משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP

חברות מובילות
כל החברות
כל המידע למציאת עבודה
5 טיפים לכתיבת מכתב מקדים מנצח
נכון, לא כל המגייסים מקדישים זמן לקריאת מכתב מק...
קרא עוד >
הטבות ובונוסים בעבודה בחברות הייטק
מכון כושר צמוד, חדר אוכל משובח, חדר משחקי וידאו...
קרא עוד >
טעויות נפוצות בניהול קריירה
הדרך לחיים של חוויות והזדמנויות עוברת דרך תכנון...
קרא עוד >
לימודים
עומדים לרשותכם
מיין לפי: מיין לפי:
הכי חדש
הכי מתאים
הכי קרוב
טוען
סגור
לפי איזה ישוב תרצה שנמיין את התוצאות?
Geo Location Icon

משרות בלוח החם
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 3 שעות
דרושים ברשות ניירות ערך
מיקום המשרה: תל אביב יפו
תיאור המשרה:
יחידת הביקורת במחלקת ביקורת ואכיפה מגייסת ראש תחום לפיתוח והובלה של תחום ביקורת סיכוני טכנולוגיית מידע והגנת סייבר בגופים המפוקחים על ידי הרשות.
מטרת התפקיד הינה גיבוש תפיסת הביקורת בתחום סיכוני טכנולוגיית המידע והגנת הסייבר, בניית תוכניות עבודה מבוססות סיכון, ביצוע ביקורות בתחום בגופים המפוקחים וחיזוק ניהול סיכוני טכנולוגיית מידע והגנת הסייבר בקרב הגופים המפוקחים.
הביקורות יכללו בחינה והערכה של ממשל תאגידי בתחום טכנולוגיית המידע; הערכת טיב ניהול סיכוני טכנולוגיית המידע, חוסן תפעולי, סיכוני ספקים וצדדי ג'; הערכת אפקטיביות הבקרות המיושמות על ידי הגופים המפוקחים וכן ניתוח פרוטוקולים, דוחות, חוות דעת ומסמכים נוספים לצורך גיבוש ממצאים והמלצות התומכים בפעילות הפיקוח של הרשות.
התפקיד מחייב ראייה מערכתית, חשיבה ביקורתית ומתודולוגית, יכולת ניתוח גבוהה, יכולת כתיבה ברמה גבוהה, סקרנות מקצועית, יכולת למידה עצמאית והיכרות עם מגמות טכנולוגיות ורגולטוריות מתקדמות.
דרישות:
תנאי סף:
השכלה אקדמית בתחום רלוונטי
ניסיון מקצועי של חמש שנים לפחות בתחום ביקורת מערכות מידע, ובכלל זה ביקורות בתחום אבטחת מידע והגנת סייבר
היכרות עם מסגרות עבודה מקובלות בתחום ניהול סיכוני סייבר, כגון: NIST, ISO27001, COBIT או מסגרות מקבילות.

יתרון משמעותי:
ניסיון בביצוע ביקורת טכנולוגיית מידע והגנת סייבר במסגרת עבודה במוסד פיננסי, משרד רו"ח, חברת ייעוץ או רשות רגולטורית
ניסיון בביצוע ביקורות בנושאים הבאים: ממשל תאגידי של מערכות מידע, ניהול סיכוני טכנולוגיית מידע, חוסן תפעולי, המשכיות עסקית והיערכות לחירום, סיכוני שרשרת אספקה לרבות מיקור חוץ וצד ג'
הסמכה מקצועית רלוונטית, כגון: CISA, CRISC, CISM, CISSP, CIA או הסמכה מקבילה
היכרות עם רגולציה ישראלית ובינלאומית בתחומים הרלוונטיים
היכרות עם טכנולוגיות עדכניות, בדגש על סיכוני בינה מלאכותית/ פיתוח תוכנה בקוד פתוח/ טכנולוגיית ענן.

תנאי העסקה ומידע נוסף:
מקום העבודה: רשות ניירות ערך, תל אביב
קיימת אפשרות לעבודה היברידית, המשלבת עבודה מהמשרד ומהבית
בהתאם לסעיף 5 לחוק ניירות ערך, התשכ"ח-1968, מוטלות על עובדי הרשות מגבלות מסוימות בקשר לרכישת ניירות ערך. כמו כן תיבחן סוגיית ניגוד העניינים ומהימנות
השכר ייקבע בהתאם לכישורי המועמד.ת וניסיונו.ה
ניתן להגיש מועמדות עד לתאריך 26/08

* המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8749847
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 5 שעות
דרושים בmatrix
מיקום המשרה: לוד
דרוש/ה מומחה/ית סייבר בהגנה פרואקטיבית ו-Incident Response (IR) למערכות OT, לתפקיד מאתגר ומשמעותי בסביבת תשתיות קריטיות.

תחומי אחריות:

טיפול ותגובה לאירועי סייבר (Incident Response) במערכות IT ו-OT.
ביצוע חקירות ופורנזיקה של אירועי סייבר במערכות OT.
ניתוח לוגים ממערכות אבטחת מידע ואיתור אנומליות ברשתות OT.
חיזוי וקטורי תקיפה ואיסוף מודיעין סייבר לזיהוי איומים פוטנציאליים.
טיוב ופיתוח חוקי קורלציה במערכות אבטחת מידע.
עבודה שוטפת מול מערך הסייבר הלאומי והערכת רלוונטיות של איומים ומתקפות לארגון.
עבודה עם מגוון מוצרי הגנת סייבר וכלי ניטור מתקדמים.
דרישות:
לפחות 4 שנות ניסיון בתחום הסייבר - חובה.
ניסיון באחד או יותר מהתחומים הבאים: SOC, Incident Response (IR), Red Team או Penetration Testing - חובה.
היכרות עם כלי תקיפה ומוצרי הגנת סייבר.
ניסיון בעבודה עם מערכות SIEM, SOAR, מוצרי Anomaly Detection ו-Deception - יתרון משמעותי.
היכרות עם סוגי תקיפות סייבר ודרכי ההתמודדות עמן.
עברית ואנגלית ברמה גבוהה.
חשיבה אנליטית, יכולת למידה עצמית ועבודה בצוות. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8721373
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
לפני 5 שעות
דרושים בבלופרינט סופטוור
מיקום המשרה: מספר מקומות
אנחנו מחפשים איש תשתיות אבטחת מידע חזק/ה להצטרפות לצוות האחראי על חוסן התשתיות בארגון.
התפקיד כולל אחריות מקצה לקצה על מחזור החיים של מערכות אבטחה מורכבות: החל משלב האפיון וההקמה, דרך ליווי פרויקטים רוחביים, ועד תחזוקה שוטפת וטיפול בתקלות עומק (Tier 2/3).
העבודה מתבצעת בסביבה טכנולוגית מתקדמת, עתירת רגולציה וסטנדרטים מחמירים של אבטחה.

תחומי אחריות
ניהול, הטמעה ותחזוקה של מערכות אבטחת מידע מגוונות.
אחריות על זמינות ותקינות המערכות, כולל ביצוע שדרוגים, הקשחות וטיפול בתקלות מורכבות.
עבודה מול צוותי פיתוח, תקשורת וסיסטם כגורם מקצועי מייעץ בפרויקטים טכנולוגיים.
הובלת תהליכי POC למערכות חדשות והטמעתן בייצור.
דרישות:
דרישות סף
הבנה עמוקה בתקשורת: ידע ברמת CCNA ומעלה (פרוטוקולי ניתוב, Switching, FW Rules).
ניסיון בסיסטם: שליטה מצוינת בניהול שרתי Windows ו- Linux (התקנה, הקשחה וניהול).
ניסיון מעשי (Hands-on) מוכח: שליטה ברמה גבוהה ב-2-3 מהתחומים הבאים, והיכרות טובה (Tier 1 ומעלה) באחרים:

