, CCSP, or AWS/Cloud Security certifications.
Experience with financial platforms or core banking systems.
Real-time Incident Response (IR) experience.
Deep acquaintance with banking GRC and Bank of Israel guidelines.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8810825
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
26/08/2026
Location: Ramat Gan
Job Type: Full Time
Were looking for our next Manager, Cybersecurity Governance, Risk & Compliance. Could It Be You?
The Manager, Cybersecurity Governance, Risk & Compliance is a hands-on people manager accountable for cybersecurity compliance, audit delivery and risk management across our regulated entities. She/he will personally lead the SOC 2 Type II and ISO 27001 audit cycles, own the cybersecurity control framework and enterprise cybersecurity risk register, and build, coach and manage a small team of one to two GRC specialists. The role operates in a dual regulatory environment covering CIRO regulated dealer and wealth entities and OSFI regulated federal financial institutions, and is based in Israel working Toronto business hours.
Need more details? Keep reading
In this role, responsibilities include but are not limited to:
Audit delivery: Lead SOC 2 Type II readiness and the annual audit cycle end to end, including the evidence plan, control owner coordination, sampling, auditor requests and report issuance.
Certification: Drive ISO/IEC 27001:2022 readiness and certification, covering ISMS scope, Statement of Applicability, risk treatment plan, internal audit programme, management review and nonconformity closure.
Framework assessment: Manage NIST CSF 2.0 current and target profile assessments, including externally performed assessments, and produce the gap driven remediation roadmap that follows.
Requirements:
So are YOU our next Manager, Cybersecurity Governance, Risk & Compliance? You are if you
7+ years of relevant experience in cybersecurity governance, risk and compliance, IT audit or technology risk, including at least 2 years leading people or leading a workstream with junior staff assigned.
Demonstrated ownership of at least one full SOC 2 Type II audit cycle as the internal lead, from readiness through to report issuance.
Hands-on ISO/IEC 27001 implementation or audit experience, ideally through a full certification or recertification cycle.
Working fluency in NIST CSF 2.0, including organisational profiles, implementation tiers and cross framework mapping.
Experience in a regulated financial services environment such as banking, brokerage, wealth management, payments or fintech.
Practical risk management experience covering risk registers, risk treatment plans, risk acceptance and residual risk reporting to senior stakeholders.
Experience assessing cloud control environments, particularly GCP or AWS, including identity and access management, logging and configuration controls, rather than reviewing policy documentation alone.
Strong written and verbal communication, presentation and technical writing skills, at a standard suitable for auditors, regulators and Board level readers.
Ability to operate independently across time zones within a geographically distributed team and with limited day to day supervision.
Comfortable challenging control owners constructively and holding remediation commitments to agreed dates.
Strong organisational agility, able to run multiple concurrent audit and assessment cycles without losing evidence integrity.
Additional kudos if you
CISA, CRISC, ISO 27001 Lead Auditor or Lead Implementer, CISM, CISSP, or an equivalent relevant work experience.
Knowledge of SOC 2 Trust Services Criteria, ISO/IEC 27001:2022 and Annex A controls, NIST Cybersecurity Framework 2.0 and NIST SP 800-53.
Familiarity with OSFI B-13, B-10 and E-21, and CIRO cybersecurity expectations, or demonstrated ability to learn a new prudential regime quickly.
Familiarity with Canadian privacy obligations including PIPEDA and Quebec Law 25.
Familiarity with GRC and cloud security platforms such as ServiceNow IRM, Salt, ZScaler, Cloudflare, F5, FortiGate, Palo-Alto, Drata or Wiz.
Familiarity with PCI DSS and MITRE ATT&CK is considered an asset.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8797667
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
24/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
Required Director Application Security
About the Role:
As the Director of Product Security, you will spearhead our efforts to fortify and enhance the security posture of our products and runtime environments and play a critical leadership role in overseeing the design, implementation, and maintenance of security controls for the organizations complex product applications, platform, development and cloud infrastructure.
You will lead a team of security experts and collaborate closely with engineering, product, and other business units to ensure the security and integrity of our applications, platforms, cloud infrastructure, and code stack against current & evolving threats.
Your leadership will be instrumental in embedding security best practices throughout the development and operations pipeline, ensuring a secure and scalable product environment. You will also drive the strategy, development, and implementation of a comprehensive application security program across our cloud-based applications.
Reporting line: VP Security Engineering
What Youll Do:
Strategic Leadership and Team Management:
Strong leadership skills to develop and lead the strategic direction for the Application and Cloud Security teams.
Lead risk assessments, threat modeling, and secure design reviews of cloud platforms to proactively identify vulnerabilities and ensure compliance with security standards.
Oversee the design, implementation, and maintenance of security controls across multi-cloud environments (AWS, GCP, Azure) to protect infrastructure and applications.
Experience in collaborating with cross-functional teams, including engineering, product management, and customer support, to embed security into product development and all aspects of cloud deployments.
Requirements:
Expertise in Application & Cloud Security Technologies:
Strong background in hands-on development skills, deep knowledge of AWS & Azure cloud platforms with a focus on offensive security techniques.
Familiarity with application security practices, threat modeling, penetration testing, red teaming, and fuzz testing, to identify and remediate vulnerabilities in applications and cloud environments.
Drive the adoption of cutting-edge infrastructure cloud security technologies, including data security, encryption, identity and access management (IAM), and network security.
Expertise in using tools (e.g. CSPM, IaC, SAST, secrets management etc) and methodologies for advanced security analysis, triage of vulnerabilities and other security operations.
Advantage: Knowledge of cryptographic principles and best practices, including the implementation of encryption, hashing, and digital signatures in applications and managing keys and secrets in cloud environments.
Requirements:
At least 7+ years of experience in security architecture, software development, cloud security, or a related field
At least 5 years in a leadership role.
Engineering background - MUST
Proven leadership skills with a track record of leading high-performing security teams in a fast-paced, technology-driven environment.
Excellent communication and interpersonal skills, with the ability to articulate complex security concepts to technical and non-technical audiences.
Professional security certifications (e.g., CISSP, CISM, CCSP, OSCP) are highly desirable.
Strong technical background in cloud services, DevOps, orchestration tools (e.g., Kubernetes), and cloud-native security tools (CSPM, CWPP).
Excellent communication and stakeholder management skills, with the ability to influence security initiatives across cross-functional teams.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8794651
סגור
שירות זה פתוח ללקוחות VIP בלבד