דרושים » אבטחת מידע וסייבר » application Security Consultant

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
25/03/2025
חברה חסויה
Location: Merkaz
Job Type: Full Time
abra is hiring application Security Consultant
* Provide end-to-end support for technological projects in terms of application security, from the initiation phase to production, including the development of security policies.
* Write guidance documents for development teams within the organization to ensure secure development practices, address security vulnerabilities and gaps in application security in both development and production environments, and implement technological security solutions in application domains.
* Participate in the design of secure architecture in accordance with company policies.
* Identify security gaps at the application layer and define required controls.
* Monitor and ensure compliance with the cyber risk management requirements of the insurance regulator, company procedures, and security guidelines for the various business and technology units.
* Support application security audits, write scoping documents, validate findings, and oversee the implementation of solutions to address security exposures.
* Write requirement documents for security products and innovative technologies.
Requirements:
* Full proficiency in the fields of Application Security and secure development methodologies.
* Experience working with development teams and infrastructure.
* Practical experience in API Management and API Security, such as APIGEE, DataPower, etc.
* In-depth familiarity with cloud technologies and cloud-native applications, with a focus on Containers, Kubernetes (K8), Serverless, and similar environments.
* Practical experience with CI/CD systems and processes, GIT tools, and Repos for code and version management, as well as implementing IAC (Infrastructure as Code).
* Practical experience with implementing security tools in the worlds of CWPP, SAST, DAST, OSS, etc.
* In-depth familiarity with OWASP TOP10.
* Proven knowledge in Mobile Security.
* Experience working with Threat Modeling.
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8113472
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
31/03/2025
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking a highly skilled and experienced Head of Application Security to join our dynamic team. This role is pivotal in driving the security of our software development lifecycle and ensuring the robustness of our applications against potential threats. The ideal candidate will have a strong background in secure software development practices, including SSDLC implementation, and a deep understanding of security frameworks such as SALSA. This position reports directly to an R&D VP.

Key Responsibilities
Lead the application security team, providing strategic direction and mentorship.
Develop and implement a comprehensive Secure Software Development Lifecycle (SSDLC) framework.
Oversee the integration of security practices into all phases of the software development lifecycle.
Conduct risk assessments and threat modeling to identify and mitigate potential security vulnerabilities.
Collaborate with development teams to ensure secure coding practices and adherence to security standards, while maintaining developer productivity.
Implement and manage security automation tools and processes to enhance the efficiency of security operations.
Stay up-to-date on the latest security trends, vulnerabilities, and technologies to continuously improve our security posture.
Provide expert guidance on security architecture and design for new and existing applications.
Lead incident response efforts related to application security breaches and vulnerabilities.
Foster a culture of security awareness and continuous improvement within the organization.
Job Id: 22784
Requirements:
Bachelor's degree in Computer Science, Information Security, or a related field. Advanced degree preferred.
Minimum of 8 years of experience in application security, with at least 3 years in a leadership role.
Proven experience in implementing and managing SSDLC frameworks.
In-depth knowledge of security frameworks and methodologies, including SALSA.
Strong understanding of secure coding practices and common vulnerabilities (e.g., OWASP Top Ten).
Proficiency in programming languages such as Java, Python, C#, or similar.
Experience with security tools and technologies such as static and dynamic analysis tools, vulnerability scanners, and penetration testing tools.
Excellent communication and leadership skills, with the ability and passion to drive change across the organization.
Relevant certifications such as CISSP, CISM, or CSSLP are highly desirable.
Proven experience in a similar role at another leading software development company.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8121680
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
02/04/2025
Location: Herzliya
Job Type: Full Time and Hybrid work
looking for a talented Application Security and Secure Software Development Lifecycle (Secure-SDLC) Expert to lead our elite security researchers team. As an Application Security Leader, you will take an active role in leading various services including penetration testing and security development lifecycle activities that will help evaluate our customers security level and improve it. A typical job could be breaking into a segmented secure system at a Fortune 500 organization or perform a threat modeling process for a critical enterprise system.

