רובוט
היי א אי
stars

תגידו שלום לתפקיד הבא שלכם

לראשונה בישראל:
המלצות מבוססות AI שישפרו
את הסיכוי שלך למצוא עבודה

מהנדס סייבר

מסמך
מילות מפתח בקורות חיים
סימן שאלה
שאלות הכנה לראיון עבודה
עדכון משתמש
מבחני קבלה לתפקיד
משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP

חברות מובילות
כל החברות
כל המידע למציאת עבודה
כל מה שרציתם לדעת על מבחני המיון ולא העזתם לשאול
זומנתם למבחני מיון ואין לכם מושג לקראת מה אתם ה...
קרא עוד >
לימודים
עומדים לרשותכם
חברות מגייסות
מיין לפי: מיין לפי:
הכי חדש
הכי מתאים
הכי קרוב
טוען
סגור
לפי איזה ישוב תרצה שנמיין את התוצאות?
Geo Location Icon

משרות בלוח החם
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 19 שעות
דרושים בAlljobs Match
סוג משרה: בכירים ומשרה מלאה
לארגון מוביל בחיפה, דרוש/ה ראש/ת צוות אבטחת מידע וסייבר.

התפקיד כולל:
הובלת מדיניות וגיבוש אסטרטגיית אבטחת מידע וסייבר ארגונית להגנה על נכסי המידע של המקום.
ניתוח וניהול סיכוני סייבר ופרטיות עבור העובדים.
בקרת יישום מדיניות אבטחת המידע והסייבר החברה, למניעת אירועי אבטחת מידע ואיתור מהיר של חשיפות ופרצות.
הגדרת נהלים והנחיות אבטחת מידע לכלל היחידות בחברה, כולל בקרות שוטפות.
תגובה וניהול אירועי סייבר ותקריות אבטחת מידע.
עמידה ברגולציות, תקני אבטחת מידע, חוק הגנת הפרטיות וכו'.
ניהול צוות אבטחת מידע וסייבר, ייעודי ומקצועי, והובלתו למצוינות, כולל גיוס בעלי תפקידים מתאימים לצוות זה.
ניהול של ספקים ויועצים בתחומי אבטחת המידע והסייבר - IR, SOC, אנליסטים, ארכיטקטים וכו'
הדרכה והגברת מודעות כלל המשתמשים בטכניון בנושאי סייבר, איומים והגנת הפרטיות.
עבודה שוטפת עם כל צוותי IT במערך המחשוב, ביחידות, לבחינה, יישום והטמעה של פתרונות טכנולוגיים מתקדמים להגנה על כל שכבות תשתיות ומערכות המידע.
קשר ועבודה עם גופי סייבר ממשלתיים, מערך הסייבר הלאומי וכו'.
ניהול כולל של מדיניות והנחיות יישום של מערך תשתיות אבטחה מתקדמות (PAM, SIEM, DLP, NAC, IAM).
דרישות:
ניסיון 5 שנים לפחות בניהול אבטחת מידע בארגון גדול ומורכב, כולל נסיון בהיערכות וביצוע תהליכים הקשורים לאבטחת סייבר ארגונית - חובה.
ניסיון בבניית תוכנית אבטחת מידע וסייבר ארגונית, תכנונה, ניהולה, ובקרת יישומה - חובה.
תואר ראשון במדעי המחשב / הנדסה / מערכות מידע או תחום רלוונטי לתפקיד, או תואר ראשון בתחום אחר עם נסיון של 10 שנים לפחות בתחומי ניהול אבטחת המידע והסייבר - חובה.
תואר שני - יתרון.
קורסי הסמכה מקצועית - CISSP / CISM / CISA.
ניסיון בעבודה עם מערכות אבטחת מידע וסייבר, כגון: IAM/IDM, SIEM, DLP, CASB, SASE - חובה.
ידע ברגולציה, תקני אבטחת סייבר רלוונטיים וחוק הגנת הפרטיות.
הבנה עמוקה של טכנולוגיות סייבר, ענן ופרוטוקולי אבטחה.
ניסיון בהגנה בסביבות ענן (Azure, AWS, Google Cloud).
היכרות עם מוסדות אקדמיים/ציבוריים וסביבות מחקר - יתרון.
היכרות ועבודה עם הגנת מערכות SAP, Moodle - יתרון. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8554654
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 23 שעות
דרושים בAlljobs Match
Job Type: Seniors and Full Time
For a leading organization in Haifa, a Head of Information Security & Cybersecurity is required.
The Role Includes:


Leading the development and implementation of the organization's Information Security and Cybersecurity strategy to protect its information assets.


Identifying, analyzing, and managing cyber and privacy risks affecting employees and organizational systems.


Overseeing the implementation of the companys Information Security and Cybersecurity policies to prevent security incidents and enable rapid detection of exposures and vulnerabilities.


Defining security procedures and guidelines across all organizational units, including ongoing control mechanisms.


Managing and responding to cybersecurity incidents and information security breaches.


Ensuring compliance with regulations, information security standards, privacy protection laws, and related requirements.


Managing and leading a dedicated professional Information Security & Cybersecurity team, including recruitment of appropriate personnel and driving operational excellence.


Managing external vendors and consultants in the fields of Information Security and Cybersecurity (IR, SOC, analysts, architects, etc.).


Delivering training and increasing cybersecurity and privacy awareness among all users within the Technion.


Ongoing collaboration with all IT teams across the organization to evaluate, implement, and integrate advanced technological solutions to protect all layers of infrastructure and information systems.


Working closely with governmental cybersecurity bodies, including the National Cyber Directorate.


Overall management of advanced security infrastructure policies and their implementation (PAM, SIEM, DLP, NAC, IAM).
Requirements:
At least 5 years of experience in managing Information Security within a large and complex organization, including hands-on experience in planning and executing enterprise cybersecurity processes - mandatory.


Proven experience in building, designing, managing, and overseeing the implementation of an organizational Information Security & Cybersecurity program - mandatory.


Bachelors degree in Computer Science / Engineering / Information Systems or a related field; alternatively, a Bachelors degree in another field with at least 10 years of experience in Information Security & Cybersecurity management - mandatory.


Masters degree - advantage.


Professional certifications such as CISSP / CISM / CISA.


Experience working with Information Security and Cybersecurity systems such as IAM/IDM, SIEM, DLP, CASB, SASE - mandatory.