Endpoint Protection (EDR/XDR).
[Cortex, Trellix, SCSP]
Network Security: Forward/Reverse Proxy, WAF.
[F5, Netscaler, Symantec Web, Symantec WSS]
Email Security & Hygiene.
[Forcepoint Mail, Proofpoint Mail, Symantec Mail
Remote Access & NAC.
[ClearPass, Mobileiron]
Azure Cloud.
[Conditional Access, Intune]
data Loss Prevention (DLP).
[Symantec DLP, MS Purview, Forcepoint DLP]
מערכות הלבנה (CDR) וסורקי אבטחה.
[Vorito, Opswat, Tenable] המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8621709
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 7 שעות
דרושים בNishapro
מיקום המשרה: רמת גן ופתח תקווה
לארגון פיננסי גדול ומוביל דרוש/ה סוקר אבטחת מידע לביצוע, סקרי סיכונים.
ביצוע סקרי סיכונים למערכות החברה
זיהוי חולשות במערכות קיימות ומערכות בתהליכי הטמעה.
סקירה של הקשחות אל מול סטנדרטים מקובלים
בדיקות רגולטוריות בהתאם לרגולציות בארגונים פיננסים
הערכת האפקטיביות של הבקרות המפצות.
מתן המלצות למידור החולשות
עבודה מול הצוותים המקצועיים במטרה לוודא מיגור החולשות.
עבודה בצוות מקצועי במתכונת של purple team
דרישות:
ידע וניסיון קודם בביצוע סקרי אבטחת מידע: ביצוע סקרים שונים(security assessments) לרמות תשתית ואפליקציה, כולל זיהוי, דיווח ופתרון בעיות אבטחה.
כולל הכנת דוחות והמלצות לאחר סיום הסקרים. (ONPREMIS/AZURE/AWS/ Linux )
ניסיון בביצוע מבדקי חדירה(penetration testing): ניסיון מעשי בביצוע מבדקי חדירה ברמות תשתית ואפליקציה פלטפורמות, שרתים, אפליקציות ו-mobile (ONPREMIS/AZURE/AWS/ Linux ) כולל הכנת דוחות והמלצות לאחר סיום הסקרים.
הבנה טכנית גבוהה: ידע מעמיק בטכנולוגיות אבטחת מידע, סקרי פגיעויות, פרוטוקולים, טכניקות חדירה וכלי עבודה בתחום ה penetration testing.
ראייה מערכתית: יכולת עבודה עם מגוון רחב של מערכות טכנולוגיות ויכולת להבין את השפעת אבטחת המידע בהיבטים רחבים של מערכות ארגוניות.
הכרות עם סטנדרטים בתחום אבטחת המידע: ידע והבנה מעמיקה של דרישות אבטחת המידע והרגולציות בתחום הפיננסי, כולל יכולת התאמה לרגולציות מחמירות כמו:ISO 2700 NIST, PCI-DSS, GDPR.
הסמכות רלוונטיות: הסמכות מוכרות בתחום אבטחת המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8746839
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
לפני 8 שעות
דרושים בTOP SOFT טופ סופט - השמה ומיקור חוץ
מיקום המשרה: רעננה
לפרויקט בתחום הגנת הסייבר דרוש/ה מיישם /ת סייבר ג'וניור/ית להשתלבות בסביבה טכנולוגית דינמית ומאתגרת.
הזדמנות חד פעמית להשתלב בתחום ללא ניסיון ניכר.

מה בתפקיד?

יישום והטמעת פתרונות הגנת סייבר.
עבודה בסביבה טכנולוגית ומערכות מחשוב מגוונות.
תמיכה בפעילות אבטחת המידע והסייבר.
עבודה בצוות ובממשקים מול גורמים טכנולוגיים.
מתן מענה מקצועי ושירותי בהתאם לצורכי המערכת.
עבודה בסביבה דינמית וריבוי משימות.
דרישות:
ניסיון או השכלה בתחום הסייבר / אבטחת מידע / מחשוב - יתרון.
היכרות עם עולמות Cyber security והגנת סייבר.
יכולת עבודה טובה בצוות ובסביבה דינמית.
תודעת שירות גבוהה.
תקשורת בינאישית טובה ויכולת עבודה מול ממשקים.
ראייה רחבה ויכולת למידה מהירה.
נכונות לעבודה בשעות 07:30-16:30, ימים א'-ה'. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8781645
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
לפני 8 שעות
דרושים בTOP SOFT טופ סופט - השמה ומיקור חוץ
מיקום המשרה: תל אביב יפו
לחטיבת הסייבר דרוש/ה חוקר/ת מודיעין איומי סייבר לתפקיד מחקרי וטכנולוגי העוסק בזיהוי, חקירה וניתוח של תקיפות סייבר מתקדמות בסביבות ענן.

מה כולל התפקיד?

ביצוע מחקרים טכנולוגיים על תקיפות סייבר מתקדמות בסביבות Cloud.
חקירת שרשרת התקיפה וזיהוי Indicators / IOCs ומאפייני תקיפה.
גיבוש תפיסות ומתודולוגיות לחקירה בסביבות ענן.
זיהוי, איתור וניתוח איומים לצורך יצירת התרעות מוקדמות.
העשרת צוותי חקירות במידע מודיעיני וטכנולוגי.
ביצוע מחקרי עומק וכתיבת דוחות מודיעיניים וטכנולוגיים.
הפקת תובנות אופרטיביות לצורך שיפור יכולות הגילוי וההתמודדות עם תקיפות ענן.

תפקיד למי שרוצה להיות בחזית המחקר והמודיעין בעולם הCloud Security.
דרישות:
ניסיון של 4 שנים ומעלה בתחום Cyber / Threat Intelligence / Cyber Research.
ניסיון מוכח בחקירת תקיפות סייבר וניתוח שרשראות תקיפה.
ניסיון בסביבות Cloud - AWS / Azure / GCP.
ידע והבנה מעמיקה של Cloud Security ותשתיות ענן.
ניסיון באיתור וניתוח IOCs, TTPs וממצאים מודיעיניים.
היכרות עם MITRE ATT CK ומתודולוגיות Threat Intelligence - יתרון.
ניסיון בכלי חקירה, ניטור וניתוח בסביבות ענן - יתרון.
יכולות מחקר, אנליזה והסקת מסקנות ברמה גבוהה.
יכולת כתיבה והצגת מחקרים ודוחות טכנולוגיים.
יכולת עבודה עצמאית לצד עבודה מול צוותי Cyber וחקירות.

יתרון משמעותי:
ניסיון בחקירת תקיפות מתקדמות, APT, Cloud Attacks, Incident Response או Digital Forensics. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8781641
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
לפני 17 שעות
דרושים בTOP SOFT טופ סופט - השמה ומיקור חוץ
מיקום המשרה: הרצליה
חפש/ת את האתגר הבא בעולם ה-Offensive Security?

אנחנו מגייסים מומחה/ית Penetration Testing לביצוע מבדקי חדירות אפליקטיביים, תשתיתיים ובענן בסביבה טכנולוגית מתקדמת, עם עבודה צמודה לצוותי פיתוח ותשתיות והשפעה אמיתית על אבטחת המוצרים והמערכות.

מה כולל התפקיד?
ביצוע מבדקי חדירות לאפליקציות Web, Mobile ו-API.
זיהוי חולשות לוגיות וטכניות והערכת סיכונים.
כתיבת דוחות מקצועיים והצגת ממצאים לצוותי פיתוח ותשתיות.
ליווי תהליך תיקון החולשות ומתן המלצות טכנולוגיות.
עבודה עם סביבות Cloud וטכנולוגיות מתקדמות.
דרישות:
לפחות 3 שנות ניסיון מעשי (Hands-on) בביצוע מבדקי חדירות אפליקטיביים.
ניסיון משמעותי עם Burp Suite Professional.
היכרות מעמיקה עם OWASP Top 10 ו-ASVS.
ניסיון בבדיקות API (REST, SOAP, GraphQL) באמצעות Burp או Postman.
יכולת קריאת קוד בשפות כגון JAVA, C #, Node.js או Python.
היכרות עם מנגנוני Authentication ו-Authorization כגון OAuth2, JWT ו-SAML.

יתרון משמעותי
ניסיון בכתיבת סקריפטים ב- Python או Bash.
ניסיון במבדקי חדירות לסביבות Cloud ו-Microservices.
ניסיון בבדיקות Mobile ( Android / IOS ).
היכרות עם Linux, Windows ותקיפות תשתית.
הסמכות כגון OSCP, OSWE או GWAPT. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8755765
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 21 שעות
דרושים בGtech
לארגון רפואי גדול דרוש/ה איש אבטחת מידע וניהול חולשות לתפקיד משמעותי בחטיבת הטכנולוגיות.

