דרושים » מחשבים ורשתות » SecOps Engineer

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
חברה חסויה
Location: Merkaz
Job Type: Full Time
abra professional services is seeking a SecOps / Security Operations Specialist We are looking for a skilled SecOps / Security Operations Specialist to join an information security team and operate, maintain, and support advanced security tools and technologies. This role requires hands-on experience in SecOps / SOC, firewall management, WAF and DDoS protection, PAM / identity management, EDR/XDR, email security, incident response, and the use of AI technologies for cyber investigation and threat detection. A full-time position based in Israel. Key Responsibilities:
* Operate, configure, maintain, update, and manage policies and rules in Check Point firewalls.
* Manage, configure, and maintain WAF and DDoS protection systems, including Radware, Reblaze, and Cloudflare.
* Operate, manage, and maintain CyberArk PAM, identity, and access management processes.
* Manage and maintain Trend Micro products, including Vision One / Apex One, investigate EDR/XDR alerts, and operate email security systems against phishing and malware.
* Work with SOC teams, respond to alerts, perform initial incident response investigations, and support remediation processes.
* Use Generative AI / AI and automation tools to analyze security alerts, investigate logs, identify anomalies, and understand new security risks in environments that integrate AI tools.
Requirements:
Must Have 3+ years of hands-on experience in SecOps, Security Operations, SOC Tier 2, SOC Tier 3, or a similar Information Security role. Hands-on experience with Check Point Firewalls , including configuration, policy/rule management, maintenance, and troubleshooting. Hands-on experience with CyberArk PAM Hands-on experience with EDR/XDR solutions and security alert investigation.
* Experience working with WAF solutions
* Experience with security incident investigation and remediation
* Familiarity with SOC environments and SIEM/SOAR platforms
* Strong understanding of networking and security protocols, including:
* TCP/IP
* HTTP/HTTPS
* DNS
* SSL/TLS
* Ability to troubleshoot security and network-related issues in production environments. Nice to Have
* Experience with Trend Micro Vision One / Apex One
* Experience with Radware, Reblaze, or Cloudflare WAF/DDoS solutions.
* Experience with alternative EDR/XDR platforms such as Microsoft Defender for Endpoint, CrowdStrike, or SentinelOne
* Experience with additional WAF technologies such as Imperva, F5, or Akamai
* Familiarity with AI-driven security tools and AI-assisted SOC operations.
* Understanding of security risks related to AI environments, including:
* Prompt Injection
* Data Leakage
* Misuse of Generative AI
* Experience using AI or automation tools for log analysis, threat detection, incident investigation, or anomaly detection
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8787357
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 9 שעות
דרושים בAlljobs Match
Job Type: Full Time
AllJobs, located in Netanya, is looking for an Information Security & Cybersecurity Specialist.
Responsibilities

Ongoing monitoring of security systems, including alerts received from SOC and SIEM platforms.
Receiving alerts and providing initial response to information security incidents as part of a 24/7 on-call rotation.
Conducting initial investigations of security alerts and incidents, assessing their severity, and determining the appropriate course of action.
Escalating critical incidents and engaging IT, infrastructure, development teams, and external security vendors as needed.
Managing information security incidents and tracking them through full resolution.
Continuously monitoring security vulnerabilities and CVEs relevant to the companys systems.
Assessing vulnerability severity, prioritizing remediation efforts, and coordinating the installation of security updates.
Working with Radware WAF systems, including log analysis, reviewing blocked traffic, handling exceptions, and updating security rules.
Working with Firewall systems, including reviewing rules, opening network access, reducing permissions, and analyzing logs.
Handling employee reports regarding phishing messages or suspicious activity.
Reviewing links, attachments, sender identity, and additional recipients in suspected phishing incidents.
Conducting phishing simulations for employees, analyzing results, and producing insights and recommendations.
Delivering training sessions and presentations to raise awareness of information security and cyber risks.
Writing, updating, and implementing information security policies and procedures across the group of companies.
