דרושים » אבטחת מידע וסייבר » דרוש /ה מומחה /ית PT ( Penetration Tester )

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
1 ימים
דרושים בTOP SOFT טופ סופט - השמה ומיקור חוץ
מיקום המשרה: הרצליה
חפש/ת את האתגר הבא בעולם ה-Offensive Security?

אנחנו מגייסים מומחה/ית Penetration Testing לביצוע מבדקי חדירות אפליקטיביים, תשתיתיים ובענן בסביבה טכנולוגית מתקדמת, עם עבודה צמודה לצוותי פיתוח ותשתיות והשפעה אמיתית על אבטחת המוצרים והמערכות.

מה כולל התפקיד?
ביצוע מבדקי חדירות לאפליקציות Web, Mobile ו-API.
זיהוי חולשות לוגיות וטכניות והערכת סיכונים.
כתיבת דוחות מקצועיים והצגת ממצאים לצוותי פיתוח ותשתיות.
ליווי תהליך תיקון החולשות ומתן המלצות טכנולוגיות.
עבודה עם סביבות Cloud וטכנולוגיות מתקדמות.
דרישות:
לפחות 3 שנות ניסיון מעשי (Hands-on) בביצוע מבדקי חדירות אפליקטיביים.
ניסיון משמעותי עם Burp Suite Professional.
היכרות מעמיקה עם OWASP Top 10 ו-ASVS.
ניסיון בבדיקות API (REST, SOAP, GraphQL) באמצעות Burp או Postman.
יכולת קריאת קוד בשפות כגון JAVA, C #, Node.js או Python.
היכרות עם מנגנוני Authentication ו-Authorization כגון OAuth2, JWT ו-SAML.

יתרון משמעותי
ניסיון בכתיבת סקריפטים ב- Python או Bash.
ניסיון במבדקי חדירות לסביבות Cloud ו-Microservices.
ניסיון בבדיקות Mobile ( Android / IOS ).
היכרות עם Linux, Windows ותקיפות תשתית.
הסמכות כגון OSCP, OSWE או GWAPT. המשרה מיועדת לנשים ולגברים כאחד.
 
הסתר
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8755765
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
לפני 9 שעות
מיקום המשרה: הרצליה
סוג משרה: משרה מלאה
אם עולם ה-Offensive Security הוא המקום שלך, ואת/ה נהנה/ית למצוא חולשות אמיתיות לפני שהתוקפים עושים זאת - מקומך איתנו.
מה כולל התפקיד?

ביצוע מבדקי חדירות אפליקטיביים למערכות Web, Mobile ו-API

ביצוע מבדקי חדירות לתשתיות ולסביבות ענן

איתור חולשות לוגיות וטכניות והערכת סיכוני אבטחה

כתיבת דוחות מקצועיים וליווי צוותי הפיתוח עד לתיקון הממצאים

עבודה עם מגוון טכנולוגיות ומתודולוגיות מתקדמות בעולם ה-Offensive Security
דרישות:
דרישות חובה:

לפחות 3 שנות ניסיון Hands-on בביצוע מבדקי חדירות אפליקטיביים

היכרות מעמיקה עם OWASP Top 10 ו-OWASP ASVS

שליטה מלאה ב-Burp Suite Professional

ניסיון בבדיקות API (REST / SOAP / GraphQL) באמצעות Burp או Postman

יכולת קריאת קוד בשפות כגון JAVA, C #, Node.js או Python לצורך זיהוי חולשות

הבנה מעמיקה במנגנוני Authentication ו-Authorization (OAuth2, SAML, JWT)

יתרון משמעותי אם יש לך:

ניסיון בכתיבת סקריפטים ב- Python או Bash

ניסיון בסביבות Cloud ו-Microservices

ניסיון בבדיקות חדירות ל-Mobile ( IOS / Android )

היכרות עם Windows, Linux ותקיפות תשתית

הסמכות כגון OSCP, OSWE או GWAPT

מה חשוב לנו?

