דרושים » אבטחת מידע וסייבר » Security Engineer - Focused Services (Cortex)

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
You will work firsthand with our valued customers to address their complex post-sales concerns where analysis of situations or data requires an in-depth evaluation of many factors. Youre a critical thinker in understanding the methods, techniques, and evaluation criteria for obtaining results. Youll enjoy networking with key contacts outside your own area of expertise, with a strong capability of detailing difficult technical issues to both non-technical and technical professionals.
You will regularly participate in technical discussions with multi-functional teams, creating an environment of transparency that ultimately leads to better products, better working environments, and better cybersecurity. Your quick thinking and support to our clients provides the fast assistance they need to keep their environments secure - which means youll need to move quickly, thoughtfully, and provide technical assistance as needed (often, in high pressure situations).
Your Impact
Provide customers on-site support, deployment and implementation, knowledge transfer, configurations, troubleshooting, and standard methodologies to customers via phone, e-mail, and web.
Use fault isolation and root cause analysis skills to diagnose and tackle complicated technical issues
Provide post sales technical support, while handling support cases to ensure issues are recorded, tracked, resolved, and follow-ups finished in a timely manner
Work to reproduce customer issues and qualify critical issues
Publish Technical Support Bulletins and other user documentation in the Knowledge Base
Build a positive customer experience by working closely with Development, Sales, Quality Assurance, and Marketing
Responsible for reviewing user documentation for training materials, technical marketing collateral, manuals, problem solving guides, etc.
Provide on-call support 24x7 on an as needed basis
Travel may be required to customer sites in the event of a critical situation to expedite resolution
Work shoulder to shoulder with the Sales and Sales Engineering Teams.
Requirements:
4+ years of deep technical knowledge and technical support with a strong customer focus or related experience
Experience with automation and orchestration concepts, including scripting, API usage, and workflow design; experience with SOAR platforms such as Cortex XSOAR - advantage
Proficiency with SIEM and analytics platforms such as IBM QRadar, Splunk, ArcSight, FortiSIEM, Trellix, and Cortex XSIAM, including parsing, correlation, data modeling, and dashboard development.
Hands-on experience deploying and supporting Endpoint security technologies and solutions, including EDR/XDR, SOAR, and SIEM platforms. (Palo Alto Cortex XDR, McAfee Endpoint Security, Data Loss Prevention (DLP), CrowdStrike, and Symantec products)
Strong scripting and automation skills using Python, Bash, and Powershell.
Experience building queries, correlations, detections, and dashboards in SIEM or analytics platforms.
Understanding of security detections, alerting, incident response workflows, and threat analysis methodologies, including familiarity with MITRE ATT&CK.
Experience investigating issues and incidents across network, endpoint, cloud, and identity domains, with the ability to identify root cause and reduce false positives.
Strong knowledge of networking technologies and protocols, including DNS, IP routing, SSH, FTP, HTTP/HTTPS, email routing, and Internet security.
Proven experience deploying, maintaining, and troubleshooting multi-vendor firewall environments, including Cisco, Check Point, Juniper, and Fortinet. Experience with Palo Alto Networks NGFW and VM-Series is a strong advantage.
Proficiency with Windows, Linux, macOS, iOS, and Android, including installation, troubleshooting, and debugging.
Experience with enterprise deployment and management tools such as SCCM, Group Policy, Active Directory, and JAMF.
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8715198
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
22/06/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
You will work firsthand with our valued customers to address their complex post-sales concerns where analysis of situations or data requires an in-depth evaluation of many factors. Youre a critical thinker in understanding the methods, techniques, and evaluation criteria for obtaining results. Youll enjoy networking with key contacts outside your own area of expertise, with a strong capability of detailing difficult technical issues to both non-technical and technical professionals.
You will regularly participate in technical discussions with multi-functional teams, creating an environment of transparency that ultimately leads to better products, better working environments, and better cybersecurity. Your quick thinking and support to our clients provides the fast assistance they need to keep their environments secure - which means youll need to move quickly, thoughtfully, and provide technical assistance as needed (often, in high pressure situations).
Your Impact
Provide customers on-site support, deployment and implementation, knowledge transfer, configurations, troubleshooting, and standard methodologies to customers via phone, e-mail, and web.
Use fault isolation and root cause analysis skills to diagnose and tackle complicated technical issues
Provide post sales technical support, while handling support cases to ensure issues are recorded, tracked, resolved, and follow-ups finished in a timely manner
Work to reproduce customer issues and qualify critical issues
Publish Technical Support Bulletins and other user documentation in the Knowledge Base
Build a positive customer experience by working closely with Development, Sales, Quality Assurance, and Marketing
Responsible for reviewing user documentation for training materials, technical marketing collateral, manuals, problem solving guides, etc.
Provide on-call support 24x7 on an as needed basis
Travel may be required to customer sites in the event of a critical situation to expedite resolution
Work shoulder to shoulder with the Sales and Sales Engineering Teams.
Requirements:
Your Experience
4+ years of deep technical knowledge and technical support with a strong customer focus or related experience
Experience with automation and orchestration concepts, including scripting, API usage, and workflow design; experience with SOAR platforms such as Cortex XSOAR - advantage
Proficiency with SIEM and analytics platforms such as IBM QRadar, Splunk, ArcSight, FortiSIEM, Trellix, and Cortex XSIAM, including parsing, correlation, data modeling, and dashboard development.
Hands-on experience deploying and supporting Endpoint security technologies and solutions, including EDR/XDR, SOAR, and SIEM platforms. (our company XDR, McAfee Endpoint Security, Data Loss Prevention (DLP), CrowdStrike, and Symantec products)
Strong scripting and automation skills using Python, Bash, and Powershell.
Experience building queries, correlations, detections, and dashboards in SIEM or analytics platforms.
Understanding of security detections, alerting, incident response workflows, and threat analysis methodologies, including familiarity with MITRE ATT&CK.
Experience investigating issues and incidents across network, endpoint, cloud, and identity domains, with the ability to identify root cause and reduce false positives.
Strong knowledge of networking technologies and protocols, including DNS, IP routing, SSH, FTP, HTTP/HTTPS, email routing, and Internet security.
Proven experience deploying, maintaining, and troubleshooting multi-vendor firewall environments, including Cisco, Check Point, Juniper, and Fortinet. Experience with our company NGFW and VM-Series is a strong advantage.
Proficiency with Windows, Linux, macOS, iOS, and Android, including installation, troubleshooting, and debugging.
Experience with enterprise deployment and management tools such as SCCM, Group Policy, Active Directory, and JAMF.
Knowledge of cloud platforms such as AWS, Azure, and GCP.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8705046
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Identity Security Analyst who will focus on investigating and resolving customer-reported security bugs. In this role, youll sit at the intersection of security research, product engineering, and customer success: youll reproduce issues, analyze impact and root cause, coordinate fixes with R&D, and communicate findings back to customers in a clear, actionable way.