תיאור התפקיד:
ניהול תהליך מקיף של מעקב אחרי ממצאים, פגיעויות וחולשות הנובעות ממגוון כלי אבטחת מידע, כולל טיפול, עדכון ודיווח שוטף.
מתן פתרונות טכנולוגיים וייעוץ מקצועי לצוותי המנהלים והטכנאים בכל הנוגע לניהול סיכונים תוך תיעדוף, תיאום והכוונה למימוש פעולות תיקון בזמן.
הכנת דו"חות שוטפים ומעמיקים על המצב הקיים, כלים ושיטות עבודה, תיעוד ממצאים וסטטוס ביצוע הפעולות המתבצעות.
עבודה מול מנהלי פרויקטים טכנולוגיים וגורמים בכירים כדי להבטיח כי כל פגיעות סייבר ותחומים רגישים מקבלים את ההתייחסות הנדרשת בזמן.
השתתפות פעילה בהגדרת נהלים, סטנדרטים ונהלי עבודה למניעת פגיעויות ולשיפור כללי של הגנת הסייבר בארגון.
שיפור מתמיד של תהליכי הניהול והבקרה תוך שימוש בטכנולוגיות חדשות ומודרניות בתחום אבטחת המידע.
דרישות:
ניסיון של 3 שנים לפחות בתפקיד דומה בתחום אבטחת המידע או ניהול פרויקטים טכנולוגיים- חובה.
ניסיון וידע מעמיק בעבודה עם כלים בתחום ניטור והגנת הסייבר הכולל כלי סריקות אבטחה (כדוגמת מערכות CNNAP, SIEM וכדומה) - חובה.
הבנה טכנולוגית מעמיקה בתחומי אבטחת המידע, מערכות מידע, סייבר ותשתיות IT- חובה.
הבנה טכנולוגית מעמיקה בתחומי אבטחת המידע, מערכות מידע, סייבר ותשתיות IT- חובה.
ניסיון בעבודה מול צוותים טכנולוגיים ויכולת לעמוד ביעדים תוך ניהול סיכונים.
יכולת ניהול משימות וריבוי פרויקטים בו-זמנית תוך שמירה על סדר, דיוק ולוחות זמנים. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8781476
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 23 שעות
מיקום המשרה: תל אביב יפו
צוות ניהול סיכוני IT מתמחה בזיהוי, ניתוח והתמודדות עם סיכונים טכנולוגיים, ובבניית פתרונות לשיפור מערכות ותהליכי עבודה לצמצום פגיעה עסקית. המנהלים בצוות מובילים פרויקטים מול לקוחות מהותיים בישראל ובעולם, בשיתוף מומחים מקומיים ובעלי ניסיון גלובלי, תוך שימוש במתודולוגיות ייחודיות וכלים טכנולוגיים מתקדמים. הצוות מוביל פרויקטי IT Risk וניהול ממשל (GRC) עבור Deloitte US ועבור ארגונים מובילים בישראל, כולל בנקים וחברות טכנולוגיה נסחרות. תחומי האחריות כוללים הובלת מספר פרויקטים במקביל בתחומי אבטחת מידע, GRC, SOC2/SOC1, סקרי סיכוני מערכות מידע וסייבר, ביקורות פנימיות וחיצוניות, ייעוץ בנושא בקרה, אוטומציה, ענן, דיגיטל והרשאות/SoD, לצד עבודה שוטפת מול לקוחות, הנחיית צוותים זוטרים, ופיתוח קשרים עם הנהלה בכירה. עבודה היברידית.
דרישות:
תואר ראשון - חובה.

תואר שני - יתרון.

לפחות 5 שנות ניסיון בתחום אבטחת מידע/ GRC/ SOC2/ ISO27001 או ניהול סיכוני IT דומים - חובה.

ניסיון מוכח בהובלת צוותים או בניהול פרויקטים - חובה.

שליטה באנגלית ברמה גבוהה (דיבור וכתיבה) - חובה.

שפות נוספות - יתרון.

ידע וניסיון מעמיק בסטנדרטים ותקני אבטחה/ציות (Soc2, Soc3, FedRAMP, CJIS, GDPR, NIST 800-53 וכדומה).

יכולת אנליטית גבוהה ויכולות הצגה, תקשורת בין-אישית ועמידה מול קהל.

יכולת ניהול ובקרה על מספר פרויקטים במקביל, סדר עדיפויות גבוה ועמידה ביעדים תחת לחץ.

יתרון - ניסיון בעבודה עם צוותים או לקוחות גלובליים.

אנו ב-Deloitte מאמינים כי גיוון והכלה בקרב אנשינו הוא מרכיב קריטי בהצלחה שלנו ולכן אנו מטפחים תרבות ארגונית שמכילה ומאמצת גיוון על כל צורותיו המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8728427
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
1 ימים
דרושים בNishapro
Location: Lod
Job Type: Full Time and Hybrid work
Operate and continuously improve a production ML/AI platform in an air-gapped environment.
Build and maintain infrastructure supporting AI development, evaluation, deployment, monitoring, and model lifecycle management.
Deploy and manage open-weight and self-hosted LLMs (Llama, Mistral, Gemma, Phi, embedding models, rerankers, and domain-specific models).
Optimize inference performance, GPU utilization, and multi-model serving.
Design secure offline workflows for importing, validating, scanning, and mirroring software, models, datasets, and container images.
Maintain private registries and offline installation and upgrade mechanisms.
Build and operate GitOps, CI/CD pipelines, observability, logging, metrics, tracing, GPU monitoring, SLOs,
Requirements:
5+ years of experience in Software Engineering, Platform Engineering, DevOps, Infrastructure, data Engineering, or ML Engineering.
Hands-on experience building or operating production ML/AI platforms.
Strong experience with Kubernetes (or OpenShift/Rancher), Linux, containers, networking, Storage, and production environments.
Strong scripting skills and experience working with cross-functional engineering teams.
Experience with model serving frameworks such as vLLM, Triton Inference Server, KServe, BentoML, TorchServe, or Ray Serve.
Experience with ML lifecycle platforms including MLflow, Kubeflow, Metaflow, Airflow, or Argo Workflows.
Experience with RAG infrastructure and vector databases such as pgvector, OpenSearch/Elasticsearch, MongoDB Vector Search, Milvus, Weaviate, or Qdrant.
This position is open to all candidates.
 
Show more...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8767389
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
דרושים בGtech
מיקום המשרה: פתח תקווה
מחפש/ת את האתגר הבא שלך בעולם ניהול הפרויקטים?
זו הזדמנות להשתלב בתפקיד משמעותי הכולל הובלת פרויקטים טכנולוגיים רחבי היקף, עבודה מול הנהלה בכירה בארץ ובחו"ל והשפעה אמיתית על תהליכים עסקיים וטכנולוגיים בארגון.

תחומי אחריות
הובלת פרויקטים טכנולוגיים מורכבים מקצה לקצה - משלב הייזום, התכנון והאפיון ועד ליישום והטמעה.
ניהול תוכניות עבודה, תקציבים, לוחות זמנים, סיכונים ואבני דרך.
עבודה שוטפת מול הנהלה בכירה, יחידות עסקיות, צוותי IT, ספקים וגורמי Global.
תיאום והנעת ממשקים מרובים בסביבה מטריציונית.
ליווי ובקרה על פרויקטים בהתאם למתודולוגיות ניהול פרויקטים.
תמיכה בפעילות PMO וליווי מנהלי פרויקטים ביחידות הפיתוח בהתאם לצורך.
עבודה עם כלי ניהול פרויקטים והפקת דוחות סטטוס ומדדי ביצוע.
הובלת תהליכי שיפור, בקרה וייעול בעולם ניהול הפרויקטים.
דרישות:
תואר ראשון בהנדסת תעשייה וניהול, מערכות מידע, מדעי המחשב או תחום רלוונטי - חובה.
לפחות 4 שנות ניסיון בניהול פרויקטים טכנולוגיים מורכבים.
ניסיון בהובלת פרויקטים בתחומי תוכנה, תשתיות ואבטחת מידע.
היכרות עם מתודולוגיות Agile, Scrum, PMP או מתודולוגיות מקבילות.
ניסיון בעבודה עם MS Project, Jira או כלי ניהול פרויקטים דומים.
שליטה מלאה ביישומי Microsoft Office וזיקה לעבודה עם כלי AI.
אנגלית ברמה גבוהה - עבודה מול גורמים בינלאומיים.
יתרון משמעותי
ניסיון כ-PMO או כחלק מצוות PMO.
ניסיון בבניית תוכניות עבודה, ניהול תקציבים, סיכונים ורגולציה.
היכרות עם תהליכי IT ותהליכי או"ש. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8767990
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
דרושים באלעד מערכות
מיקום המשרה: ראשון לציון
דרוש/ה מיישם /ת GRC | ארגון מוביל בראשון לציון

הזדמנות מצוינת להשתלב בצוות GRC ולעבוד בליבת פעילות אבטחת המידע, ניהול סיכוני סייבר, שרשרת אספקה, רגולציה ובקרות.

