דרושים » מחשבים ורשתות » DevSecOps Engineer

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 5 שעות
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for a DevSecOps Engineer to join our Engineering organisation and help build, operate, and secure our cloud infrastructure at scale.
Reporting to the Chief Architect, you'll work alongside development and data teams to optimise our delivery pipelines, ensure infrastructure reliability, and integrate security best practices across our environments. This is a unique opportunity for a DevSecOps engineer who's passionate about infrastructure automation, enjoys solving complex cloud challenges, and wants to have a meaningful influence over both DevOps and security-related initiatives.
As a DevSecOps Engineer, you will:
Design, build, and maintain scalable cloud infrastructure using AWS.
Develop and maintain automated CI/CD pipelines for deployment and testing.
Implement infrastructure-as-code using Terraform and other DevOps tools.
Drive automation and infrastructure reliability initiatives across environments.
Integrate and automate cloud and application security controls into engineering workflows.
Monitor, detect, and respond to vulnerabilities and infrastructure security issues.
Work closely with development, data, and operations teams to enforce DevOps and security best practices.
Support infrastructure needs for AI/LLM-based systems and solutions.
Stay up to date with the latest trends in cloud, DevOps, and security practices.
Requirements:
2-4 years of experience as a DevSecOps or Infrastructure Engineer, ideally in a SaaS or startup environment.
Hands-on experience with AWS services (e.g., EC2, IAM, VPC, ECS/EKS, S3, Lambda).
Proficiency with Terraform - MUST.
Practical experience with containerization and orchestration tools (Docker, Kubernetes).
Familiarity with CI/CD platforms (GitLab CI, Jenkins, GitHub Actions, etc.).
Strong understanding of DevOps principles and modern development workflows.
Solid grasp of security fundamentals within cloud-native environments.
Experience working with infrastructure monitoring and logging tools.
Exposure to security automation tools (e.g., SAST/DAST, SCA, secrets management) - an advantage.
Strong problem-solving skills and ability to collaborate cross-functionally.
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8448428
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Job Type: Full Time and Hybrid work
e are looking for a DevSecOps Engineer to join our Platform engineering team. This team is responsible for our SaaS security posture, developing our 24/7/365 production automation and security routines. As a part of this team, you will lead technical security-related projects, contribute code to these, enhance our security monitoring, and define best practices for secure infrastructure development. You will work closely with software architects, developers, and Support Engineers, to define and implement infrastructure as code.


What Youll Do:

Develop and maintain a comprehensive map of our production security posture, identifying strengths, weaknesses, and areas for improvement. Based on that you will establish a backlog of security initiatives and improvements that need to be implemented to enhance our overall security framework.
Requirements:
Experience with cloud identity, networking architecture and security, preferably within Amazon Web Services (AWS).

Experience with IaC and CM tools such as Terraform, CloudFormation, and Ansible.

Hands-on experience as a DevSecOps Engineer with extensive knowledge in network security and tools such as Firewalls, WAF, EDR, CSPM and more.

Coding experience in Bash, Python, Go, or equivalent.

Understanding of Kubernetes, containers, and microservices architecture.

Advantage:

Experience with AWS multi account landing zone architecture and the accompanying tools

Experience with Endpoint security, vulnerability scanning, and firewall management.
This position is open to all candidates.
 