Conducting periodic audits related to permissions, data retention, data transfer, and system access.
Documenting security incidents, findings, actions taken, and recommendations for future improvement.
Preparing periodic reports covering incidents, open vulnerabilities, remediation status, and key risks.
Requirements:
3-5 years of hands-on experience in information security, cyber operations, or Security Operations roles.
Experience working with SIEM systems or with a SOC team.
Ability to read, analyze, and investigate logs from security systems, servers, and network components.
Hands-on experience responding to information security alerts and incidents in real time.
Experience working with Firewall systems and analyzing network rules.
Hands-on experience working with WAF systems.
Experience in vulnerability management, CVE monitoring, and prioritizing security updates.
Strong understanding of network protocols, IP addresses, ports, DNS, HTTP, and HTTPS.
Good knowledge of Windows environments, Active Directory, user permissions, and endpoints.
Experience handling phishing incidents and suspicious email messages.
Ability to write procedures, working documents, and incident investigation reports.
Ability to work independently and make decisions under pressure.
Ability to manage multiple incidents and tasks simultaneously and follow them through to completion.
Ability to work effectively with both technical and non-technical stakeholders.
Ability to deliver clear and accessible security training to employees.
Willingness to participate in a 24/7 on-call rotation and handle information security incidents outside regular working hours, including evenings, nights, weekends, and holidays, depending on the nature and severity of the incident.
Ability to respond quickly, connect remotely, and begin investigating and handling critical incidents.
Availability to engage IT, infrastructure, development teams, and external vendors when required.
Good technical English.

Advantages

Hands-on experience with WAF systems.
Experience working with an external SOC or MSSP.
Experience working within a group of companies or in a multi-system environment.
Familiarity with Microsoft 365, Azure, or another cloud environment.
This position is open to all candidates.
 
Show more...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8759855
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
6 ימים
חברה חסויה
Location: Ramat Gan
Job Type: Full Time
We are seeking a skilled and experienced InfoSec & SecOps Lead to join Alice (Formerly ActiveFence) CISO team. The ideal candidate will be responsible for driving the security initiatives. Responsibilities:
* Maintain holistically security corporate architecture and Hardening, including network, systems, applications. Evaluate and implement security remediations to enhance the organization security posture.
* Corporate Security: Oversee security measures, including access control, surveillance, and emergency response planning. Manage relationships with external security vendors related to TPRM and IR.
* Experience among others on SSPM/SaaS security, IDP, SIEM/SOC, Including conducting threat modeling exercises to identify potential vulnerabilities and risks where required.
* Security Operations: Oversee the day-to-day security operations, including monitoring, incident response, Analyze security logs and alerts to identify & respond to security incidents. Conduct regular security assessments and manage the remediations program. Develop and maintain an effective incident response plan.Conduct post-incident reviews to identify lessons learned and improve future response efforts.
* Experience with Vulnerability Management: Identify, prioritize vulnerabilities. Monitor and track vulnerability remediation efforts.
* Collaborate with other teams within the organization to ensure the overall security posture is maintained. This may include working with IT, Devops, R&D, G&A to implement security policies and technical security procedures. Including all business units, educate employees on security best practices.
* AI Governance: Partner with Business Units to create safe-use guardrails for AI. Conduct security reviews for internal AI implementations, ensuring adherence to frameworks like the OWASP Top 10 for LLMs.
* Data Driven Metrics: Develop automated dashboards that track real-time security health, focusing on MTTR and reducing manual "toil" for the Security.



About Alice:
Alice is a trust, safety, and security company built for the AI era. We safeguard the communicative technologies people use to create, collaborate, and interact—whether with each other or with machines. In a world where AI has fundamentally changed the nature of risk, Alice provides end-to-end coverage across the entire AI lifecycle. We support frontier model labs, enterprises, and UGC platforms with a comprehensive suite of solutions: from model hardening evaluations and pre-deployment red-teaming to runtime guardrails and ongoing drift detection.
