דרושים » ניהול ביניים » Principal/Senior Security Researcher - Autonomous EDR- Windows (Cortex)

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
4 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Security Researcher to join our research group as part of a growing team developing Autopilot, an innovative product for autonomous investigation and response.
As a core member of the team, you'll go beyond research: youll research, design, and develop investigation modules that allow Autopilot to autonomously detect, investigate, and respond to advanced threats at a massive scale.
Youll analyze everything from new malware behaviors to attacker techniques and process activity in enterprise-scale networks, using data collected from across millions of endpoints. Your work will span identifying attack patterns and uncovering statistical anomalies, as well as validating that the system responds effectively to real-world attacks and APT campaigns using production data.
Key Responsibilities
Research and implement new autonomous methods for investigating and responding to targeted attackers, using large-scale, diverse security datasets
Develop and design the graph-based algorithms that power autonomous investigation and decision-making capabilities
Design automated incident response by developing reusable logic that transforms raw security data and alerts into clear, actionable insights.
Leverage graph algorithms, AI techniques, and statistical methods to mimic and scale human security analyst workflows
Conduct deep, hands-on investigations into modern malware, APTs, and complex attack flows to inform detection and response logic
Stay up to date with attacker methodologies, tools, and techniques (TTPs), ensuring our product remains effective against evolving threats
Contribute to a collaborative, fast-paced research team, helping shape our research strategy, improve processes, and continuously enhance the product.
Requirements:
5+ years of experience in security or threat research, in which you conducted deep research with actionable insights and real-world impact.
Proven experience as part of an R&D/development team, along with strong proficiency in Python programming
Intimate knowledge and understanding of attack methods and techniques over endpoints and enterprise networks
Comfortable working with large-scale datasets to extract meaningful insights through advanced analysis
Strong sense of ownership and ability to independently drive projects from concept to execution
Critical thinker who thrives both independently and in collaborative team environments
Excellent verbal and written communication skills
A cybersecurity professional driven to solve the next generation of security challenges.
Preferred Qualifications
In-depth knowledge of the inner workings of operating systems (especially Windows)
Experience working with graph DB and algorithms
Experience in statistics, advanced data studies, or machine learning.
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8769895
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Senior Security Researcher to join our Identity Threat Detection and Response team. In this role, you will research the evolving threat landscape and develop advanced detections to protect SAAS, Cloud, on-premises, and hybrid identities. You will focus on identifying and mitigating identity-related threats across networks, endpoints, and cloud environments, using statistical classification methods to build effective detection models and protecting customers at scale. Additionally, you will collaborate with cross-functional teams, validate detection concepts on real-world data, and continuously enhance detection capabilities to stay ahead of emerging threats.
Key Responsibilities
Research innovative methods for detecting targeted attackers operating in endpoints, networks, cloud and SAAS environments.
Simulate real-world attacks in lab environments and conduct a deep analysis of the behavior.
Develop and refine statistics-based classification algorithms and techniques to create and improve detection models.
Research specific scenarios to enhance our model's capabilities.
Collaborate within a diverse research group, improving our research processes and leading us to be a better team creating a better product.
Stay informed on the latest APTs, attacker methodologies, and TTPs to ensure our models stay ahead of emerging threats.
Requirements:
At least 5 years experience with Active Directory security and identity related attacks.
In-depth knowledge of the inner-workings of operating systems.
In-depth Knowledge of network protocols, including but not limited to Kerberos, RPC, SMB, HTTP, SMTP, DNS, DHCP, etc.
In-depth knowledge of enterprise infrastructure, including Active Directory, FW, VPN, Security products, etc.
Ability to drive and own projects from start to finish.
Independent and a team player, a critical thinker.
Preferred Qualifications
2+ years of experience with Entra ID (formerly Azure AD) or SAAS application.
At least 2 years of experience coding in Python.
Strong knowledge of SQL language.
Experience with red-teaming / pentesting of Entra ID.
Experience with machine learning, data analysis, cloud infrastructure, or security.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8772397
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
30/07/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for a Security Researcher to join our team at the intersection of security research, AI, and product. This isn't a traditional research role - you'll be deeply embedded in how the platform is built, working side by side with R&D, Product, and AI teams to make sure security expertise is baked into every layer of what we ship. You'll own detection and analytics research across cloud, identity, endpoint, and beyond, while actively shaping how AI capabilities are applied to solve real security problems at scale.