Show more...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8134930
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
דרושים בG-NESS
מיקום המשרה: תל אביב יפו
סוג משרה: משרה מלאה ועבודה היברידית
לארגון אנטרפרייז מוביל במרכז דרוש.ה אחראי.ת תחום תפעול ותשתיות אבטחת מידע
התפקיד משלב DevSecOps עם MLOps באבטחת מידע מתמקד בשילוב אבטחה בתהליכי פיתוח ותפעול מערכות API ומסרים (כגון Kafka), התפקיד כולל הטמעת שיטות אבטחה ניהול מחזור חיי מודלים של למידת מכונה (ML), אוטומציה של תהליכים תוך שמירה על סטנדרטים גבוהים של הגנת נתונים, אבטחת תקשורת בין מערכות, ניטור איומים בזמן אמת, יישום בקרות אבטחה בסביבות מבוזרות ועתירות נתונים, הטמעת פרקטיקות אבטחה חדשניות בתהליכי העבודה של צוותי הפיתוח והתשתיות, במתודולוגיות הנדסיות מודרניות כמו Agile, בכלי CI/CD ואוטומציה
דרישות:
ניסיון של 4 שנים לפחות בתפקידי DevOps / SecOps / ML Ops
שליטה מעשית ב- JavaScript, C #, ו- Python כתיבת סקריפטים, כלי CLI, ו-Webhooks
ניסיון עם כלי IaC בדגש על Terraform
ניסיון עם לפחות אחד מהעננים: AWS / Azure / GCP
היכרות עמוקה עם עולמות הרשתות TCP/IP, DNS, VPN, WAF, NACLs, Security Groups
הבנה וניסיון עם טכנולוגיות Docker ו-Kubernetes
ניסיון עם מערכות ניטור ואבטחת ענן (כגון GuardDuty, Azure Defender, Chronicle וכו)
אוריינטציה אבטחתית מובהקת חשיבה התקפית והגנתית, זיהוי חולשות והקשחת שירותים
פיתוח בסביבת DataPower IBM הקמת שירותים לניהול ואבטחת מידע בין כלל המערכות בפרויקט. כולל עבודה עם פרוטוקולי תקשורת שונים (http,https,tcp/ssl) crypt sing, וכן הטמעת קוד לביצוע אורכסטרציות מורכבות (xslt, JavaScript ).
יתרון:
יתרון משמעותי לניסיון רב-ענני
ניסיון מעשי עם תהליכי MLOps הטמעת מודלים בסביבת Production
הסמכות רלוונטיות: AWS DevOps Engineer / Azure Security המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8398526
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
5 ימים
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a passionate and experienced Senior DevSecOps Engineer to join our growing team!

In this pivotal role, you will take part in designing, leading planning, and implementing robust security strategies across our cloud infrastructure. Youll be at the forefront of integrating security into every stage of our development and deployment processes - working closely with development teams, security teams and DevOps team, ensuring our systems are secure, scalable, compatible, and aligned with best practices.

This is a unique opportunity to shape the security architecture of a fast-moving, innovative company, and to work closely with engineering, IT, and security teams to drive a culture of security-first development.