This is a hands-on, technical position ideal for someone who enjoys debugging, incident-style investigations, and direct customer impact.

Key Responsibilities

Bug Triage & Investigation

Review and prioritize customer-reported security bugs (vulnerabilities, false positives, detection gaps, performance/coverage issues).

Reproduce issues in lab environments using customer-provided data, logs, and configurations.

Validate whether a bug is product defect, configuration issue, environmental limitation, or expected behavior.

Security Analysis

Analyze suspected vulnerabilities, misconfigurations, or detection gaps to determine impact, severity, and likelihood.

Correlate product behavior with attack techniques (e.g., MITRE ATT&CK, AD / identity attacks, NTLM relay, Kerberos abuse).

Perform log and event analysis (Windows Security / Sysmon / AD / LDAP / application logs) to understand bug context and side effects.

Resolution & Fix Coordination

Work closely with R&D / engineering teams to:

Provide clear reproduction steps, data, and technical context.

Propose mitigations and contribute to detection or logic fixes.

Verify hotfixes and releases against customer scenarios.

Track bugs through their full lifecycle to ensure timely resolution and high SLA adherence.

Customer Communication

Collaborate with Support, Customer Success, and SEs to:

Explain root cause and resolution in customer-friendly language.

Provide interim workarounds or configuration guidance when needed.

Contribute to knowledge base articles, runbooks, and best-practice guides.

Quality & Continuous Improvement

Identify recurring patterns in customer bugs and propose long-term product or process improvements.

Help refine internal monitoring, alerting, and testing for security-sensitive components.

Contribute to test cases and validation criteria for new features from a security QA perspective.
Requirements:
2-4+ years in a technical security or support role, such as:

Security Analyst / SOC Analyst

Security Engineer

Technical Support Engineer in a security or infrastructure product

Scripting and automation skills in PowerShell to speed up investigation and test setup.

