רובוט
היי א אי
stars

תגידו שלום לתפקיד הבא שלכם

לראשונה בישראל:
המלצות מבוססות AI שישפרו
את הסיכוי שלך למצוא עבודה

SOC/SIEM

מסמך
מילות מפתח בקורות חיים
סימן שאלה
שאלות הכנה לראיון עבודה
עדכון משתמש
מבחני קבלה לתפקיד
שרת
שכר
משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP

חברות מובילות
כל החברות
כל המידע למציאת עבודה
להשיב נכון: "ספר לי על עצמך"
שימו בכיס וצאו לראיון: התשובה המושלמת לשאלה שמצ...
קרא עוד >
לימודים
עומדים לרשותכם
מיין לפי: מיין לפי:
הכי חדש
הכי מתאים
הכי קרוב
טוען
סגור
לפי איזה ישוב תרצה שנמיין את התוצאות?
Geo Location Icon

משרות בלוח החם
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
דרושים בBDO
מיקום המשרה: תל אביב יפו והרצליה
BDO מגייסת SOC Analyst
ההזדמנות להצטרף לצוות סייבר מקצועי ודינמי בתפקיד משמעותי
עם עבודה על טכנולוגיות מתקדמות מבית Microsoft
מיקום: מרכז, היברידי

מה נדרש לתפקיד:
ניסיון של לפחות שנתיים בעבודה ב- SOC
שליטה במערכות Microsoft Security בדגש על Sentinel
ניסיון בניתוח אירועי אבטחת מידע ותגובה לאירועים
אנגלית ברמה טובה
הסמכות Microsoft - יתרון משמעותי
סיווג ביטחוני בתוקף - יתרון
מתאים למועמדים שמחפשים סביבת עבודה טכנולוגית, מקצועית ומאתגרת עם אפשרות להתפתח ולהעמיק בעולם הסייבר.
דרישות:
מה נדרש לתפקיד:
ניסיון של לפחות שנתיים בעבודה ב- SOC
שליטה במערכות Microsoft Security בדגש על Sentinel
ניסיון בניתוח אירועי אבטחת מידע ותגובה לאירועים
אנגלית ברמה טובה
הסמכות Microsoft - יתרון משמעותי
סיווג ביטחוני בתוקף - יתרון
מתאים למועמדים שמחפשים סביבת עבודה טכנולוגית, מקצועית ומאתגרת עם אפשרות להתפתח ולהעמיק בעולם הסייבר. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8660140
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
דרושים בבלופרינט סופטוור
מיקום המשרה: מספר מקומות
סוג משרה: משרה מלאה
תפעול של מערכות אבטחת מידע, טיפול שוטף במערכות ושיפור התצורה הקיימת. הטמעה של
מוצרי אבטחת מידע שונים וטיפול בתקלות.
זיהוי טיפול וניתוח של אירועים חשודים והפקת דוחות מסכמים.
בחינת מוצרי אבטחת מידע חדשים.
עבודה מול ממשקים שונים בארגון.
דרישות:
. ניסיון של לפחות 3 שנים בתחום אבטחת מידע בארגונים גדולים.
. ניסיון עם סביבות מבוססות Windows.
. ניסיון עם סביבות מבוססות לינוקס - יתרון.
. ידע והבנה בתקשורת TCP/IP.
. יכולת מוכחת בניהול אירועי סייבר.
. יכולת למידה עצמית.
. "ראש גדול".
. מחויבות אישית.

ניסיון עם לפחות 2 מהטכנולוגיות:
. מערכות SIEM - יכולת תחקור, כתיבת חוקים ופרסרים.
. מערכות FW - הבנה בתחקור וכתיבת חוקים.
. מערכות WAF.
. מערכות Endpoint Protection.
. מערכות DLP.
. מערכות Proxy. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8722717
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
דרושים באלעד מערכות
מיקום המשרה: מספר מקומות
סוג משרה: משרה מלאה ומשמרות
אם אתם חיים ונושמים סייבר ורוצים להיות בחזית הזיהוי והתגובה לאירועי אבטחת מידע - זו ההזדמנות שלכם להצטרף לצוות מקצועי ומשמעותי.

