רובוט
היי א אי
stars

תגידו שלום לתפקיד הבא שלכם

לראשונה בישראל:
המלצות מבוססות AI שישפרו
את הסיכוי שלך למצוא עבודה

מהנדס סייבר

מסמך
מילות מפתח בקורות חיים
סימן שאלה
שאלות הכנה לראיון עבודה
עדכון משתמש
מבחני קבלה לתפקיד
משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP

חברות מובילות
כל החברות
כל המידע למציאת עבודה
להשיב נכון: "ספר לי על עצמך"
שימו בכיס וצאו לראיון: התשובה המושלמת לשאלה שמצ...
קרא עוד >
לימודים
עומדים לרשותכם
מיין לפי: מיין לפי:
הכי חדש
הכי מתאים
הכי קרוב
טוען
סגור
לפי איזה ישוב תרצה שנמיין את התוצאות?
Geo Location Icon

משרות בלוח החם
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
2 ימים
דרושים בTOP SOFT טופ סופט - השמה ומיקור חוץ
מיקום המשרה: תל אביב יפו
לחטיבת הסייבר דרוש/ה חוקר/ת מודיעין איומי סייבר לתפקיד מחקרי וטכנולוגי העוסק בזיהוי, חקירה וניתוח של תקיפות סייבר מתקדמות בסביבות ענן.

מה כולל התפקיד?

ביצוע מחקרים טכנולוגיים על תקיפות סייבר מתקדמות בסביבות Cloud.
חקירת שרשרת התקיפה וזיהוי Indicators / IOCs ומאפייני תקיפה.
גיבוש תפיסות ומתודולוגיות לחקירה בסביבות ענן.
זיהוי, איתור וניתוח איומים לצורך יצירת התרעות מוקדמות.
העשרת צוותי חקירות במידע מודיעיני וטכנולוגי.
ביצוע מחקרי עומק וכתיבת דוחות מודיעיניים וטכנולוגיים.
הפקת תובנות אופרטיביות לצורך שיפור יכולות הגילוי וההתמודדות עם תקיפות ענן.

תפקיד למי שרוצה להיות בחזית המחקר והמודיעין בעולם הCloud Security.
דרישות:
ניסיון של 4 שנים ומעלה בתחום Cyber / Threat Intelligence / Cyber Research.
ניסיון מוכח בחקירת תקיפות סייבר וניתוח שרשראות תקיפה.
ניסיון בסביבות Cloud - AWS / Azure / GCP.
ידע והבנה מעמיקה של Cloud Security ותשתיות ענן.
ניסיון באיתור וניתוח IOCs, TTPs וממצאים מודיעיניים.
היכרות עם MITRE ATT CK ומתודולוגיות Threat Intelligence - יתרון.
ניסיון בכלי חקירה, ניטור וניתוח בסביבות ענן - יתרון.
יכולות מחקר, אנליזה והסקת מסקנות ברמה גבוהה.
יכולת כתיבה והצגת מחקרים ודוחות טכנולוגיים.
יכולת עבודה עצמאית לצד עבודה מול צוותי Cyber וחקירות.

יתרון משמעותי:
ניסיון בחקירת תקיפות מתקדמות, APT, Cloud Attacks, Incident Response או Digital Forensics. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8781641
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
דרושים בNishapro
Location: Tel Aviv-Yafo
Job Type: Full Time and Hybrid work
**Temporary position - 12-month contract**
2-5+ years of experience in Governance, Risk & Compliance (GRC), Information Security, or Compliance.
Proven experience in Third-Party Risk Management (TPRM) / Supply Chain Security.
Hands-on experience leading or supporting ISO 27001 and/or SOC 2 audits and compliance programs.
Strong knowledge of security and privacy frameworks, including ISO 27001, SOC 2, NIST, GDPR, and HIPAA.
Ability to work independently, manage multiple workstreams, and collaborate with cross-functional teams.
Strong communication skills with both technical and business stakeholders.
AI-native mindset with experience using AI tools to improve productivity and streamline compliance processes.
Requirements:
Hands-on experience leading or supporting ISO 27001 and/or SOC 2 audits and compliance programs.
Strong knowledge of security and privacy frameworks, including ISO 27001, SOC 2, NIST, GDPR, and HIPAA.
Ability to work independently, manage multiple workstreams, and collaborate with cross-functional teams.
Strong communication skills with both technical and business stakeholders.
AI-native mindset with experience using AI tools to improve productivity and streamline compliance processes.
This position is open to all candidates.
 
