דרושים » אבטחת מידע וסייבר » Network Forensics Analyst 2615

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 1 שעות
חברה חסויה
Location: Merkaz
Become a part of our award winning network data research team, and use our network analysis tools along side big data systems.
The position requires deep understanding of network data that will support you in identifying attacks and anomalies through analysis of huge data using both established research tools and self-developed ones.
Requirements:
Deep understanding of network (IP), transport (TCP/UDP) and application layer protocols
At least two years of practical experience with Big Data systems, like Elastic, SQL or Splunk
Experience in research/detection of cybersecurity incidents
Fluent in written English language
כישורים נדרשים
Technological degree (preference for C.S) or a relevant experience in army service
Understanding of Data Science and automation tools: Jupyter, Scipy
Familiarity with IDS tools: Snort, Suricata
Experience with full packet capture (PCAP) analysis, using Wireshark.
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8835627
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Senior Fraud Analyst to serve as the technical cornerstone of our Fraud Prevention team.
In this role, you won't be managing a team; youll be managing the technical evolution of our fraud defenses. Reporting directly to the Fraud Prevention Director, you will act as a high-level individual contributor, bridging the gap between data science, engineering, and risk strategy. You will be responsible for pioneering the use of AI and advanced analytics to protect our community and ensure our platform remains the safest place for independent businesses to grow.
Here are a few of the things you'll do:
Technical Strategy & Architecture: Partner with the Fraud Prevention Director to define the long-term technical roadmap, moving us toward an AI-first, autonomous fraud detection ecosystem.
AI & LLM Integration: Design and implement Generative AI agents and LLM-powered workflows to automate complex forensic investigations, reducing the time-to-detect for emerging fraud vectors.
Advanced Detection Modeling: Develop and prototype sophisticated ML models and graph-based heuristics to identify collusion, synthetic identities, and fraud rings.
Cross-Functional Technical Lead: Serve as the primary technical consultant to Product and Engineering, ensuring that new payment features (like RTP or international expansion) are built with scalable, AI-driven safeguards from day one.
Expert Forensics: Act as an escalation point on high-stakes, large-scale fraud attacks, utilizing advanced Python and network analytics to deconstruct and mitigate threats.
Data Excellence: Set the standard for the fraud teams technical stack. You will optimize our SQL/Python environments and ensure our data infrastructure is capable of supporting real-time AI inference.
Requirements:
5+ years of experience in fintech or payments fraud analytics. You are a seasoned IC who has scaled fraud programs in complex, high-volume environments.
AI/ML Expertise: Proven experience leveraging Generative AI, LLMs (e.g., RAG, agentic workflows), and Machine Learning to solve real-world risk problems. You don't just use these tools; you know how to build with them.
Technical Powerhouse: Mastery of Python (for data science and automation) and SQL (performance tuning, CTEs, window functions). You are comfortable working alongside engineers and data scientists.
Network Analysis: Deep experience with graph databases (Neo4j, TigerGraph) and link-analysis techniques to identify organized criminal networks.
Demonstrated ability to translate complex quantitative findings into executive‑level insights and influence roadmaps across product, engineering, finance, and support.
Strategic Influence: While this is not a management role, you have a track record of influencing technical roadmaps and advising senior leadership on risk-reward trade-offs.
Advanced data‑visualization skills (Looker, Tableau, Omni, Superset, or equivalent) with a portfolio of self‑service dashboards adopted by the company‑wide.
Domain Depth: Expert knowledge of the payments lifecycle, including CNP, ACH, and RTP risk, as well as the specific fraud challenges of the SaaS and marketplace sectors.
Regulatory Fluency: A solid understanding of PCI DSS, Nacha rules, and the emerging regulatory landscape surrounding AI in financial services.
Prior experience scaling fraud programs in a marketplace, SaaS, or creator‑economy context - Advantage.
Education: Bachelors or Masters degree in a quantitative field (e.g., CS, Statistics, Mathematics, Economics) or equivalent technical experience- Advantage..
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8795241
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
Act as a Customer Security Advisor, conducting threat-hunting activities and performing security assessments on customer networks. Effectively communicate findings, recommendations for remediation, and mitigation strategies to customers
Serve as an escalation point for the SOC analysts, assisting in the investigation, analysis, and response to security incidents
Develop cyber kill-chain indicators of an attack and hunting heuristics to enhance the ongoing threat-hunting process
Enhance the product accuracy and its capacity to detect emerging threats within the dynamic security landscape
Requirements:
Proven hands-on experience in the cybersecurity industry
Excellent customer service skills
Strong knowledge of networking architecture and protocols, including TCP/IP, DNS, SSL, SMB, HTTP, IP Routing, etc.
Comprehensive understanding of the cybersecurity landscape, common threats, and attack scenarios, such as malware infections, command and control (C&C) communication, drive-by attacks, phishing, and network scans
Practical experience with security technologies, including firewalls (FW), intrusion prevention systems/intrusion detection systems (IPS/IDS), antivirus (AV), security information and event management (SIEM) systems, endpoint protection, and network forensics tools
Analytical mindset, capable of formulating hypotheses and validating them through in-depth analysis and technical evidence
Fluent in English with exceptional communication skills
Proficiency in at least one scripting language such as Python or Ruby
Advantageous: Experience with Extended Detection and Response (XDR) solutions
Advantageous: Previous experience working in Managed Security Service Provider (MSSP) or Managed Detection and Response (MDR) providers as a Threat Hunter or Security Analyst
Ability to work effectively as a team player, demonstrating responsibility and strong organizational skills
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8822063
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
You will be the only SOC analyst based in Israel, while the rest of the analyst team operates from the Philippines. You will act as the SOCs local anchor - the on-site technical counterpart for the Israel-based Cyber Security, IT, Operations, and R&D teams, and the escalation and knowledge bridge between them and the offshore shifts. The role calls for ownership, independence, and the appetite to build and improve, not only to operate.