מה כולל התפקיד?
ביצוע סקרי סיכוני אבטחת מידע וסייבר למערכות, תהליכים וספקים
ניהול ומעקב אחר סיכוני ספקים וצדדים שלישיים
ביצוע בקרות אבטחת מידע ומעקב אחר טיפול בפערים
השתתפות בתהליכי עמידה ברגולציה, תקנים ומדיניות ארגונית
כתיבה ועדכון של נהלים, מדיניות ומסמכי אבטחת מידע
היערכות לביקורות פנימיות וחיצוניות ומעקב אחר ממצאים
ניהול משימות ותיעוד במערכות GRC
עבודה מול ממשקים טכנולוגיים ועסקיים רבים בארגון
דרישות:
לפחות שנתיים ניסיון באבטחת מידע, GRC, ניהול סיכונים, ביקורת, ציות או בקרות
ניסיון בעבודה עם מערכות GRC
היכרות עם תהליכי ניהול סיכוני ספקים
ניסיון בכתיבת נהלים, ביצוע בקרות או השתתפות בביקורות
היכרות עם ISO 27001, NIST, תקנות הגנת הפרטיות או רגולציות דומות
יכולת כתיבה וניסוח גבוהה בעברית ואנגלית ברמה טובה
תואר ראשון או לימודים מתקדמים בתחום רלוונטי המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8780169
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
דרושים בפרוסיד
מיקום המשרה: פתח תקווה
הזדמנות להוביל מערך סייבר רחב בארגון גדול, בתפקיד ניהולי המשלב הובלת צוותים מקצועיים, ניהול סיכונים והטמעת בקרות אבטחה בסביבה טכנולוגית מורכבת.

תיאור התפקיד:
ניהול והובלת צוותים מקצועיים בתחומי SOC, מניעת דלף מידע, מודיעין סייבר וניהול חולשות
אחריות על מערך הבקרה והניטור ועל הטיפול באירועי סייבר
ניהול סיכוני סייבר בשרשרת האספקה ועבודה מול ספקים חיצוניים
הובלת תהליכים בתחום ניהול הזהויות וההרשאות
הטמעת בקרות אבטחה בתהליכים עסקיים וטכנולוגיים
עבודה מול יחידות עסקיות, תשתיות, רכש, מנהלי סיכונים וגורמי בקרה
ניטור סביבות היברידיות המשלבות תשתיות On-Premise וענן
הובלת תהליכים לעמידה בדרישות רגולציה ותקני אבטחת מידע
דרישות:
לפחות 5 שנות ניסיון בתחומי תשתיות טכנולוגיות, אבטחת מידע או סייבר
ניסיון מוכח בניהול והובלת צוותים מקצועיים
ניסיון בניהול סיכוני סייבר ובהטמעת פתרונות אבטחה
ניסיון בהובלת תהליכים מורכבים וחוצי ארגון
ניסיון מעשי בניטור סביבה היברידית הכוללת On-Premise וענן
היכרות עם רגולציות ותקנים בתחום אבטחת המידע
נכונות לזמינות גבוהה ולניהול אירועים במתכונת 24/7
יכולת עבודה תחת לחץ, ראייה מערכתית ויכולת הנעת ממשקים

מרגישים שזה אתם?
נשמח להכיר המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8758858
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
דרושים בmatrix
מיקום המשרה: רחובות
שכר: 30,000-35,000
לארגון גדול ומוביל באזור השפלה דרוש/ה מומחה/ית בכיר/ה באבטחת מידע לתפקיד מקצועי, טכנולוגי ומאתגר בסביבה ארגונית מורכבת.

התפקיד כולל תפעול וניהול מערכות אבטחת מידע מורכבות, הובלת תהליכי הטמעה ושדרוג של פתרונות אבטחה, תכנון ארכיטקטורות מאובטחות, ליווי צוותי IT ופיתוח, טיפול בתקלות ואירועי אבטחת מידע ופיתוח אוטומציות.

במסגרת התפקיד:
תפעול, ניהול והטמעה של מערכות אבטחת מידע מורכבות.
הקמה ותחזוקה של Firewalls מסוג Check Point / Palo Alto.
תכנון ארכיטקטורת רשת מאובטחת ועבודה עם Policies ברמות L3/L4/L7.
הובלת הטמעת מערכות אבטחה חדשות וכתיבת מסמכי HLD ו-LLD.
ליווי צוותי פיתוח בהיבטי אבטחת Web, Mobile וממשקים אפליקטיביים.
תחקור וטיפול בתקלות ואירועי אבטחת מידע עד לסגירתם.
פיתוח אוטומציות וכלים לשיפור תהליכי אבטחה.
עבודה שוטפת בסביבות Windows ו- Linux.
דרישות:
לפחות 5 שנות ניסיון בתחום אבטחת המידע בסביבה ארגונית גדולה ו/או כאינטגרטור בתחום אבטחת המידע.
ניסיון משמעותי בעבודה עם Firewalls, בדגש על Check Point / Palo Alto.
ניסיון מעמיק בתכנון ארכיטקטורת רשת מאובטחת.
הבנה מעמיקה בפרוטוקולי תקשורת ואבטחה כגון HTTP/S, SSL/TLS, SMTP, SMB ו-DNS.
יכולת ניתוח PCAP ברמה גבוהה.
ניסיון בכתיבת קוד בלפחות 2 מהשפות: Python, JavaScript, PowerShell, Shell/Bash, TCL.
ידע וניסיון משמעותי בלפחות 4 מהתחומים הבאים: WAF ואבטחת Web, Endpoint Security/EDR, Secure Web Gateway/Proxy, Secure Mail Relay, תחקור אירועי אבטחת מידע, אבטחת סביבות AWS/Azure.
אנגלית ברמה גבוהה.
יכולת למידה עצמית גבוהה, עבודה עצמאית והובלת תהליכים מקצה לקצה. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8775676
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
דרושים באלעד מערכות
מיקום המשרה: ירושלים
אלעד מערכות מגייסת מומחה/ית תשתיות אבטחת מידע בענן
רוצה לעבוד בחזית אבטחת המידע בענן ולהיות חלק מפרויקט מורכב המשלב טכנולוגיות מתקדמות בסביבות AWS, GCP ו-On-Prem? זו הזדמנות להשתלב בתפקיד טכנולוגי משמעותי הכולל תפעול, אוטומציה והטמעת פתרונות אבטחת מידע בסביבה רחבת היקף.

מה בתפקיד?

תפעול, ניהול ותחזוקה של תשתיות אבטחת מידע בענן ובסביבות On-Prem.
עבודה עם פתרונות F5 (APM/WAF/ASM), Check Point, Palo Alto ומוצרי אבטחת מידע נוספים.
יישום תהליכי אוטומציה ו-Infrastructure as Code בסביבות AWS ו-GCP.
ניטור, ניתוח וטיפול בתקלות ואירועי אבטחת מידע, כולל עבודה מול צוותי פיתוח ותשתיות.
הובלת פרויקטים טכנולוגיים, כתיבת תיעוד מקצועי והטמעת טכנולוגיות חדשות.
דרישות:
מה אנחנו מחפשים?