WHAT YOU WILL DO

Research and develop sophisticated detections and behavioral analytics across multiple security landscapes - cloud, identity, endpoint, network, and application - with a focus on coverage that scales across customer environments.
Work closely with R&D, Product, and AI teams as the security authority - reviewing features, shaping designs, and ensuring security logic is sound, practical, and impactful.
Apply an AI-native approach to detection and analytics challenges - leveraging LLMs, ML signals, and AI-assisted workflows to do things that rule-based approaches can't.
Identify gaps in detection coverage and analytical capabilities, and drive those findings directly into the product roadmap.
Analyze real-world attacker techniques and translate them into detection logic, hunting content, and analytical frameworks that ship as part of the platform.
Evaluate detection quality rigorously - measuring fidelity, coverage, and performance against real attacker behavior and production telemetry.
Stay sharp on the evolving threat landscape and rapidly incorporate new techniques, campaigns, and attacker tooling into our detection library.
Contribute to external research output - blog posts, talks, open-source tooling - that reflects our depth and point of view in the security community.
Requirements:
6+ years of hands-on experience in detection engineering, security research or incident response - working with real production data at scale.
Deep knowledge of attacker techniques and behavior across at least 2 from: cloud, identity, endpoint, and network environments, with the ability to translate that directly into high-fidelity detection logic.
An AI-native mindset - you've built or applied AI-powered tooling in a security context (detection pipelines, alert investigation, hunting workflows) and you default to AI-powered approaches before reaching for manual ones.
Experience working within or alongside a product or engineering team - you understand how software gets built, and you know how to make your security expertise actionable for R&D and Product.
Strong coding skills (Python or similar), used for research, data analysis, detection development, and tooling.
A product-oriented approach to research - you think about scale, usability, and customer impact, not just technical correctness.
Self-directed and a strong self-learner - you don't wait to be pointed at problems, and you move fast when you find them.
Strong written and verbal communication skills in English, with the ability to explain complex security concepts clearly to both technical and non-technical audiences.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8762138
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
5 ימים
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
As an AI Security Researcher , you will play a key role in shaping the future of modern runtime AI security. You will investigate how real-world attacks unfold across AI-enabled applications, agents, tools, executed in cloud environments, and turn those insights into innovative, production-grade security capabilities across our AI Security Posture Management (AI-SPM) and AI Detection & Response (AI-DR) products.

This role is ideal for a deeply technical researcher who is driven to understand AI attacks at their core - not just identify suspicious prompts or surface-level indicators. You will research how prompt injection, tool misuse, agent drift, model abuse, and other emerging AI attack techniques translate into real runtime behavior and security impact. You will then apply that knowledge to build protections that are precise, resilient, scalable, and grounded in how attacks actually work in production.

Specifically, you will:

Research real-world attacks targeting models, agents, MCP/tooling ecosystems, RAG applications, and AI-enabled production systems.
Drive research end-to-end - explore, design, develop, validate, and deploy detection logic and protections based on runtime telemetry, exploit PoCs, technical analysis, and threat intelligence.
Shape AI-SPM capabilities by identifying what telemetry, signals, and modeling are required to continuously discover AI components, classify AI behavior, map risk, and detect unsafe or anomalous usage in production.
Shape AI-DR capabilities by researching how to detect AI-driven attacks, prove runtime impact, establish causality, and distinguish failed attempts from real compromise.
Work closely with engineering and product teams to turn deep technical research into practical security capabilities that deliver clear customer value.
Requirements:
5+ years of experience in security research, vulnerability research, detection engineering, threat research, application security, or a related technical security role.
Strong understanding of modern attack techniques, including the ability to analyze vulnerabilities, exploitation flows, and attacker behavior in real systems.
Familiarity with AI application architectures and concepts, including LLM-based applications, agents, tooling layers, models, RAG.
Experience designing and conducting hands-on technical research, including investigations, experiments, exploit analysis, and PoC development.
Strong programming skills for code analysis, research tooling, proof-of-concepts, and building vulnerable or instrumented test environments.
Experience working with runtime telemetry, behavioral signals, or detection-oriented datasets, and the ability to translate research into scalable detection logic.
High degree of ownership and ability to independently navigate ambiguous technical problem spaces and turn them into structured research plans and actionable outcomes.
Strong communication and teamwork skills, with a collaborative approach to problem-solving across research, engineering, and product teams.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8768190
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
We're building something special in our Israel-based Offensive Security organization, and we're hiring multiple people across three key areas:
Penetration Testing
Red Team Product
Security Research
While these roles share a common foundation in offensive security tradecraft, each brings its own unique focus and impact.
We're looking for deep expertise in at least one of these areas, with the ability to grow across others. We have multiple openings and are looking for talent at various levels. As we get to know you through the interview process, we'll work together to identify the best fit matching your expertise and interests with the specific role and level (Senior, Lead, or Principal) that makes the most sense for both you and the team.
Role Overview
We are seeking a highly skilled offensive security professional to join our elite team. This role is ideal for someone who thrives on breaking systems, finding creative attack paths, and using their findings to drive meaningful security improvements across our company's products and infrastructure.
You will work alongside some of the best minds in security, operating with significant autonomy and impact. Whether you specialize in deep application level penetration testing, red teaming, security research or vulnerability discovery, we want to hear from you-you don't need to be an expert in all three domains. What unites these roles is a relentless attacker mindset, a drive to find and demonstrate real-world impact, and the ability to translate offensive findings into lasting security improvements.
Responsibilities
Conduct advanced penetration testing, red team operations, or security research targeting our company's cloud infrastructure, applications, and services
Discover, exploit, and document security vulnerabilities using creative and methodical approaches
Develop custom tools, exploits, and attack techniques to simulate real-world adversaries
Collaborate with product teams to remediate vulnerabilities and improve secure design practices
Contribute to the maturity of our offensive security program through automation, tooling, and process improvements
Mentor and share knowledge with team members, fostering a culture of continuous learning
Present findings and security insights to technical and executive audiences
Stay ahead of emerging threats, attack techniques, and offensive security tradecraft.
Requirements:
5+ years of hands-on experience in offensive security (Senior), 7+ years (Lead), or 10+ years (Principal).
Deep, demonstrable expertise in at least one of the following domains: penetration testing, red teaming, application security research, or vulnerability discovery, with strong foundational knowledge and willingness to learn across other offensive security disciplines.
Proven ability to identify and exploit complex vulnerabilities in web applications, APIs, cloud environments, or infrastructure.
Strong programming/scripting skills (e.g., Python, Go, Bash, PowerShell) for tooling and automation.
Deep understanding of attack frameworks (MITRE ATT&CK), common vulnerability classes (OWASP, CWE), and exploitation techniques.
Excellent written and verbal communication skills, with the ability to clearly document technical findings.
Self-motivated, intellectually curious, and comfortable working independently or as part of a team.
Preferred Qualifications
Experience in cloud security (AWS, GCP, Azure) and containerized environments (Kubernetes, Docker).
Background in offensive security research, including CVE discoveries or contributions to security tools.
Familiarity with CI/CD pipeline security, supply chain attacks, or infrastructure-as-code security.
Experience with social engineering, physical security testing, or adversary simulation.
Active participation in the security community (bug bounties, CTFs, conferences, open-source contributions).
Relevant certifications (OSCP, OSCE, OSWE, GXPN, or equivalent).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8738936
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 5 שעות