Knowledge of relevant cybersecurity regulations, security standards, and Privacy Protection Law.


Deep understanding of cybersecurity technologies, cloud environments, and security protocols.


Experience securing cloud environments (Azure, AWS, Google Cloud).


Familiarity with academic/public institutions and research environments - advantage.


Experience with securing enterprise systems such as SAP and Moodle - advantage.
This position is open to all candidates.
 
Show more...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8556737
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
1 ימים
דרושים בSoftware AG-SPL
מיקום המשרה: לוד
חברת Software AG מגייסת מפתח.ת Splunk לארגון פיננסי במרכז.

התפקיד כולל:
ביצוע פיתוחים על גבי תשתית של Splunk.
כתיבת דשבורדים.
כתיבת חוקים.
טיפול וטיוב חוקים התרעות ודשבורדים קיימים.
דרישות:
ניסיון של לפחות 3 שנים בעבודה עם Splunk Enterprise / Splunk Cloud.
ניסיון מעשי בכתיבת SPL מורכב joins, stats, tstats, transactions, lookups.
לפחות שנתיים ניסיון בפיתוח Python.
ניסיון בפיתוח React. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8805488
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
1 ימים
דרושים בקורן טק טכנולוגיות
מיקום המשרה: מספר מקומות
סוג משרה: משרה מלאה
לחברה בטחונית בצפון דרוש/ה מהנדס/ת סייבר
במסגרת התפקיד:
הנחייה מקצועית בתחום אבטחת מערכות מחשוב.
תכנון, הטמעה ויישום מדיניות הגנת סייבר ברשתות מחשוב מורכבות.
ליווי ויישום תהליך הקשחה, כתיבת חוקות בהתאם לדרישות ההגנה, תקינה ו-Best Practices מקובלים בתעשייה.
עבודה בתיאום מול צוותי הIT, התקשורת והאפליקציה.
ליווי והסמכת הארגון לעמידה בתקנים בתחום אבטחת המידע
ביצוע סקרי הערכת סיכונים והגדרת בקרות מפצות ותהליכים ממתני סיכון
דרישות:
תואר ראשון טכנולוגי
לפחות 3 שנות ניסיון בארכיטקטורת הגנה למערכות מחשוב
ניסיון בתפקיד דומה בארגונים גדולים ומורכבים
ניסיון כמוביל / ארכיטקט אבטחת מידע
היכרות מעמיקה עם מוצרים, טכנולוגיות ומתודולוגיות הגנת סייבר
יכולת הבעה ותקשור באנגלית (בעל פה ובכתב). המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8736397
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
1 ימים
דרושים בG-NESS
מיקום המשרה: ירושלים
גיבוש, כתיבה ועדכון של מדיניות ונהלי אבטחת מידע בהתאם לדרישות רגולטוריות, תקנים בינלאומיים וסביבות עבודה מתקדמות, לרבות פתרונות ענן וכלי AI
הובלת תהליכי Governance, Risk Compliance (GRC) הטמעת רגולציה ותקנים בתחום הגנת הסייבר והפרטיות
הובלת תהליכי המשכיות עסקית (BCP), התאוששות מאסון (DRP) וניתוח השפעות עסקיות (BIA), כולל תרגולים, הפקת לקחים ושיפור מוכנות הארגון
ביצוע סקרי פערים, ביקורות פנימיות ובקרות לצורך עמידה בדרישות רגולטוריות ותקני אבטחת מידע.
ליווי פרויקטים ומערכות מידע משלב האפיון והפיתוח (SDLC) ועד ההטמעה, תוך ניהול סיכוני סייבר ואבטחת שרשרת האספקה
הטמעת עקרונות Privacy by Design בפרויקטים חדשים וליווי היבטי הגנת הפרטיות
עבודה מול גורמים מקצועיים ויחידות שונות בארגון, בכפיפות למנהל תחום בכיר אבטחת מידע וסייבר
דרישות:
ניסיון בליווי לפחות שני פרויקטים להתאמת ארגון לתקנות הגנת הפרטיות או לתקני ISO 27001 / ISO 27017 / ISO 27018 / ISO 27035 במהלך שלוש השנים האחרונות
ניסיון מוכח בתחום GRC (Governance, Risk Compliance)
ניסיון בביצוע ביקורות בתחום הגנת הסייבר המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8737093
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
1 ימים
דרושים בSQLink
סוג משרה: משרה מלאה
ארגון ממשלתי באזור ירושלים מגייס ארכיטקט/ית הגנת ענן וסייבר
התפקיד כולל: תכנון והובלת ארכיטקטורת הגנת סייבר עבור סביבות ענן ציבורי, בדגש על GCP, ‏Landing Zone וסביבות Multi-Cloud ו-Hybrid Clou, תכנון בקרות ומנגנוני אבטחה, בחינה והטמעה של פתרונות הגנה, תכנון רשתות מאובטחות ו-Zero Trust, כתיבת מסמכי HLD/LLD, אוטומציה של תהליכי אבטחה וליווי צוותי פיתוח ו- DevOps משלב התכנון ועד לייצור ועוד.
דרישות:
- שנתיים ניסיון כארכיטקט/ית פתרונות בענן ציבורי, כולל היכרות עם IaaS, ‏PaaS
ו-SaaS
- ניסיון בארכיטקטורת אבטחת מידע וסייבר, לרבות תכנון רשתות וקישוריות מאובטחת
בסביבות ארגוניות מורכבות
- ניסיון בהגנת סביבות GCP, כולל שירותי אבטחה Native, בקרות אבטחה ויכולות
Hands-On בהטמעת מוצרי הגנת סייבר
- היכרות מעמיקה עם CNAPP, ‏CWPP, ‏CSPM, ‏SASE ו-IAM וניסיון בתכנון
פתרונות Hybrid Cloud ו-Multi-Cloud
- ניסיון בכתיבת אוטומציות וסקריפטים באמצעות Python, ‏Bash או PowerShell
לצורכי אבטחה, ניטור ובקרה המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8802122
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
1 ימים
דרושים בTOP SOFT טופ סופט - השמה ומיקור חוץ
מיקום המשרה: תל אביב יפו
לחטיבת הסייבר דרוש/ה חוקר/ת מודיעין איומי סייבר לתפקיד מחקרי וטכנולוגי העוסק בזיהוי, חקירה וניתוח של תקיפות סייבר מתקדמות בסביבות ענן.