Solid understanding of:

Identity and access concepts (Active Directory, authentication, privileges, groups)

Basic networking and protocols (TCP/IP, DNS, HTTP/S, SMB, LDAP/LDAPS)

Hands-on experience with:

Debugging and reproducing complex customer issues in lab environments

Strong analytical and problem-solving skills; able to systematically break down ambiguous issues.

Excellent written and verbal communication skills in English; able to explain complex technical findings to both technical and non-technical audiences.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8695542
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
22/06/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
Required Senior Cybersecurity Engineer
Why is this role so important?
As a Senior Cybersecurity Engineer reporting directly to the Chief Information Security Officer (CISO), you will play a key role within our security team. In this position you will drive impactful security initiatives that support the companys business objectives, leveraging innovative technologies and practical solutions to strengthen our security posture while enabling the business to operate securely and efficiently.
You will collaborate with cross-functional teams across the organization, including IT, R&D, Product, and other stakeholders, to ensure that security is embedded throughout our products, services, and operations. You will help identify and mitigate risks, implement effective security controls, and continuously enhance our security capabilities in a dynamic, fast-growing, technology-driven environment.
Responsibilities:
Implement, manage, and continuously enhance security controls across cloud environments (AWS, GCP, Azure), endpoints, SaaS platforms, and applications.
Administer, optimize, and maintain security technologies, including EDR/XDR, SIEM, CDR, CNAPP, DLP, IAM, SASE, MFA, network security solutions, and more.
Take a leading role in securing our adoption of Generative AI & LLM-based technologies, assessing risks, defining security controls, and establishing guardrails for AI agents, MCP-based integrations, and AI-powered applications across the organization.
Design, implement, and automate security processes, workflows, and controls to improve operational efficiency, visibility, and risk reduction across the organization.
Partner with IT, DevOps, Engineering, and Product teams to drive security-by-design principles across system architecture, software development and AI lifecycles, cloud infrastructure, and business operations.
Lead vulnerability management initiatives, including identification, assessment, prioritization, remediation tracking, validation, and reporting across applications and environments.
Implement, manage, and maintain secure configuration baselines, hardening standards, and technical controls aligned with industry frameworks and best practices, including CIS Benchmarks, NIST(CSF), and ISO/IEC 27000 series.
Take an active role in security operations activities, including threat detection, IR, security investigations, and continuous monitoring of the organization's security posture.
Lead GRC initiatives through control implementation, assessments, audit support, customer security & Due Diligence Questionnaires (DDQs), and remediation efforts related to SOC 2, SOX, ISO 27001, and other compliance frameworks.
דרישות:
5+ years of experience in Information Security, Cybersecurity, or a related technical field.
Experience securing cloud environments (AWS, GCP, Azure), SaaS platforms, and enterprise applications (APIs and Integrations).
Experience implementing and managing security technologies such as EDR/XDR, SIEM, CNAPP, IAM, SSO, MFA, Identity Providers (IdPs), WAF, VPN, DLP, ZTNA, and secure connectivity solutions
Strong understanding of security frameworks, standards and best practices, such as NIST CSF, CSA, CIS Controls, MITRE ATT&CK, OWASP, SOC 2, or ISO/IEC 27000 series.
Experience with vulnerabilities/CVEs management, assessment, incident response, and security operations processes.
Experience working with DevOps, R&D, and IT teams to integrate security into OS, cloud infrastructure, SDLC, applications, and operational processes, including authentication and authorization technologies such as SSO, SAML, OAuth, and OpenID Connect.
Experience with scripting and automation using Python, Bash, PowerShell, or similar technologies.
Familiarity with AI security concepts, including risks and controls related to Generative AI, LLMs, AI agents, MCP-based integrations, and AI-powered applications.
Experience supporting GRC initiatives, audits, compliance programs, and security assurance activities המשרה מיועדת לנשים ולגברים כאחד.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8704911
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
Were looking for people who are relentlessly curious and committed to continuous learning. AI is reshaping every function across our business, and we enable every team member, regardless of role or level, to build fluency in AI tools and concepts. Those who thrive here actively seek out new solutions, experiment thoughtfully, and apply what they learn to drive better, faster, smarter outcomes.
As a Senior Hyperautomation Engineer - Wayfinder MDR, you will be tasked with designing, building, and operating the automation layer that powers Wayfinder MDR. Join our Wayfinder MDR organization, an elite Managed Detection & Response service protecting some of the worlds largest and most complex environments. You will work closely with Threat Service Engineers (TSEs), SOC analysts, Threat Hunters, and R&D teams to transform manual SOC processes into scalable, reliable, and efficient automation workflows. This role focuses on engineering and automation, not alert triage. You will help shape how MDR operates at scale by reducing manual workload, improving signal-to-noise ratio, and enabling faster and more consistent threat detection and response.
