דרושים » אבטחת מידע וסייבר » Senior Threat Intelligence Researcher

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 2 שעות
Location: Tel Aviv-Yafo
Job Type: Full Time
At Alice, our Cyber Threat Intelligence group thrives on curiosity and deep technical dive capabilities. We are looking for a Senior Threat Intelligence Researcher with a passion for CTI and a background in proxy research/ anti-bot defense/ web-scraping /threat hunting, with a proven ability to take initiative and conduct independent research with a track record of high-level results. In other words, not just an individual contributor, but a true talent that is seeking to make a mark in the industry. You will lead technical threat research, author analytical reports, and proactively monitor ongoing and emerging threats to keep us steps ahead of adversaries. Responsibilities
* Hunting, detecting, monitoring, and researching threats against Alice clients.
* Analysis of threat groups and TTPs across different fraudulent ecosystems.
* Researching and monitoring multiple sources through the clear, deep, and the dark web.
* Produce technical reports for clients describing threat actor TTPs, analysis and exploits relevant for Alice’s clients. Work closely with client account leads and stakeholders, as well as collaborating with fellow analysts to produce intelligence reports.
* Review, enrich and provide analyst tradecraft for other team members as part of the delivery process. Prepare assessments of current threats and trends based on collection, research and analysis of classified intelligence collected by the teams.

About Alice:
Alice is a trust, safety, and security company built for the AI era. We safeguard the communicative technologies people use to create, collaborate, and interact- whether with each other or with machines. In a world where AI has fundamentally changed the nature of risk, Alice provides end-to-end coverage across the entire AI lifecycle. We support frontier model labs, enterprises, and UGC platforms with a comprehensive suite of solutions: from model hardening evaluations and pre-deployment red-teaming to runtime guardrails and ongoing drift detection. Alice is widely considered a global leader in online safety and AI security. We have some of the most forward-thinking and passionate minds in the world working to safeguard over 3 billion users across the largest AI and tech platforms. If you're creative and driven to secure the future of AI, we want to hear from you!
Requirements:
Must Have
* Experience in one of the following fields:
* - Anti-bot detection/research
* - Proxy detection/research
* - Web scraping development/detection/prevention
* Experience in technical CTI threat hunting - databases, IPv4/IPv6 intelligence,
* Experience with threat hunting platforms: VirusTotal, UrlScan, Greyhat Warfare, Shodan
* Experience in analyzing threat groups and actors using OSINT, WEBINT methodologies
* Darkweb and Cybercrime intelligence experience
* Strong English communication skills: ability to clearly communicate intelligence by writing reports, or briefing clients and other stakeholders
* Must have demonstrated experience in gathering and evaluating internet information from social media, chats and darknet forums
* Great verbal and written communication skills Nice to Have
* Scripting (Python, BASH, and/or equivalent)
* Experience in operating threat intelligence collection platforms: Intel471, Recorded Future, CyberSixgill, Flashpoint and/or equivalent
* Foreign language proficiency
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8845434
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
7 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
Required Senior Threat Intelligence Researcher
As a Senior Threat Intelligence Researcher, you will be responsible for tracking advanced adversaries and leveraging your deep technical expertise across attacker capabilities, infrastructure, and tactics. You will create and refine approaches to uncover and monitor active threat actors, as well as surface irregular and emerging behaviors in the broader threat landscape. The intelligence you generate will directly strengthen our understanding of threat actors and will inform proactive hunting, detection engineering, and defensive decision-making.
Responsibilities
Lead complex threat intelligence investigations through in-depth analysis of the global threat landscape, with a focus on advanced and state-linked actors.
Define and prioritize threat research focus areas (actors, campaigns, sectors, techniques) aligned with our customers and product roadmap.
Deliver actionable cyber threat intelligence and design and execute hunting campaigns using analytics, automation, and advanced AI capabilities.
Curate and maintain structured knowledge on actors, campaigns, infrastructure, and TTPs in our internal threat knowledge base.
Work closely with CyberAI researchers on the development of next-generation artificial cyber researchers and AI-driven analysis capabilities.
Requirements:
7+ years of experience in cyber security, with significant hands-on experience in threat intelligence research focused on APTs or state-linked actors.
Detailed understanding of existing APT groups historical activities, TTPs, motivations, and targeting patterns.