מה כולל התפקיד?

ביצוע מחקרים טכנולוגיים על תקיפות סייבר מתקדמות בסביבות Cloud.
חקירת שרשרת התקיפה וזיהוי Indicators / IOCs ומאפייני תקיפה.
גיבוש תפיסות ומתודולוגיות לחקירה בסביבות ענן.
זיהוי, איתור וניתוח איומים לצורך יצירת התרעות מוקדמות.
העשרת צוותי חקירות במידע מודיעיני וטכנולוגי.
ביצוע מחקרי עומק וכתיבת דוחות מודיעיניים וטכנולוגיים.
הפקת תובנות אופרטיביות לצורך שיפור יכולות הגילוי וההתמודדות עם תקיפות ענן.

תפקיד למי שרוצה להיות בחזית המחקר והמודיעין בעולם הCloud Security.
דרישות:
ניסיון של 4 שנים ומעלה בתחום Cyber / Threat Intelligence / Cyber Research.
ניסיון מוכח בחקירת תקיפות סייבר וניתוח שרשראות תקיפה.
ניסיון בסביבות Cloud - AWS / Azure / GCP.
ידע והבנה מעמיקה של Cloud Security ותשתיות ענן.
ניסיון באיתור וניתוח IOCs, TTPs וממצאים מודיעיניים.
היכרות עם MITRE ATT CK ומתודולוגיות Threat Intelligence - יתרון.
ניסיון בכלי חקירה, ניטור וניתוח בסביבות ענן - יתרון.
יכולות מחקר, אנליזה והסקת מסקנות ברמה גבוהה.
יכולת כתיבה והצגת מחקרים ודוחות טכנולוגיים.
יכולת עבודה עצמאית לצד עבודה מול צוותי Cyber וחקירות.

יתרון משמעותי:
ניסיון בחקירת תקיפות מתקדמות, APT, Cloud Attacks, Incident Response או Digital Forensics. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8781641
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
2 ימים
דרושים בקבוצת Aman
מיקום המשרה: ירושלים
קבוצת Aman מגייסת מומחה/ית SIEM & Observability לארגון ממשלתי גדול בירושלים

היברידיות של 3 ימים מהבית

תחומי אחריות
ניהול ותפעול מערכות SIEM ותשתיות ניהול לוגים בארגון.
הובלת תהליכי קליטת לוגים, אגריגציה, אופטימיזציה ופיתוח יכולות ניטור.
עבודה בסביבות ענן מתקדמות וביצוע אוטומציות לשיפור תהליכים.
טיפול בתקלות מורכבות ומתן שירות לצוותים טכנולוגיים וללקוחות פנים.
הובלת פתרונות טכנולוגיים מקצה לקצה תוך חשיבה מערכתית.
דרישות:
5 שנות ניסיון לפחות בתחום הסייבר.
ניסיון משמעותי במערכות SIEM וניהול לוגים ארגוניות.
ניסיון בעבודה עם AWS ו/או GCP.
שליטה בכתיבת סקריפטים ואוטומציות והיכרות עם כלי AI.
יכולת עבודה בצוות, הובלת משימות וידע רחב באבטחת מידע וסייבר. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8808139
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
2 ימים
דרושים בלוגיקה IT
מיקום המשרה: לוד ויהוד מונוסון
סוג משרה: משרה מלאה
משרה מלאה / לוד /היברידי

לחברה מובילה דרוש/ה  Senior Incident Response Automation Engineer בעל/ת ניסיון מעמיק בתחקור אירועי סייבר, פורנזיקה דיגיטלית ופיתוח אוטומציות מתקדמות לצוותי אבטחת מידע.

תיאור התפקיד
במסגרת התפקיד תובילו חקירות של אירועי סייבר מורכבים, תנתחו מתקפות ופעילות תוקפים, ותפתחו תהליכי תגובה אוטומטיים שיסייעו לשיפור יכולות הזיהוי והתגובה בארגון.

תחומי אחריות:
ניהול וחקירה של אירועי סייבר מורכבים מקצה לקצה
ביצוע חקירות פורנזיות ברמת תחנות קצה, שרתים ולוגים
ניתוח טכניקות תקיפה, מנגנוני התמדה ותנועת תוקפים ברשת
פיתוח ותחזוקה של Playbooks במערכות SOAR
פיתוח אוטומציות ב- Python ואינטגרציות באמצעות APIs
שיפור תהליכי תגובה וקיצור זמני הטיפול באירועי אבטחת מידע
עבודה שוטפת מול צוותי SOC ואבטחת מידע
דרישות:
לפחות 4 שנות ניסיון ב- SOC, Incident Response או DFIR
ניסיון מוכח בטיפול באירועי אבטחת מידע מורכבים (Tier 2/3)
לפחות שנתיים ניסיון מעשי בתחום Digital Forensics Incident Response
לפחות שנה ניסיון בפיתוח אוטומציות ו-Playbooks במערכות SOAR
שליטה גבוהה ב- Python
ניסיון בעבודה עם APIs ואינטגרציה בין מערכות אבטחה
ניסיון עם פלטפורמות SIEM /XDR כגון Sentinel, QRadar או Cortex
ניסיון עם מערכות SOAR כגון Cortex XSOAR
היכרות עם סביבות ענן, יתרון ל-Azure
אנגלית ברמה גבוהה המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8780020
סגור
שירות זה פתוח ללקוחות VIP בלבד
לוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Petah Tikva
Job Type: Full Time
we are looking for a hands-on Security Operations Engineer to join our IT and Cybersecurity team.

You will take ownership of implementing, configuring, and operating security tools and controls across the organization. The role combines security operations, incident response, technical policy implementation, and compliance support.