יכולת כתיבה של דוחות טכניים ברמה גבוהה בעברית ובאנגלית

עבודה ישירה מול צוותי פיתוח והצגת ממצאים באופן מקצועי

חשיבה התקפית, סקרנות טכנולוגית ויכולת פתרון בעיות

נכונות לעבור תהליך סיווג ביטחוני המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8756842
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
2 ימים
דרושים בSQLink
סוג משרה: משרה מלאה
משרד ממשלתי באזור המרכז מגייס מומחה/ית תקיפה / מבדקי חוסן
התפקיד כולל: ביצוע מבדקי חוסן (אפליקטיביים, תשתיתיים וענן) סימולציות תקיפה (Red Team) מול מערכות קריטיות, זיהוי חולשות מורכבות והובלת תיקונן מול צוותי פיתוח ותשתיות. עבודה מול SOC, IR וצוותי הגנה, כתיבת דוחות טכניים ומנהלתיים ברמה גבוהה ועוד.
דרישות:
- 5 שנות ניסיון בבדיקות חדירה / Red Team
- ניסיון בתקיפות Web (OWASP Top 10) ובתקיפות תשתית (AD, Kerberos,
lateral movement)
- נסיון במערכות הפעלה Windows / Linux
- ניסיון מעשי עם כלים כמו: o Burp Suite / Nessus / Nmap / Metasploit /
BloodHound
- ניסיון בכתיבת סקריפטים ( Python / PowerShell / Bash) והבנה עמוקה של רשתות
(TCP/IP, DNS, VPN וכו) המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8745160
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
דרושים בMertens – Malam Team
מיקום המשרה: מספר מקומות
סוג משרה: מספר סוגים
חברת Mertens - MalamTeam  מגייסת אנליסט.ית SOC למחלקת הגנת הסייבר בחטיבה הטכנולוגית בארגון גדול ומוכר בתל אביב

תיאור התפקיד:
התפקיד כולל זיהוי ותגובה לאירועי אבטחת מידע, תוך שימוש בכלים החדשים והמתקדמים בשוק.
זיהוי חריגות וניטור תעבורת רשת, מערכות, מערכות רפואיות
האנליסט יספק תחקיר מעמיק ויציג את ממצאיו לאירוע האבטחה
ניטור איומים בצורה פרו-אקטיבית בסביבת הארגון
עבודה מול מחלקת נוספות לצורך פתרון בעיות ויישום פתרונות לאירועי אבטחת מידע
דרישות:
קורס רלוונטי (מגן סייבר, קורס אנליסט SOC ) או תואר רלוונטי או ניסיון צבאי רלוונטי
ניסיון של שנה לפחות בעולמות ה- SOC   
עבודה עם מוצרי אבטחת מידע וכלים כדוגמת:  Windows Event Logs, SIEM, EDR, FW
אנגלית ברמה גבוהה 
הכרות עם מערכות DLP 
הכרות עם עולם Threat intelligence המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8734774
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
2 ימים
דרושים בSQLink
סוג משרה: משרה מלאה
ארגון פיננסי גדול באזור המרכז מגייס נציג/ת מניעת הונאות
התפקיד כולל: עבודה במשמרות 24/7, כולל סופי שבוע וחגים, במודל היברידי של יומיים עבודה מהבית, לצד עבודה עם לקוחות הבנק במסגרת צוות מניעת הונאות מבצעי. התפקיד כולל ניהול שיחות נכנסות ויוצאות, אבחון ותחקור אירועים החשודים כהונאה בזמן אמת, קבלת החלטות בהתאם לנהלים, ליווי הלקוחות לאורך הטיפול, תיעוד הפעולות במערכות ומתן עדכונים ללקוחות בנוגע לתוצאות הטיפול באירועי הונאה ועוד.
דרישות:
- שנתיים ניסיון בשירות לקוחות
- יכולת עבודה עצמאית, תעדוף משימות וקבלת החלטות בזמן אמת
- יכולת עבודה תחת לחץ, ריבוי משימות וירידה לפרטים
- יחסי אנוש מצוינים ויכולת עבודה בצוות
- ניסיון בתחום הפיננסי, רוסית ברמת שפת אם וניסיון בארגונים גדולים או בסביבות
עתירות מערכות - יתרון המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8741542
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
דרושים בוואן פתרונות טכנולוגיים בע"מ
מיקום המשרה: מספר מקומות
סוג משרה: משרה מלאה
- אחריות לטיפול מקצועי בחשד לאירועי סייבר
- פיקוח על הפעילות השוטפת של מרכז הניטור וניהול משימות של אנליסטים T1
- מעקב רציף על האירועים / חשד לאירועים
- ניהול משמרות ניטור
- הקצאה וניהול משימות במרכז הניטור
- הפעלת צוותים לניהול תגובה לאירועי סייבר
- ניהול ומעקב פערי ניטור מול הצוותים הרלוונטיים
דרישות:
לפחות שנה כאנליסט ב- SOC
לפחות שנה כמנהל צוות ב- SOC או כמנהל צוות תגובה
ניסיון בהגדרות חוקים במערכות ה- SIEM (יתרון ל-SPLUNK)
יכולת הובלה מקצועית
יכולת ראייה בוגרת
המשרה מיועדת לנשים ולגברים כאחד. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8165491
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
09/07/2026
חברה חסויה
Location: Herzliya
Job Type: Full Time
As a DFIR team member, you will participate in hands-on security research and investigations, helping our customers understand and mitigate cyber threats and attacks.