Requirements:
Must have-
* Security Automation & Orchestration: Proven ability to transition from manual SOC workflows to Automated Incident Response. You must have hands-on experience building playbooks that automate repetitive tasks.
* AI-Driven Threat Detection: Experience leveraging AI/ML capabilities within modern stacks (e.g., Coralogix/Splunk anomaly detection or Okta Identity Threat Protection) to identify "low and slow" attacks that bypass traditional signature based rules.
* Secure AI Adoption: Foundational knowledge of securing LLMs and Generative AI tools. Ability to evaluate risk in the AI supply chain.
* Bachelor's degree in Computer Science, Information Security, or a related field.
* 4+ years of Infosec & Secops Hands-On experience, among others in the start-up and fully cloud based industries.
* Strong Experience among others with Okta, Adaptive Shield/Astrix, Coralogix/Splunk, Endpoint security, Network security, and similar security tools.
* Expertise in security technologies, WAF, endpoint security solutions. Knowledge of cloud security and cloud-based security tools
* Experience with cloud platforms (AWS, GCP).
* Strong understanding of security frameworks and standards (e.g., NIST, CIS). Experience with security incident response and investigation.
* Strong understanding of security principles, risk assessments, vulnerability m
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8781135
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
16/07/2026
Location: Ramat Gan
Job Type: Full Time and Hybrid work
Requied SecOps Engineer (Automation & Cloud Security)
We are looking for a SecOps Engineer to join our Global Security team, with a strong focus on automation, cloud security, and operational excellence.
This role is ideal for someone who thrives on building scalable security operations, leveraging automation, AI, and modern tooling to improve detection, response, and overall security posture.
In addition to hands-on SecOps responsibilities, the role includes collaboration with GRC and compliance functions to ensure security operations align with organizational policies and regulatory requirements.
Responsibilities:
Security Operations & Detection:
Monitor, investigate, and respond to security events across cloud and corporate environments
Operate and continuously improve SIEM/SOAR platforms and detection capabilities
Perform incident response, root cause analysis, and post-incident improvements
Tune alerts and detection logic to reduce noise and increase signal quality
Automation & AI-Driven Security:
Design and implement security automation workflows (e.g., alert triage, enrichment, response)
Leverage AI tools and AI agents to enhance SecOps efficiency and scalability
Build scripts and integrations (Python, APIs, etc.) to eliminate manual processes
Utilize automation platforms such as n8n (or similar tools) to orchestrate security workflows
Evaluate and integrate modern security technologies, including AI-based solutions
Cloud & Infrastructure Security:
Support security operations across multi-cloud environments (AWS, GCP)
Work closely with DevOps and engineering teams to secure cloud infrastructure
Identify and remediate misconfigurations, vulnerabilities, and access risks
Help enforce least privilege, network segmentation, and secure architecture practices
Security Engineering & Continuous Improvement:
Improve detection coverage and response playbooks
Participate in security testing, threat hunting, and purple-team activities
Contribute to building scalable, resilient security processes
Governance, Risk & Compliance (GRC) Collaboration:
Support implementation and tracking of security controls across the organization
Assist in audit processes, evidence collection, and control validation
Help ensure alignment between operational security activities and internal policies
Work with GRC stakeholders to strengthen overall security posture.
Requirements:
3+ years of experience in Security Operations / SecOps / Blue Team roles
Hands-on experience with cloud environments (AWS or GCP)
Strong experience with security tooling (SIEM, EDR, CSPM, etc.)
Practical experience in automation (Python, APIs, scripting, workflows)
Familiarity with incident response and investigation processes
Good understanding of networking, identity, and cloud security principles.
Advantages
Nice to Have:
Experience with SOAR platforms or automation frameworks
Hands-on experience building automation workflows using tools like n8n (or similar orchestration platforms)
Familiarity with AI tools, LLMs, or AI agents in security use cases
Experience with tools like Wiz, CrowdStrike, Okta, Datadog, etc.