Responsibilities:
Craft and implement cutting-edge cloud security controls and technologies.
Lead design, implementation, and integration of various cloud security tools.
Identify new technologies and security tools and lead operationalization solutions from POC to Production.
Help build infrastructure, tools, and services to improve delivery and availability.
Work closely with DevOps, Engineering and product teams to define security strategy and controls and execute on it.
Collaborate with R&D teams on designing and the implementation of new features.
Stakeholder Collaboration:
Act as the main point of contact between DevOps and external/internal stakeholders: Banks, Regulators, Security teams, NOC/SOC, and Development teams.
Communicate clearly on priorities, incidents, risks, timelines, and platform status.
Represent DevOps in cross-functional planning and reviews.
Process & Standards:
Define and evolve the DevOps teams SDLC, deployment standards, and incident response processes.
Drive best practices in monitoring, alerting, and reliability engineering.
Champion a culture of ownership, transparency, and continuous improvement.
Requirements:
7+ years of Cloud Security or DevOps - including at least 3 years in a DevSecOps role.
Proven experience managing multi-region AWS production environments, with at least 3 years of hands-on experience in AWS, including high-availability systems, disaster recovery, and compliance-driven environments.
Proven track record designing and securing complex cloud infrastructures
Deep knowledge of security controls, cloud best practices.
Hands-on experience with leading security tools (e.g., KMS, GuardDuty, CloudTrail, CSPM, DSPM).
Skilled in security monitoring, incident response, and risk mitigation.
Strong skills in Terraform, Kubernetes, CI/CD (e.g., GitHub Actions), observability tools (e.g., Datadog, Prometheus, OTLP).
Solid understanding of internet protocols, architectures, and security design principles.
Familiarity with compliance frameworks (SOC2, ISO27001, PCI) and evidence gathering (advantage).
Self-motivated, proactive, excellent communication and stakeholder management skills. Experience working with Security teams / client CISO office.
Ability to balance short-term firefighting with long-term vision.
Security certifications (e.g., CISSP, CKS, CEH, CISA, CISM, Security+) - advantage.
Experience in the FinTech or regulated financial sector - advantage.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8441867
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
06/11/2025
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Principal Security Engineer (DevSecOps) to work in the Cortex DevSecOps group to help secure our immense cloud and on-prem deployments, and will be a security advisor for all infrastructure and application related new developments, as well as overseeing all current infrastructure and processes security improvements.
Helping guide new security initiatives in the product group and thinking outside the box for any new attack vectors as they appear in the wild.
The Cortex group specializes in analysis and visualization of complex cyber-data gathered by the products. It combines high-performance algorithms, deep understanding of modern databases, advanced visualization and high-end UI/UX.
Your Impact
Participate in meetings with stakeholders to provide balanced insights on feature requirements and security implications.
Act as a bridge between security, development, and operations teams to ensure security best practices are integrated into all phases of the development lifecycle.
Collaborate with cross-functional teams to develop pragmatic security solutions that do not hinder agility and innovation.
Work closely and in full coordination with multiple product engineering groups and DevOps teams to produce highly secure features
Handle, prioritize and effectively bring security vulnerabilities to resolution for multiple products
Build out security processes and perform threat modeling to all ongoing development and operations.
Requirements:
5+ years as a DevSecOps or Product Security Engineer with a passion for security and doing things right
Knowledge of container security and orchestration platforms (Docker, Kubernetes).
High proficiency in cloud security across the common platforms (AWS, GCP, Azure).
Solid experience with CI/CD tools (Jenkins, GitLab CI/CD, etc.).
Experience in reviewing architectures and identifying security gaps and provide recommendations
Experience in triaging vulnerabilities and providing security remediation recommendations.
Familiar with static and dynamic security analyzers
Experience helping engineering teams to focus high value security issues and avoid toil on non security issues
Effective communication and interpersonal skills, ability to work and coordinate between multiple teams.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8403786
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
As a Senior DevOps Engineer, you will be pivotal in designing, implementing, and maintaining our cloud infrastructure. You will join a highly technological team responsible for managing our cloud environments, optimizing infrastructure, and ensuring security and cost efficiency. In this role, you will collaborate with key stakeholders across the company, including R&D, Security, and Product teams, to automate processes, streamline operations, and drive impactful changes in our cloud strategy.

Key Responsibilities:

Cloud Infrastructure Design & Implementation: Lead the design and implementation of our cloud infrastructure, ensuring it is secure, scalable, and cost-effective.
Automation & Streamlining: Help automate and streamline our operations and processes, enhancing efficiency and reducing manual intervention.
Cross-Functional Collaboration: Work closely with all major stakeholders in the company, including R&D, Security, Product, and more, to ensure seamless integration of DevOps practices.
Impactful Contribution: Play a major part in shaping the companys cloud strategy, focusing on innovation and long-term success.
Requirements:
6+ years as a DevOps Engineer, with extensive experience in cloud computing technologies, preferably AWS.
Strong scripting and automation skills, ideally using Python and bash.
Proficiency with Infrastructure as Code (IaC) tools such as Terraform and Terragrunt.
Hands-on experience with GitOps and CI/CD methodologies and tools like ArgoCD, Argo Workflows, GitHub Actions, and Jenkins.
Proven experience working with Kubernetes (K8s) in production environments.
Deep proficiency in Linux environments, including RHEL and Debian-based distributions.
A solid understanding of computer networking fundamentals, REST architecture, and cloud security concepts.
Experience working in a Java-based environment - a plus.
Excellent communication skills and the ability to execute projects from design to implementation.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8437747
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
06/11/2025
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Principal Security Engineer (DevSecOps) to work in the Cortex DevSecOps group to help secure our immense cloud and on-prem deployments, and will be a security advisor for all infrastructure and application related new developments, as well as overseeing all current infrastructure and processes security improvements.
Helping guide new security initiatives in the product group and thinking outside the box for any new attack vectors as they appear in the wild.
The Cortex group specializes in analysis and visualization of complex cyber-data gathered by the products. It combines high-performance algorithms, deep understanding of modern databases, advanced visualization and high-end UI/UX.
Your Impact
Participate in meetings with stakeholders to provide balanced insights on feature requirements and security implications.
Act as a bridge between security, development, and operations teams to ensure security best practices are integrated into all phases of the development lifecycle.
Collaborate with cross-functional teams to develop pragmatic security solutions that do not hinder agility and innovation.
Work closely and in full coordination with multiple product engineering groups and DevOps teams to produce highly secure features
Handle, prioritize and effectively bring security vulnerabilities to resolution for multiple products
Build out security processes and perform threat modeling to all ongoing development and operations.
Requirements:
5+ years as a DevSecOps or Product Security Engineer with a passion for security and doing things right
Knowledge of container security and orchestration platforms (Docker, Kubernetes).
High proficiency in cloud security across the common platforms (AWS, GCP, Azure).
Solid experience with CI/CD tools (Jenkins, GitLab CI/CD, etc.).
Experience in reviewing architectures and identifying security gaps and provide recommendations
Experience in triaging vulnerabilities and providing security remediation recommendations.
Familiar with static and dynamic security analyzers
Experience helping engineering teams to focus high value security issues and avoid toil on non security issues
Effective communication and interpersonal skills, ability to work and coordinate between multiple teams.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8403877
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
Required Security DevOps Engineer
Realize your potential by joining the leading performance-driven advertising company!
The ideal candidate will bridge high-level security governance with hands-on, automated security implementation across the Software Development Life Cycle (SDLC).
This individual will be a critical enabler, empowering teams to move swiftly and deliver exceptional value to our clients, all while upholding the required security standards. A proven track record in successfully balancing rapid innovation with robust security practices is essential for this role.
How youll make an impact:
As the DevSecOps Leader / Program Manager, you will be responsible for creating a secure-by-design culture and leading the operational implementation of our security strategy.
You will:
Build the Secure SDLC (SSDLC) Strategy: Develop, own, and execute the companys comprehensive DevSecOps strategy, focusing on automation to manage security at scale from code check-in to production deployment.
Lead Key Security Engineering Initiatives: Lead and manage security engineering programs, including:
Maturing the security tools stack (e.g., implementing WAF, and automating SCA/SAST tools).
Owning the bug bounty and responsible disclosure programs triage and remediation tracking.
Enhancing the Identity and Access Management (IAM) framework through concepts like Just-In-Time (JIT) and Zero Trust principles.
Operationalize CVE Tracking and Remediation: Design and implement a scalable system for discovering, tracking, and prioritizing Common Vulnerabilities and Exposures (CVEs) in third-party and custom code. Drive the engineering teams to achieve security risk remediation goals by providing clear, actionable data and automated patching mechanisms.