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for a research-minded, DevOps-fluent Security Researcher to own the "left" side of the platform - from source code and IaC, through CI/CD pipelines, into running cloud workloads and the sensitive data they touch. You'll trace how risk originates in a commit or a data store and follows an attack path all the way to runtime, then turn that research into the posture logic that powers our code-to-cloud, CSPM and DSPM capabilities. This role sits at the intersection of DevSecOps, cloud, data security, and AI systems.
Conduct deep technical research across the full software development lifecycle - source code, IaC, dependencies, CI/CD pipelines, artifacts, and runtime - to map the environment and discover novel risks, misconfigurations, and end-to-end attack paths (code-to-cloud), then enrich findings with context and generate meaningful, actionable remediation.
Lead research into Data Security Posture Management (DSPM): how sensitive data is stored, classified, moves, and gets exposed across cloud data stores, and translate this into data discovery, classification, and data-flow risk logic.
Correlate runtime context from our eBPF sensors with code, pipeline, and data findings to prioritize what is actually reachable and exploitable - not just theoretically vulnerable.
Research and apply AI and ML techniques to strengthen the policy engine itself - improving detection accuracy and coverage, reducing false positives, and making risk prioritization and analytics smarter across code, cloud, data, and runtime signals.
Lead product initiatives from inception to production. Collaborate closely with product, backend, and GTM, translating research into shipped product capabilities.
Define and build complex policy and risk-prioritization logic spanning code, cloud, data, and runtime.
Requirements:
5+ years of experience in Cyber Security research, cloud security, or DevSecOps, particularly in cloud environments.
Military background experience, University Degree, or Ex-CNAPP.
Deep understanding of modern DevOps and CI/CD environments - pipelines (e.g., GitHub Actions, GitLab CI, Jenkins), Infrastructure-as-Code (e.g., Terraform, CloudFormation), containers, and Kubernetes.
Hands-on experience with at least one major cloud provider (AWS, GCP, or Azure) and its data and identity services.
Ability to learn the inner mechanisms of complex architectures - low level, cloud, and data.
Hands-on skills with scripting languages (e.g., Python) and query languages (e.g., SQL); comfort reasoning about data stores and data flows.
Ability to work independently in a dynamic, fast-moving, and demanding environment - owning research initiatives end-to-end and leading projects on your own across product, backend, and GTM teams.
Excellent written and oral communication skills in English.
Advantages:
Experience in AI Security Research, or securing AI/ML pipelines and workloads.
Experience with DSPM, data classification, or data security tooling.
Knowledge of graph and data science algorithms (e.g., graph analytics, clustering, anomaly detection, statistical modeling).
Experience with software supply chain security (SBOM, dependency and artifact/registry security).
Contributions to open-source security tooling.
Experience in public-facing work, such as presenting at recognized industry conferences, authoring technical blog posts, or publishing research.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8773769
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
14/07/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
Were seeking a Senior Security Researcher to drive end-to-end research initiatives that strengthen detection capabilities. In this role, youll investigate emerging attack surfaces, craft and implement innovative detection logic, and test your findings in real-world environments. Its a hands-on position ideal for someone eager to transform research insights into effective, production-grade security defenses.
Responsibilities:
Research AI Agent and LLM-related risks, such as prompt injection and jailbreaking and implement sophisticated detection strategies.
Conduct research on cloud, web, and API security to uncover new threats and attack vectors.
Develop, refine, and design world-class detection logic and rules to enhance runtime protection.
Perform threat-hunting activities across large data sources to identify emerging attack patterns
Drive full-cycle research: from hypothesis and experimentation to production validation.
Collaborate with engineering and product teams to deliver actionable insights.
Requirements:
4+ years in security research, including cloud, web, or API security.
Experience in detection engineering and building or working with detection-driven security products.
Strong coding and data analytics skills in scripting and programming languages such as Python, JavaScript and bash, and proficiency with SQL-like queries.
Solid grasp of security principles, cloud security, and runtime defense.
Curiosity, creativity, and a self-driven approach to research.
Experience tinkering with LLMs and AI security - a strong plus.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8738121
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
We're hiring a Senior Security Researcher to be the security authority behind our AI agents, and the person who decides what "good" means. As our agents take on more of the security workflow, the hardest question stops being "can we build it?" and becomes "is the agent actually right?" Answering that takes someone who understands how vulnerabilities are found, exploited, and remediated at a deep level, and who can turn that judgment into rigorous, repeatable benchmarks the whole team builds against. You'll own those benchmarks. You'll encode your security expertise directly into the agents - the guidelines, heuristics, and domain knowledge they reason with, and guide how they improve over time. You'll help us understand the real complexity behind the features we want to build, and break them into deliverable pieces. And you'll do it with a genuine appetite for experimental AI - comfortable getting your hands dirty with frontier models and agent tooling, not intimidated by it.
What you'll do:
Own our benchmarks and evaluations. Define what "correct" and "high quality" mean for AI agents that detect, prioritize, and remediate security issues. Build and maintain the benchmark datasets, scoring methods, and ground truth that the team measures itself against - and keep raising the bar.
Guide how our agents get better. Dig into where agents fail - false positives and negatives, bad or unsafe fixes, missed exploitability, wrong prioritization - and translate that into concrete improvements to prompts, tools, data, and agent design alongside engineers.
Be the security ground truth. Bring deep, hands-on AppSec judgment to bear on agent outputs: threat-model the edge cases, label the hard examples, and think adversarially about where an autonomous security agent could be confidently wrong.
Scope and decompose new features. Assess the security complexity and feasibility of new capabilities we want to build, explain the risks and trade-offs clearly, and help break ambiguous, research-heavy problems into small, shippable deliverables.
Be our early adopter of experimental AI. Stay on the frontier of models, agent techniques, and tooling. Test what's new, figure out what's real, and bring the useful parts back into the team.
Requirements:
Deep, hands-on application security or vulnerability research experience - you understand how vulnerabilities across SAST, SCA, secrets, IaC, and containers are discovered, exploited, and fixed, and you can tell a real finding from a false one.
The judgment to act as human ground truth: given an agent's finding or fix, you can authoritatively say whether it's correct, and why.
A measurement mindset - comfort defining metrics, building evaluation datasets, and reasoning rigorously about quality rather than relying on gut feel.
A real appetite for AI: hands-on experience with LLMs and/or AI agents, prompt engineering, and a willingness to work with experimental, fast-moving tooling without being thrown by it.
Strong communication - you can explain complex security topics to engineers and PMs, and break big problems into clear, ordered pieces of work.
Coding literacy: comfortable reading code across languages and scripting (e.g. Python) to build evals and analyze results.
Nice to have:
Experience building or evaluating LLM/agent systems, or working with eval frameworks.
Offensive security background - pentesting, exploit development, CTFs.
Detection engineering / security rule authoring.
Published research, CVEs, or conference talks.
Familiarity with ASPM, SAST, or SCA tooling from the building or operating side.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8739202
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
Required Senior Intelligence Analyst, Threat Intelligence Delivery
About the job
In this role, being onsite and embedded with a customer several days per week, you will leverage our cyber threat intelligence to enable network defenders and customer Cyber Threat Intelligence (CTI) teams to defend against the threats they face. You will be supported and enabled by a network of colleagues and specialists right across Threat Intelligence and will contribute to our wealth of technical skills and CTI knowledge. You will have access to industry leading tooling and data and will work towards delivering on customer priority intelligence requirements. You will be supporting the customer's CTI defensive mission, helping their Security Operations Center (SOC), threat hunters, detection engineers, and CTI analysts counter threats and enable the safe and secure running of their networks and operations.
A recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone.
Responsibilities
Build an understanding of the customers' CTI requirements. Identify their needs and opportunities for deployment of CTI within their operations to have the greatest defensive impact.
Track, research and contribute CTI analysis within Threat Intelligence, of customer's priority threat concerns.
Enable customer SOC analysts and Hunt teams to deploy and leverage our CTI.
Generate CTI and perform analysis of customer data, taking their bespoke sources to identify threat activity, or to build and automate investigative workflows.
Support the integration of CTI into customer's security processes and technologies, including Security Information and Event Management (SIEM) and Threat Intelligence Platform (TIP) systems. Write intelligence reporting against customer requirements, appropriate for their intelligence analysts or executive readers.
Requirements:
Minimum qualifications:
Bachelor's degree or equivalent practical experience.
5 years of experience in a customer-facing role in cyber intelligence and cyber operations.
Experience working with security operations functions such as SOC tier 1/2, Hunt teams, executive managers, Chief Information Security Officer (CISO).
Experience working in a government or military environment, developing cyber threat intelligence for network, host and log analysis, to enable the detection and response to cyber threats.
Experience analyzing Indicators of Compromise (IOCs ) including sandbox output.
Preferred qualifications:
Experience in leveraging cyber threat intelligence to describe, track and develop new intelligence on advanced persistent threats.
Experience in SOC operations, threat hunting, detection engineering and SOC workflow optimization.
Experience conducting/supporting incident response and investigations within enterprise environments.
Experience with network Intrusion Detection System (IDS) monitoring, Endpoint Detection and Response (EDR) solutions, SIEM, Security Orchestration, Automation, and Response (SOAR) integration, managing, contributing CTI into threat intelligence platform.
Understanding of core cyber security concepts, common enterprise IT infrastructure components, operating system internals and networking.
Eligible to obtain security clearance in Israel as this can be a client requirement.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8719201
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a DFIR Expert to join our team at our company. In this role, you will lead high-impact forensic investigations, drive incident response efforts, and shape the future of our DFIR service. You will serve as the highest escalation point, working hands-on to contain threats and protect our clients' environments.