Understanding of DevSecOps practices and CI/CD security
Exposure to compliance frameworks (SOC2, ISO 27001, GDPR, DORA, etc.).
Preferred Certifications (Optional):
Security+, GCIH, GCIA, or similar
AWS / GCP security certifications
Any relevant cloud or security automation certifications.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8741043
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
20/07/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a SecOps Detection & Response.
As a Security Operations Analyst, Detection & Response, you will help protect Aidocs cloud environments, products, corporate systems, and sensitive healthcare data by investigating SIEM alerts, supporting incident response, and improving the quality of security monitoring.
This is a hands-on security operations role for someone who can analyze security signals, understand real risk, communicate clearly, and help the organization respond quickly and effectively to security events.
You will work closely with real production environments, where accurate investigation, clear documentation, and practical escalation are critical to protecting sensitive healthcare data, customer trust, and the reliability of Aidocs clinical AI platform.
Responsibilities:
Own the end-to-end investigation of SIEM alerts across cloud, product, identity, endpoint, and SaaS environments: analyze the relevant evidence, separate false positives from real threats, and prioritize cases based on risk and impact.
Escalate high-risk findings with a clear summary of what happened, what is affected, why it matters, and what actions are required.
Support incident response by collecting evidence, assisting with containment, tracking remediation, and maintaining clear investigation records for internal reviews, compliance needs, and post-incident learning.
Improve SIEM rules, dashboards, alert logic, playbooks, telemetry coverage, and detection quality to reduce noise and strengthen security monitoring.
Work with Security, IT, DevOps, R&D, Product Security, and Compliance teams to resolve issues and improve security operations.
Requirements:
2+ years of experience in Security Operations, SOC analysis, detection and response, incident response, cloud security operations, or a similar hands-on security role.
Hands-on experience with SIEM-based investigations, including alert triage, log analysis, event correlation, evidence review, case prioritization, and escalation.
Experience working with security telemetry from cloud platforms, identity providers, endpoints, SaaS systems, network tools, application logs, and production environments.
Familiarity with cloud-native environments, including IAM, storage access, workloads, Kubernetes, containers, APIs, logging, monitoring, and CI/CD pipelines.
Understanding of common attack techniques, including credential compromise, phishing, privilege escalation, suspicious API activity, malware, data exposure, lateral movement, and cloud misconfigurations.
Experience with identity and endpoint investigation, including SSO, MFA, service accounts, privileged access, EDR alerts, and suspicious user or device activity.
Ability to use query or scripting languages such as KQL, SPL, SQL, Python, Bash, or similar.
Familiarity with incident response workflows, case management, evidence collection, remediation tracking, and post-incident review.
Strong analytical judgment, with the ability to separate false positives from real risk and explain findings clearly.
Ability to work independently, document investigations clearly, and escalate issues with the right level of urgency.
Strong communication skills and the ability to work with Security, IT, DevOps, R&D, Product Security, Compliance, and business stakeholders.
Close attention to detail, strong ownership, and comfort working in a fast-moving production environment.
Additional Strengths
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8745764
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
10/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
Required Security Operations & Automation
About Your Day-to-Day:
As a Security Operations & Automation, you'll be the hands-on architect of how we detect, investigates, and responds to threats - built around AI agents and deep tooling integrations, not manual triage. You'll own incident response across corporate systems, workstations, and identity, unify alerts from every source - including cloud-originated signals that need a response - into a single SOAR/XDR fabric, and deploy AI agents to handle first-line investigation and response.
You'll work closely with IT and the Cloud Security team - taking the lead on investigation, triage, and response while they own the underlying cloud and SDLC architecture - and turn complex security signals into structured, AI-assisted, largely autonomous outcomes - fighting fire with fire.
Responsibilities:
Architect and own our AI-driven detection and response stack, integrating SIEM, XDR, SOAR, EDR, and IAM into a single automated fabric rather than siloed tools.