Responsibilities
Implement, configure, and maintain security systems and policies.
Monitor and investigate security alerts and coordinate remediation.
Manage endpoint, identity, device, network, and cloud security controls.
Improve security coverage across endpoints, servers, users, and corporate systems.
Manage vulnerabilities and track remediation through completion.
Develop and maintain incident-response procedures and playbooks.
Translate security policies and regulatory requirements into technical controls.
Support security audits, evidence collection, risk assessments, and compliance activities.
Work closely with IT and R&D teams, business stakeholders, security vendors, and external providers.
Maintain security documentation, operational procedures, and management reports.
Requirements:
3+ years of hands-on experience in security operations, cybersecurity engineering, or a similar role.
Practical experience implementing and managing enterprise security systems.
Experience with technologies such as EDR/XDR, SIEM, MDM/UEM, IAM, SSO, MFA, firewalls, VPN, DNS security, and vulnerability management.
Knowledge of Windows, Microsoft 365, Entra ID, networking, and enterprise infrastructure.
Experience investigating security events and managing technical remediation.
Working knowledge of ISO 27001, SOC 2, and the NIST Cybersecurity Framework.
Strong troubleshooting, documentation, communication, and prioritization skills.
Ability to work independently and take ownership from identification through resolution.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8808648
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
4 ימים
Location: Petah Tikva
Job Type: Full Time
our company seeks a Senior Application Security Engineer to serve as the technical core of our bug bounty program within the Product Security Incident Response Team (PSIRT). This is the senior engineer who owns bug bounty reports from intake through resolution: reproducing and validating the vulnerability, assessing its severity, and seeing it through to a verified fix.
The work is deeply technical. Reproducing a vulnerability is only the starting point. From there you read the underlying code, identify root cause, and either propose the fix or design it alongside engineering before confirming it holds. You are also the person researchers deal with directly, which makes clear, credible communication as central to the role as the technical analysis itself.
As one of the most senior engineers on the team, you will set the standard for how triage is done and mentor earlier-career engineers. Beyond the bug bounty queue, you will conduct variant hunts, perform original platform security research, lead major product security incidents, and run forensic postmortems when a significant issue reaches production.
Key Responsibilities
Triage and Resolve Bug Bounty Reports
Own incoming reports end-to-end: intake, reproduction, severity scoring, root cause analysis, fix verification, and final disposition.
Reproduce and validate reported vulnerabilities, building out incomplete proof-of-concept code where needed.
Serve as the technical escalation point for the most complex and highest-severity reports, including multi-step exploit chains and cross-system issues.
Perform code review and root cause analysis to identify the underlying defect rather than the reported symptom.
Propose remediations, or design them with engineering, and verify the fix resolves the issue.
Assign and defend severity ratings using the program's severity framework.
Route issues to owning teams, file and track defects, and keep vulnerability records accurate through closure.
Own Researcher and Stakeholder Communication
Act as our company's primary technical point of contact for bug bounty researchers across the full lifecycle of a report.
Handle severity and validity disputes directly, keeping every exchange clear, timely, respectful, and technically credible.
Translate technical findings for internal stakeholders and keep engineering and leadership current on status and risk.
Mentor the Team and Raise Triage Standards
Provide technical mentorship to earlier-career PSIRT engineers, developing depth in reproduction, code analysis, severity judgment, and communication.
Set and maintain the bar for triage quality and strengthen program practices over time.
Lead Advanced Security Work Beyond Triage
Conduct variant hunts to find related instances of reported vulnerabilities before they are discovered externally.
Perform original platform security research to surface issues ahead of external researchers.
Lead major product security incidents on the PSIRT side, coordinating response across teams under pressure.
Run forensic postmortems after significant incidents to determine how the issue reached production, including how design-level flaws bypassed release processes, and confirm that remediations hold.
Requirements:
To be successful in this role, you have:
8+ years of hands-on experience in product security, application security, penetration testing, or vulnerability research. Depth of expertise matters more than years.
Expertise in:
Common web and application vulnerability classes and exploitation techniques.
Vulnerability reproduction, severity assessment, and defensible risk scoring under ambiguity.
Coordinated vulnerability disclosure.
Code and development fluency:
Strong code comprehension in Java, JavaScript, and Python, with the ability to trace root cause in large, unfamiliar codebases and review pull requests.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8808486
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
4 ימים
Location: Petah Tikva
Job Type: Full Time
This is a hands-on architecture role: deep research, secure systems design, and prototyping, applied across product lines with minimal direction and broad latitude to set the technical agenda. You will set platform-wide direction for securing the AI development lifecycle, define the security architecture, agents, and models operating within it, and represent our company's AI security point of view externally. You'll be a technical authority other engineers and other teams look to on emerging AI-specific threats, working in close partnership with the AI security research team - drawing on their findings and feeding real-world attack surfaces back into their agenda.
What you'll do
Own the security strategy and architecture for our Agentic AI ecosystem, LLMs, and models across product lines
Lead threat modeling for the most complex and novel GenAI/agentic surfaces: cross-agent autonomy, multi-agent tool orchestration, and emerging attack classes not yet standardised in the industry
Set the architectural standard for securing model/RAG/data pipelines platform-wide, including access-control and data-boundary models that other teams are expected to build against
Define what "secure-by-design" means for agentic systems at our company, and drive adoption across engineering orgs
Represent our company's AI security posture externally (standards bodies, industry publications, conferences) and internally to executive stakeholders
Mentor and technically guide engineers on AI-specific security work.
Requirements:
To succeed in this role, youll need:
Bachelors / Master's degree or PhD in Computer Science or a related technical field, specialisation in Security or AI/ML or an exceptional, well-evidenced track record substituting for it
10+ years of software engineering experience, including a track record of owning the architecture of complex systems at enterprise scale
A track record of setting technical direction beyond your own team - architecture or standards other teams adopted, senior engineers you've levelled up, and comfort operating where the problem isn't yet defined
7+ years in security engineering - network and systems security, security protocols, design reviews, and threat modeling - with a focus on AI-specific work in recent years
Multiple demonstrated engagements threat modeling and/or securing LLM, GenAI, or agentic systems, with evidence of platform-level or cross-team impact
Personal ownership of prompt injection / jailbreak defense, guardrail architecture, or AI red-teaming programs - ideally having built the program/methodology, not just executed within one
Deep, applied experience securing model, RAG, or data pipelines, including having designed the access-control and data-governance model others build against
Fluency with the OWASP LLM Top 10 (or equivalent) to the point of extending, critiquing, or contributing to such frameworks - not just applying them
Deep hands-on experience with agentic AI frameworks (e.g., LangChain, LangGraph)
Clear communication, a collaborative default, and a bias toward learning fast in a field that changes constantly