Responsibilities
Ensure customers security by hands-on penetration testing, hypothesizing threats, helping development teams remediate risks upfront, and executing secure implementation efforts
Escort, evaluate and improve the application security development lifecycle of our customers, including Secure-SDLC gap analysis, threat modeling and other related activities
Improve secure coding and Secure-SDLC practices, application security requirements, automation, training, and metrics
Lead the internal Secure-SDLC process of the R&D department in CYE
Identify, communicate, and drive the resolution of vulnerabilities as an application security domain expert
Research and advocate for new application security solutions and technologies
Continue to drive security evaluation earlier in the cycles through iterative security testing
Requirements:
5+ years of experience in Application Security including penetration testing, deep understanding of major Application Security attacks, vulnerabilities, and mitigations including XSS, CSRF, SQL Injection, Deserialization, RCE, etc.
Experienced with Secure-SDLC methodologies and standards such as Microsoft SDL, OWASP SAMM, and OWASP ASVS
Experienced with threat analysis processes
Experienced with web & mobile application security, API analysis, and unique client/ server architectures
Experienced in code auditing and best practices
Deep understanding of OWASP Top 10 and CWE 25; with proven track record and experience in implementing and integrating remediation strategies
Managerial experience
Relevant certifications such as CEH and EWPTX an advantage
Hand-on proven experience in software development or familiarity with a vast range of high-level programming languages (Java, JS, Python, etc.) an advantage
Familiarity with cloud environments an advantage
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8124970
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
06/04/2025
חברה חסויה
Location: Herzliya
Job Type: Full Time
We are looking for a Director of Product Security to join our R&D organization and take full ownership of our company's product security initiatives. In this key leadership role, you will spearhead the development and implementation of our comprehensive security strategy, encompassing both SaaS and on-premises solutions.
Responsibilities:
Develop and lead the strategic vision to manage both internal and external risks associated with our company's products and solutions.
Proactively advise the business on how to maintain compliance with appropriate regulatory or industry best practices.
Drive secure development lifecycle and integration of security features into all phases of software design and development, including advising on proper software architecture security standards.
Vulnerabilities management - Identify and facilitate remediation of application and cloud platform exposures and vulnerabilities, including implementation of relevant systems and tools for these purposes.
Conduct cloud security strategy, readiness and discovery assessments; be familiar with cloud security frameworks, compliance requirements and security operations
Research new application security tools and technologies as requested and evaluate options that enhance security capabilities.
Lead compliance gap analysis and implementation (such as SOC2, SOC3, FedRAMP)
Work closely with R&D groups - Dev teams, Platform, DevSecOps and DevOps teams, to enhance application and platform security on all layers, including monitoring and enforcement.
Conduct periodic pen testing against our Saas Platform components.
Requirements:
Extensive experience in managing security teams and leading other managers and architects - managerial experience of 5+ years
Experience collaborating with cross-functional departments, including senior leadership and C-level executives.
Extensive experience in security architecture, software development, and public cloud or SaaS platform security.
Experience in Product security, Penetration testing and threat modeling.
Vast Experience in public cloud services - IaaS, PaaS, SaaS across AWS, Azure and GCP.
Experience in securing Cloud based environments and complex topologies.
Working in large engineering organization (at least 100 engineers) responsible for a SaaS offering.
Experience with TLS \ Cryptography, Authentication technologies, IDP / SAML, WAF / Firewalls / Network security and Windows and Linux Security.
Thorough understanding of cybersecurity frameworks, such as NIST CSF, CIS CSC, etc.
Experience with implementing and maintaining cloud security tools and tech such as CSPM, EDRs, SIEM, SOC tools and more.
Experience with web & application security, familiar with OWASP frameworks, solutions, and initiatives
Experience with security solutions such as DB Firewalls, Vulnerability scanners, and RASP/DAST/SAST solutions.
Experience in implementation of Secure Development LifeCycle
Coordinate, participate and deliver threat modeling for given\new designs and architectures.
Educate key stakeholders on program, risks, and importance of security in our products & solutions.
Work with the business to identify, capture, escalate, and close security vulnerabilities found in our products.
Leverage tools to deliver vulnerability information back to the development organization for remediation.