Deploy and tune AI agents to handle first-line alert triage, enrichment, and investigation, with humans engaged only for true edge cases - manual L1 triage is the exception, not the default.
Build SOAR playbooks and integrations across the security and IT toolchain (endpoint, identity, ticketing, chat) so detection, enrichment, and remediation run automatically end to end - regardless of which system or platform an alert originates from.
Own the alert pipeline as a whole: unify signals from EDR, IAM, and other sources - including cloud and SaaS alerts surfaced by the Cloud Security team - into one triage and response workflow, so nothing falls through the cracks between tools.
Evaluate and integrate best-of-breed, AI-native security tools - SIEM, XDR, SOAR, EDR, email security, AI guardrails, ZTNA, and others - wiring each into the unified detection and response fabric rather than running them as siloed point solutions. Hands-on tool integration (APIs, connectors, log and telemetry ingestion) is a core skill for this role, not an occasional task.
Drive vulnerability and patch management across corporate systems and endpoints, automating prioritization and remediation workflows and coordinating with IT against strict SLAs.
Build and tune detection rules specific to our environment, treating detection as code and feeding AI-driven correlation across the XDR layer.
Maintain security dashboards (MTTD/MTTR, automation rate, % of alerts resolved without human touch) and report on how automation is cutting noise and response time.
דרישות:
5+ years of experience in security operations, SecOps, or security engineering roles.
Hands-on experience operating EDR/XDR. SOAR/XSOAR, SIEM platforms and cloud security services (IAM, CSPM, SSPM).
Experience building automations and playbooks using SOAR platforms or scripting (Python, Bash).
Strong incident response skills, including triaging alerts and conducting root cause analysis.
Hybrid position based in our Tel Aviv office.
Excellent written and verbal English skills
Personal Attributes & Mindset:
High ownership mentality: You take responsibility for the security stack and follow through on every alert.
Strong sense of structure: You can manage vulnerability SLAs and maintain precise security policies.
Comfortable with ambiguity: You can take a vague threat and turn it into a clear detection rule or automated playbook.
Collaborative by nature: You enjoy working as a partner to R&D to solve security challenges without slowing down development.
Curious and self-driven: You are motivated to stay ahead of emerging threats and continuously improve Port's defenses.
Nice to Have:
Relevant certifications: CompTIA Security+, GSEC, CySA+, or AWS Security Specialty.
Deep understanding of the SDLC and experience embedding security tools (SAST, SCA) into CI/CD pipelines.
Experience with CNAPP/CSPM or code security platforms.
Familiarity with compliance frameworks (SOC 2, ISO המשרה מיועדת לנשים ולגברים כאחד.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8775548
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
30/07/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking an experienced Data Protection Lead to join the Cyber Security organization.

This role combines hands-on Data Leakage Prevention (DLP) engineering with Data Security Posture Management (DSPM) to deliver end-to-end data protection across corporate, cloud, and SaaS environments. You will not only define strategy and standards - you will build, configure, tune, and operate the technical controls that enforce them.

You will own the data protection lifecycle from discovery and classification through policy enforcement and incident response. The role requires deep technical proficiency in DLP platforms and DSPM tooling, combined with the ability to collaborate with Security, IT, Engineering, Product, Privacy and GRC teams to reduce data exposure risks and embed strong data governance practices.

Your responsibilities will include:
Lead and own the organizations data protection domain, including strategy, standards, and hands-on technical implementation
Engineer, deploy, and continuously tune DLP policies across endpoints, email, SaaS, network proxies, and cloud platforms - covering both inline and API-based enforcement modes.
Design and implement DSPM solutions to gain continuous visibility into sensitive data posture, data flows, misconfigurations, and exposure risks across cloud and multi-cloud environments.
Drive data discovery initiatives to identify and inventory sensitive data across databases, SaaS applications, endpoints, and cloud storage.
Define and implement data classification frameworks, labeling standards, and data handling policies integrated with DLP and DSPM controls.