What Will You Do?
Primary responsibilities include:
Design, develop, and maintain hyperautomation workflows that support alert triage, enrichment, investigation, and response.
Convert SOC playbooks, investigation logic, and threat-hunting processes into automated, production-grade workflows.
Proactively identify repetitive or high-volume SOC tasks and implement automation to improve efficiency and consistency.
Build and maintain integrations with internal platforms and third-party security tools using APIs, webhooks, and event-driven mechanisms.
Collaborate closely with Threat Service Engineers (TSEs) and SOC teams to fine-tune existing detections and automation logic.
Improve and optimize MDR operational processes to ensure fast response times and effective threat mitigation.
Own automation workflows end-to-end, including design, deployment, monitoring, troubleshooting, and continuous improvement.
Create and maintain automation playbooks, templates, and best practices to support incident response at scale.
Work closely with R&D and product teams to provide operational feedback and help shape future detection and response capabilities.
Requirements:
Ideal candidates will have:
5+ years of experience in Security Engineering, Automation Engineering, SOC Tooling, Backend Engineering, or similar technical roles.
Strong experience with Python (required); experience with SQL is highly preferred.
Experience building and operating automation workflows or backend services in production environments.
Solid understanding of SOC operations, incident response workflows, and security alert lifecycles.
Experience working with APIs, integrations, and distributed systems.
Strong problem-solving skills with the ability to translate operational challenges into scalable engineering solutions.
Professional and articulate, with strong written and verbal communication skills.
Ability to manage multiple workstreams and prioritize effectively in a fast-paced environment.
Experience working in MDR, SOC, Threat Hunting, or Incident Response environments.
Familiarity with cloud platforms (AWS preferred).
Experience with security telemetry, alerting pipelines, SIEM/XDR concepts, or internal SOC tooling.
Experience building internal tools for operational or security teams.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8713846
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
Required Senior Product Security Engineer
As a Senior Product Security Engineer, you will help shape how security is built, not just how it is tested or reviewed. Youll work closely with engineering teams to secure real systems in production, influencing how services, APIs, and data flows are implemented from the ground up.
This is a hands-on role, focused on solving real security problems across cloud-native architectures and AI-driven features. Youll work directly with developers and DevOps, dive into systems when needed, and apply strong technical judgment to ensure security is built into the product, not added later.
What Makes This Role Unique
A product where data sensitivity is real, not theoretical
We processe and analyze customer conversations at scale, creating unique challenges around data protection, privacy, and access control.
AI is deeply embedded in the product
Security challenges extend beyond traditional AppSec into data handling, model behavior, and misuse scenarios.
Security is part of how we build, not a layer on top
The role operates within engineering workflows, focusing on building secure systems rather than enforcing external controls.
Meaningful scale and real production impact
Youll work on systems that handle large volumes of data and traffic, where security decisions directly affect reliability and trust.
A culture that values practical, engineering-driven security
The focus is on solving real problems and enabling teams, not on process-heavy or compliance-driven approaches.
High ownership with room to grow
Youll have the autonomy to take initiative, drive improvements, and expand your impact as the platform evolves.
What Youll Do
Secure real product flows end-to-end - Work directly with engineers to identify and fix vulnerabilities across services, APIs, and data paths in production systems
Drive secure-by-design practices in engineering - provide practical guidance on authentication, authorization, data protection, and service-to-service communication
Secure cloud-native environments - strengthen identity (IAM), isolation, and access control across Kubernetes, containers, and cloud infrastructure
Build and scale security in the development lifecycle - integrate and tune security tooling (SAST, SCA, IaC scanning, secrets detection) into CI/CD pipelines to improve signal and developer adoption
Own vulnerability management as a system - prioritize risks, drive remediation with engineering teams, and eliminate recurring issues through root-cause fixes
Strengthen software supply chain security.
דרישות:
5+ years of experience in Product Security, Application Security, or a similar hands-on security engineering role
Proven experience working closely with engineering teams on real systems in production, not just assessments
Strong understanding of secure design and threat modeling, with the ability to influence architecture decisions