Coordinate security risk assessments for new products & solutions through the risk assessment team
Advantages:
Experience in Software development or Engineering leading roles.
Relevant certifications such as OSCP, CISSP, CISM, CCSP advantage
Experience leading large security teams within a SaaS organization.
Experience as a CISO.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8130150
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
23/03/2025
חברה חסויה
Location: Bnei Brak
Job Type: Full Time and Hybrid work
We are constantly growing and are excited to share that we are looking for a Blockchain Security Architect to join our team!
Join us as a Blockchain Security Architect , where innovation meets security in the dynamic world of blockchain technology. Our mission is to build secure, scalable, and user-friendly blockchain solutions that empower businesses and individuals alike. As part of our cutting-edge team, you will play a crucial role in shaping the security landscape of new coins, blockchains, and digital assets.
We are at the forefront of blockchain security, providing top-notch services across various domains, including staking, decentralized finance (DeFi), and custody solutions. With a diverse, global team and a collaborative work environment, we are dedicated to fostering growth, learning, and excellence in everything we do.
Your Primary Responsibilities:
Security and Technical Analysis: Conduct in-depth security and technical assessments of new coins and blockchain platforms to ensure robustness and reliability.
Risk Analysis: Perform comprehensive risk evaluations for various blockchain operations such as staking, DeFi, and custody, identifying potential vulnerabilities and proposing mitigation strategies.
Secure Development Support: Collaborate closely with R&D teams to embed security into the development lifecycle, ensuring adherence to best practices and architectural guidelines.
Infrastructure and Product Security: Review and define architectural standards for blockchain infrastructure and products, fostering a secure ecosystem.
Custody Solutions Management: Develop and implement secure operational policies for custody, managing a variety of technology providers and solutions.
Perform hands-on technical operations of the Custody solution, including managing and configuring hardware and software used in Custody operations.
Set up computers from scratch, implementing both basic and advanced security policies to ensure the integrity and confidentiality of Custody operations.
Collaborate with the team to design Custody policies for all related solutions, including physical security policies and computer policies.
Risk Framework Development: Lead the creation and management of risk frameworks in coordination with internal stakeholders, focusing on security and risk mitigation.
Blockchain Monitoring and Playbooks: Define and execute on-chain monitoring strategies and develop playbooks for handling blockchain activities and incidents.
דרישות:
3+ years in security operations, architectural security, or cloud security, including zero-trust architectures, and secure development lifecycle practices, security engineering, or operations.
3+ years in blockchain technologies, covering consensus mechanisms, public blockchain architectures, and components such as bridges, oracles, decentralized exchanges (DEXs), and wallets.
Security Mindset: A proactive approach to identifying and mitigating risks with a focus on building secure systems.
Cloud Security: Proficiency in securing Azure environments, implementing cloud security best practices, and utilizing cloud-native security tools.
Blockchain Expertise: Strong understanding of blockchain ecosystems, cryptographic principles, and secure user operations within custodial and non-custodial wallet frameworks, knowledge of oracle systems, Decentralized Exchanges (DEXs), automated market makers (AMMs), blockchain bridges, associated security concerns, and the security considerations involved.
Crypto Wallets: Knowledge of custodial and non-custodial wallets, including their security models and operational frameworks. Secure User Operations: Experience designing and managing secure user interactions within blockchain environments.
Cryptographic Knowledge: Strong understanding of cryptographic principles and their application in blockchain systems.
Risk Management Frameworks: Proficiency in developing and managing risk frameworks, with the ability to assess and mit#ENGL המשרה מיועדת לנשים ולגברים כאחד.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8109693
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
02/04/2025
חברה חסויה
Location: Herzliya
Job Type: Full Time
looking for a talented Application Security Specialist to be a part of our team. As an Application Security Specialist, you will take an active role in security development lifecycle activities and penetration testing that will help evaluate our customers security level and improve it. A typical job could be breaking into a critical system of a Fortune 500 organization, analyzing the Secure-SDLC security gaps in a large department in a huge enterprise, and reverse engineering an application and encryption method in order to gain access to sensitive data.