Build and maintain DLP detection rules, regular expressions, fingerprinting, and machine learning-based classifiers to minimize false positives and maximize coverage.
Integrate DSPM findings into DLP enforcement workflows to create a closed-loop data protection architecture.
Define and enforce data access governance, including least-privilege principles and monitoring of sensitive data access patterns.
Monitor, triage, and investigate DLP alerts and DSPM-identified risks, collaborating with SOC and Security teams on escalation and remediation.
Conduct risk assessments and identify gaps in data protection controls across systems, pipelines, and business processes.
Support compliance and regulatory requirements (e.g., GDPR, ISO 27001, SOC 2) related to data security and privacy.
Collaborate with Engineering, IT, Product, and GRC teams to embed data security controls into CI/CD pipelines, systems, and workflows.
Maintain documentation, runbooks, and guidelines for DLP operations, DSPM posture management, and data security practices.
Requirements:
We expect you to have:
6+ years of experience in cyber security, with a strong focus on data security, data protection, or information security.
Proven hands-on engineering experience with enterprise DLP platforms - including policy authoring, rule tuning, incident workflow configuration, and platform administration (e.g., Microsoft Purview DLP, Symantec DLP, Forcepoint, or equivalent).
Hands-on experience deploying and operating DSPM tools (e.g., Cyera, Varonis, Rubrik Security Cloud, Normalyze, Securiti, or equivalent) to manage cloud data exposure and classification at scale.
Deep understanding of DLP enforcement mechanisms: endpoint DLP, network DLP, email DLP, and cloud/API-based DLP controls.
Strong experience with data discovery and classification across cloud environments (AWS, Azure, GCP), SaaS platforms, and on-premises systems.
Ability to write and optimize detection logic - regular expressions, data fingerprinting, document fingerprinting, and EDM (Exact Data Matching).
Experience integrating DLP and DSPM tools with SIEM, SOAR, and ticketing systems for alert routing and automated response.
Experience securing data across cloud environments and SaaS platforms, including shadow IT and unmanaged data stores.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8761546
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Security Engineer with 1-2 years of experience to join our Internal Security team.
This role combines hands-on cloud and security operations with support for GRC and compliance activities.
You will be involved in securing our cloud, SaaS, and AI-driven systems, monitoring security events, and helping maintain our overall security posture. In parallel, you will support customer security questionnaires and compliance processes.

What You'll Do:
Monitor, triage, and investigate security alerts and incidents across cloud and security tools (EDR, CASB, ZTNA, SaaS security platforms, and identity providers), and support response and remediation activities
Assist in securing cloud environments (AWS/GCP/Azure), including IAM, access controls, network security, and CI/CD pipeline security
Work closely with DevOps and IT teams to implement and enforce security best practices across infrastructure, endpoints, and SaaS systems
Support vulnerability management processes, including scanning, prioritization, and remediation tracking
Support risk management processes by identifying, assessing, and tracking risks, including vulnerability management, remediation efforts, and control gaps
Support customer security questionnaires (RFPs/RFIs) with accurate technical responses
Assist in maintaining compliance with frameworks such as SOC 2 and ISO 27001, including preparing audit evidence and documentation
Requirements:
Who You Are?
1-2 years of experience in cybersecurity, cloud security, and security operations
Basic hands-on experience with cloud platforms (AWS, GCP, or Azure)
Understanding of core security concepts: IAM, networking, least privilege, and secure configurations
Experience or strong interest in collaborating with DevOps and IT teams, alongside a focus on AI security, data protection, and emerging technologies
Familiarity with security tools such as EDR, vulnerability scanners, or SaaS security solutions
Strong analytical and troubleshooting skills, with high attention to detail and the ability to manage multiple tasks
Good communication skills and ability to work cross-functionally
Willingness to learn and grow in both technical security and GRC domains
Nice to Have:
Experience with cloud security best practices and securing CI/CD pipelines and infrastructure-as-code (Terraform, etc.)
Familiarity with identity systems (Okta, Azure AD, etc.)