Strong investigative mindset, high level of intellectual curiosity, and comfort working with incomplete or ambiguous data.
Proficiency in infrastructure research, including WHOIS, passive DNS, SSL certificate analysis, BGP/ASN data, and platforms such as Censys and VirusTotal.
Strong written and verbal communication skills, with experience producing clear and concise threat intelligence reports or briefs.
Experience in software development and data analysis (e.g., Python, Jupyter, or similar) to support investigations and hypothesis testing.
Experience researching or defending government or critical infrastructure organizations- Advantage.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8836143
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
The Exposure Management Research Group at our company Software Technologies is expanding. We are looking for an experienced Offensive Security Researcher to join our newly formed AEV Team and lead the offensive side of our Agentic Exposure Validation (AEV) research.
About the group
The Exposure Management Research Group is the research arm behind our company's Exposure Management platform. The platform helps organizations see and reduce their risk from the outside in, across their external attack surface, threat intelligence, and digital risk. The group brings together vulnerability researchers, threat intelligence analysts, phishing researchers, and data scientists. Together, we track threat actors and campaigns, analyze vulnerabilities and active exploitation, and turn that research into detections, intelligence, and validation capabilities that serve thousands of customers worldwide. Our work relies heavily on data science, machine learning, and agentic AI to operate at scale.
About the position
Exposure validation goes beyond identifying that a vulnerability exists. Its purpose is to show whether an attacker could actually exploit that vulnerability, and how far they could get. In this position, you are responsible for bringing real offensive expertise into our AEV capability, which runs on an agentic AI system that validates exposures across our customers' environments.
You conduct hands-on offensive research, define the exploitation methodologies the system follows, and set the standard for what a validated, customer-ready finding looks like. You also work closely with our threat intelligence and detection teams, so that proven attack paths turn into protections for our customers.
This is a research position with direct product impact. It combines practical red team work with shaping how an AI-driven platform conducts, reasons about, and reports offensive activity.
What you'll do
Design and run offensive research against external attack surfaces: web applications, APIs, cloud-exposed services, identity, and edge infrastructure
Turn single findings into demonstrated impact through exploit chaining, lateral movement, and blast-radius analysis
Write and maintain the exploitation methodologies and attack hypotheses our agentic AEV engine runs on
Review agent runs and findings. Separate proven impact from claimed impact, and turn the gaps you find into better prompts, methods, and guardrails
Set the bar for customer-ready findings: a clear impact story, a reproducible chain, and remediation guidance a security team can act on
Work with threat intelligence researchers to turn in-the-wild attacker behavior (named actors, active campaigns, newly exploited vulnerabilities) into validation plays
Help close the purple loop by turning proven attack paths into detection and protection logic, and working with detection engineering on coverage
Contribute to the team's research output, including internal knowledge sharing and, where it fits, external publications and talks.
Requirements:
2+ years of hands-on offensive security experience: red teaming, penetration testing, or offensive research
Real exploitation depth beyond confirming vulnerabilities, including exploit chaining, privilege escalation, lateral movement, and showing business impact
Comfort with the non-deterministic side of offense: business logic flaws, misconfigurations, credential and token abuse, and using information disclosure as an entry point
Strong scripting and automation skills (Python preferred)
Clear written communication. You can explain a complex attack chain to an engineer and to a CISO
Strong advantage
A consulting background covering many customer environments, not one internal estate. You know what customers value in an engagement deliverable and how to present it
Broad exposure to defensive technologies, security controls, and vendors, and an understanding of what attacks look like from the defender's side.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8841884
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
The Threat Landscape Operations team is a key part of our company Research. It is responsible for conducting threat research and developing some of our companys major research assets.
The team focuses on analyzing and tracking cybercrime, developments in AI, hacktivist activity, and emerging adversary trends. Its research supports strategic and operational intelligence, thought leadership, and the development of advanced security technologies.
Working with us will give you access to unique data sources and visibility into some of the worlds most advanced cyberattacks. You will lead exciting research projects for public release, customers, and internal stakeholders.
We are looking for an experienced, proactive, and independent team leader who can lead dynamic, in-depth research and shape the teams long-term vision.
Major Responsibilities
Lead a team of experienced Dark Web and OSINT researchers and define the teams vision, priorities, and research strategy.
Develop innovative research content for external publication.