Show more...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8766127
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
3 ימים
דרושים בG-NESS
מיקום המשרה: ירושלים
גיבוש, כתיבה ועדכון של מדיניות ונהלי אבטחת מידע בהתאם לדרישות רגולטוריות, תקנים בינלאומיים וסביבות עבודה מתקדמות, לרבות פתרונות ענן וכלי AI
הובלת תהליכי Governance, Risk Compliance (GRC) הטמעת רגולציה ותקנים בתחום הגנת הסייבר והפרטיות
הובלת תהליכי המשכיות עסקית (BCP), התאוששות מאסון (DRP) וניתוח השפעות עסקיות (BIA), כולל תרגולים, הפקת לקחים ושיפור מוכנות הארגון
ביצוע סקרי פערים, ביקורות פנימיות ובקרות לצורך עמידה בדרישות רגולטוריות ותקני אבטחת מידע.
ליווי פרויקטים ומערכות מידע משלב האפיון והפיתוח (SDLC) ועד ההטמעה, תוך ניהול סיכוני סייבר ואבטחת שרשרת האספקה
הטמעת עקרונות Privacy by Design בפרויקטים חדשים וליווי היבטי הגנת הפרטיות
עבודה מול גורמים מקצועיים ויחידות שונות בארגון, בכפיפות למנהל תחום בכיר אבטחת מידע וסייבר
דרישות:
ניסיון בליווי לפחות שני פרויקטים להתאמת ארגון לתקנות הגנת הפרטיות או לתקני ISO 27001 / ISO 27017 / ISO 27018 / ISO 27035 במהלך שלוש השנים האחרונות
ניסיון מוכח בתחום GRC (Governance, Risk Compliance)
ניסיון בביצוע ביקורות בתחום הגנת הסייבר המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8737093
סגור
שירות זה פתוח ללקוחות VIP בלבד
לוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Jerusalem
Job Type: More than one
we are looking for a Mid-Level, Security Engineer.
This role focuses on ensuring the security and compliance of cloud infrastructure by implementing and maintaining robust security controls across AWS environments. The position involves automation for security monitoring, adhering to best practices, and collaborating cross-functionally with other teams.
Who You Are:
A strong individual contributor who takes pride in delivering high-quality security outcomes while collaborating closely with peers and stakeholders. You are able to build trust, provide thoughtful input, and continuously grow your technical and operational expertise.
You are passionate about exploring new technology and using it to make an actionable impact to the future of fintech. You can balance the needs of the business and the team's goals with strong value for code quality and adherence to implementing best practices.
A highly skilled AWS Security Engineer with additional FinOps expertise to ensure the security and compliance of our cloud infrastructure. You are able to implement and maintain robust security controls across AWS environment. You are passionate about best practices, automation for security monitoring, and collaborating with other teams.
Requirements:
Proficiency in Hebrew and English language with excellent written and verbal communication skills
AWS Certified Security Specialty - plus
AWS Certified Solutions Architect - Professional - plus
Experience with Azure cloud security, including relevant certification (Azure AZ-104 Administrator)
In-depth knowledge of AWS security services (e.g., IAM, GuardDuty, CloudTrail, VPC security)
Expertise in cloud security architecture, including identity and access management, encryption, network security, and application security.
Strong skills in Linux, Bash, Terraform, Jenkins, Containers/Docker, and programming languages such as Python and JavaScript
Experience in security automation and incident response in cloud environments
Experience with endpoint security, including endpoint management and investigation tools, supporting endpoint-based investigations and response, working with XDR and DLP technologies and workflows (alert triage, investigation, containment, and remediation), and familiarity with the Microsoft security ecosystem (e.g., Microsoft Defender, Intune, Sentinel, Purview).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8774267
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Jerusalem
Job Type: More than one
Were seeking a Senior Application Security Engineer who is first and foremost a teacher, advisor, and enabler for our development teams.
Rather than owning security alone, youll embed secure-by-design thinking across engineering by mentoring developers, guiding architecture decisions, and making secure development intuitive and frictionless.
Youll serve as the go-to partner for developers and engineering leaders, offering clear direction, practical solutions, and hands-on mentorship that strengthens our secure SDLC.
Who You Are:
A proactive self-starter with deep expertise in application and cloud security
Passionate about secure development and enabling engineers through thoughtful guardrails
Clear and confident communicator who can influence across technical and non-technical teams
Curious about emerging threats and excited by the challenges of blockchain security
Committed to excellence, with a strong sense of ownership and a drive to build secure systems that scale
Requirements:
Native level fluency in English and Hebrew (written and verbal) - Must
7+ years in software security engineering, including 4-5 years in AppSec of secure development enablement roles
Strong coding ability in one or more modern languages (JavaScript/TypeScript, Python, Go, Java, C#)
Proven experience teaching, mentoring, or enabling developers through training, code reviews, threat modeling, internal talks, or champion programs
Deep understanding of secure coding principles, common vulnerability classes, API security, and secure design techniques