Responsibilities
Manage, evaluate, and improve the application security development lifecycle of our clients.
Identify, communicate, and drive the resolution of vulnerabilities.
Research and advocate for new application security solutions and technologies.
Continue to drive security evaluation earlier in the cycles through iterative security testing.
Operate as an incident responder for triage pertaining to web-based vulnerabilities.
Ensure customers security by hands-on penetration testing, hypothesizing threats, helping development teams remediate risks upfront, and executing secure implementation efforts.
Improve secure coding practices, application security requirements, automation, training, and metrics.
Requirements:
3+ years of experience in Application Security Secure-SDLC practices, standards, methodologies, and software team escorting; including standards such as Microsoft SDL, OWASP SAMM, and OWASP ASVS.
Experienced with threat analysis processes.
Deep understanding of OWASP Top 10 and CWE 25; with a proven track record and experience in implementing and integrating remediation strategies.
Familiarity with a wide range of high-level programming languages (Java, JS, Python, etc.) and related secure Software Development Life Cycle (SDLC) activities.
Significant advantage: hands-on experience in application penetration testing.
Advantage: Proven experience in high-level code auditing.
Advantage: experience in CI\CD and CI\CD security.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8124960
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
24/03/2025
חברה חסויה
Location: Netanya
Job Type: Full Time
About us, we secure products and systems throughout their lifecycle. As a multidisciplinary cybersecurity company based in Israel, we specialize in providing comprehensive security solutions across all engineering domains. Our expertise spans hardware security, system security engineering, FPGA and Embedded systems security, low-level software and operating systems cybersecurity, cryptography, RF cybersecurity, quantum-resilient security, and more.
Job Description Project Management and Technical Leadership: Lead and manage software development projects, including planning, coordinating, and supervising team activities to ensure successful project completion. Define development requirements, guide contractors, and implement secure development methodologies and practices. system Design and Development: Design and develop secure software systems and architectures for complex and Embedded systems, ensuring they meet security and performance requirements. Implementation and Configuration: Design, code, TEST, and debug system software, including hardware bring-up. Enhance system efficiency, stability, and scalability. Integrate and validate new product designs. Implement and configure software systems. Risk Analysis and Problem Solving: Conduct risk analysis and problem-solving for system issues, using tools and techniques to identify and resolve problems efficiently. Maintenance and Technical Support : Provide ongoing maintenance and Technical Support, including security updates, bug fixes, and performance enhancements. Secure Development Processes: Implement and oversee secure development processes, including secure code reviews, automated code testing (SCA + SAST), and defining treatment thresholds for TEST results. Documentation and Risk Management: Write explanatory documents, manage risks, and provide defensive justifications for scan results that cannot be addressed.
Requirements:
Requirements Bachelor's degree in Electronics Engineering or Computer Science. 3+ years of hands-on experience in software development. Solid programming experience in C / C ++. Knowledge of development environments, configuration management tools, defect tracking tools, and source control. Familiarity with Embedded systems and Real-Time software development. Experience in secure software development, including familiarity with secure development practices and common frameworks (e.g., OWASP). Experience with static code analysis tools (SAST) and software composition analysis tools (SCA). Experience in the defense industry, military industries, and security systems an advantage. Familiarity with ARM microprocessors, FreeRTOS and Embedded Linux, specifically Yocto an advantage. Valid security clearance an advantage.
Company location: Center district, Israel