Bonus
Strong command of auth protocols (OAuth 2.0, OIDC, PKCE, API Keys) and agentic protocols (MCP, A2A), including having designed identity/consent models for them
Built and open-sourced (or productized) security tooling/automation for AI systems now used beyond one team
Track record of CVEs, top-tier publications, or invited talks specifically in AI/ML or LLM security
Prior experience setting AI security strategy at a platform or company level, not just a single product
5+ years of programming experience in Java or Python.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8808482
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
5 ימים
Location: Herzliya
Job Type: Full Time
About our company As a global semiconductor leader, our company  builds the hardware trust foundations powering modern computing - from trusted platform module (TPM) chips safeguarding millions of personal computers to complex root-of-trust architectures across cloud platforms and servers. Security is Embedded into the core of everything we design. As the global regulatory and threat landscape evolves, ensuring our products meet rigorous, gold-standard cybersecurity compliance and certifications is central to our mission and customer trust. About the Role We are looking for a highly motivated Security Certifications & Compliance Engineer to join our team and play a key role in ensuring our products meet the highest security, compliance, and certification standards. This position combines technical security expertise, compliance activities, product security governance, and collaboration with development teams to support industry-leading security products.
What You'll Do Certifications: Lead and support security certification activities, including Common Criteria (CC), FIPS 140-3, CSPN, OCP SAFE, and additional certification programs. Compliance & Frameworks: Support compliance initiatives related to the Cyber Resilience Act (CRA), Secure Development Lifecycle (SDL), NIST SSDF, and customer cybersecurity requirements. Cross-Functional Teamwork: Work closely with engineering teams, management, customers, certification bodies, and security experts across the organization. External Collaboration: Work closely with external laboratories and certification authorities throughout certification processes. Security Readiness: Review development processes, project documentation, and deliverables to ensure compliance and security readiness. Risk & Threat Assessment: Participate in threat modeling, risk assessments, security reviews, and secure development activities. Audits & Standards: Prepare for and support internal audits, external audits, and customer security assessments. Development Security system (DSS): Maintain, improve, and drive periodic activities for the Corporate Development Security system, including supporting security infrastructure, defining asset classifications, and driving employee awareness initiatives. Documentation: Prepare, review, and maintain certification documentation, including Security Targets, Security Policies, certification reports, and lifecycle evidence.
Requirements:
Education: B.Sc. in Computer Engineering, Electrical Engineering, Computer Science, Information Security, or a related field. Experience: 5+ years of experience in at least one the following: Cybersecurity, Product Security, Secure Development, Security Compliance, Information Security, Security Certifications, or Security Audits Domain Expertise: Background in the semiconductor industry. Core Technical Knowledge: Strong understanding of some of these areas: o Cryptography fundamentals o Secure Development Lifecycle (SDL) o Vulnerability management processes o Threat Modeling and Risk Assessment o Hardware and Embedded Security o Firmware and Software Security o Security Testing and Penetration Testing concepts
Advantages
* Experience with Common Criteria (CC), FIPS 140-3 or other security certifications.
* Familiarity with TPM technologies, Root of Trust architectures, Secure Boot and Post-Quantum Cryptography
* Knowledge of Cyber Resilience Act (CRA) and NIST frameworks
* Experience working with certification laboratories and regulatory bodies.
If you are passionate about silicon security and want to lead compliance for industry-defining hardware, send your CV to join our team.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8806462
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Work At Home
Job Type: Full Time
we are looking for a SecOps Engineer.
As a SecOps Engineer, you'll be the operational nerve center of Guardicore's R&D Security Squad, the team protecting the platform we build. Embedded with the engineers creating Guardicore, you'll drive real-time detection, response, and full-lifecycle vulnerability management, turning every finding into measurable risk reduction. If you thrive on hunting threats, reducing signal-to-noise, and driving remediation to closure, this is your arena.
As a SecOps Engineer, you will be responsible for:
Ingesting and analyzing vulnerabilities from tools such as Wiz, Vulcan, Grype, and Tenable, while quantifying impact by exploitability and reachability.
Building AI automations that streamline the full security operations loop. Auto-triaging and containing SIEM alerts by prioritizing vulnerability data across tools.
Engineering signal quality by designing correlation searches and tuning detection rules. Automating SOAR playbooks to cut false positives and shrink MTTR.
Driving remediation governance by generating tickets, assigning owners, enforcing deadlines, verifying fixes through rescans, and collecting evidence comprehensively.
Building visibility and KPIs through live dashboards for monitoring remediation speed, SLA compliance, MTTR/MTTD, patch age, and risk trends
Running detection and response, monitoring SIEM telemetry, triaging alerts, mitigating threats, conducting root-cause analysis, aligning TTPs with MITRE ATT&CK, recommending safeguards.
Requirements:
5+ years in Security Operations, SOC, or Incident Response, handling live incidents and vulnerability remediation end-to-end.
Develop parsers, analytics, and automation scripts using Python, Bash, or Go; utilize SIEM tools such as Splunk and SOAR platforms.
Design vulnerability-management dashboards and SLA tracking for leadership visibility.
Experience triaging and analyzing vulnerabilities, assigning owners, recommending mitigations, and writing clear post-mortem reports.
Demonstrate expertise in network protocols, Linux/Windows internals, and cloud telemetry such as GCP or AWS.
Gain experience with vulnerability-management platforms and risk-based prioritization models.
Present metrics, incident summaries, and remediation roadmaps to both engineers and executives.
Proactive, clear communication with stakeholders across technical and business teams.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8806370
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
6 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a Senior Security Engineer.
As a Senior Product Security Engineer, you will help ensure that security is built into the products, platforms, AI systems, and clinical workflows that support healthcare providers and patients at scale. This is a hands-on technical role focused on securing real systems in production, influencing architecture, and partnering closely with engineering, AI, DevOps, product, quality and regulatory.
You will work across cloud-native services, medical imaging workflows, healthcare integrations, AI/ML pipelines, APIs, data flows, and regulated product development processes. Your work will directly support ability to deliver secure, reliable, and trusted clinical AI solutions to healthcare organizations worldwide.
What Makes This Role Unique :
Clinical AI with real-world patient impact - we operate in an environment where security is not only about protecting systems and data. Security decisions can affect clinical workflows, care-team coordination, customer trust, and patient safety.
Highly sensitive healthcare data - You will help protect medical imaging data, clinical metadata, PHI/PII, customer environments, and AI-driven workflows that require strong privacy, access control, data protection, and auditability.
Security for AI/ML and medical imaging systems - The role extends beyond traditional AppSec into AI/ML security, data pipeline protection, inference integrity, model-related risks, and misuse scenarios in clinical workflows.
Complex healthcare integrations - we integrates with hospital systems and healthcare workflows that may include PACS, EHR, VNA, RIS/worklists, scheduling systems, and communication platforms. You will help secure the data flows, authentication models, APIs, and deployment patterns behind these integrations.