מה בתפקיד?
זיהוי, טיפול ותגובה לאירועי סייבר
ניטור מערכות SIEM וטכנולוגיות אבטחה מתקדמות
זיהוי חריגות בתעבורת רשת, מערכות ומערכות רפואיות
תחקור אירועי אבטחת מידע והצגת ממצאים
ניטור איומים באופן פרואקטיבי
עבודה מול צוותים שונים בארגון ותיעוד אירועים
דרישות:
קורס רלוונטי / תואר / ניסיון צבאי בתחום הסייבר - חובה
לפחות שנה ניסיון בעולמות SOC - חובה
היכרות עם SIEM, EDR, FW, Windows Event Logs - חובה
אנגלית ברמה גבוהה - חובה המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8801292
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
דרושים בוואן פתרונות טכנולוגיים בע"מ
מיקום המשרה: מספר מקומות
סוג משרה: משרה מלאה
- אחריות לטיפול מקצועי בחשד לאירועי סייבר
- פיקוח על הפעילות השוטפת של מרכז הניטור וניהול משימות של אנליסטים T1
- מעקב רציף על האירועים / חשד לאירועים
- ניהול משמרות ניטור
- הקצאה וניהול משימות במרכז הניטור
- הפעלת צוותים לניהול תגובה לאירועי סייבר
- ניהול ומעקב פערי ניטור מול הצוותים הרלוונטיים
דרישות:
לפחות שנה כאנליסט ב- SOC
לפחות שנה כמנהל צוות ב- SOC או כמנהל צוות תגובה
ניסיון בהגדרות חוקים במערכות ה- SIEM (יתרון ל-SPLUNK)
יכולת הובלה מקצועית
יכולת ראייה בוגרת
המשרה מיועדת לנשים ולגברים כאחד. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8165491
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
1 ימים
דרושים בQpoint Technologies
מיקום המשרה: מספר מקומות
סוג משרה: משרה מלאה
חטיבת הטכנולוגיות של חברת מקורות מגייסת נותן/ת שירות בודד/ת במשרה מלאה לתפקיד בקר/ית אבטחת מידע ( SOC ).
הזדמנות מצוינת להשתלב בארגון תשתית לאומי מוביל, לעבוד במערך אבטחת מידע מתקדם ולנהל אירועי סייבר בזמן אמת.
תיאור התפקיד:
ניטור, זיהוי וניתוח אירועי והתרעות אבטחת מידע בזמן אמת ממערכות ה- SIEM ומוקד הניטור המרכזי.
אבחון וטיפול באירועי סייבר, תיעודם, או ניתובם לצוותי תשתיות המחשוב ביחידת מערכות המידע ומעקב עד לסגירת האירוע.
תפעול שוטף של מערך שליחת הלוגים וההתרעות למוקדי הניטור וההתרעה של החברה.
ליווי וסיוע לצוותי התשתיות, אנשי התמיכה ומשתמשי המערכות בארגון בכל הקשור לאבטחת מידע.
דרישות:
ניסיון מקצועי: לפחות 3 שנות ניסיון כאיש בקרת מערכות ניטור ואבטחת מידע ( SOC / SIEM ).
השכלה והסמכה: תעודת הסמכה בקורס אבטחת מידע בהיקף של 100 שעות לפחות (מהארץ או מחו"ל).
ידע וניסיון במערכות אבטחת מידע שונות (Firewall, AV, IDS וכד').
היכרות מעמיקה עם מערכות הפעלה Windows.
היכרות עם טופולוגיית רשתות והבנה בסיסית בפרוטוקולי תקשורת. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8804472
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
דרושים בMertens – Malam Team
אנחנו מחפשים סוקר.ת PT חד.ה ויסודי.ת, עם יכולת מעשית לזהות חולשות, לנתח סיכונים ולהנגיש ממצאים מקצועיים לצוותי פיתוח וטכנולוגיה.
בתפקיד זה תבצע.י מבדקי חדירה 100% מהזמן במערכות Web ו-Mobile, בתשתיות, בסביבות AWS ו-Azure ובמערכות AI.
העבודה משלבת מתודולוגיות ותקנים מרכזיים ובהם OWASP, MITRE, NIST ו-PCI-DSS, לצד ביצוע סקרי סיכונים, בדיקות תאימות לרגולציה וכתיבת דוחות מקצועיים.
דרישות:
לפחות 3 שנות ניסיון בביצוע מבדקי חדירה למערכות ולאפליקציות Web ו-Mobile - חובה.
נכונות לעסוק בביצוע מבדקי חדירה לאורך 100% מהתפקיד - חובה.
ידע מעמיק במתודולוגיות תקיפה ובתקנים OWASP, MITRE ו-NIST - חובה.
הבנה בפרוטוקולי TCP/UDP, DNS, IP ו-HTTPS ובטכניקות תקיפת רשת - חובה.
היכרות עם AWS ו-Azure וניסיון בביצוע מבדקי חדירה בסביבות ענן - יתרון.
שליטה ב-PowerShell, ב-Bash, ב- JavaScript וב- Python, או ניסיון בעבודה בארגון פיננסי - יתרון.
זה הזמן להגיש קורות חיים דרך Mertens Malam Team, החברה הגדולה והמובילה במשק לגיוס טכנולוגי, ולבנות ולקדם איתנו את הקריירה הטכנולוגית שלכם. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8816760
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
1 ימים
דרושים בQpoint Technologies
מיקום המשרה: מספר מקומות
סוג משרה: משרה מלאה ומשמרות
לחברה גדולה בת"א דרוש/ה אנליסטים /ות SOC / בקרי/ות אבטחת מידע
ניטור, ניתוח, אבחון וטיפול באירועי אבטחת מידע והתראות בזמן אמת ממערכות הניטור וממוקד ניטור מרכזי ( SOC / SIEM ).
ניתוח אירועים באופן עצמאי או בשיתוף גורמי אבטחה ותשתיות, דיווח במערכות ניהול אירועים ומעקב עד לסגירה מלאה.
תפעול שוטף של מערך שליחת הלוגים וההתראות למוקדי הניטור.
ליווי וסיוע לצוותי תשתיות המחשוב, אנשי התמיכה ומשתמשי הקצה בארגון.
דרישות:
3 שנות ניסיון לפחות כאיש בקרת מערכות ניטור ואבטחת מידע ( SOC Analyst / SOC Operator).
תעודת הסמכה בקורס אבטחת מידע בהיקף של 100 שעות לפחות (מהארץ או מחו"ל) - חובה
ניסיון וידע בעבודה עם מערכות אבטחת מידע שונות ( SIEM, Firewall, AV, IDS וכדומה).
היכרות מעמיקה עם מערכות הפעלה Windows.
היכרות עם טופולוגיית רשתות והבנה בסיסית בפרוטוקולי תקשורת.
אוריינטציית שירות גבוהה, יכולת עבודה בצוות, סקרנות, רצון ללמוד ויכולת למידה מהירה.
זמינות: נכונות מלאה לעבודה במשמרות 24/7 (כולל סופ"ש וחגים). המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8801945
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
דרושים בתבל מטרו בע"מ
חברת תבל מטרו, שמפעילה ומתחזקת את הקו האדום של הרכבת הקלה, מחפשת מפעיל/ת SOC מקצועי/ת להצטרף לצוות אבטחת המידע שלנו ולפעול במרכז הבקרה בזמן אמת.