מעל 4 שנות ניסיון בעבודה עם ענן ציבורי (AWS/GCP).
ניסיון מעשי עם F5, Check Point ו/או Palo Alto.
היכרות מעמיקה עם ארכיטקטורות ענן, רשתות מורכבות ותשתיות Windows, Linux ו- VMware.
ניסיון בניתוח לוגים, טיפול באירועי אבטחת מידע וכתיבת תיעוד טכני.
אנגלית ברמה גבוהה ויכולת עבודה מול צוותים וספקים בארץ ובחו"ל.

משרה מלאה בירושלים במודל היבירידי 

אם את/ה מחפש/ת תפקיד מאתגר המשלב ענן, אוטומציה ואבטחת מידע בסביבה טכנולוגית מתקדמת - נשמח להכיר אותך!
שלח/י קורות חיים! המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8727772
סגור
שירות זה פתוח ללקוחות VIP בלבד
לוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Jerusalem
Job Type: More than one
Were looking for an IT Compliance Associate to join our Technology team and help ensure our systems, vendors, and internal processes meet legal, regulatory, and security standards. In this role, youll support the design and implementation of an effective IT compliance framework, manage access controls, assess risk, and guide teams in upholding compliance across the organization.
Youll also help shape policies, identify gaps, and drive remediation efforts with cross-functional stakeholders. This is a collaborative, detail-oriented position with room for growth in the cybersecurity and compliance domain
Who You Are:
A sharp, analytical thinker with high attention to detail
Collaborative, reliable, and able to thrive in a structured environment
Comfortable analyzing complex data, identifying risk, and advising on controls
Driven by doing things ethically, legally, and right the first time
What Youll Actually Be Doing:
Develop and maintain an effective IT compliance program
Conduct risk assessments on internal processes and systems
Lead access recertification and vendor risk assessment processes
Draft, manage, and update internal compliance policies and documentation
Review vendor documentation for regulatory and security alignment
Analyze data, identify compliance gaps, and implement remedial actions
Prepare reports, dashboards, and compliance summaries for internal stakeholders
Organize and contribute to quarterly Cyber Steering Presentations
Requirements:
Native-level fluency in English - Mandatory
3+ years of experience in IT compliance, information security, or a related field
Security certifications such as CISA, CISSP, or Security+
Advanced knowledge of regulatory frameworks and compliance guidelines
Strong analytical, problem-solving, and communication skills
Bachelors degree in a relevant field (e.g., Information Security, Law, Business, or related discipline)
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8774269
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Jerusalem
Job Type: More than one
we are looking for a Mid-Level, Security Engineer.
This role focuses on ensuring the security and compliance of cloud infrastructure by implementing and maintaining robust security controls across AWS environments. The position involves automation for security monitoring, adhering to best practices, and collaborating cross-functionally with other teams.
Who You Are:
A strong individual contributor who takes pride in delivering high-quality security outcomes while collaborating closely with peers and stakeholders. You are able to build trust, provide thoughtful input, and continuously grow your technical and operational expertise.
You are passionate about exploring new technology and using it to make an actionable impact to the future of fintech. You can balance the needs of the business and the team's goals with strong value for code quality and adherence to implementing best practices.
A highly skilled AWS Security Engineer with additional FinOps expertise to ensure the security and compliance of our cloud infrastructure. You are able to implement and maintain robust security controls across AWS environment. You are passionate about best practices, automation for security monitoring, and collaborating with other teams.
Requirements:
Proficiency in Hebrew and English language with excellent written and verbal communication skills
AWS Certified Security Specialty - plus
AWS Certified Solutions Architect - Professional - plus
Experience with Azure cloud security, including relevant certification (Azure AZ-104 Administrator)
In-depth knowledge of AWS security services (e.g., IAM, GuardDuty, CloudTrail, VPC security)
Expertise in cloud security architecture, including identity and access management, encryption, network security, and application security.
Strong skills in Linux, Bash, Terraform, Jenkins, Containers/Docker, and programming languages such as Python and JavaScript
Experience in security automation and incident response in cloud environments
Experience with endpoint security, including endpoint management and investigation tools, supporting endpoint-based investigations and response, working with XDR and DLP technologies and workflows (alert triage, investigation, containment, and remediation), and familiarity with the Microsoft security ecosystem (e.g., Microsoft Defender, Intune, Sentinel, Purview).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8774267
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Jerusalem
Job Type: More than one
Were seeking a Senior Application Security Engineer who is first and foremost a teacher, advisor, and enabler for our development teams.
Rather than owning security alone, youll embed secure-by-design thinking across engineering by mentoring developers, guiding architecture decisions, and making secure development intuitive and frictionless.
Youll serve as the go-to partner for developers and engineering leaders, offering clear direction, practical solutions, and hands-on mentorship that strengthens our secure SDLC.
Who You Are:
A proactive self-starter with deep expertise in application and cloud security
Passionate about secure development and enabling engineers through thoughtful guardrails
Clear and confident communicator who can influence across technical and non-technical teams
Curious about emerging threats and excited by the challenges of blockchain security
Committed to excellence, with a strong sense of ownership and a drive to build secure systems that scale
Requirements:
Native level fluency in English and Hebrew (written and verbal) - Must
7+ years in software security engineering, including 4-5 years in AppSec of secure development enablement roles
Strong coding ability in one or more modern languages (JavaScript/TypeScript, Python, Go, Java, C#)
Proven experience teaching, mentoring, or enabling developers through training, code reviews, threat modeling, internal talks, or champion programs
Deep understanding of secure coding principles, common vulnerability classes, API security, and secure design techniques
Hands-on Experience with AppSec tooling (SAST, SCA, IaC scanners, secret scanning) and integrating them into the developer workflows
Experience with cloud native architectures and security in AWS or Azure
Familiarity with compliance and security frameworks (PCI DSS, SOC 2, FEIEC, NIST, OWASP, ASVS)
Excellent communication and storytelling skills - able to break down complex issues into simple, practical guidance
A collaborative mindset and passion for building a positive, empowering security culture
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8774265
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time and Hybrid work
Were looking for an Application Security Engineer with a passion for AppSec to join our growing team.
Responsibilities:
‍‍Build and maintain an advanced security research lab to test, evaluate, and supercharge detection tools.
Analyze tools across multiple domains: SAST, SCA, DAST, Secret Detection, IaC Scanning, Container Scanning, CSPM, and more.
Identify detection gaps and develop techniques and rules to close them.
Leverage Python and AI practices to automate research and drive smarter detection strategies.
Monitor emerging threats, CVEs, and high-profile incidents - and develop relevant detection content and platform enhancements.
Collaborate closely with engineering, product, and marketing.
Requirements:
Strong hands-on interest experience in Application Security - including knowledge of software vulnerabilities, secure coding practices, and modern development workflows (a strong advantage).
2+ years of experience as a backend engineer building large-scale products.
Proficiency in Python/Node/Go with a passion for writing clean, maintainable code.
Experience with Docker containers.
Familiarity with at least one major AppSec domain: SAST, SCA, Secret Detection, IaC Scanning, Container Scanning, CSPM, or DAST.
Understanding of CI/CD pipelines and modern DevOps workflows.
Self-driven and curious, with the ability to work independently in a dynamic startup environment.
Hands-on experience with AI dev assistants such as Cursor is required, since we rely on them in day-to-day development.
Advantage:
‍‍Experience using AI tools and practices.
Knowledge of cloud-native security (AWS, GCP, Azure).
Service in elite tech units (e.g., 81, 8200, Talpiot) or equivalent experience is a nice-to-have.
Contributions to open-source security tools, technical blogs, or research publications.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8773387
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
05/08/2026
Location: Herzliya
Job Type: Full Time and Hybrid work
We are seeking an MDR Security Engineer to own and scale the automation layer that powers our global MDR operations. This role is responsible for building and operating production-grade automation systems that reduce manual workload, improve detection quality, and enable consistent, high-quality incident response.
The ideal candidate is a hands-on engineer with strong experience in SOAR platforms, security operations, and automation design, capable of driving measurable improvements in efficiency, reliability, and response outcomes across a high-volume SOC environment.
Responsibilities
Upkeep the design, development, and lifecycle of SOAR playbooks, workflows, and integrations across the MDR platform
Build and operate production-grade automation systems supporting alert triage, enrichment, investigation, and response
Define and drive automation strategy by identifying high-impact, high-volume SOC processes and scaling them through automation
Develop integrations across SIEM, EDR/XDR, identity, cloud, and ticketing systems using APIs and scripting
Partner with MDR analysts, IR, threat hunters, and engineering teams to translate operational workflows into scalable automation