Engineering-driven security in a regulated environment - This is not a checkbox compliance role. However, because operates in healthcare and clinical AI, security must be practical, evidence-based, and aligned with regulatory, customer, and quality expectations.
Cloud-native scale and production ownership - You will work with modern cloud infrastructure, Kubernetes, containers, CI/CD pipelines, identity and access management, observability, vulnerability management, and software supply-chain controls.
דרישות:
5+ years of experience in Product Security, Application Security, Cloud Security, or a similar hands-on security engineering role.
Strong hands-on experience securing production systems, not only performing assessments or reviews.
Strong understanding of secure design, threat modeling, and architecture risk analysis.
Deep knowledge of application security, including OWASP Top 10, API security, authentication, authorization, access control, secure session handling, input validation, and modern attack vectors.
Experience securing distributed systems, APIs, web applications, backend services, and cloud-native architectures.
Strong experience with cloud environments, especially AWS and/or Azure, including IAM, network security, encryption, logging, monitoring, and workload security.
Experience with Kubernetes, containers, infrastructure-as-code, CI/CD pipelines, and modern DevOps workflows.
Practical experience with security tooling such as SAST, SCA, IaC scanning, container scanning, secrets detection, SBOM tools, vulnerability scanners, and cloud security tools.
Experience with vulnerability management, risk prioritization, remediation planning, and working with engineering teams to fix issues at scale.
Strong understanding of software supply-chain security, including dependency risk, build/release integrity, artifact security, and third-party component governance.
Experience working with modern development stacks such as Python, Java, JavaScript/TypeScript, React, microservices, APIs, and cloud-native services.
Ability to influence engineers through technical credibility, practical guidance, and strong collaboration.
Strong commu המשרה מיועדת לנשים ולגברים כאחד.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8805560
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
30/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
Youll be part of a small, elite founding engineering team solving real-world security problems that sit at the intersection of network security, cloud infrastructure, and large-scale data systems.
This is a hands-on role where youll design and build core parts of the product - from network-aware security logic and attack-path modeling, to high-performance pipelines that process massive volumes of security and infrastructure data.
If youre excited about deep security challenges, love building real systems end-to-end, and want massive impact in an early-stage team - wed love to meet you.
Requirements:
Experience: 5+ years of hands-on experience in cybersecurity engineering or security-focused backend engineering.
Strong Networking Knowledge: Deep understanding of:
Firewalls, routing, NAT, ACLs, subnets
Common enterprise network architectures
Network segmentation and exposure concepts
Security Engineering: Strong foundations in:
Threat modeling
Attack paths / exposure chains
Security best practices for modern on prem and cloud systems
Backend / Systems Engineering: Ability to build production-grade systems with clean architecture and strong engineering standards.
Production Ownership: Comfortable owning systems in production - observability, debugging, performance, and reliability.
Team Mindset: Strong communication skills, high ownership, and the ability to thrive in a fast-paced, build-first startup environment.
Advantage
Experience with Vulnerability Management, CVEs, scanners, asset inventory, risk scoring, and remediation workflows.
Experience with Exposure Management concepts (attack surface, reachable assets, blast radius, privilege paths).
Experience with cloud security.
Experience with high-scale data ingestion and normalization pipelines.
Familiarity with graph-based security modeling (attack graphs, exposure graphs, reachability analysis).
Experience with high-performance data systems (ClickHouse / Postgres / graph databases).
Strong debugging skills and ability to optimize complex distributed systems.
Cloud & Kubernetes: Experience working with cloud-native systems and Kubernetes environments.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8802450
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
30/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
As a Senior Cloud Security Engineer at our company, you'll own the security controls customers actually trust us to ship. Every major cloud - AWS, Azure, GCP, OCI - gives you a partial set of our company controls, and none of them cover what an enterprise security team really needs. You'll close the gaps: research what each cloud exposes, design controls that produce a consistent security outcome across all of them, and tailor each one to the provider it runs on. You'll work end-to-end. Research, threat model, design, infrastructure-as-code, rollout, production validation. No handoffs, no thrown-over-the-wall designs
Key Responsibilities
As a Senior Cloud Security Engineer, you'll take full ownership of security controls - from concept to delivery.
You'll engage with customers, align with our strategic direction, and identify what you and the team should build next.
You'll ship MVPs directly in production with real customer environments, iterate quickly based on feedback, and ensure the long-term success of your work.
And yes - you'll also jump in as a Security Hero, helping customers understand what their cloud is doing and what to do about it.
Requirements:
6+ years of experience in cloud security, security engineering, or offensive security.
You've shipped real controls or built real attacks against at least two of AWS, Azure, GCP, and OCI. You can speak fluently about IAM, resource policies, network
controls, and audit logs on the clouds you've worked with - not because you read about them, but because you've worked on them in production. Certifications are notwhat we're looking for.
You think like a product engineer - focused on shipping security controls that actually move customer posture, not perfect designs that never leave the doc. You
care about impact alongside craft.
You love getting things done. Engineers at our company enjoy a high degree of autonomy to choose what to build next - so being proactive and taking ownership is key.
You're comfortable enough in CloudFormation, Terraform, and ARM to prototype your own designs instead of waiting on someone else. And when a cloud provider tells you something is impossible, you don't take that as the final answer.
And most importantly, you're ready to do the best work of your career. With strong distribution, solid financial backing, and an exceptional team, there's no better
place to see how far you can go.
Experience with reactive remediation engines (Cloud Custodian, Stratus Red Team, Prowler, or in-house equivalents), workload identity federation across clouds, or
multi-tenant / MSP security platforms is a plus.
Collaboration Skills: Excellent communication and teamwork abilities, with experience working in cross-functional teams - partnering with product, design, backend, and frontend engineers on every control you ship.
Security Craft: Strong focus on auditability and explainability - every action a control takes should have a before/after, every automation should self-filter its own changes; every recommendation should be defensible.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8801650
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
27/08/2026
Location: Haifa
Job Type: Full Time
This is a full-time on-site role located in Haifa for a SecOps professional. The responsibilities include maintaining and optimizing security operations, identifying and mitigating potential vulnerabilities, implementing security monitoring solutions, and responding to security incidents. The role involves working collaboratively with cross-functional teams to ensure the deployment of robust security measures and policies across systems and infrastructures.
Requirements:
Core Security & Operations
3+ years experience in SecOps / Cloud Security / Security Engineering
Hands-on experience securing Google Cloud Platform environments
Strong understanding of:
IAM (roles, service accounts, workload identity)
Network security (VPCs, firewall rules, load balancers)
Organization policies and security baselines
Experience operating and tuning security controls in production