התפקיד כולל:
ניטור ותחקור מתקדם של אירועי אבטחת מידע במתקן בזמן אמת.
זיהוי, ניתוח וביצוע בדיקות מתמידות של איומי אבטחת מידע חדשים.
תיאום ודיווח עם גורמים רלוונטיים בארגון בהתאם לממצאים.
תחקור אירועי אבטחת מידע ברמת Tier 1 וכתיבת דו"חות מקצועיים.
פיתוח וכתיבת נהלים והוראות עבודה בהתאם לסטנדרטים הארגוניים.
דרישות:
ניסיון בעולמות ה SOC של חצי שנה לפחות - חובה.
זיקה לעולמות ה IT / לימודי אבטחת מידע - חובה
פרואקטיביות בתחום אבטחת מידע - יתרון.
הבנה ברשת ופרוטוקולי תקשורת - יתרון.
הכרות עם מוצרי אבטחת מידע כדוגמת:
SIEM, IPS, EDR, FW (Firewall), AV(Antivirus),NAC יתרון.
נכונות לעבודה במשמרות במשרה חלקית (3 פעמים בשבוע), כוננויות ועבודה בשעות לא שגרתיות ע"פ הצורך. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8788601
סגור
שירות זה פתוח ללקוחות VIP בלבד
לוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 2 שעות
Location: Tel Aviv-Yafo
Job Type: Full Time
You will be the only SOC analyst based in Israel, while the rest of the analyst team operates from the Philippines. You will act as the SOCs local anchor - the on-site technical counterpart for the Israel-based Cyber Security, IT, Operations, and R&D teams, and the escalation and knowledge bridge between them and the offshore shifts. The role calls for ownership, independence, and the appetite to build and improve, not only to operate.