Hands-on Experience with AppSec tooling (SAST, SCA, IaC scanners, secret scanning) and integrating them into the developer workflows
Experience with cloud native architectures and security in AWS or Azure
Familiarity with compliance and security frameworks (PCI DSS, SOC 2, FEIEC, NIST, OWASP, ASVS)
Excellent communication and storytelling skills - able to break down complex issues into simple, practical guidance
A collaborative mindset and passion for building a positive, empowering security culture
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8774265
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time and Hybrid work
Were looking for an Application Security Engineer with a passion for AppSec to join our growing team.
Responsibilities:
‍‍Build and maintain an advanced security research lab to test, evaluate, and supercharge detection tools.
Analyze tools across multiple domains: SAST, SCA, DAST, Secret Detection, IaC Scanning, Container Scanning, CSPM, and more.
Identify detection gaps and develop techniques and rules to close them.
Leverage Python and AI practices to automate research and drive smarter detection strategies.
Monitor emerging threats, CVEs, and high-profile incidents - and develop relevant detection content and platform enhancements.
Collaborate closely with engineering, product, and marketing.
Requirements:
Strong hands-on interest experience in Application Security - including knowledge of software vulnerabilities, secure coding practices, and modern development workflows (a strong advantage).
2+ years of experience as a backend engineer building large-scale products.
Proficiency in Python/Node/Go with a passion for writing clean, maintainable code.
Experience with Docker containers.
Familiarity with at least one major AppSec domain: SAST, SCA, Secret Detection, IaC Scanning, Container Scanning, CSPM, or DAST.
Understanding of CI/CD pipelines and modern DevOps workflows.
Self-driven and curious, with the ability to work independently in a dynamic startup environment.
Hands-on experience with AI dev assistants such as Cursor is required, since we rely on them in day-to-day development.
Advantage:
‍‍Experience using AI tools and practices.
Knowledge of cloud-native security (AWS, GCP, Azure).
Service in elite tech units (e.g., 81, 8200, Talpiot) or equivalent experience is a nice-to-have.
Contributions to open-source security tools, technical blogs, or research publications.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8773387
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
05/08/2026
Location: Herzliya
Job Type: Full Time and Hybrid work
We are seeking an MDR Security Engineer to own and scale the automation layer that powers our global MDR operations. This role is responsible for building and operating production-grade automation systems that reduce manual workload, improve detection quality, and enable consistent, high-quality incident response.
The ideal candidate is a hands-on engineer with strong experience in SOAR platforms, security operations, and automation design, capable of driving measurable improvements in efficiency, reliability, and response outcomes across a high-volume SOC environment.
Responsibilities
Upkeep the design, development, and lifecycle of SOAR playbooks, workflows, and integrations across the MDR platform
Build and operate production-grade automation systems supporting alert triage, enrichment, investigation, and response
Define and drive automation strategy by identifying high-impact, high-volume SOC processes and scaling them through automation
Develop integrations across SIEM, EDR/XDR, identity, cloud, and ticketing systems using APIs and scripting
Partner with MDR analysts, IR, threat hunters, and engineering teams to translate operational workflows into scalable automation
Improve detection and response quality through automation of enrichment, investigation, and containment workflows
Contribute to incident response and RCAs by delivering tooling that improves investigation speed, accuracy, and consistency
Evaluate and implement new automation capabilities, including AI-assisted workflows and data-driven decisioning
Monitoring, Metrics & Reliability Ownership
Define and own automation KPIs, including:
Automation coverage (% of alerts handled or augmented)
MTTD / MTTR improvement
False positive reduction and signal-to-noise improvement
Analyst time saved and throughput increase
Build and maintain dashboards and reporting to measure automation impact on SOC performance and SLAs
Ensure production reliability and stability of automation systems, including:
Monitoring workflow success/failure rates and execution latency
Tracking integration and API health, errors, and retry behavior
Implementing logging, alerting, and observability across automation pipelines
Continuously optimize workflows based on data, feedback, and operational performance to ensure consistent 24/7 MDR operation.
Requirements:
4+ years of experience in Security Operations, MDR, Incident Response, or Security Engineering
2-3+ years of hands-on experience with SOAR platforms and security automation
Proven experience owning and operating production-grade automation workflows in a SOC/MDR environment
Strong understanding of SOC operations, alert triage, escalation workflows, and incident response
Experience with enterprise security technologies (SIEM, SOAR, EDR/XDR, IAM/AD)
Strong scripting/development skills (Python, PowerShell, Bash) and experience building APIs and integrations