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8108629
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
5 ימים
Location:
Job Type: Full Time
Abra Company is Hiring an Information Security Facilitator Responsibilities:
* Overseeing and managing projects in the field of information security in collaboration with the organization’s Information Security Infrastructure team.
* Providing information security guidelines to infrastructure departments, information systems, and various business areas within the organization.
* Supporting technological projects regarding information security and infrastructure throughout all stages of the project lifecycle.
* Defining information security needs, identifying appropriate solutions, aligning relevant technologies, and conducting technical evaluations of information security solutions.
* Drafting information security requirements and ensuring they align with organizational policies, primarily at the infrastructure level.
* Participating in the planning of secure architectures in accordance with company policy.
* Assisting with information security assessments of infrastructure systems.
* Drafting requirements for information security products and innovative technologies.
* Monitoring and ensuring compliance with the cyber risk management guidelines set by the insurance regulator, as well as information security procedures and laws
Requirements:
At least five years of experience in information security in similar roles. Experience in managing and supporting projects in the field of information security, with an emphasis on information security infrastructures. Experience and knowledge in managing the configuration of SIEM systems. Experience working with infrastructure and development teams.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8092820
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
02/04/2025
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We seek a dynamic and experienced Cloud Security Engineer to join us!
This role presents an exciting opportunity to work in a fast-growing company with great opportunities to make a difference.
In this role, you will be responsible for:
Design and implement cloud security architectures and controls for multi cloud env
Maintain and manage security tools within our cloud environment, such as Firewall, WAF, CDN, API Security, Runtime Protection, CSPM, DSPM, and SSPM.
Identify and remediate vulnerabilities and misconfiguration findings in our cloud environments.
Monitor and optimize cloud architecture connectivity in the environment to comply with our compliance and policies.
Administer and control our security cloud accounts.
Lead and execute cross-organizational security projects and initiatives.
Collaborate with internal teams to enhance cloud security measures.
Requirements:
Minimum 3 years experience: Cloud infrastructure, Cloud security, securing Linux and Windows environments, AWS environments, and Azure environments- Must
2 Years of experience with IT software engineering in cloud-based environments. Intune, Azure AD, PAM- Must
Knowledge of security tools such as VPNs, firewalls, EDRs, CDN, CSPM,Cloudflare, patch management, and handling complex high-level systems- Must
Hands-on experience in AWS.
Familiarity with DevOps practices, K8s, version control, and security in K8 env and CI-CD process.
Experience with securing of complex cloud environments (Control Tower).
Experience with KMS, Secret Management, and Certificate Management.
Networking Skills: Experience with enterprise-level networks, including protocols, routing, and switching.
Strong understanding of Layer 7 security tools and protocols
Familiarity with ISO27001, SOC2, Dora, and optimizing cloud environments to keep compliant and up-to-date
Communication Skills: Excellent written and oral communication skills in English; ability to work collaboratively in a team.
Nice to Have:
Cloud Migration: Experience with cloud migration processes.
Hands on application security knowledge
Experience with Open source tools and systems
Knowledge in infrastructure-as-code (IaC) tools like Terraform, CloudFormation, or Pulumi.
Scripting and Automation: Proficiency in Python, PowerShell, or Bash scripting for automation.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8125339
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
16/04/2025
Location: Ramat Gan
Job Type: Full Time
We are looking for a Cybersecurity Specialist.