Responsibilities

Monitoring and Detection: Continuously monitor SIEM, endpoint protection (EDR), IPS, mail security, CASB, cloud, and identity security solutions to identify potential threats.
Incident Response: Serve as one of the first levels of escalation for security incidents - investigate, contain, and drive resolution before escalating to the senior SecOps members, in accordance with defined procedures and SLAs.
Incident Coordination: Lead coordination of major incidents until ownership is transferred to the relevant SecOps, IT, Operations, or R&D team; ensure clear communication, escalation, and tracking of action items.
Threat Analysis: Analyze logs, network traffic, endpoint telemetry, and native (in-tool) alerts to determine root cause, scope, impact, and remediation steps.
SIEM and Detection Engineering: Own day-to-day operation of the SIEM - data onboarding and ingest pipelines, field mapping and data quality, dashboards and platform health - and write, tune, and maintain detection rules while measuring their effectiveness.
Exclusion and Exception Management: Own the exclusion and exception lifecycle across the security stack: review requests, assess risk, apply scoped, time-bound exclusions, and revalidate them periodically.
Automation and AI-Assisted Operations: Build and maintain automations across the SOC toolchain (enrichment, containment, ticketing, reporting), and design, implement, and validate AI/LLM-based workflows for alert triage, investigation support, and documentation - including guardrails and quality control of AI output.
Investigation Documentation: Create and maintain detailed incident tickets, including investigation audit trail, action items, and timelines.
Technical Leadership: Act as the senior operational reference for the analyst team: help prioritize workload, assure investigation quality, maintain consistent handling of incidents, escalations, and shift handovers, and mentor analysts on tooling and methodology.
Collaboration: Work closely with the Cyber Security team, IT, Operations, and R&D locally, and with the offshore SOC team across time zones.
Continuous Improvement: Drive improvements to detection logic, automation, operational runbooks, and shift handover documentation based on lessons learned from incidents.
Compliance and Reporting: Support reporting for compliance audits, management reviews, and threat intelligence updates.
Requirements:
3-5 years of hands-on experience in a SOC or cybersecurity operations role.
Proven experience with a SIEM platform, including detection rule engineering and content development (Advantage: Elastic).
Experience with EDR and additional security tools and platforms (Advantage: CrowdStrike Falcon).
Practical experience using AI/LLM tools in technical workflows, with a clear understanding of their limitations and failure modes.
Broad technical foundation across the SOC domain: threat vectors, malware behavior, network protocols, operating system internals, identity, cloud, and SaaS security controls.
Strong analytical and problem-solving skills, with the ability to correlate events across multiple data sources and think beyond the alert.
High degree of ownership and autonomy - able to operate as the only analyst on site, set priorities independently, and drive tasks to closure.
Excellent communication skills and the ability to work effectively with distributed teams across time zones.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8820142
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
4 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a skilled Security Automation Engineer to join our SOC Automation team and play a key role in building and scaling automation across Security Operations. This is a hands-on role - you will design, develop, and integrate automation solutions across SIEM, EDR, and other security platforms, contributing to our SOAR capabilities from the ground up.

You will work in a technologically rich environment, integrating with a wide range of security and infrastructure systems across the network - a unique opportunity to build automation at scale in a greenfield setting, with real influence over the architecture and tooling decisions.

