משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP

חברות מובילות
כל החברות
כל המידע למציאת עבודה
5 טיפים לכתיבת מכתב מקדים מנצח
נכון, לא כל המגייסים מקדישים זמן לקריאת מכתב מק...
קרא עוד >
הטבות ובונוסים בעבודה בחברות הייטק
מכון כושר צמוד, חדר אוכל משובח, חדר משחקי וידאו...
קרא עוד >
טעויות נפוצות בניהול קריירה
הדרך לחיים של חוויות והזדמנויות עוברת דרך תכנון...
קרא עוד >
לימודים
עומדים לרשותכם
מיין לפי: מיין לפי:
הכי חדש
הכי מתאים
הכי קרוב
טוען
סגור
לפי איזה ישוב תרצה שנמיין את התוצאות?
Geo Location Icon

משרות בלוח החם
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
דרושים בAlljobs Match
Job Type: Full Time
AllJobs, located in Netanya, is looking for an Information Security & Cybersecurity Specialist.
Responsibilities

Ongoing monitoring of security systems, including alerts received from SOC and SIEM platforms.
Receiving alerts and providing initial response to information security incidents as part of a 24/7 on-call rotation.
Conducting initial investigations of security alerts and incidents, assessing their severity, and determining the appropriate course of action.
Escalating critical incidents and engaging IT, infrastructure, development teams, and external security vendors as needed.
Managing information security incidents and tracking them through full resolution.
Continuously monitoring security vulnerabilities and CVEs relevant to the companys systems.
Assessing vulnerability severity, prioritizing remediation efforts, and coordinating the installation of security updates.
Working with Radware WAF systems, including log analysis, reviewing blocked traffic, handling exceptions, and updating security rules.
Working with Firewall systems, including reviewing rules, opening network access, reducing permissions, and analyzing logs.
Handling employee reports regarding phishing messages or suspicious activity.
Reviewing links, attachments, sender identity, and additional recipients in suspected phishing incidents.
Conducting phishing simulations for employees, analyzing results, and producing insights and recommendations.
Delivering training sessions and presentations to raise awareness of information security and cyber risks.
Writing, updating, and implementing information security policies and procedures across the group of companies.
Conducting periodic audits related to permissions, data retention, data transfer, and system access.
Documenting security incidents, findings, actions taken, and recommendations for future improvement.
Preparing periodic reports covering incidents, open vulnerabilities, remediation status, and key risks.
Requirements:
3-5 years of hands-on experience in information security, cyber operations, or Security Operations roles.
Experience working with SIEM systems or with a SOC team.
Ability to read, analyze, and investigate logs from security systems, servers, and network components.
Hands-on experience responding to information security alerts and incidents in real time.
Experience working with Firewall systems and analyzing network rules.
Hands-on experience working with WAF systems.
Experience in vulnerability management, CVE monitoring, and prioritizing security updates.
Strong understanding of network protocols, IP addresses, ports, DNS, HTTP, and HTTPS.
Good knowledge of Windows environments, Active Directory, user permissions, and endpoints.
Experience handling phishing incidents and suspicious email messages.
Ability to write procedures, working documents, and incident investigation reports.
Ability to work independently and make decisions under pressure.
Ability to manage multiple incidents and tasks simultaneously and follow them through to completion.
Ability to work effectively with both technical and non-technical stakeholders.
Ability to deliver clear and accessible security training to employees.
Willingness to participate in a 24/7 on-call rotation and handle information security incidents outside regular working hours, including evenings, nights, weekends, and holidays, depending on the nature and severity of the incident.
Ability to respond quickly, connect remotely, and begin investigating and handling critical incidents.
Availability to engage IT, infrastructure, development teams, and external vendors when required.
Good technical English.

Advantages

Hands-on experience with WAF systems.
Experience working with an external SOC or MSSP.
Experience working within a group of companies or in a multi-system environment.
Familiarity with Microsoft 365, Azure, or another cloud environment.
This position is open to all candidates.
 
Show more...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8759855
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
דרושים בAlljobs Match
סוג משרה: משרה מלאה
לחברת אולג'ובס היושבת בנתניה, דרוש/ה איש/ת אבטחת מידע וסייבר.