Responsibilities
Perform incident response lifecycle and real-time activities, including detection and analysis, containment and eradication, and recovery
Perform incident response in a cloud environment (Azure, AWS etc.).
Perform digital forensics investigations
Research and analyze tactics, techniques, and procedures (TTPs) used by malicious actors
Perform hunt-evil and find-evil activities for proactively detecting attacks
Work closely with our in-house red team, CTI, and cyber architect teams
Work closely with worldwide companies, CISOs, and technology experts
Requirements:
Qualifications
2-3 years of experience as a DFIR team member
Experience with performing digital forensics in a cloud environment
Experience with performing digital forensics of Windows-based and/or Linux-based platforms, network forensics, and analysis
Thorough understanding of threat hunting models, as well as cyber threat intelligence, including TTP and IoCs extraction and mapping
Experience with research and data analysis of large DBs via Splunk, Elasticsearch, SQL, or VQL
Strong understanding of targeted attacks; able to create customized tactical remediation plans
Good written and verbal English communication skills
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8731958
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Herzliya
Job Type: Full Time
our Security team is looking for a highly skilled and security-savvy Application Security Engineer to lead our product and application security efforts. In this role, you will drive security design, ensure secure coding practices, and validate our services and environments against the highest security standards.
You will work closely with our R&D and Product teams to identify, mitigate, and prevent security risks throughout the software development lifecycle (SDLC). As a senior engineer, you will own security initiatives, mentor developers on security best practices, and play a key role in shaping the security posture of products.
The ideal candidate is highly motivated, eager to learn, and has a security by design mindset. This role provides career growth opportunities, enabling you to deepen your expertise in AppSec, DevSecOps, and cloud security.
What you'll do:
Partner with development and product teams to integrate security best practices into the SDLC
Lead threat modeling and architecture security reviews to proactively identify and mitigate risks
Conduct security assessments, including code reviews, vulnerability scans, penetration testing, and secure product design reviews
Stay up to date with emerging security threats, vulnerabilities, and industry trends, ensuring remains ahead of evolving risks.
Support and contribute to security incident response activities, including root cause analysis and post-incident improvements
Automate security processes and integrate security tools within CI/CD pipelines
Develop and deliver secure coding training to engineering teams
Requirements:
4+ years of experience in Application Security, Penetration Testing, or Product Security in a SaaS company
Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent experience)
Deep understanding and hands-on experience of web application security, including OWASP Top 10, authentication, encryption, and secure coding principles
Proficiency in scripting or programming languages (Python, JavaScript, Go, etc.) for security automation
Experience with cloud security best practices (AWS, GCP, or Azure)
Hands-on experience with DevSecOps and integrating security tools into CI/CD pipelines
Strong communication skills, with the ability to explain security risks and recommendations to technical and non-technical stakeholders, including executive management
Experience working with large-scale, complex R&D environments
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8723935
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