We are especially interested in candidates who are curious about leveraging AI and intelligent agents to help evolve next-generation automation and response workflows - and who want to be a driving voice in how we apply those technologies.

Your responsibilities will include:

Automation development

Design and develop automation workflows for incident response and SOC operations
Identify and eliminate manual processes through scalable automation
Build reusable components and maintainable automation patterns
Engineering & integration

Develop integrations using REST APIs, webhooks, and event-driven architectures
Write high-quality, maintainable Python for automation and orchestration
Implement data parsing, enrichment, and transformation across multiple systems
SOAR & platform buildout

Lead or actively contribute to the evaluation, selection, and implementation of SOAR/automation platforms
Design the automation architecture and integration strategy for the team
Build automation capabilities in a greenfield environment - your decisions will shape the foundation
SOC collaboration

Work closely with SOC analysts and incident responders to translate operational needs into automation solutions
Improve end-to-end detection and response workflows through close partnership with the team
AI & innovation

Actively build and evaluate AI/LLM and agent-based workflows applied to security automation
Prototype AI-assisted enrichment, triage, and response solutions and drive them toward production
Requirements:
Minimum 3 years of hands-on experience with SOAR platforms (e.g., Torq, Cortex XSOAR, Splunk SOAR, or similar)
Strong hands-on experience with Python (or a comparable language)
Experience designing or implementing automation frameworks or workflows
Experience building integrations using REST APIs and web services
Experience working with security tools such as SIEM, EDR/XDR, or ticketing systems
Experience with at least one cloud platform (Azure, AWS, or GCP)
Solid understanding of incident response processes and SOC alert-handling workflows
Experience with at least one SIEM platform (Splunk,Sentinel,Qradar,Crowdstrike)
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8817744
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
01/09/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a SecOps Detection & Response.
As a Security Operations Analyst, Detection & Response, you will help protect Aidocs cloud environments, products, corporate systems, and sensitive healthcare data by investigating SIEM alerts, supporting incident response, and improving the quality of security monitoring.

This is a hands-on security operations role for someone who can analyze security signals, understand real risk, communicate clearly, and help the organization respond quickly and effectively to security events.

You will work closely with real production environments, where accurate investigation, clear documentation, and practical escalation are critical to protecting sensitive healthcare data, customer trust, and the reliability of clinical AI platform.
Responsibilities:
Own the end-to-end investigation of SIEM alerts across cloud, product, identity, endpoint, and SaaS environments: analyze the relevant evidence, separate false positives from real threats, and prioritize cases based on risk and impact.
Escalate high-risk findings with a clear summary of what happened, what is affected, why it matters, and what actions are required.
Support incident response by collecting evidence, assisting with containment, tracking remediation, and maintaining clear investigation records for internal reviews, compliance needs, and post-incident learning.
Improve SIEM rules, dashboards, alert logic, playbooks, telemetry coverage, and detection quality to reduce noise and strengthen security monitoring.
Work with Security, IT, DevOps, R&D, Product Security, and Compliance teams to resolve issues and improve security operations.
Requirements:
2+ years of experience in Security Operations, SOC analysis, detection and response, incident response, cloud security operations, or a similar hands-on security role.
Hands-on experience with SIEM-based investigations, including alert triage, log analysis, event correlation, evidence review, case prioritization, and escalation.
Experience working with security telemetry from cloud platforms, identity providers, endpoints, SaaS systems, network tools, application logs, and production environments.
Familiarity with cloud-native environments, including IAM, storage access, workloads, Kubernetes, containers, APIs, logging, monitoring, and CI/CD pipelines.
Understanding of common attack techniques, including credential compromise, phishing, privilege escalation, suspicious API activity, malware, data exposure, lateral movement, and cloud misconfigurations.
Experience with identity and endpoint investigation, including SSO, MFA, service accounts, privileged access, EDR alerts, and suspicious user or device activity.
Ability to use query or scripting languages such as KQL, SPL, SQL, Python, Bash, or similar.
Familiarity with incident response workflows, case management, evidence collection, remediation tracking, and post-incident review.
Strong analytical judgment, with the ability to separate false positives from real risk and explain findings clearly.
Ability to work independently, document investigations clearly, and escalate issues with the right level of urgency.
Strong communication skills and the ability to work with Security, IT, DevOps, R&D, Product Security, Compliance, and business stakeholders.
Close attention to detail, strong ownership, and comfort working in a fast-moving production environment.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8805569
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
e are currently seeking a dynamic Incident Response Analyst to contribute to the success of our rapidly growing business.