Experience with CI/CD, version control (Git), and deploying automation at scale
Strong analytical thinking and problem-solving skills with the ability to translate complex workflows into automation
Excellent communication and collaboration skills across engineering and operations teams
Nice to Have
Experience with AI-enhanced automation or large-scale workflow orchestration
Experience in high-volume MDR/SOC environments
Familiarity with threat hunting or detection engineering.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8769894
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Netanya
Job Type: Full Time and Hybrid work
We are looking for highly skilled Cyber Security Engineers to join our unified Cyber Defense team. As our organization scales, we are expanding our security engineering team to take definitive ownership across our corporate architecture, global workforce, and cloud infrastructure.
You will have the opportunity to take ownership of specific security pillars based on your expertise.
If you are an action-oriented builder who wants to deploy modern security platforms, ensure our employees can work securely from anywhere, and maintain our fast-paced culture without friction, this role is for you.
Responsibilities:
Based on your specific expertise, you will lead or partner on the following initiatives:
Network & Endpoint Security: Lead and optimize network architectures, including modern SASE platform, VPN configurations, and routing to ensure a seamless and highly secure Zero Trust Network Access (ZTNA).
Take ownership of our Endpoint Security (EDR) platform, driving continuous tuning, policy hardening, and advanced Email Security suite management (including SPF/DKIM/DMARC).
Identity & Access Management (IAM): Act as a technical authority for our IAM architecture. Define strict security policies (MFA, Conditional Access, RBAC) and work closely with IT to continuously improve our identity-first security posture.
Cloud & SaaS Security: Monitor and maintain our cloud security posture across major CSP environments (including K8s & Containers) using CSPM tools.
Perform rapid, pragmatic security assessments for new SaaS applications and manage SSPM configurations.
Vulnerability Management: Own the vulnerability lifecycle for infrastructure, endpoints, and corporate software. Drive prioritization and remediation tracking in close collaboration with DevOps and IT.
Incident Response: Support security incident response, assist in containment, contribute to post-mortem analysis, and maintain IR runbooks relevant to your domains.
GenAI Security: Help define and enforce secure usage policies for GenAI tools (e.g., Copilot, Claude, ChatGPT) to prevent data leakage.
Requirements:
4+ years of hands-on experience in Cyber Security, Network Security, or Cloud/IT Security engineering roles.
Deep technical expertise in AT LEAST ONE of the following core domains:
(Network & Endpoint): Proven hands-on experience deploying and managing modern SASE/Zero Trust platforms, packet-level network protocols (TCP/IP, DNS, HTTP/S), VPN architectures, and enterprise EDR/XDR platforms.
(Identity & Cloud): Strong technical experience designing complex Conditional Access policies in Enterprise Identity Providers (IdP), and hands-on experience managing Cloud Security Posture Management (CSPM) and SaaS security tools.
Excellent analytical and troubleshooting skills, with the ability to quickly analyze complex connectivity issues and enforce security policies without compromising velocity for development teams.
A pragmatic, action-oriented approach to risk management and problem-solving.
Advantage:
Experience protecting SaaS systems and working with CASB & SSPM platforms.
Familiarity with writing API scripts (Python/Bash) to automate security workflows
Familiarity with IR processes and the ability to support containment activities when called upon.
Experience with infrastructure and endpoint vulnerability scanning tools.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8758322
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time and Hybrid work
We are looking for a Senior Cloud Security Engineer to help build secure-by-default cloud platforms across Azure and AWS. This is an engineering-focused role centered on preventive controls, scalable guardrails, Kubernetes security, network security, and automation, not a SOC or incident-response-first position.
Primary focus areas: cloud security guardrails, Kubernetes security, cloud network controls, and automation across Azure and AWS
What You Will Do?
You will own the security architecture, guardrails, and automation patterns, while partnering with platform and infrastructure teams on implementation.
Own and evolve Cloud Security Posture Management (CSPM) capabilities, including policies, guardrails, and automated remediation.
Engineer and maintain cloud network security controls, including network segmentation and isolation, cloud-native firewalls and security groups, Application Gateway / WAF configurations, and secure ingress and egress patterns.
Define and enforce security best practices for Kubernetes environments (AKS/EKS), including RBAC, network policies, workload isolation, and cluster hardening.
Partner with engineering teams on architecture reviews for new services, platforms, and major changes, helping teams design secure, compliant, and practical solutions.