Familiarity with compliance frameworks such as SOC 2, ISO 27001, or NIST
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8787070
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
Required DevSecOps Engineer
Tel Aviv
As a DevSecOps Engineer , you will play a key role in securing the cloud-native infrastructure that powers one of the world's leading transportation technology platforms. You will have a strong focus on AWS cloud security, security infrastructure, automation, SecOps capabilities, and the secure adoption of AI technologies across the company. In this role, youll work closely with Engineering, Platform, IT, SOC, Application Security, and business teams to strengthen cloud security, automate security processes, and help embed modern security practices across our technology ecosystem.
About the Role:
Define, implement, and improve cloud security infrastructure solutions across our AWS environment
Secure and optimize cloud services, infrastructure, and applications to support scalable and resilient systems
Automate security controls, operational workflows, and repeatable processes across cloud environments
Support AI Security initiatives, including secure AI adoption, AI-related risk mitigation, and protection of AI-enabled systems
Leverage AI-driven security technologies to improve detection, investigation, response, automation, and operational efficiency
Set up, customize, and maintain log management, orchestration, and response systems
Operate and improve SecOps infrastructure, tooling, and automation workflows
Work closely with SOC and Application Security teams to strengthen detection, response, application security coverage, and security processes
Collaborate with Platform, IT, Engineering, and business teams to implement scalable security solutions across the company
Support secure DevSecOps and CI/CD workflows through security checks, guardrails, and automation
Evaluate, deploy, maintain, and tune security products and cloud security tools
Promote a strong security culture through awareness, best practices, and continuous improvement across the business.
Requirements:
1-3 years of experience in Security Engineering, DevSecOps, or a closely related technical role, with hands-on exposure to AWS cloud security, IAM, and secure infrastructure
Bachelors degree in Computer Science, Engineering, or equivalent practical experience
Familiar with Infrastructure as Code (Terraform, CloudFormation), container security and Kubernetes best practices, and integrating security controls into CI/CD pipelines
Curious about AI and its intersection with security - whether that's securing AI systems, using AI-driven tooling to improve detection, or working with platforms like Amazon Bedrock
Passionate about security and genuinely motivated to keep learning - you follow emerging threats, care about best practices, and want to make the systems around you more secure
A strong team player who takes real ownership of their work - comfortable collaborating across engineering, platform, and business teams and able to manage multiple workstreams without losing focus.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8738964
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
our companys Harmony SASE is looking for an Information Security Manager to join its staff.
This is a unique opportunity for you to work in the #1 worldwide Cyber Security Company, gain expertise and experience leading the information security program for the best of SASE (Secure Access Service Edge).
Key Responsibilities
As Information Security Manager you will:
Governance, Risk & Compliance
Lead and manage the Product Security team
Build, operate, and continuously improve the Harmony SASE Information Security Management System (ISMS), aligning policies, standards, and controls with our company and industry best practices.
Own the Harmony SASE compliance roadmap - lead and maintain certifications and attestations including ISO/IEC 27001, SOC 2 Type II, GDPR, IRAP and C5
Lead enterprise risk assessments and the third-party / vendor risk program, ensuring risks are identified, prioritized, and treated.
Coordinate internal and external audits, manage evidence collection, and remediate findings to closure.
Product & Application Security
Develop and implement a comprehensive AI - Secure Software Development Lifecycle (AI S-SDLC) framework, embedding security into every phase of the SDLC and CI/CD pipelines.
Conduct threat modeling and secure architecture reviews for new and existing Harmony SASE features, partnering with R&D to mitigate vulnerabilities by design.
Operate the application security tooling stack - ASPM, SAST, DAST, SCA, AI Security Scanning and secret scanning - at scale, and partner with development teams to drive findings to remediation while maintaining developer productivity.
Champion secure coding practices and OWASP Top 10 awareness across R&D.
Operational Security & Incident Response
Lead security incident response for Harmony SASE - preparedness, detection, containment, eradication, recovery, and lessons-learned - covering both product and information security incidents.