Own major research projects and assets, including the Annual Security Report and Annual AI Security Report.
Gather and analyze intelligence on cyberattacks to build a comprehensive picture of the threat landscape for internal stakeholders and public reporting.
Build, maintain, and continuously evaluate a diverse set of reliable intelligence sources.
Identify emerging trends, malware, threat actors, and significant intelligence developments at an early stage.
Collaborate with researchers and internal stakeholders to contextualize findings and improve threat coverage.
Maintain high analytical and research standards, including rigorous sourcing, attribution, and methodology.
Requirements:
Experience leading a cyber threat intelligence or threat research team.
At least 6 years of experience in cyber threat intelligence or cybersecurity research.
Demonstrated experience writing public blog posts and in-depth research papers.
Strong knowledge of the cyber threat landscape and intelligence methodologies.
Excellent written and spoken English, with the ability to present research to customers and other external audiences.
Strong WEBINT research and virtual HUMINT skills, including source discovery, validation, and long-term source management, are an advantage.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8841208
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
6 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
We are expanding our renowned and respected Threat Intelligence Research team with a dedicated focus on online applications, APIs, and modern automated threats. We are seeking a passionate, innovative, Cyber Threat Intelligence Researcher (Associate/Mid-Level profile) to support research efforts focused on Web Application Security, Online APIs, and Bot Management.
Key Responsibilities
Threat Research & Analysis:
Track, analyze, and qualify global security threats targeting Web Applications, Online APIs, and Bot Management solutions.
Monitor threat actor ecosystems and forums.
Uncover and describe infrastructure trends, new attack vectors, and automated attacks trends.
Mine, analyze, and visualize attack data leveraged from public, underground and internal sources to identify emerging trends.
Thought Leadership & Content Creation:
Contribute to threat intelligence reports and author research papers, technical advisories, and regular blog posts on emerging and breaking threats and application attack trends.
Summarize findings into clear and actionable insights for technical and business audiences.
Create customer-facing presentations and research materials; present your findings in front of internal and external audiences.
Requirements:
Education & Experience
Education: Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field.
Experience: 1-3 years of experience in cybersecurity, threat intelligence, and hands-on experience in web application, API, or cloud security research.
Underground Ecosystems: Familiarity with dark web/underground forums, cybercrime marketplaces, and threat actor communication channels is a strong advantage.
Work Environment & What We Offer
Flexibility: Office-first with the flexibility to work remotely depending on your geography.
Collaborate closely with internal marketing, product, security engineering, and field sales teams to translate intelligence into actionable business value.
Autonomous Culture: Work in a result-oriented environment where performance is evaluated on output, innovation, and impact, supported by senior leadership.
Global Exposure: Opportunities for global travel to attend and present at major cybersecurity conferences and industry events.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8837746
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
About The role
Hunt, investigate, and analyze advanced persistent threat (APT) activity across endpoints, servers, cloud, and network infrastructure. partner with our Threat Intelligence team to resolve complex intrusions in customer networks. You'll uncover stealthy adversary behavior, reconstruct attack chains, and build the tools and methods that make our hunting and forensics better. You'll also present original research at top-tier industry conferences and
Key Responsibilities
Hunt and investigate targeted intrusions, long-dwell compromises, and espionage- driven activity across enterprise, cloud, identity, and network environments.
Perform advanced forensics across operating systems, cloud, memory, and network telemetry; correlate signals to determine the scope of compromise.
Build innovative tooling, research systems, and hunting/investigation workflows; identify capability gaps and propose automations to close them.
Produce clear reports, forensic timelines, threat-actor assessments, and actionable detection and remediation guidance.
Support internal security, threat intelligence, detection engineering, and investigation teams with expert forensic findings and technical analysis.
Partner with the Threat Intelligence team to resolve complex intrusions in customer networks.
Represent the organization through conference talks, workshops, and original research.
Requirements:
Extensive hands-on APT hunting, intrusion investigation, and digital forensics.
Deep understanding of APT tradecraft - stealth, persistence, credential abuse, defense evasion, living-off-the-land, custom tooling, supply-chain compromise, and command-and-control.
Broad forensic expertise across operating systems, cloud platforms, network and edge infrastructure, and memory, using industry-standard forensic and hunting tools.