Deep knowledge of application security principles (OWASP Top 10 and beyond), including modern attack vectors
Hands-on experience securing web applications, APIs, and distributed systems
Strong experience with cloud environments (AWS, GCP, and/or Azure), including identity and access management (IAM)
Familiarity with Kubernetes, containers, and cloud-native architectures
Experience integrating security into CI/CD pipelines and improving developer workflows
Practical experience with security tooling (SAST, SCA, IaC scanning, secrets detection), including tuning and operationalizing
Experience working with modern development stacks (e.g., Java, Python, JavaScript/TypeScript, React or similar)
Strong problem-solving skills and the ability to analyze complex systems and prioritize meaningful risks
Ability to influence developers through technical credibility and practical guidance
Experience mentoring engineers and improving security practices across teams
Additional strengths:
Experience securing AI/ML or LLM-based systems
Background in o המשרה מיועדת לנשים ולגברים כאחד.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8665214
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
22/06/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking a highly experienced Microsoft 365 Cloud Security Engineer to own the administration, configuration, and security of our enterprise Microsoft 365 tenant(s). The ideal candidate has proven hands-on expertise managing Microsoft 365 at scale, including Intune, Exchange Online, SharePoint/OneDrive, Teams, Entra ID, Defender, and related integrations
You will play a key role in ensuring availability, governance, identity and access control, endpoint compliance, and modern security posture across the entire Microsoft cloud ecosystem, with close collaboration across IT, Security, and business stakeholders.
Key Responsibilities:
Microsoft 365 Tenant Administration:
Administer and maintain enterprise-scale M365 tenants, including configuration, governance, and operational support.
Oversee service health, usage reporting, licensing, and user lifecycle management.
Maintain documentation of configurations, workflows, and operational procedures.
Microsoft Intune / Endpoint Management (Full Scope):
Own all aspects of Intune administration, including:
Device enrolment (Windows, macOS, iOS/iPadOS, Android)
Configuration profiles, compliance policies, and security baselines
Autopilot provisioning, device naming policies, and lifecycle
Conditional Access integration with device compliance
Endpoint security policies (AV, firewall, ASR rules, BitLocker, etc.)
Identity & Access Management (Entra ID / SSO):
Manage and secure Microsoft Entra ID (Azure AD) for identity, authentication, and access governance.
Configure and maintain SSO integrations with SaaS applications using SAML/OAuth/OIDC.
Implement and optimize:
Conditional Access policies
MFA enforcement and authentication methods policy
Privileged Identity Management
Identity Protection policies (risk-based controls)
Security & Threat Protection:
Deploy and manage Microsoft Defender stack relevant to the organization
Integrate and manage endpoint security posture with non-Microsoft EDR platforms, such as Sentinel One/CrowdStrike
Collaborate with Security teams to implement detection and response workflows, ensure coverage, and align with organizational policy.
Messaging & Collaboration
Exchange Online:
Administer Exchange Online policies and configurations
Implement email security best practices and support incident response when needed.
Microsoft Teams:
Administer Teams policies and governance - Teams lifecycle policy, app permissions, meeting policies; External access and guest collaboration settings.
Requirements:
Required Qualifications:
3-5 years of hands-on experience administering Microsoft 365 in an enterprise environment.
Proven expertise managing Intune (full end-to-end: enrolment → policy → deployment → compliance → reporting), Exchange Online, SharePoint Online / OneDrive, Microsoft Teams, Microsoft Entra ID, Conditional Access policies
Strong understanding of email security fundamentals and implementations: Transport rules, threat policies, anti-phishing controls SPF, DKIM, DMARC; experience integrating M365 security posture with non-Microsoft EDR/XDR tools
Strong troubleshooting capability across identity, endpoint, collaboration, and security layers.
Experience in scripting/automation
Experience with Microsoft Defender for Endpoint/Office 365/Cloud Apps.
Key Skills & Competencies:
Enterprise cloud administration mindset (scale, governance, standardization)
Strong security-first approach
Ability to translate business needs into practical policies
Comfortable owning production-critical services
Excellent communication and cross-functional collaboration
Structured documentation and operational discipline
Preferred Skills
Strong plus:
Experience with Microsoft Purview (DLP, retention, sensitivity labels, eDiscovery)
Familiarity with Zero Trust architecture and modern security frameworks.
Knowledge of SIEM integrations (Microsoft Sentinel, Splunk, etc.).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8705677
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
As a Security Operations & Automation, you'll be the hands-on architect of how Port detects, investigates, and responds to threats - built around AI agents and deep tooling integrations, not manual triage. You'll own incident response across corporate systems, workstations, and identity, unify alerts from every source - including cloud-originated signals that need a response - into a single SOAR/XDR fabric, and deploy AI agents to handle first-line investigation and response.