Improve detection and response quality through automation of enrichment, investigation, and containment workflows
Contribute to incident response and RCAs by delivering tooling that improves investigation speed, accuracy, and consistency
Evaluate and implement new automation capabilities, including AI-assisted workflows and data-driven decisioning
Monitoring, Metrics & Reliability Ownership
Define and own automation KPIs, including:
Automation coverage (% of alerts handled or augmented)
MTTD / MTTR improvement
False positive reduction and signal-to-noise improvement
Analyst time saved and throughput increase
Build and maintain dashboards and reporting to measure automation impact on SOC performance and SLAs
Ensure production reliability and stability of automation systems, including:
Monitoring workflow success/failure rates and execution latency
Tracking integration and API health, errors, and retry behavior
Implementing logging, alerting, and observability across automation pipelines
Continuously optimize workflows based on data, feedback, and operational performance to ensure consistent 24/7 MDR operation.
Requirements:
4+ years of experience in Security Operations, MDR, Incident Response, or Security Engineering
2-3+ years of hands-on experience with SOAR platforms and security automation
Proven experience owning and operating production-grade automation workflows in a SOC/MDR environment
Strong understanding of SOC operations, alert triage, escalation workflows, and incident response
Experience with enterprise security technologies (SIEM, SOAR, EDR/XDR, IAM/AD)
Strong scripting/development skills (Python, PowerShell, Bash) and experience building APIs and integrations
Experience with CI/CD, version control (Git), and deploying automation at scale
Strong analytical thinking and problem-solving skills with the ability to translate complex workflows into automation
Excellent communication and collaboration skills across engineering and operations teams
Nice to Have
Experience with AI-enhanced automation or large-scale workflow orchestration
Experience in high-volume MDR/SOC environments
Familiarity with threat hunting or detection engineering.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8769894
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
05/08/2026
Job Type: Full Time and Hybrid work
We are the global booking and payment platform for the trillion-dollar freight industry. Hundreds of airlines and ocean liners, thousands of freight companies, and over ten thousand importers and exporters use our platform to move goods around the world faster and more efficiently. This matters. Efficient freight ultimately makes things cost a little bit less when you buy them in the store. We are looking for a hybrid powerhouse: a Chief Information Security Officer. In this role, you will be the guardian of our trust. You will shape and drive our cybersecurity vision, ensuring our platform, products, people, and data remain secure while enabling innovation and business growth. You are the kind of leader who builds security into everything, protecting every digital doorway without slowing down the movement of global trade. From strategic risk management and governance to incident response and security engineering, you'll foster a culture where security is a business enabler, not a roadblock.
Responsibilities:
* Develop, implement, and continuously enhance our enterprise-wide cybersecurity strategy, policies, standards, and governance framework.
* Lead our information security program to protect the confidentiality, integrity, and availability of information assets.
* Identify, assess, and manage cybersecurity risks, ensuring appropriate controls are implemented to mitigate business and technology risks.
* Oversee security operations, including threat monitoring, vulnerability management, incident response, and remediation activities.
* Direct the development and execution of incident response, disaster recovery, and business continuity plans.
* Establish and maintain security architecture and best practices across cloud infrastructure, network, endpoint, application, and data environments.
* Ensure compliance with applicable laws, regulations, contractual obligations, and industry standards, and support internal and external audits.
* Develop and maintain security policies, procedures, and awareness programs that promote a strong culture of cybersecurity across the organization.
* Advise executive leadership and the Board of Directors on cybersecurity strategy, emerging threats, risk posture, and investment priorities.
* Lead and mentor the information security team, fostering professional development, accountability, and operational excellence.
* Manage cybersecurity budgets, evaluate emerging technologies, and recommend investments that improve the organization's security capabilities.
* Oversee identity and access management, data protection, encryption, and privileged access controls.
* Collaborate with SRE, IT, R&D, legal and business leaders to integrate security into organizational processes and strategic initiatives.
* Manage third-party and vendor cybersecurity risk assessments, ensuring external partners meet organizational security requirements.
* Monitor the evolving threat landscape and implement proactive measures to address emerging cybersecurity risks and improve the organization's overall security maturity.
Hybrid:
Yes
Requirements:
* Bachelor's degree in Information Security, Computer Science, Information Technology, Cybersecurity, or a related field.
* 10+ years of progressive experience in information security or cybersecurity.
* 5+ years of leadership experience managing security teams and programs.
* Strong understanding of cybersecurity frameworks such as NIST CSF, ISO/IEC 27001, CIS Controls, and COBIT.
* Experience presenting cybersecurity strategy to executive leadershi
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8769416
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
04/08/2026
Location: Merkaz and Tzafon
Job Type: Full Time and Hybrid work
our Cyber division is seeking a CISO as a Service Consultant to join our team in Central/North Israel. We are looking for a senior and experienced information security consultant who will lead information security activities for the company's customers in a CISO as a Service model. The role requires experience in risk management, leading compliance processes for ISO standards, and privacy protection. Key Responsibilities:
* Leading CISO as a Service activities for the company's customers, including formulating strategy and work plans.
* Building and managing information security governance (policies, procedures, controls).
* Performing cyber and IT risk assessments, gap analysis, and formulating mitigation plans.
* Guiding and supporting preparation and compliance processes for information security standards (ISO 27001, ISO 27799, ISO 27017).
* Assisting in the implementation of privacy controls and accompanying processes related to the Privacy Protection Law and GDPR.
* Providing technological guidance, training, and delivering professional content to customers.
Requirements:
* At least two years of experience in information security consulting or management.
* Proven experience in leading CISO activities: risk management, policy writing, and presentation to management.
* Practical experience in accompanying ISO 27001 certification.
* Familiarity with the Privacy Protection Law and its regulations.
* Relevant education: academic degree / CISSP /CISM certification / comprehensive cyber course (200+ hours).
* Excellent verbal and written communication skills in Hebrew.
* Strong interpersonal skills and ability to work with senior executives. Advantages:
* High-level professional English.
* Practical experience in accompanying privacy processes (GDPR, working with DPO). location: Central/North Israel (hybrid)
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8768017
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Ra'anana
Job Type: Full Time and Hybrid work
Senior Embedded Vulnerability Researcher
Our mission is to defend and mitigate the danger from rogue drones.
We are looking to expand our drone take-over research team, which is responsible for the core technology of our product.
This is a great opportunity for you to expand your capabilities working on versatile and innovative cyber research projects as part of a young and extremely talented team.
Requirements:
4+ years of relevant industry experience as embedded vulnerability researcher or equivalent.
Experience with a dis-assembler for vulnerability research (IDA Pro or GHIDRA).
Deep understanding of OS internals (Linux, RTOS, Android etc.).
Experience with complicated exploitation methods on embedded systems.
Experience with writing code in assembly or c and Python.
Advantage - Graduate of an elite technological unit in IDF.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8766213
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Netanya
Job Type: Full Time and Hybrid work
We are looking for highly skilled Cyber Security Engineers to join our unified Cyber Defense team. As our organization scales, we are expanding our security engineering team to take definitive ownership across our corporate architecture, global workforce, and cloud infrastructure.
You will have the opportunity to take ownership of specific security pillars based on your expertise.
If you are an action-oriented builder who wants to deploy modern security platforms, ensure our employees can work securely from anywhere, and maintain our fast-paced culture without friction, this role is for you.
Responsibilities:
Based on your specific expertise, you will lead or partner on the following initiatives:
Network & Endpoint Security: Lead and optimize network architectures, including modern SASE platform, VPN configurations, and routing to ensure a seamless and highly secure Zero Trust Network Access (ZTNA).
Take ownership of our Endpoint Security (EDR) platform, driving continuous tuning, policy hardening, and advanced Email Security suite management (including SPF/DKIM/DMARC).
Identity & Access Management (IAM): Act as a technical authority for our IAM architecture. Define strict security policies (MFA, Conditional Access, RBAC) and work closely with IT to continuously improve our identity-first security posture.