Detection, Monitoring & Response
Experience with Google Cloud Security Command Center
Experience with Google SecOps (Chronicle) or equivalent SIEM
Building and tuning:
Detection rules
Alerts
Dashboards
Incident triage, investigation, and response in cloud environments
Log ingestion and normalization from cloud and third-party sources

Automation & Engineering
Strong scripting skills (Python preferred)
Security automation (SOAR-like workflows, custom tooling)
Experience integrating security tooling via APIs
CI/CD security controls (shift-left, pipeline security checks)
Cloud & Platform Security

Experience securing:
GKE
Cloud Run
Compute Engine
Knowledge of container security concepts (images, registries, runtime)
Vulnerability management and remediation workflows

Governance & Compliance
Experience with security posture management
Familiarity with common frameworks (ISO 27001, SOC 2, CIS Benchmarks)
Risk assessment and security findings remediation

Nice to Have:
Experience with Wiz, Prisma Cloud, or similar CSPM tools
Experience with threat modeling and attack simulations
Experience working with regulated environments
Google Cloud security certifications
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8800177
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
26/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
Were looking for a Technical Product Associate to join our Product team and help expand the power. In this role, youll play a key role in protecting our customers' cloud environments from cyber threats. Your work will directly contribute to customer success and push the boundaries of cloud security. This isnt just a job, its a unique growth opportunity. Youll gain hands-on experience that can pave the way for exciting career paths in product management, security research, or development
Responsibilities:
Innovate and develop advanced detection mechanisms, algorithms, and automated solutions to accurately identify and classify technologies within cloud environments, enhancing our vulnerability management offering.
Analyze cloud services, APIs, and log payloads to ensure compliance with industry standards and customer requirements.
Stay current with the latest technologies and industry trends.
Implement customer requests and industry standards to position us as a market leader.
Collaborate with our Research and Backend teams.
Requirements:
Minimum Qualifications:
Hands-on proficiency in Linux, Windows, Python, Bash, Docker, Kubernetes, PowerShell, and a strong understanding of the OSI model.
Solid knowledge of networking concepts and cloud infrastructure.
Proven experience in applying cybersecurity best practices to real-world scenarios.
Preferred Qualifications:
Self-motivated and capable of working both independently and collaboratively within a team.
Strong communication skills.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8798611
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for a passionate Lead or Senior Offensive Security Engineer for our growing Offensive Security Automation team. This hands-on offensive security position requires a cyber security professional whose primary focus is to perform security assessments and vulnerability research using internal AI tools using frontier models, with a focus of designing and developing the AI automation and autonomous harnesses together with the team.
This is a role for someone who can perform offensive security testing at scale, combining deep security expertise with the judgment to direct and improve AI-driven tooling.

Key Responsibilities:

Offensive Security & Vulnerability Research (primary)

Perform security assessments and vulnerability research across web applications, APIs, and cloud/hybrid infrastructure, using internal AI tools and frontier models to scale coverage and depth that you will develop.

Make sure our internal solution can perform exploitation, vulnerability chaining, business logic and authorization abuse, privilege escalation, and lateral movement, beyond what automated tooling alone can find.

Run end-to-end engagements: scoping, execution, reporting, and remediation guidance.

Discover systemic/architectural weaknesses, not just isolated bugs, and drive secure-by-default fixes.

Partner with engineering, security architecture, and detection & response teams to close root causes and validate control effectiveness.

Produce high-quality technical reports with clear exploitation paths and prioritized remediation.


AI Automation & Autonomous Harness Design (secondary)

Develop the automation and autonomous harnesses that direct frontier models to perform offensive security testing continuously and at scale.

Design agent-based workflows that reason over large data, plan for risk signals, business logic and execute multi-step offensive testing that will adapt based on results, recon, hypothesis ranking, chaining of bugs exploitation, AI-Driven assessments, and reporting.

Establish human-in-the-loop checkpoints so automation scales offensive coverage without sacrificing safety or precision.

Translate your own tradecraft into reusable, explainable automation that the team can run and build on.
Requirements:
Required Qualifications:

6+ years (Senior) / 8+ years (Lead) hands-on offensive security experience such as pentesting, red teaming, or app/security research, with proven complex engagement delivery.

Deep, must-have vulnerability knowledge in cloud and web application security: OWASP Top 10+ vulnerability classes, identity/authz attack vectors, and cloud/hybrid attack surfaces.

Hands-on experience using internal AI tools and frontier models to perform or accelerate security testing, not just conceptual familiarity!

Software engineering fundamentals: System design, API integration, working with distributed services and technologies.

Ability to write custom scripts/tooling/payloads and contribute to building automation and autonomous harnesses including prompt engineering.

Excellent written and verbal communication skills.


Preferred Qualifications:

Experience with agentic frameworks, prompt optimization, agent evaluation, or lightweight model fine-tuning.

Published security research, CVEs, or conference talks.