Telemetry analysis across security platforms (EDR, SIEM, network, and identity systems) and the ability to build detection and hunting logic.
Strong development skills in Python (and ideally another language such as Go, C/C++, or PowerShell) to build tooling, automations, and analysis pipelines.
Strong communication for technical and executive audiences, including conference-grade presentations.
Represents the organization publicly, delivering talks, workshops, and research at top-tier cybersecurity and forensics conferences.
Nice to Have
Malware analysis and reverse engineering.
Experience with enterprise EDR/XDR and SIEM platforms.
Container, SaaS, and hybrid-cloud investigation experience.
Threat-intel collaboration; published research or prior conference talks.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8840722
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
23/09/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
Required Principal / Sr. Principal Security Research - Advanced Cyber Research (Cortex)
We are seeking a visionary and highly technical Principal / Sr. Principal Security Researcher to join our security research team. In this role, you will be at the forefront of innovating automated defense systems to rapidly protect platform customers against advanced cyber threats at an unprecedented scale. This position offers a unique opportunity to blend deep traditional cybersecurity expertise - including OS internals, reverse engineering, and advanced detection engineering with cutting-edge AI technologies like LLMs, SLMs, and agentic workflows.
You will spearhead the creation of innovative prevention solutions, leveraging massive streams of agent telemetry to design AI-driven logic that neutralizes threats before they execute. As a key technical leader, you will partner closely with top-tier data scientists and product engineers to translate cutting-edge security research into production-grade capabilities, ensuring we stay ahead of the evolving threat landscape.
Key Responsibilities:
Develop Automated Defense Systems:Create, engineer, and deploy automated solutions for the prevention and detection of advanced cyber threats, analyzing complex data to rapidly protect platform customers at scale.
Innovate with AI:Partner closely with data scientists to leverage LLMs, SLMs & deeplearning techniques to fuel these advanced prevention solutions and automated defense capabilities.
Research, develop, and continuously improve the Agentix solution. Drive the development of next-generation security content by designing and implementing specialized AI agents to automate security operations and workflows.
Drive Security Innovations:Spearhead new research initiatives from the ground up. Act as the primary driver across key stakeholders, leading top-tier data scientists and engineers to ensure the successful delivery of enterprise-grade security capabilities.
Requirements:
Required Qualifications:
5+ years of hands-on experience in the cybersecurity research field.
Threat Research & OS Internals:Proven track record of applying deep cyber and analytical expertise to build robust security logic using endpoint telemetry. Supported by a profound understanding of Windows and Linux OS/kernel internals to engineer advanced defenses.
Reverse engineering experience:Demonstrated expertise in reverse engineering (e.g., IDA Pro, Ghidra) across multiple platforms to dissect malware and identify sophisticated attack vectors.
Programming & Native Code Comprehension:Strong proficiency in Python for data analysis and rapid prototyping, combined with the ability to comprehend native code (C, C++, or Rust) to effectively read and interpret agent code, low-level system interactions, and memory operations.
End-to-End Research Ownership:A scientific, data-driven approach to solving complex security challenges, with a proven track record of owning research initiatives from initial ideation through to the deployment of production-grade capabilities.
Communication & Mentorship:Excellent communication skills, with the ability to clearly articulate complex threat research to diverse audiences, mentor junior team members, and champion security initiatives across the organization.
Preferred Qualifications:
AI Agents & Frameworks:Hands-on experience developing and working with AI Agents and agentic workflows. Technical understanding of the architectural distinctions between an agent, a skill, and Model Context Protocol (MCP). Proven experience utilizing common agentic frameworks.
Data Scale & Telemetry Analysis:Proficiency in query languages (e.g., SQL) and big data platforms (e.g., GCP) to parse, manipulate, and query large-scale agent telemetry, extracting actionable security insights and uncovering threat patterns from massive datasets.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8830285
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking a visionary and highly technical Principal / Sr. Principal Security Researcher to join our security research team. In this role, you will be at the forefront of innovating automated defense systems to rapidly protect platform customers against advanced cyber threats at an unprecedented scale. This position offers a unique opportunity to blend deep traditional cybersecurity expertise - including OS internals, reverse engineering, and advanced detection engineering with cutting-edge AI technologies like LLMs, SLMs, and agentic workflows.