התפקיד כולל:
* ניטור שוטף של מערכות האבטחה, לרבות התראות המתקבלות ממערכות SOC וSIEM.
* קבלת התראות ומתן מענה ראשוני לאירועי אבטחת מידע במסגרת כוננות 24/7.
* ביצוע תחקור ראשוני של התראות ואירועי אבטחת מידע, הערכת חומרתם והחלטה על המשך הטיפול.
* הסלמת אירועים קריטיים והפעלת צוותי IT, תשתיות, פיתוח וספקי אבטחה בהתאם לצורך.
* ניהול הטיפול באירועי אבטחת מידע ומעקב אחריהם עד לסגירה מלאה.
* מעקב שוטף אחר חולשות אבטחה וCVEs הרלוונטיים למערכות החברה.
* הערכת חומרת החולשות, תיעדוף הטיפול ותיאום התקנת עדכוני אבטחה.
* עבודה שוטפת עם מערכת WAF של Radware, לרבות ניתוח לוגים, בדיקת חסימות, טיפול בחריגים ועדכון חוקים.
* עבודה עם מערכות Firewall, כולל בחינת חוקים, פתיחת תקשורת, צמצום הרשאות וניתוח לוגים.
* טיפול בדיווחים של עובדים על הודעות פישינג או פעילות חשודה.
* בדיקת קישורים, קבצים מצורפים, זהות השולח ונמענים נוספים במקרה של אירוע פישינג.
* ביצוע סימולציות פישינג לעובדי החברה, ניתוח התוצאות והפקת מסקנות.
* העברת הדרכות והרצאות להעלאת המודעות לאבטחת מידע ולסיכוני סייבר.
* כתיבה, עדכון והטמעה של נהלי אבטחת מידע בקבוצת החברות.
* ביצוע בקרות תקופתיות בנושאי הרשאות, שמירת מידע, העברת מידע וגישה למערכות.
* תיעוד אירועי אבטחה, ממצאים, פעולות שבוצעו והמלצות להמשך.
* הכנת דוחות תקופתיים הכוללים אירועים, חולשות פתוחות, סטטוס טיפול וסיכונים מרכזיים.
דרישות:
* 3-5 שנות ניסיון מעשי בתפקידי אבטחת מידע, תפעול סייבר או Security Operations.
* ניסיון בעבודה עם מערכות SIEM או מול מוקד SOC.
* יכולת לקרוא, לנתח ולתחקר לוגים של מערכות אבטחה, שרתים ורכיבי תקשורת.
* ניסיון מעשי בטיפול בהתראות ובאירועי אבטחת מידע בזמן אמת.
* ניסיון בעבודה עם מערכות Firewall ובניתוח חוקי תקשורת.
* ניסיון מעשי בעבודה עם מערכות WAF.
* ניסיון בניהול חולשות אבטחה, מעקב אחר CVEs ותיעדוף עדכוני אבטחה.
* הבנה טובה בפרוטוקולי תקשורת, כתובות IP, פורטים, DNS, HTTP וHTTPS.
* היכרות טובה עם סביבות Windows, ‏Active Directory, הרשאות משתמשים ותחנות קצה.
* ניסיון בטיפול באירועי פישינג ובהודעות דוא"ל חשודות.
* יכולת כתיבת נהלים, מסמכי עבודה ודוחות תחקור.
* יכולת עבודה עצמאית וקבלת החלטות תחת לחץ.
* יכולת לנהל מספר אירועים ומשימות במקביל ולעקוב אחריהם עד לסגירה.
* יכולת עבודה מול ממשקים טכניים ולא טכניים.
* יכולת להעביר הדרכות לעובדים בצורה ברורה ונגישה.
* נכונות להשתלב בכוננות 24/7 ולטפל באירועי אבטחת מידע מחוץ לשעות העבודה, זמינות למענה בשעות הערב והלילה, בסופי שבוע ובחגים, בהתאם להתראות ולחומרת האירוע.
* יכולת להגיב במהירות, להתחבר מרחוק ולהתחיל בתחקור ובטיפול באירועים קריטיים.
* זמינות להפעלת צוותי IT, תשתיות, פיתוח וספקים חיצוניים במקרה הצורך.
* אנגלית טכנית ברמה טובה.

יתרון:
* ניסיון מעשי עם WAF.
* ניסיון בעבודה עם SOC או MSSP חיצוני.
* ניסיון בעבודה בקבוצת חברות או בסביבה מרובת מערכות.
* היכרות עם Microsoft 365, ‏Azure או סביבת ענן אחרת.
* ניסיון עם מערכות EDR, אנטיוירוס, DLP או מערכות סינון דוא"ל.
* היכרות עם תקן ISO 27001, מסגרת NIST או CIS Controls.
* היכרות עם תקנות הגנת הפרטיות ודרישות אבטחת המידע בישראל.
* הסמכות כגון Security+, ‏CySA+, ‏CEH או הסמכה מקבילה. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8759854
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות שנמחקו
ישנן -2 משרות בשרון אשר לא צויינה בעבורן עיר הצג אותן >