What You ll Do
Investigate & Respond: Conduct deep-dive digital forensics investigations across file systems, memory, and networks. Leverage EDR, SIEM, firewalls, and diverse datasets to handle containment, eradication, and recovery.

Lead the Effort: Act as the technical and management lead during incidents, managing communication both internally and externally with clients.

Innovate & Automate: Develop custom tools to automate triage and accelerate the investigation process. Introduce and maintain systems to keep the team mission-ready.

Own the Service: Collaborate with pre-sales, account managers, and subcontractors to scale the DFIR service, expand customer reach, and drive business growth.

Deliver Clarity: Provide in-depth incident reports and comprehensive Root Cause Analysis.
Requirements:
What We re Looking For

Experience: 3+ years of hands-on experience in DFIR, Threat Hunting, SOC, or InfoSec.

OS & Network Internal Expertise: Deep understanding of Windows and Linux operating system essentials, network communications, and compromise footprints.

Malware Analysis: Proven ability to perform dynamic and static malware analysis to extract actionable indicators of compromise (IOCs).

Technical Breadth: Strong grasp of digital forensics methodologies, computer intrusion tactics, security architecture, and system administration.

Mindset: A critical thinker with a proactive, action-oriented approach to problem-solving and excellent attention to detail.

Availability: Ready to tackle confirmed breaches as part of our highest escalation tier, which includes 24/7 availability when critical incidents strike.
Advantages (Nice to Have)

Experience with macOS Forensics or Cloud Incident Response.
Strong time management and communication skills.
Industry-standard certifications such as GCFE, GCFA, GNFA, GCTI, GCIH, or GCIA.

Skills
digital forensics,incident response,threat hunting,infosec,malware analysis,
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8722028
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
3 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
As an innovator at heart, you will lead the Email Security Research team and shape the future of AI-driven email protection. You will define the technical vision, drive the research roadmap, and lead a team developing advanced detection capabilities. Working closely with Engineering, Product, Threat Intelligence, and AI teams, you will build cutting-edge security solutions that protect customers against evolving email threats while fostering innovation and technical excellence.
Key Responsibilities
Lead, mentor, and grow a team of Email Security researchers and analysts.
Define and execute the Email Security research, detection, and analytics roadmap.
Drive innovation in AI and LLM-powered email security.
Lead the design of advanced detections for phishing, Business Email Compromise (BEC), malware, account takeover, and emerging email threats.
Improve detection efficacy through behavioral analytics, threat research, and large-scale data analysis.
Collaborate with Engineering, Product, Threat Intelligence, and cross-functional teams to deliver scalable security capabilities.
Promote technical excellence through design reviews, coaching, and knowledge sharing.
Represent the team internally and externally through technical presentations, blogs, white papers, and industry conferences.
Foster a culture of innovation, collaboration, and continuous learning.
Requirements:
8+ years of experience in cybersecurity research, including 1+ years leading technical teams.
Experience managing, mentoring, and developing high-performing security researchers.
Hands-on coding experience (e.g., Python).
Experience with SQL or similar query languages for large-scale data analysis.
Excellent communication and stakeholder management skills.
Preferred Qualifications
Experience with AI, machine learning, or LLM-based security solutions.
Experience with big data platforms (e.g., GCP/BigQuery).
Experience with XDR, EDR, NDR, or CDR products.
Experience in email security research, detection engineering, or behavioral analytics.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8771803
סגור
שירות זה פתוח ללקוחות VIP בלבד