Engineer and maintain identity and access security controls for cloud and production environments, including least privilege, workload identity, service principals, and conditional access.
Apply a security lens to FinOps, defining guardrails that balance cost optimization with security and compliance.
Develop tooling, automation, and self-service workflows that reduce manal effort and improve consistency across security programs.
Communicate complex security risks and technical recommendations clearly to engineering teams, leadership, and cross-functional stakeholders.
Mentor junior engineers and contribute to raising the overall security maturity of the organization.
Requirements:
6+ years of experience in cloud security, security engineering, or cloud platform engineering roles.
Deep hands-on security experience in Azure or AWS is required; experience across both is strongly preferred.
Hands-on experience securing production AKS/EKS environments, including RBAC, network policies, workload identity, admission controls, image/runtime controls, and cluster hardening.
Proven experience with cloud network security, including firewalls, WAFs, network segmentation, and secure connectivity patterns.
Strong understanding of cloud security architecture, including shared responsibility models, secure service design, and defense-in-depth.
Experience with preventative security controls, including CSPM, policy enforcement, and secure cloud baselines.
Cloud automation experience using Infrastructure as Code tools such as Terraform, Bicep, or CloudFormation, plus scripting with Python, PowerShell, Bash, or similar languages.
Ability to operate independently, own complex problem spaces, and deliver practical, scalable solutions.
Strong communication skills and comfort providing architecture-level guidance to engineering teams.
Experience working in regulated environments
Bonus Points:
Experience contributing to or supporting compliance programs such as FedRAMP, SOC 2, ISO 27001, or NIST frameworks.
Familiarity with CI/CD pipelines and DevSecOps practices.
Experience with identity and access management in cloud environments (RBAC, workload identity, service principals) is a strong plus.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8757728
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
23/07/2026
Location: Petah Tikva
Job Type: Full Time and Hybrid work
We seek a Senior Application Security Engineer to serve as the technical core of our bug bounty program within the Product Security Incident Response Team (PSIRT). This is the senior engineer who owns bug bounty reports from intake through resolution: reproducing and validating the vulnerability, assessing its severity, and seeing it through to a verified fix.
The work is deeply technical. Reproducing a vulnerability is only the starting point. From there you read the underlying code, identify root cause, and either propose the fix or design it alongside engineering before confirming it holds. You are also the person researchers deal with directly, which makes clear, credible communication as central to the role as the technical analysis itself.
As one of the most senior engineers on the team, you will set the standard for how triage is done and mentor earlier-career engineers. Beyond the bug bounty queue, you will conduct variant hunts, perform original platform security research, lead major product security incidents, and run forensic postmortems when a significant issue reaches production.
Key Responsibilities:
Triage and Resolve Bug Bounty Reports:
Own incoming reports end-to-end: intake, reproduction, severity scoring, root cause analysis, fix verification, and final disposition.
Reproduce and validate reported vulnerabilities, building out incomplete proof-of-concept code where needed.
Serve as the technical escalation point for the most complex and highest-severity reports, including multi-step exploit chains and cross-system issues.
Perform code review and root cause analysis to identify the underlying defect rather than the reported symptom.
Propose remediations, or design them with engineering, and verify the fix resolves the issue.
Assign and defend severity ratings using the program's severity framework.
Route issues to owning teams, file and track defects, and keep vulnerability records accurate through closure.
Own Researcher and Stakeholder Communication:
Act as our primary technical point of contact for bug bounty researchers across the full lifecycle of a report.
Handle severity and validity disputes directly, keeping every exchange clear, timely, respectful, and technically credible.
Translate technical findings for internal stakeholders and keep engineering and leadership current on status and risk.
Mentor the Team and Raise Triage Standards:
Provide technical mentorship to earlier-career PSIRT engineers, developing depth in reproduction, code analysis, severity judgment, and communication.
Set and maintain the bar for triage quality and strengthen program practices over time.
Requirements:
8+ years of hands-on experience in product security, application security, penetration testing, or vulnerability research. Depth of expertise matters more than years.
Expertise in:
Common web and application vulnerability classes and exploitation techniques.
Vulnerability reproduction, severity assessment, and defensible risk scoring under ambiguity.
Coordinated vulnerability disclosure.
Code and development fluency:
Strong code comprehension in Java, JavaScript, and Python, with the ability to trace root cause in large, unfamiliar codebases and review pull requests.
Ability to write code and propose concrete fixes. This is not an application-building role, but you reason fluently in code.
Working knowledge of Git, Gradle, Maven, CI/CD pipelines, and secure SDLC.
Proficiency with Claude Code or equivalent AI coding assistant for code comprehension and security research.
Exceptional written communication. You will represent ServiceNow directly to external researchers, frequently in disagreement, and bridge those researchers and internal engineering. This is a core requirement of the role, not a supporting skill.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8751365
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
23/07/2026
Location: Petah Tikva
Job Type: Full Time and Hybrid work
We are looking for a Staff Security Engineer to be a core contributor on this team.
Security R&D operates in two complementary modes: open contribution to product engineering - writing code alongside product teams where security expertise adds value - and developing its own security capabilities, including internal tooling, externally facing product features, AI-powered security automation, and third-party integrations.
This is a new team being stood up in Petah Tikva, Israel, co-located with our AI Security Research team. You will help shape the teams engineering practices and technical foundation from day one.
This role reports to the Sr. Engineering Manager, Security R&D.
What You Will Do
Build Security Capabilities:
Design and develop security tooling, automation, and platform services that operate at our enterprise scale.
Contribute code directly into our viceNow product engineering codebases, embedding security capabilities where they have the highest impact.
Build AI-powered security automation by integrating in-house models and third-party services into production workflows.
Leverage our platform - Agent Framework runtime, ACL enforcement, data layer, and workflow engine - to create security capabilities that external vendors cannot match.
Requirements:
To be successful in this role, you have:
8+ years of professional software engineering experience building production systems at scale.
Bachelors degree in Computer Science, Engineering, or a related technical field.
Strong hands-on proficiency in Python and Java. You write production code daily and take pride in software craftsmanship.
Solid foundation in distributed systems, cloud-native architectures, and building services that meet enterprise requirements for scalability, reliability, and performance.
Experience working in collaborative engineering environments, contributing to shared codebases with high code quality standards.
Interest in or exposure to security engineering concepts - application security, infrastructure security, identity systems, or trust & safety. A security mindset is valued; deep security expertise can be developed on the team.
Curiosity about AI/ML and next-generation AI technologies. You dont need to be an AI expert, but you should be excited about building at the intersection of security and AI.
Preferred:
Experience with security tooling development, SSDLC automation, or building security features into a product.
Familiarity with container/Kubernetes environments, cloud security, or infrastructure-as-code.
Exposure to AI/ML pipelines, LLM integration, or agentic frameworks.
Experience in a SaaS or platform company building multi-tenant enterprise software.
Experience working in a globally distributed engineering team.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8751327
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Herzliya
Job Type: Full Time and Hybrid work
we are looking for a Senior Security Engineer.
In this role, your solutions and expertise will have a company-wide impact. You will build cutting-edge software that solves complex pain points, actively support security efforts, and collaborate directly with teams across Akamai to reduce our overall attack surface.
As a Senior Security Engineer, you will be responsible for:
Designing, developing, testing, and deploying scalable security tools adopted across the organization.
Acting as a technical resource during security incidents to analyze threats and deploy scripts.
Researching and integrating AI and machine learning to automate workflows and enhance security.
Partnering with diverse teams to understand operational environments and engineer customized solutions.
Managing, documenting, and upgrading internal security tools to address evolving business needs.
Staying at the forefront of InfoSec and AI landscapes to upskill the team.
Requirements:
Possess at least 4 years of experience in cybersecurity and software engineering.
Demonstrate proficiency writing complex scripts and production-grade tools using one or more of the following languages: Python, Go, Rust, Bash, Groovy.
Have to apply AI (LLM) technologies to solve security problems.
Understand threat modeling, attack vectors, and incident response to neutralize modern threats.
Manage Jenkins pipelines, Git workflows, and infrastructure tooling like Terraform or Ansible.
Communicate effectively with a diverse user base to define technical needs.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8744432
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות שנמחקו