Cloud & SaaS Security: Monitor and maintain our cloud security posture across major CSP environments (including K8s & Containers) using CSPM tools.
Perform rapid, pragmatic security assessments for new SaaS applications and manage SSPM configurations.
Vulnerability Management: Own the vulnerability lifecycle for infrastructure, endpoints, and corporate software. Drive prioritization and remediation tracking in close collaboration with DevOps and IT.
Incident Response: Support security incident response, assist in containment, contribute to post-mortem analysis, and maintain IR runbooks relevant to your domains.
GenAI Security: Help define and enforce secure usage policies for GenAI tools (e.g., Copilot, Claude, ChatGPT) to prevent data leakage.
Requirements:
4+ years of hands-on experience in Cyber Security, Network Security, or Cloud/IT Security engineering roles.
Deep technical expertise in AT LEAST ONE of the following core domains:
(Network & Endpoint): Proven hands-on experience deploying and managing modern SASE/Zero Trust platforms, packet-level network protocols (TCP/IP, DNS, HTTP/S), VPN architectures, and enterprise EDR/XDR platforms.
(Identity & Cloud): Strong technical experience designing complex Conditional Access policies in Enterprise Identity Providers (IdP), and hands-on experience managing Cloud Security Posture Management (CSPM) and SaaS security tools.
Excellent analytical and troubleshooting skills, with the ability to quickly analyze complex connectivity issues and enforce security policies without compromising velocity for development teams.
A pragmatic, action-oriented approach to risk management and problem-solving.
Advantage:
Experience protecting SaaS systems and working with CASB & SSPM platforms.
Familiarity with writing API scripts (Python/Bash) to automate security workflows
Familiarity with IR processes and the ability to support containment activities when called upon.
Experience with infrastructure and endpoint vulnerability scanning tools.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8758322
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Netanya
Job Type: More than one
we are looking for a Security Researcher.
As a Security Researcher you will focus on simulating our most advanced adversaries against our data collection products affecting thousands of customers.
You will acquire significant knowledge of the web application security field, building new machine learning data collection methods and helping to scale the Bright Data collection platform to new levels as our customer base continues to grow.
Why You'll Love It:
You'll be reversing some of the best anti-bot systems on the planet - it doesn't get more cutting-edge than this.
You'll have a real say in the projects you're part of - this isn't a "just execute" kind of role.
You can actively shape the way this team works - it's still being built, and your fingerprints will be on it.
Got an idea? You can take it straight to the COO - no red tape, no politics.
The people make it - SecRes and Bright Data are genuinely great teams to be part of.
*Fully remote position
Responsibilities:
Conducting in-depth research on tools or services that prevent the free collection of public web data.
Building and improving HTTP client solutions to guarantee the success of Bright's Data collection efforts.
Identifying new standards and technologies that could impact our data collection capabilities.
Reverse engineering adversary solutions to prevent fingerprinting solutions from stopping us.
Theres much more
Requirements:
5 years experience as an R&D developer / researcher / tester
A deep understanding of HTTP & TLS protocols
Experience with at least 2 of the following:
-Programming experience in JavaScript /TypeScript / Python / C++
-Penetration testing experience or offensive security certificates (OSCP, OSEP etc.)
-Professional security research experience (such as web vulnerabilites, mobiles apps etc.)
-Reverse engineering skills (JS deobfuscation or binaries reversing) / malware analysis
-Anti-bot development or other similar products, such as WAF, Anti-Virus development (malware emulation etc.), DDoS prevention tc.
Fluent English
Experience working at an anti-bot or web security company - a major advantag
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8758295
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time and Hybrid work
We are looking for a Identity Security Analyst who will focus on investigating and resolving customer-reported security bugs. In this role, youll sit at the intersection of security research, product engineering, and customer success: youll reproduce issues, analyze impact and root cause, coordinate fixes with R&D, and communicate findings back to customers in a clear, actionable way.
This is a hands-on, technical position ideal for someone who enjoys debugging, incident-style investigations, and direct customer impact.
Requirements:
2-4+ years in a technical security or support role, such as:
Security Analyst / SOC Analyst
Security Engineer
Technical Support Engineer in a security or infrastructure product
Solid understanding of:
Identity and access concepts (Active Directory, authentication, privileges, groups)
Basic networking and protocols (TCP/IP, DNS, HTTP/S, SMB, LDAP/LDAPS)
Scripting and automation skills in PowerShell to speed up investigation and test setup.
Hands-on experience with:
Debugging and reproducing complex customer issues in lab environments
Strong analytical and problem-solving skills; able to systematically break down ambiguous issues.
Excellent written and verbal communication skills in English; able to explain complex technical findings to both technical and non-technical audiences.
Preferred Qualifications:
Experience with enterprise security products, especially in one or more of:
Identity security / AD security
EDR/XDR, SIEM, or network security tools
Operating systems (Windows Server/AD)
Familiarity with MITRE ATT&CK and common attack patterns against AD and identity.
Familiarity with Azure DevOps
Experience working with bug trackers / case management tools.
Prior experience in a customer-facing role (support, consulting, PS) is a strong plus.
Hands-on experience with:
Log analysis (e.g., Windows Event Logs, Sysmon, SIEM)
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8757773
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time and Hybrid work
We are looking for a Senior Cloud Security Engineer to help build secure-by-default cloud platforms across Azure and AWS. This is an engineering-focused role centered on preventive controls, scalable guardrails, Kubernetes security, network security, and automation, not a SOC or incident-response-first position.
Primary focus areas: cloud security guardrails, Kubernetes security, cloud network controls, and automation across Azure and AWS
What You Will Do?
You will own the security architecture, guardrails, and automation patterns, while partnering with platform and infrastructure teams on implementation.
Own and evolve Cloud Security Posture Management (CSPM) capabilities, including policies, guardrails, and automated remediation.
Engineer and maintain cloud network security controls, including network segmentation and isolation, cloud-native firewalls and security groups, Application Gateway / WAF configurations, and secure ingress and egress patterns.
Define and enforce security best practices for Kubernetes environments (AKS/EKS), including RBAC, network policies, workload isolation, and cluster hardening.
Partner with engineering teams on architecture reviews for new services, platforms, and major changes, helping teams design secure, compliant, and practical solutions.
Engineer and maintain identity and access security controls for cloud and production environments, including least privilege, workload identity, service principals, and conditional access.
Apply a security lens to FinOps, defining guardrails that balance cost optimization with security and compliance.
Develop tooling, automation, and self-service workflows that reduce manal effort and improve consistency across security programs.
Communicate complex security risks and technical recommendations clearly to engineering teams, leadership, and cross-functional stakeholders.
Mentor junior engineers and contribute to raising the overall security maturity of the organization.
Requirements:
6+ years of experience in cloud security, security engineering, or cloud platform engineering roles.
Deep hands-on security experience in Azure or AWS is required; experience across both is strongly preferred.
Hands-on experience securing production AKS/EKS environments, including RBAC, network policies, workload identity, admission controls, image/runtime controls, and cluster hardening.
Proven experience with cloud network security, including firewalls, WAFs, network segmentation, and secure connectivity patterns.
Strong understanding of cloud security architecture, including shared responsibility models, secure service design, and defense-in-depth.
Experience with preventative security controls, including CSPM, policy enforcement, and secure cloud baselines.
Cloud automation experience using Infrastructure as Code tools such as Terraform, Bicep, or CloudFormation, plus scripting with Python, PowerShell, Bash, or similar languages.
Ability to operate independently, own complex problem spaces, and deliver practical, scalable solutions.
Strong communication skills and comfort providing architecture-level guidance to engineering teams.
Experience working in regulated environments
Bonus Points:
Experience contributing to or supporting compliance programs such as FedRAMP, SOC 2, ISO 27001, or NIST frameworks.
Familiarity with CI/CD pipelines and DevSecOps practices.
Experience with identity and access management in cloud environments (RBAC, workload identity, service principals) is a strong plus.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8757728
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
23/07/2026
Location: Petah Tikva
Job Type: Full Time and Hybrid work
We seek an experienced offensive security leader to build and lead the Product Red Team. This newly established function emulates real-world attacks against synthetic customer instances to identify vulnerabilities, misconfigurations, and design gaps before external threat actors or researchers discover them.