You will spearhead the creation of innovative prevention solutions, leveraging massive streams of agent telemetry to design AI-driven logic that neutralizes threats before they execute. As a key technical leader, you will partner closely with top-tier data scientists and product engineers to translate cutting-edge security research into production-grade capabilities, ensuring we stay ahead of the evolving threat landscape.
Key Responsibilities
Develop Automated Defense Systems:Create, engineer, and deploy automated solutions for the prevention and detection of advanced cyber threats, analyzing complex data to rapidly protect platform customers at scale.
Innovate with AI:Partner closely with data scientists to leverage LLMs, SLMs & deeplearning techniques to fuel these advanced prevention solutions and automated defense capabilities.
Enhance Palo Alto Networks Agentix:Research, develop, and continuously improve the Agentix solution. Drive the development of next-generation security content by designing and implementing specialized AI agents to automate security operations and workflows.
Drive Security Innovations:Spearhead new research initiatives from the ground up. Act as the primary driver across key stakeholders, leading top-tier data scientists and engineers to ensure the successful delivery of enterprise-grade security capabilities.
Requirements:
5+ years of hands-on experience in the cybersecurity research field.
Threat Research & OS Internals:Proven track record of applying deep cyber and analytical expertise to build robust security logic using endpoint telemetry. Supported by a profound understanding of Windows and Linux OS/kernel internals to engineer advanced defenses.
Reverse engineering experience:Demonstrated expertise in reverse engineering (e.g., IDA Pro, Ghidra) across multiple platforms to dissect malware and identify sophisticated attack vectors.
Programming & Native Code Comprehension:Strong proficiency in Python for data analysis and rapid prototyping, combined with the ability to comprehend native code (C, C++, or Rust) to effectively read and interpret agent code, low-level system interactions, and memory operations.
End-to-End Research Ownership:A scientific, data-driven approach to solving complex security challenges, with a proven track record of owning research initiatives from initial ideation through to the deployment of production-grade capabilities.
Communication & Mentorship:Excellent communication skills, with the ability to clearly articulate complex threat research to diverse audiences, mentor junior team members, and champion security initiatives across the organization.
Preferred Qualifications
AI Agents & Frameworks:Hands-on experience developing and working with AI Agents and agentic workflows. Technical understanding of the architectural distinctions between an agent, a skill, and Model Context Protocol (MCP). Proven experience utilizing common agentic frameworks.
Data Scale & Telemetry Analysis:Proficiency in query languages (e.g., SQL) and big data platforms (e.g., GCP) to parse, manipulate, and query large-scale agent telemetry, extracting actionable security insights and uncovering threat patterns from massive datasets.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8834333
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
28/09/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for an experienced Threat Researcher to join our Solution Architect team. This role combines deep cybersecurity research with hands-on work in customer and PoC environments, helping uncover real-world attack scenarios, demonstrate security value, and translate field insights into product capabilities.
Responsibilities
Analyze network devices, configurations, security products, and customer environments to identify security risks and attack opportunities.
Research and develop methods to discover network topology, device relationships, attack paths, and lateral movement opportunities.
Conduct security assessments to identify weaknesses and recommend effective detection and mitigation strategies.
Research and analyze emerging cyber threats, attack techniques, and adversary behaviors.
Drive hands-on threat research in customer and PoC environments, simulating and validating real-world attack scenarios through our Securitys platform.
Develop tools, scripts, and frameworks to automate security and network analysis.
Translate research findings into actionable customer insights, detections, and product capabilities.
Collaborate with Solution Architects, R&D and Product teams to integrate new research capabilities into the platform and deliver value to customers.
Act as a cybersecurity subject matter expert for our customers.
Generate and present a comprehensive and professional report of findings from investigations.
Requirements:
5+ years of hands-on cybersecurity experience, including experience in Incident Response, Threat Hunting or similar roles.
Deep understanding of advanced threats, attack vectors, adversary techniques, lateral movement, and the attack lifecycle.
Strong networking knowledge, including TCP/IP, routing, switching, firewalls, network topologies, and network security controls.
Strong understanding of security across Identity/IAM, Windows/Linux environments, cloud, virtualization, attack surface management, and attack-path analysis.
Hands-on experience with SIEM, EDR/XDR, threat intelligence, vulnerability management, and enterprise security products.
Experience with host-based investigation and forensic analysis, including OS artifacts and security controls across Windows and Linux/Unix.