You'll work closely with IT and the Cloud Security team - taking the lead on investigation, triage, and response while they own the underlying cloud and SDLC architecture - and turn complex security signals into structured, AI-assisted, largely autonomous outcomes - fighting fire with fire.



Responsibilities

Architect and own Port's AI-driven detection and response stack, integrating SIEM, XDR, SOAR, EDR, and IAM into a single automated fabric rather than siloed tools.
Deploy and tune AI agents to handle first-line alert triage, enrichment, and investigation, with humans engaged only for true edge cases - manual L1 triage is the exception, not the default.
Build SOAR playbooks and integrations across the security and IT toolchain (endpoint, identity, ticketing, chat) so detection, enrichment, and remediation run automatically end to end - regardless of which system or platform an alert originates from.
Own the alert pipeline as a whole: unify signals from EDR, IAM, and other sources - including cloud and SaaS alerts surfaced by the Cloud Security team - into one triage and response workflow, so nothing falls through the cracks between tools.
Evaluate and integrate best-of-breed, AI-native security tools - SIEM, XDR, SOAR, EDR, email security, AI guardrails, ZTNA, and others - wiring each into the unified detection and response fabric rather than running them as siloed point solutions. Hands-on tool integration (APIs, connectors, log and telemetry ingestion) is a core skill for this role, not an occasional task.
Drive vulnerability and patch management across corporate systems and endpoints, automating prioritization and remediation workflows and coordinating with IT against strict SLAs.
Build and tune detection rules specific to Port's environment, treating detection as code and feeding AI-driven correlation across the XDR layer.
Maintain security dashboards (MTTD/MTTR, automation rate, % of alerts resolved without human touch) and report on how automation is cutting noise and response time.
Requirements:
3+ years of experience in security operations, SecOps, or security engineering roles.
Hands-on experience operating EDR/XDR. SOAR/XSOAR, SIEM platforms and cloud security services (IAM, CSPM, SSPM).
Experience building automations and playbooks using SOAR platforms or scripting (Python, Bash).
Strong incident response skills, including triaging alerts and conducting root cause analysis.
Hybrid position based in our Tel Aviv office.
Excellent written and verbal English skills
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8715686
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
31/05/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
As a Senior Information Security Engineer, youll be on the front lines of protecting the systems, users, and data at scale. This role is about turning strategy, architecture, and intent into enforced controls, effective detections, and resilient operations. Youll work hands-on with the tools, signals, and incidents that define our real security posture.
If you believe security should be practical, measurable, and embedded into daily operations-and not just documented-we want you on the team.
What the Role Looks Like in Practice
You will be the technical anchor of our internal security posture:
Architectural Ownership: Deploy, manage, and tune enterprise-grade security stacks (EDR, DLP, IAM, CASB, MDM) with a focus on deep integration and automation.
The AI Frontier: Lead the charge on AI Security. You will implement and secure AI-driven workflows, ensuring LLM use is governed and protected against emerging threats such as data leakage and prompt injection.
Proactive Defense: Build and maintain high-fidelity detections and guardrails that align with real-world attack techniques.
Cross-Functional Synergy: Partner as a peer with Engineering, IT, and DevOps to ensure security controls are frictionless, automated, and effective.
Requirements:
7+ Years of Senior Experience: Extensive hands-on experience in InfoSec Engineering or SecOps within high-growth, cloud-native environments.
AI Security Mastery (Required): You are ahead of the curve. You have practical experience securing AI adoption and leveraging AI-driven platforms to scale defensive capabilities.
Deep Technical Stack: Expert-level knowledge of endpoint security (macOS/Linux), SaaS ecosystems, and Identity (Okta/OIDC).
The Developer Mindset: Advanced scripting skills (Python is a must) to automate away manual toil and build custom security integrations.
Professional & Interpersonal Excellence:
Strategic Communication: The ability to articulate complex technical risks as actionable business intelligence for diverse stakeholders, ensuring alignment between security objectives and business goals.
Collaborative Influence: A track record of fostering strong partnerships with R&D and DevOps. You are a facilitator of Secure-by-Design principles, focused on engineering solutions rather than creating administrative bottlenecks.
Crisis Management & Decisiveness: The capacity to maintain operational composure during high-stakes incidents, applying rigorous prioritization and risk-based analysis to drive remediation.
Pragmatic Professionalism: A disciplined approach to balancing theoretical security ideals with the functional requirements of a high-velocity, global financial infrastructure.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8673517
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
01/06/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
Senior Enterprise Security Engineer
As a Senior Enterprise Security Engineer, you will be a foundational architect of our corporate security posture, directly safeguarding our infrastructure, sensitive data, and global workforce. This is a highly hands-on, configuration-driven role focused on hardening our environment through identity governance, endpoint security, and automated threat response.
What Youll Do:
Identity & Zero Trust: Architect robust IAM principles (Okta, Entra ID) and Zero Trust strategies. Enforce granular authentication, lifecycle management, and device trust to ensure secure access across all corporate resources.
Endpoint Security & Fleet Hardening: Lead the administration of our EDR (CrowdStrike Falcon) and MDM/UEM (Intune, Jamf). Manage patch lifecycles, endpoint state attestation, and proactive threat hunting to neutralize threats across all corporate devices.
Threat Detection & Automation: Develop advanced detection logic (SIEM/XDR) and build SOAR workflows to reduce Mean Time to Detect (MTTD) and Respond (MTTR).
SaaS Security & DLP: Secure our ecosystem by managing email security (e.g., Material Security) and implementing Data Loss Prevention (DLP) across SaaS platforms (Google Workspace, Salesforce, Box).
Cross-Functional Leadership: Partner with Engineering and IT to embed security-by-design, automate compliance checks for new infrastructure, and manage security integration for mergers and acquisitions.
Requirements:
Experience: 5+ years in corporate security engineering within high-growth, cloud-native environments.
Identity Expertise: Expert-level proficiency with Okta (SSO, MFA, IGA) and experience with federation protocols (SAML, OIDC, SCIM).
Endpoint/Device Security: Deep hands-on experience with EDR (CrowdStrike) and MDM solutions (Intune, Jamf).
Automation: Strong track record of automating security workflows using SOAR or scripting (Okta Workflows, Python, etc.) to drive efficiency.
Technical Breadth: Proficiency in Zero Trust models, SaaS/Cloud security, and vulnerability management.
Soft Skills: Proven ability to translate complex technical risks into business context and collaborate effectively across technical and non-technical teams.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8675387
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
15/06/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Security Engineer to join our Security Operations team and grow into our SOAR and automation specialist.