Measure & Drive Improvement: Develop and maintain key DevSecOps metrics (e.g., Mean Time To Detect/Remediate MTTD/MTTR, percentage of code coverage by SAST/SCA tools) to measure the effectiveness of automated controls and provide a data-driven picture of the application security posture.
Embed Security Engineering: Spearhead R&D DevSecOps initiatives, partnering directly with engineering teams to select, deploy, and maintain security tools, establishing security gates and best practices throughout the product development lifecycle.
Requirements:
Deep DevSecOps Expertise: 5+ years of experience in a senior DevSecOps or Application/Product Security role, with a strong, working knowledge of DevSecOps principles and the modern application threat landscape (e.g., OWASP Top 10).
DevSecOps Focus: Proven ability to shift left security by embedding automated security controls (SAST, DAST, SCA, IAST) into CI/CD pipelines.
Open Source Security & Supply Chain Mastery: Deep, hands-on experience managing and hardening open-source software dependencies.
Key Focus: Expertise in utilizing Software Composition Analysis (SCA) tools (e.g., Dependency-Check, Snyk, Black Duck) to maintain an accurate Software Bill of Materials (SBOM) for all products.
Vulnerability & Risk Management Pro: Proven ability to establish and own a continuous CVE tracking and remediation process.
Key Focus: Expertise in risk-rating vulnerabilities based on exploitability and business impact, and driving engineering teams to remediate security risks efficiently using automation and clear Service Level Objectives (SLOs).
Audit & Compliance Automation: Proven, hands-on experience managing security audits and certification programs (e.g., SOC 2, ISO 27001) by leveraging security as code principles and automating evidence collection to demonstrate compliance across the pipeline.
Leadership & Influence: Strong leadership skills with the ability to build consensus and partner with R&D, Platform Engineering, and IT teams to embed security practices without being a bottleneck.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8437885
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
Required SRE Security
Realize your potential by joining the leading performance-driven advertising company!
The ideal candidate will bridge high-level security governance with hands-on, automated security implementation across the Software Development Life Cycle (SDLC).
This individual will be a critical enabler, empowering teams to move swiftly and deliver exceptional value to our clients, all while upholding the required security standards. A proven track record in successfully balancing rapid innovation with robust security practices is essential for this role.
How youll make an impact:
As the DevSecOps Leader / Program Manager, you will be responsible for creating a secure-by-design culture and leading the operational implementation of our security strategy. You will:
Build the Secure SDLC (SSDLC) Strategy: Develop, own, and execute the companys comprehensive DevSecOps strategy, focusing on automation to manage security at scale from code check-in to production deployment.
Lead Key Security Engineering Initiatives: Lead and manage security engineering programs, including:
Maturing the security tools stack (e.g., implementing WAF, and automating SCA/SAST tools).
Owning the bug bounty and responsible disclosure programs triage and remediation tracking.
Enhancing the Identity and Access Management (IAM) framework through concepts like Just-In-Time (JIT) and Zero Trust principles.
Operationalize CVE Tracking and Remediation: Design and implement a scalable system for discovering, tracking, and prioritizing Common Vulnerabilities and Exposures (CVEs) in third-party and custom code. Drive the engineering teams to achieve security risk remediation goals by providing clear, actionable data and automated patching mechanisms.
Measure & Drive Improvement: Develop and maintain key DevSecOps metrics (e.g., Mean Time To Detect/Remediate MTTD/MTTR, percentage of code coverage by SAST/SCA tools) to measure the effectiveness of automated controls and provide a data-driven picture of the application security posture.
Embed Security Engineering: Spearhead R&D DevSecOps initiatives, partnering directly with engineering teams to select, deploy, and maintain security tools, establishing security gates and best practices throughout the product development lifecycle.
Requirements:
Deep DevSecOps Expertise: 5+ years of experience in a senior DevSecOps or Application/Product Security role, with a strong, working knowledge of DevSecOps principles and the modern application threat landscape (e.g., OWASP Top 10).
DevSecOps Focus: Proven ability to shift left security by embedding automated security controls (SAST, DAST, SCA, IAST) into CI/CD pipelines.
Open Source Security & Supply Chain Mastery: Deep, hands-on experience managing and hardening open-source software dependencies.
Key Focus: Expertise in utilizing Software Composition Analysis (SCA) tools (e.g., Dependency-Check, Snyk, Black Duck) to maintain an accurate Software Bill of Materials (SBOM) for all products.
Vulnerability & Risk Management Pro: Proven ability to establish and own a continuous CVE tracking and remediation process.
Key Focus: Expertise in risk-rating vulnerabilities based on exploitability and business impact, and driving engineering teams to remediate security risks efficiently using automation and clear Service Level Objectives (SLOs).
Audit & Compliance Automation: Proven, hands-on experience managing security audits and certification programs (e.g., SOC 2, ISO 27001) by leveraging security as code principles and automating evidence collection to demonstrate compliance across the pipeline.