Job Summary:

Monitor, analyze and report possible cybersecurity attacks.

Investigate and perform analysis of threat indicators.

Gather Indicators of compromise and any relevant data to use with threat hunting activities.

Leverage security tools (SIEM, EDR, and more) for analysis to identify malicious activities.

Analyze identified malicious activity to determine Tactics, Techniques and Procedures.

Conduct research, analysis and correlate gathered data from various resources to determine the impact of the incident.

Monitor and actively conduct investigations and analysis related to Cyber Threat Intelligence gathered from the internet and dark web related to threats facing the organization.

Participate in on-call and hands on scheduled shift rotations including off business hours.

Collaborate well and work with other cybersecurity and IT team members.

Coordinate Security Incident Response and investigation with other internal teams and 3rd party providers.

Conduct incident investigations using security tools and solutions (SIEM, EDR, firewalls, etc.).

Complete Security Incident and Investigation reports.

Onboard and monitor cloud environments (Azure, AWS, or GCP) into SIEM.

Develop and document processes, operational procedures, and enhance playbook workflows.

Deploy, manage and administer tools used by other cybersecurity teams related to endpoint protection, email security, vulnerability scanning, etc.

Review enterprise security tools and controls to review system health, identify misconfigurations, and implement tuning recommendations per vendor best practices.

Maintain existing or create new procedures and processes for administering and managing cybersecurity tools under the purview of the team.

Respond to and address support tickets for our tools that arise from different end users and teams via the enterprise ticketing system

Provide proactive security investigation and searches on corporate environments to detect malicious activities.

Maintain up-to-date understanding of security threats, countermeasures, security tools, Cloud Security and SaaS technologies.

Maintain technical proficiency through training, keeping up with industry best practices, and security frameworks.

Report on team metrics for the CISO leadership team and the IT & Cyber GRC team.

Report on all applicable compliance related obligations.
Requirements:
3-5 years of relevant experience in performing, Cybersecurity operations, Cybersecurity Threat Intelligence, Incident Response and Threat Hunting activities in a complex incident management or Security Operations Center environment.

Knowledge of NIST Cybersecurity Framework, MITRE ATT&CK.

Knowledge of creation and fine tuning SIEM use cases.

Security monitoring experience with cybersecurity and SIEM technologies.

Experience with building SOC processes, playbooks, SIEM correlation rules, and incident reports.

Experience with threat hunting and security incident investigation.

Knowledge of security products and device monitoring tools including Firewalls, IDS/IPS, Phishing and e-mail security, content filtering, DDoS, WAF, and more.

Knowledge of incident investigation, working with in-house and vendor teams to research, identify and report on incidents.

Knowledge of security incident management, malware analysis and vulnerability management processes.

Strong technical and learning agility, able to adapt to constantly evolving threats, domains and technologies.

Knowledge of technical infrastructure, networks, databases and systems in relation to IT Security and IT Risk.

Experience with the security logging and monitoring of cloud environments.

Experience analyzing different data sets and preparing metrics and reports (e.g. Excel, Sheets, PowerBI).

Experience with Atlassian products, especially JIRA and Confluence.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8140174
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Herzliya
Job Type: Full Time
The Software Engineering team delivers next-generation application enhancements and new products for a changing world. Working at the cutting edge, we design and develop software for platforms, peripherals, applications and diagnostics all with the most advanced technologies, tools, software engineering methodologies and the collaboration of internal and external partners.
Join us as a Software Principal Security Engineer on our Software Engineering team in Herzliya to do the best work of your career and make a profound social impact.
What youll achieve
As a Principal Software Security Engineer, you will be a key leader in designing, implementing, and maintaining robust security solutions for our complex, multi-component systems, ensuring the confidentiality, integrity, and availability of sensitive data. You will play a critical role in protecting our customer data and intellectual property from evolving cyber threats.
You will:
Lead Security Design: Architect and design secure software solutions for complex systems, incorporating secure coding practices, cryptography, and network security principles.
Work with a global team on refining requirements and solutions for secure product development
Leading and Contributing to the development and implementation of these secure strategies for complex software products and systems/for storage products and systems
Requirements:
3+ years of experience in security engineering with a focus on network and application security. This includes demonstrated expertise in configuring and managing network security devices, implementing and troubleshooting TLS/SSL, managing digital certificates, and hardening web servers (e.g., Apache, Nginx).
Experience with key management systems (KMS) and cryptographic best practices. Familiarity with web application security principles and experience conducting vulnerability assessments.
Strong understanding of network protocols, security architectures, and incident response methodologies. Proficiency in scripting languages Python, C, C++ for security automation. Excellent communication and collaboration skills. Bachelor's degree in Computer Science or a related field preferred.
7+ years of programming languages; operating systems; firmware; BIOS; device drivers; databases; system, network, operating system, and application administration; embedded software/firmware; tools and utilities
Ability to code/debug and guide others to code/debug flexible, scalable and complex programs, using either written or verbal design specifications
Experience with multiple , databases, operating systems, tools and hardware platforms
Desirable Requirements
Bachelors degree, master's a plus
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8158539
סגור
שירות זה פתוח ללקוחות VIP בלבד