As an Incident Response Analyst, you will:

Investigate and respond to workspace security incidents across email, browser security and perimeter security domains.
Handle investigation requests submitted by customers
Perform targeted phishing analysis and investigation of new attack campaigns
Conduct threat hunting based on attack patterns, behaviors, and indicators
Build and improve detections based on new attack types, tactics, companies and trends
Collaborate with development and research teams to provide incident-driven insights, and develop new detection engines for identifying previously unknown attacks
Write professional blog posts based on incident investigations and attack trends, contributing to the companys research-driven content and public visibility
Work in rotating shifts as part of a 24/7 operation (including nights, weekends, and holidays)
Requirements:
At least 3 years of experience in an Incident Response or Security Operation roles
Strong understanding of attack vectors, including Phishing, BEC, Email spoofing and impersonation techniques, Malware, ATO and more
Knowledge of email protocols and security concepts: SMTP, SPF/DKIM/DMARC, headers, authentication methods
Strong querying skills using SQL, SPL, KQL or AQL
Good knowledge with Static & Dynamic techniques
Familiarity with and understanding of code and scripting languages such as Python, JavaScript, Visual Basic, or similar - with the ability to read, interpret, and analyze potentially malicious scripts
Excellent written and verbal communication in English
Team player with a proactive, ownership-driven approach
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8797736
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
11/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for an OCC Monitoring Specialist to join our fast-growing OCC Monitoring team. Reporting to our OCC Monitoring Team Leader, you will be responsible for monitoring the infrastructure, applications, and business aspects of the company. We provide the opportunity to become acquainted with the inner workings of the exciting world of Fintech and online payments.

This position doesn't include a hybrid mode; it only involves working from the office.
We work in 24/7 shifts: 08:00 to 17:00, 17:00 to 00:00, 00:00 to 08:00, including weekends and holidays.


Responsibilities

Responding to events and various technical problems in real-time
Monitoring and liaising activities of the production environment, maintaining the company's monitoring systems, network, business transactions reports, and data analysis regularly
Tracking the events until problems are resolved, contacting the relevant parties in the organisation as needed
Data analysis and fault investigations
Requirements:
IP communication protocols knowledge - An advantage
Programming skills - An advantage
Basic knowledge of SQL - An advantage
A self-learner - A must
Able to provide in-depth analyses in a short time
Good Microsoft Office skills: Excel/Outlook/Word/Office 365
Fluent English - Ability to converse and write/answer emails in English. (Other languages - An advantage)
A challenging job in a fast-developing, international company.
Commitment is required for a minimum of 4 shifts a week. Requires a responsibility to work at nights.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8777806
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
06/08/2026
מיקום המשרה: תל אביב יפו
סוג משרה: משרה מלאה
גוניורים? מחפשים את הצעד הראשון שלך בעולם הסייבר?
דרוש/ה SOC Analyst
זו ההזדמנות להצטרף למרכז SOC מתקדם, לעבוד עם טכנולוגיות מובילות ולהתפתח מקצועית בסביבה דינמית ומאתגרת.
מיקום: תל אביב
במסגרת התפקיד:
ניטור וחקירת אירועי אבטחת מידע
עבודה מול מערכות SIEM ו-EDR מתקדמות
זיהוי וניתוח התראות אבטחה
טיפול באירועי סייבר ומתן מענה ראשוני
שלחו קורות חיים למייל.
דרישות:
ידע בסיסי באבטחת מידע (קורס רלוונטי או הכשרה מקצועית) - חובה
נכונות לעבודה במשמרות 24/7 - חובה
היכרות עם תקשורת, רשתות ופרוטוקולים - יתרון
ניסיון קודם ב- NOC, Help desk או תפקידי IT - יתרון. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8770538
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות שנמחקו
ישנן -14 משרות במרכז אשר לא צויינה בעבורן עיר הצג אותן >