This role requires an operator who has led offensive security operations in high-consequence environments-covert intelligence or military settings preferred-with proven ability to establish operational standards, navigate ambiguous mission parameters, and influence cross-functional stakeholders around complex security trade-offs.
You will build upon this team's charter, engagement frameworks, and rules of engagement with other teams. You will help drive our product security and response posture through adversary emulation, vulnerability research, exploit development, and collaboration with other offensive and defensive teams.
Key Responsibilities:
Establish Operations Objectives, Policies & Procedures:
Own Product Red Team's operation objectives and engagement selection criteria in alignment with product security roadmap and risk register, CISO directives, and company priorities.
Expand upon rules of engagement, threat actor emulation standards, testing policies, and protocols.
Establish operational security procedures for covert operations, detection evasion, and incident response protocols.
Create escalation procedures and approval frameworks for high-risk engagements.
Own campaign selection processes, engagement proposal templates, and findings documentation and readout standards.
Define Engagement Framework & Success Metrics:
Design and implement engagement types: vulnerability risk assessment, product security assessments, and ongoing adversarial campaigns.
Establish and report on technical and operational success metrics: kill chain coverage, remediation velocity, and detection engineering insights.
Create reporting templates-technical findings, executive briefings, engineering recommendations-that drive actionable remediation.
Define boundaries and operational testing windows in coordination with product engineering and detection engineering teams.
Lead Offensive Operations Team:
Build team capability across threat actor emulation, exploit development, persistence mechanisms, supply chain security, and AI-specific attack vectors (prompt injection, model manipulation, data poisoning).
Mentor team on operational security tradecraft, documentation discipline, and risk management under ambiguous conditions.
Support team members in their time zones, spanning from US West Coast to India.
Requirements:
12+ years of offensive security experience, with minimum 5+ years leading offensive operations teams in mission-critical environments.
Background in leading covert offensive cyber operations in:
Intelligence communities, or
Contracted equivalent, or
Top-tier private-sector adversary emulation firms or internal teams.
Expertise in:
Threat actor emulation and MITRE ATT&CK methodologies as translated and applied to product security.
Exploit development and proof-of-concept creation.
Persistence mechanisms, detection evasion, and command & control operations in SaaS environments.
Kill chain analysis and attack path development.
Security control validation and testing under strict rules of engagement.
Proven ability to:
Operate under ambiguous mission parameters and establish doctrine.
Establish and enforce operational security discipline in high-stakes environments.
Navigate regulatory and legal constraints while maintaining operational effectiveness.
Mentor elite operators and maintain team excellence under pressure.
Brief executives on complex security risks and influence decision-making.
Product security awareness: Familiarity with SDLC integration, CI/CD pipelines, SaaS threat models, and multi-tenant architecture considerations.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8751380
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
23/07/2026
Location: Petah Tikva
Job Type: Full Time and Hybrid work
We seek a Senior Application Security Engineer to serve as the technical core of our bug bounty program within the Product Security Incident Response Team (PSIRT). This is the senior engineer who owns bug bounty reports from intake through resolution: reproducing and validating the vulnerability, assessing its severity, and seeing it through to a verified fix.
The work is deeply technical. Reproducing a vulnerability is only the starting point. From there you read the underlying code, identify root cause, and either propose the fix or design it alongside engineering before confirming it holds. You are also the person researchers deal with directly, which makes clear, credible communication as central to the role as the technical analysis itself.
As one of the most senior engineers on the team, you will set the standard for how triage is done and mentor earlier-career engineers. Beyond the bug bounty queue, you will conduct variant hunts, perform original platform security research, lead major product security incidents, and run forensic postmortems when a significant issue reaches production.
Key Responsibilities:
Triage and Resolve Bug Bounty Reports:
Own incoming reports end-to-end: intake, reproduction, severity scoring, root cause analysis, fix verification, and final disposition.
Reproduce and validate reported vulnerabilities, building out incomplete proof-of-concept code where needed.
Serve as the technical escalation point for the most complex and highest-severity reports, including multi-step exploit chains and cross-system issues.
Perform code review and root cause analysis to identify the underlying defect rather than the reported symptom.
Propose remediations, or design them with engineering, and verify the fix resolves the issue.
Assign and defend severity ratings using the program's severity framework.
Route issues to owning teams, file and track defects, and keep vulnerability records accurate through closure.
Own Researcher and Stakeholder Communication:
Act as our primary technical point of contact for bug bounty researchers across the full lifecycle of a report.
Handle severity and validity disputes directly, keeping every exchange clear, timely, respectful, and technically credible.
Translate technical findings for internal stakeholders and keep engineering and leadership current on status and risk.
Mentor the Team and Raise Triage Standards:
Provide technical mentorship to earlier-career PSIRT engineers, developing depth in reproduction, code analysis, severity judgment, and communication.
Set and maintain the bar for triage quality and strengthen program practices over time.
Requirements:
8+ years of hands-on experience in product security, application security, penetration testing, or vulnerability research. Depth of expertise matters more than years.
Expertise in:
Common web and application vulnerability classes and exploitation techniques.
Vulnerability reproduction, severity assessment, and defensible risk scoring under ambiguity.
Coordinated vulnerability disclosure.
Code and development fluency:
Strong code comprehension in Java, JavaScript, and Python, with the ability to trace root cause in large, unfamiliar codebases and review pull requests.
Ability to write code and propose concrete fixes. This is not an application-building role, but you reason fluently in code.
Working knowledge of Git, Gradle, Maven, CI/CD pipelines, and secure SDLC.
Proficiency with Claude Code or equivalent AI coding assistant for code comprehension and security research.
Exceptional written communication. You will represent ServiceNow directly to external researchers, frequently in disagreement, and bridge those researchers and internal engineering. This is a core requirement of the role, not a supporting skill.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8751365
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
23/07/2026
Location: Petah Tikva
Job Type: Full Time and Hybrid work
We are looking for a Staff Security Engineer to be a core contributor on this team.
Security R&D operates in two complementary modes: open contribution to product engineering - writing code alongside product teams where security expertise adds value - and developing its own security capabilities, including internal tooling, externally facing product features, AI-powered security automation, and third-party integrations.
This is a new team being stood up in Petah Tikva, Israel, co-located with our AI Security Research team. You will help shape the teams engineering practices and technical foundation from day one.
This role reports to the Sr. Engineering Manager, Security R&D.
What You Will Do
Build Security Capabilities:
Design and develop security tooling, automation, and platform services that operate at our enterprise scale.
Contribute code directly into our viceNow product engineering codebases, embedding security capabilities where they have the highest impact.
Build AI-powered security automation by integrating in-house models and third-party services into production workflows.
Leverage our platform - Agent Framework runtime, ACL enforcement, data layer, and workflow engine - to create security capabilities that external vendors cannot match.
Requirements:
To be successful in this role, you have:
8+ years of professional software engineering experience building production systems at scale.
Bachelors degree in Computer Science, Engineering, or a related technical field.
Strong hands-on proficiency in Python and Java. You write production code daily and take pride in software craftsmanship.
Solid foundation in distributed systems, cloud-native architectures, and building services that meet enterprise requirements for scalability, reliability, and performance.
Experience working in collaborative engineering environments, contributing to shared codebases with high code quality standards.
Interest in or exposure to security engineering concepts - application security, infrastructure security, identity systems, or trust & safety. A security mindset is valued; deep security expertise can be developed on the team.
Curiosity about AI/ML and next-generation AI technologies. You dont need to be an AI expert, but you should be excited about building at the intersection of security and AI.
Preferred:
Experience with security tooling development, SSDLC automation, or building security features into a product.
Familiarity with container/Kubernetes environments, cloud security, or infrastructure-as-code.
Exposure to AI/ML pipelines, LLM integration, or agentic frameworks.
Experience in a SaaS or platform company building multi-tenant enterprise software.
Experience working in a globally distributed engineering team.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8751327
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות שנמחקו