Familiarity with MITRE ATT&CK/ATLAS and offensive AI/ML attack surfaces (prompt injection, agentic privilege abuse).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8798562
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
26/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for a Security Engineer - Product to spread the power. The ideal candidate will have experience performing security reviews, vulnerability management, and detection and response operations in cloud-native environments. Youll get to collaborate with our software development and DevOps teams to secure our products, CI/CD infrastructure, and production infrastructure. Youll also have the opportunity to influence our product roadmap by utilizing our platform to assess, monitor, and harden our environments.
Responsibilities:
Lead threat modeling and security review exercises across our production and CI/CD environments - identifying and mitigating risks in our products and the cloud services that support them.
Drive vulnerability management and remediation efforts - prioritizing issues, implementing mitigations, and designing strategic preventative controls.
Extend our detection and response capabilities - building scalable solutions to identify malicious activity, triage alerts, and investigate and remediate incidents.
Collaborate with our Federal team - extending our DevSecOps and Product Security practices to our FedRAMP environment and ensure it meets key security requirements.
Build deep functional partnerships with our engineering and operations teams - helping them deliver secure-by-design solutions.
Requirements:
Minimum Qualifications
5+ years of experience in security engineering or security operations work in cloud environments.
Experience with AWS platforms and services (equivalent experience in Azure and GCP also considered), Kubernetes (AWS EKS), and container infrastructure.
Experience with IAM, managing cloud identities at-scale, and secure development and application of IAC solutions (Terraform, Helm).
Experience with cloud-native observability and management tools.
Experience with automation and tooling development in one or more: Python, Go, Shell, HCL, Rego.
Preferred Qualifications:
Bachelor's degree in computer science or a related field and / or candidates with equivalent job experience in lieu of a degree.
Experience working with remote, globally distributed teams.
Experience working in organizations that develop software and / or operate managed infrastructure and technology services for their own customers.
Experience with CNAPP, CSPM, or CIEM solutions.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8798565
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
26/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
Were looking for a top-notch Detection Software Engineer to join our Threat Research team and further develop the Runtime Sensor. In this role, you will work on a world-class runtime security solution affecting some of the largest cloud workloads, collaborating closely with engineering and research to enable new and better threat detection capabilities.
Check out some of our recent research:
PostgreSQL Cryptomining
SeleniumGreed Cryptomining Exploit Attack Flow & Remediation Steps
PyLoose: First Python-based Fileless Attack on Cloud Workloads
Responsibilities:
Work on a world-class runtime security solution affecting some of the largest cloud workloads.
Work closely with engineering and research to enable new and better threat detection capabilities.
Build and extend our research infrastructure, automated testing infra and release processes.
Conduct research and develop new detection capabilities, from concept to implementation.
Constantly shift things from an art to a science - make the hard things easy, fast and scalable.
Quickly address gaps and changes when needed. Bias towards action.
Analyze, debug and solve problems in test, staging and production environments.
Create and enforce best practices and security policies.
Work with customers in response to requests and questions when needed.
Requirements:
Minimum Qualifications
5+ years of experience in software engineering.
3+ years of experience in cloud-based development. Familiarity with cloud services, Kubernetes, cloud environment architecture, and the major cloud providers (AWS, GCP, Azure).
Deep knowledge of OS internals (Windows/Linux) and networking.
Experience delivering real-world impact on products affecting customers.
The ability to learn independently, to be self-driven and goal-oriented.
Preferred Qualifications:
Experience with runtime security products.
Hands-on experience in a detection engineering role/malware analysis/reverse engineering/vulnerability research.
Familiarity with notable threat actors and threat intelligence analysis.
IR/red-team/threat-hunting experience.
Familiarity with the following languages / tools: Python, PowerShell, Linux shell scripting, Terraform, CircleCI, Github Action.
Excellent communication and teamwork skills.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8797741
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
25/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
our company's attack surface spans several distinct businesses: the engine and editor developers build on, a wide portfolio of cloud products and services, a large monetization business, and a growing set of AI-assisted creation tools. Code built with our company runs everywhere from a developer's workstation to billions of end-user devices, so targets range from native binaries to distributed cloud systems to AI pipelines, and findings here matter.
This role brings an attacker's mindset to that landscape: penetration testing and red team engagements built on complex attack chains. You would combine manual techniques with automation and tooling you develop as part of your craft, extending your reach across the company ecosystem.
What you'll be doing
Plan and execute objective-based penetration tests and red team engagements across our company's products, cloud services, and infrastructure
Find and validate exploitable vulnerabilities, chain them into realistic attack paths, and demonstrate impact with reproducible proofs of concept
Develop the automation and tooling that extend the team's offensive reach across the company ecosystem
Run joint exercises with the SOC and detection engineering teams to validate telemetry and improve detections
Deliver clear findings to engineering teams and surface recurring risk patterns to security leadership.
Requirements:
5+ years of hands-on experience in offensive security, penetration testing, or red teaming
Proven ability to find, exploit, and chain vulnerabilities across applications
Deep understanding of how modern web applications and APIs break
Hands-on experience assessing cloud environments (AWS or GCP)
Strong ability to develop and validate offensive tooling
You might also have
Adversary emulation experience: designing engagements around real threat actor TTPs
Security research in real-time 3D, game engines or SDKs, or mobile runtimes
Experience attacking CI/CD and build systems.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8796320
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
25/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
our company builds the real-time 3D platform that powers games and interactive experiences, along with tools used across ads, automotive, aerospace, architecture, retail, energy, and government. Our Product Security team keeps that platform, and the software built on top of it, safe for millions of creators and their users.
We are seeking a Senior Application Security Engineer with profound expertise in application security. In this role, you will execute fundamental AppSec tasks, including threat modeling, secure design reviews, code evaluation, and vulnerability management, leveraging both manual methods and advanced AI tooling. You will also help secure the AI systems our company itself is building, including agentic tools and AI-assisted development workflows.
You will work directly with engineering teams across the US and EMEA.
What you will do
Lead threat modeling, secure design reviews, and penetration testing for our company products and services, from the engine and editor to cloud services, APIs, and internal platforms.
Perform deep code review and manual testing on high-risk systems, using AI-assisted review processes and covering areas automated tooling cannot fully reach.
Build and operate security automation. Use and extend AI-assisted tooling for continuous code review, finding triage, and automated penetration testing, and step in where human judgment is required.
Secure our company's AI and agentic systems. Assess AI-native products, LLM integrations, and agent workflows for the risks specific to them.
Partner with engineering teams to drive remediation, turning recurring findings into guardrails, secure defaults, and paved paths.
Investigate and respond to application security incidents, including root cause analysis and durable corrective action.
Contribute to our company's secure development lifecycle and to compliance work.
Requirements:
5+ years in application security, with a track record on complex, large-scale systems.
Strong command of secure coding and common vulnerability classes (OWASP Top 10 and beyond)
Hands-on secure development experience across several languages.
Practical penetration testing, security assessment, and vulnerability management experience with standard tooling (SAST, DAST, SCA, and manual techniques).
Experience with Cloud security (GCP, AWS, or Azure).
Working knowledge of authentication, authorization, cryptography, and secure architecture patterns.
Clear technical communication for both engineers and non-technical partners across regions.
Preferred Qualifications
Experience in the technology, gaming industry or Ad tech.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8796309
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות שנמחקו