Leadership & Influence: Strong leadership skills with the ability to build consensus and partner with R&D, Platform Engineering, and IT teams to embed security practices without being a bottleneck.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8439411
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
Required DevSecOps Engineer
Realize your potential by joining the leading performance-driven advertising company!
The ideal candidate will bridge high-level security governance with hands-on, automated security implementation across the Software Development Life Cycle (SDLC).
This individual will be a critical enabler, empowering teams to move swiftly and deliver exceptional value to our clients, all while upholding the required security standards. A proven track record in successfully balancing rapid innovation with robust security practices is essential for this role
How youll make an impact:
As the DevSecOps Leader / Program Manager, you will be responsible for creating a secure-by-design culture and leading the operational implementation of our security strategy.
You will:
Build the Secure SDLC (SSDLC) Strategy: Develop, own, and execute the companys comprehensive DevSecOps strategy, focusing on automation to manage security at scale from code check-in to production deployment.
Lead Key Security Engineering Initiatives: Lead and manage security engineering programs, including:
Maturing the security tools stack (e.g., implementing WAF, and automating SCA/SAST tools).
Owning the bug bounty and responsible disclosure programs triage and remediation tracking.
Enhancing the Identity and Access Management (IAM) framework through concepts like Just-In-Time (JIT) and Zero Trust principles.
Operationalize CVE Tracking and Remediation: Design and implement a scalable system for discovering, tracking, and prioritizing Common Vulnerabilities and Exposures (CVEs) in third-party and custom code. Drive the engineering teams to achieve security risk remediation goals by providing clear, actionable data and automated patching mechanisms.
Measure & Drive Improvement: Develop and maintain key DevSecOps metrics (e.g., Mean Time To Detect/Remediate MTTD/MTTR, percentage of code coverage by SAST/SCA tools) to measure the effectiveness of automated controls and provide a data-driven picture of the application security posture.
Embed Security Engineering: Spearhead R&D DevSecOps initiatives, partnering directly with engineering teams to select, deploy, and maintain security tools, establishing security gates and best practices throughout the product development lifecycle.
Requirements:
To thrive in this role youll need:
Deep DevSecOps Expertise: 5+ years of experience in a senior DevSecOps or Application/Product Security role, with a strong, working knowledge of DevSecOps principles and the modern application threat landscape (e.g., OWASP Top 10).
DevSecOps Focus: Proven ability to shift left security by embedding automated security controls (SAST, DAST, SCA, IAST) into CI/CD pipelines.
Open Source Security & Supply Chain Mastery: Deep, hands-on experience managing and hardening open-source software dependencies.
Key Focus: Expertise in utilizing Software Composition Analysis (SCA) tools (e.g., Dependency-Check, Snyk, Black Duck) to maintain an accurate Software Bill of Materials (SBOM) for all products.
Vulnerability & Risk Management Pro: Proven ability to establish and own a continuous CVE tracking and remediation process.
Key Focus: Expertise in risk-rating vulnerabilities based on exploitability and business impact, and driving engineering teams to remediate security risks efficiently using automation and clear Service Level Objectives (SLOs).
Audit & Compliance Automation: Proven, hands-on experience managing security audits and certification programs (e.g., SOC 2, ISO 27001) by leveraging security as code principles and automating evidence collection to demonstrate compliance across the pipeline.
Leadership & Influence: Strong leadership skills with the ability to build consensus and partner with R&D, Platform Engineering, and IT teams to embed security practices without being a bottleneck.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8437856
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
11/11/2025
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for an experienced DevSecOps engineer to join our DevOps Group , newly created IT team.
Who has a passion for security , living security standards and best practices. Who has a desire to find the right solution with the available tools, not compromise on highest standards and allowing developers quick and easy way to progress.
In this position you will use your expertise in Azure, SSO, authorizations, SonarQube and more.
Key Responsibilities
Design and Build and manage one click joining / removing users from all the 3rd party integrated systems.
Get an experience with many 3rd party system, access, user groups and permissions. You will have a great opportunity to grow and create impact.
Analyze GitHub repos usage, permissions, PRs and build unified best practice for all.
Requirements:
DevOps and security of at least 5 years of years of experience in cloud and infrastructure.
Great with TF and Python.
A problem solver, capable of finding creative solutions and getting things done.
Fluent English.
It would be great if you also have:
Have Strong background in systems configurations and troubleshooting, user management and authorization per relevant group.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8409766
סגור
שירות זה פתוח ללקוחות VIP בלבד