Proficiency in Python or another scripting language for research, automation, and data analysis.
Strong research and problem-solving skills, with the ability to quickly learn and investigate unfamiliar technologies.
Excellent communication and collaboration skills, with the ability to turn complex technical research into customer and product value.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8836124
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Malware Group Manager to lead our endpoint protection and file security teams.
Someone with a passion for stopping malware where it lands, whether it comes through an email, or from the web, and for building the protections that keep our customers safe. Someone who wants to shape research and detection strategy across multiple teams, understand how attackers operate, and stay ahead of fast-moving threats, including zero-day attacks.
Our teams work across a rich stack: endpoint protection engines, file analysis and sandboxing, reverse engineering, and big data pipelines that turn raw telemetry into actionable threat intelligence and protections.
In this position you will lead several teams, set the technical and research, and make sure we deliver detection that works at scale.
Key Responsibilities
Lead and grow multiple teams and across endpoint protection and file security, and own the group's roadmap
Drive the group's AI transformation - bring GenAI and machine learning into how we research threats, build detection, and speed up our work
Set research and detection strategy, and align it with product and business goals
Drive endpoint and file protection capabilities that stop known and zero-day threats
Build a strong engineering and research culture and develop the next generation of leaders on your teams, and tooling to support them.
Requirements:
Desired Background
A seasoned group manager with 3+ years of experience in Cyber Security, including leading teams and/or team leaders.
A strong background in malware research, endpoint protection, or file security
Experienced change leader with demonstrated AI transformation leadership
Proven ability to set technical direction and deliver across multiple teams
A problem solver, capable of finding creative solutions and getting things done
Fluent in English
It would be great if you also have:
Hands-on background in reverse engineering, detection research, or threat intelligence
Experience applying AI or machine learning to security problems
Published material, Public speaking or conference presentations.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8841802
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
10/09/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
This is a hands-on role that balances deep technical work along with building and running the function: the Lead drives high-severity incidents end-to-end, serves as the escalation ceiling, and sets the standards and structure the team operates by.

Youre welcome to work in our offices in Tel Aviv, Israel.

Your responsibilities will include:

Build and lead global DFIR capability - select and mature DFIR tooling, and establish the playbooks and follow-the-sun operating model across EMEA, Asia, and APAC while hiring and developing a team of responders.
Lead the technical response to major incidents hands-on - from escalation through containment, eradication, and recovery - and act as the final technical authority on the most complex cases.
Personally conduct end-to-end forensic investigations across cloud, platform, and endpoint environments - log analysis at scale, host and network forensics, memory analysis, malware triage, and timeline reconstruction.
Define and enforce consistent investigation standards across the team: severity and escalation criteria, cross-region handoff quality, and evidence handling that meets legal, regulatory, and forensic requirements.
Partner with the SOC, SOC Automation, Threat Intelligence, Threat Hunting, and Platform Security teams to improve detection fidelity and reduce MTTD and MTTR.
Serve as the technical voice of incident response to executive leadership, Legal, and Privacy - delivering clear, risk-based briefings, regulatory-ready documentation, and root cause analyses (RCA).
Raise the teams technical bar through case reviews and hands-on mentoring, and drive lessons-learned into measurable improvements in controls and readiness.
Requirements:
7+ years of hands-on incident response and digital forensics, including technical leadership of large-scale, high-impact incidents (ransomware, nation-state / advanced threat actors, cloud intrusions, identity compromise).
Experience building or leading IR teams and capabilities in cloud or infrastructure-heavy environments, which are highly regulated (SOC 2, ISO 27001, GDPR/NIS2).
Technical Expertise

Deep knowledge of Windows and Linux internals, with proven disk and memory forensics capability.
Strong cloud-native platform security: containers and Kubernetes, CI/CD, secrets management, cloud control planes, and IAM attack paths.
Fluency in attacker TTPs (MITRE ATT&CK, including the Cloud and Containers matrices), and hands-on experience with EDR, SIEM, and forensic tooling (e.g., Velociraptor, Volatility, X-Ways/EnCase).
Strong scripting and data-analysis skills (Python, PowerShell, SQL/KQL) for investigation at scale, with the ability to validate findings independently and challenge assumptions.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8818167
סגור
שירות זה פתוח ללקוחות VIP בלבד