The team is responsible for monitoring our environments, identifying and responding to security alerts, and continuously improving how we detect and respond to threats. This role focuses on the automation side of the function: building the workflows that make the rest of the team faster, from automated alert triage to enrichment pipelines to response playbooks.

You will work closely with senior engineers on the team to build and maintain SOAR content, integrate our security tools, and support detection deployment efforts. This role offers a strong opportunity to grow professionally in the security field, with direct exposure to detection engineering, incident response, and a modern enterprise security stack.

How Will You Make an Impact?

Own day-to-day operation of our SOAR platform.

Build and maintain automation playbooks for alert triage, enrichment, ticketing, and notifications.

Build and maintain integrations between SOAR and the broader security stack via APIs.

Monitor integration health, API connections, and credential rotation across automated workflows.

Measure and report on automation impact: alerts auto-resolved, analyst time saved, and MTTR reduction.

Support detection engineering on testing, deployment, and rollout of new content.

Write small scripts to support ad-hoc threat hunting and IR work.

Create and maintain technical documentation for playbooks and integrations.
Requirements:
1-2 years of hands-on experience in IT, SOC, or Security Engineering.

Scripting skills in Python; familiarity with JavaScript or Bash is a plus.

Comfortable working with REST APIs, JSON, and webhooks.

Understanding of networking and protocol fundamentals: TCP/IP, DNS, HTTP, authentication flows.

Familiarity with at least one SOAR platform is a strong plus.

Exposure to SIEM, EDR, or cloud security tools is a plus.

Attention to detail and structured thinking.

Clear written communication.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8695429
סגור
שירות זה פתוח ללקוחות VIP בלבד