Oversee identity and access governance, ensuring least-privilege, segregation of duties, and access reviews across production and corporate environments.
Design and operate security automation to enhance the efficiency and coverage of security operations.
Security Culture & Enablement
Foster a culture of security awareness and continuous improvement; deliver targeted training for engineers, operations, and broader staff.
Lead responses to customer security questionnaires, RFPs, and due-diligence requests, representing Harmony SASEs security posture to customers and partners.
Stay current on the evolving Threats Landscape, regulations, and technologies, and translate them into pragmatic improvements to the security program.
Requirements:
We are looking for you:
Bachelors degree in computer science, Information Security, or related field.
Minimum of 5 years of experience in information security or application/product security, with at least 2 year in a leadership role.
Proven experience building or operating an Information Security Management System (ISMS) and leading certifications such as ISO/IEC 27001 and SOC 2.
Working knowledge of GDPR, PCI-DSS, and NIST CSF / 800-53; familiarity with HIPAA, FedRAMP, DORA, Cyber Essentials, C5, IRAP, AI Security Frameworks and the Cloud Controls Matrix (CCM).
Hands-on experience with S-SDLC, threat modeling, and application security tooling such as ASPM, SAST, and DAST in complex, high-scale environments.
Strong understanding of risk management, third-party risk, identity and access governance, and incident response.
Excellent communication and leadership skills, with the ability and passion to drive change across R&D and the broader organization.
Reports to the Harmony SASE Head of Architecture (R&D Director) and partners closely with R&D, DevOps, IT, Legal, and the company Corporate Security organization.
Relevant certifications such as CISM (preferred), CISSP, CCSP, ISO 27001 Lead Auditor / Lead Implementer, CCSP or CSSLP are desirable.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8785659
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
14/07/2026
חברה חסויה
Location: Haifa
Job Type: Full Time
we are a leading provider of cloud infrastructure management and monitoring solutions. We empower organizations to efficiently manage their cloud resources, identify issues, and gain insights. Our service enables businesses to optimize their cloud usage, improve security, and achieve greater operational efficiency.
Role Description
This is a full-time on-site role located in Haifa for a SecOps professional. The responsibilities include maintaining and optimizing security operations, identifying and mitigating potential vulnerabilities, implementing security monitoring solutions, and responding to security incidents. The role involves working collaboratively with cross-functional teams to ensure the deployment of robust security measures and policies across systems and infrastructures.
Requirements:
Core Security & Operations
3+ years experience in SecOps / Cloud Security / Security Engineering
Hands-on experience securing Google Cloud Platform environments
Strong understanding of:
IAM (roles, service accounts, workload identity)
Network security (VPCs, firewall rules, load balancers)
Organization policies and security baselines
Experience operating and tuning security controls in production
Detection, Monitoring & Response
Experience with Google Cloud Security Command Center
Experience with Google SecOps (Chronicle) or equivalent SIEM
Building and tuning:
Detection rules
Alerts
Dashboards
Incident triage, investigation, and response in cloud environments
Log ingestion and normalization from cloud and third-party sources
Automation & Engineering
Strong scripting skills (Python preferred)
Security automation (SOAR-like workflows, custom tooling)
Experience integrating security tooling via APIs
CI/CD security controls (shift-left, pipeline security checks)
Cloud & Platform Security
Experience securing:
GKE
Cloud Run
Compute Engine
Knowledge of container security concepts (images, registries, runtime)
Vulnerability management and remediation workflows
Governance & Compliance
Experience with security posture management
Familiarity with common frameworks (ISO 27001, SOC 2, CIS Benchmarks)
Risk assessment and security findings remediation
Nice to Have
Experience with Wiz, Prisma Cloud, or similar CSPM tools
Experience with threat modeling and attack simulations
Experience working with regulated environments
Google Cloud security certifications.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8737625
סגור
שירות זה פתוח ללקוחות VIP בלבד