06/07/2026
חברה חסויה
Location: Herzliya
Job Type: Full Time
Required Web Security Researcher
As a Web Security Researcher, you will:
Perform in-depth technical research of Android and iOS application architectures, using both static and dynamic techniques.
Deep dive into the network stacks and communication protocols used by mobile applications
Develop detailed, reliable Proofs of Concept (PoCs) for related solutions.
Requirements:
If you have:
At least 3 years of security research experience, including static analysis of complex applications using tools such as Ghidra and JADX and dynamic application analysis using tools such as Frida, mobile debuggers and instrumentation frameworks.
Good understanding of cryptographic principles and common cryptographic protocols.
Proficiency in at least 2 of the following programming languages: C/C++, Java, Python, Swift and Objective-C
It would be great if you also have:
Hands-on experience in mobile security analysis of Android and/or iOS platforms
Strong understanding of operating system internals
Experience analyzing obfuscated, protected or heavily optimized code
Experience with vulnerability research and exploit development.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8725891
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
06/07/2026
חברה חסויה
Location: Herzliya
Job Type: Full Time
Required Security Researcher
As a Security Researcher, you will:
Be a part of the OPSEC department which is in charge of research, design, development and enforcement of advanced OPSEC solutions.
Be in charge of the operational security research of a cyber intelligence product
Advanced analysis of operating system internals, including binary and architectural evaluation, security testing and exploit mitigation research
Define product requirements, alert mechanisms, working procedures and more.
Requirements:
If you have:
Strong knowledge of mobile operating system internals
At least 2 years of experience in one or more of the following areas: malware research, mobile forensics and vulnerability research
At least 2 year of experience with advance static and dynamic tools ( e.g., Ghidra, Radare2, Binary Ninja, Hopper or similar tools)
At least 2 year of experience with ARM64 assembly and low-level debugging (e.g., LLDB, GDB)
Software development skills in at least one programming language: Objective-C, swift, C/C++
B.Sc. in a technological field or a relevant IDF background.
Ability to work independently and as a part of a team
It would be great, if you also have:
Familiarity with mobile security testing methodologies and security hardening techniques
Experience with network analysis tools, such as: Wireshark/Fiddler/Burp.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8725899
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
06/07/2026
חברה חסויה
Location: Herzliya
Job Type: Full Time
Required Vulnerability Researcher
Want to make an instant impact?
Be a part of the top cyber research teams in the industry and make the world a better place!
As a Vulnerability Researcher, you will be:
Work with top-notch researchers using the latest technologies
Research low-level mechanisms, finding vulnerabilities and circumventing modern mitigation techniques
Our perks:
A competitive compensation package
Hybrid and flexible
Multiple career advancement opportunities
Incredible benefits.
Requirements:
If you have:
Vulnerability research and exploit development experience
Strong analytical and problem-solving skills
Knowledge of programming languages: Assembly, C and Python
Experience with reverse engineering tool
It would be great if you also have:
B.Sc. in Computer Science or equivalent
Relevant military experience
Knowledge of mobile devices internals/Linux kernel/Win internals
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8725957
סגור
שירות זה פתוח ללקוחות VIP בלבד