Responsibilities

Monitoring and Detection: Continuously monitor SIEM, endpoint protection (EDR), IPS, mail security, CASB, cloud, and identity security solutions to identify potential threats.
Incident Response: Serve as one of the first levels of escalation for security incidents - investigate, contain, and drive resolution before escalating to the senior SecOps members, in accordance with defined procedures and SLAs.
Incident Coordination: Lead coordination of major incidents until ownership is transferred to the relevant SecOps, IT, Operations, or R&D team; ensure clear communication, escalation, and tracking of action items.
Threat Analysis: Analyze logs, network traffic, endpoint telemetry, and native (in-tool) alerts to determine root cause, scope, impact, and remediation steps.
SIEM and Detection Engineering: Own day-to-day operation of the SIEM - data onboarding and ingest pipelines, field mapping and data quality, dashboards and platform health - and write, tune, and maintain detection rules while measuring their effectiveness.
Exclusion and Exception Management: Own the exclusion and exception lifecycle across the security stack: review requests, assess risk, apply scoped, time-bound exclusions, and revalidate them periodically.
Automation and AI-Assisted Operations: Build and maintain automations across the SOC toolchain (enrichment, containment, ticketing, reporting), and design, implement, and validate AI/LLM-based workflows for alert triage, investigation support, and documentation - including guardrails and quality control of AI output.
Investigation Documentation: Create and maintain detailed incident tickets, including investigation audit trail, action items, and timelines.
Technical Leadership: Act as the senior operational reference for the analyst team: help prioritize workload, assure investigation quality, maintain consistent handling of incidents, escalations, and shift handovers, and mentor analysts on tooling and methodology.
Collaboration: Work closely with the Cyber Security team, IT, Operations, and R&D locally, and with the offshore SOC team across time zones.
Continuous Improvement: Drive improvements to detection logic, automation, operational runbooks, and shift handover documentation based on lessons learned from incidents.
Compliance and Reporting: Support reporting for compliance audits, management reviews, and threat intelligence updates.
Requirements:
3-5 years of hands-on experience in a SOC or cybersecurity operations role.
Proven experience with a SIEM platform, including detection rule engineering and content development (Advantage: Elastic).
Experience with EDR and additional security tools and platforms (Advantage: CrowdStrike Falcon).
Practical experience using AI/LLM tools in technical workflows, with a clear understanding of their limitations and failure modes.
Broad technical foundation across the SOC domain: threat vectors, malware behavior, network protocols, operating system internals, identity, cloud, and SaaS security controls.
Strong analytical and problem-solving skills, with the ability to correlate events across multiple data sources and think beyond the alert.
High degree of ownership and autonomy - able to operate as the only analyst on site, set priorities independently, and drive tasks to closure.
Excellent communication skills and the ability to work effectively with distributed teams across time zones.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8820142
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a Senior Cyber Data Analyst.
As a Senior Cyber Data Analyst for the Asset Intelligence Research team, you will conduct research to enhance the asset intelligence platform. You will lead end-to-end research projects, collaborating directly with Product and Development teams to convert technical research into product features. You will analyze large-scale security asset data, automate workflows, and prototype logic to address how enterprise assets are discovered, classified, and trusted. This is a high-impact role where your research directly shapes how our customers manage, prioritize and secure their entire assets inventory.
Responsibilities:
Lead end-to-end research projects focusing on asset data quality, fidelity assessment, enrichment, and correlation across device, identity, software, and SaaS asset types.
Utilize Python, SQL, and AI/LLM tools to build data analysis pipelines, automate asset research, and prototype enrichment and classification logic.
Research and define gating conditions that evaluate assets across three dimensions: Existence, classification, and risk and criticality.
Partner with Product and Engineering teams to transform technical research into production-ready product capabilities.
Requirements:
4+ years of professional experience in security research, cyber asset management, threat intelligence, or security data analysis.
Demonstrated proficiency with Python for scripting/automation and SQL for querying complex, large-scale security datasets.
Hands-on experience integrating AI/LLMs into technical workflows to accelerate data analysis, parsing, or research output.
Practical understanding of security data sources and their signal quality- including EDRs, MDMs, CMDBs, network scanners, cloud providers, and SaaS management tools- and the ability to reason about the reliability of each.
Preferred Qualifications:
Prior experience in B2B SaaS or enterprise cybersecurity product environments.
Experience in cybersecurity asset management (CSAM), IT asset management (ITAM), or cyber asset attack surface management (CAASM).
Experience designing asset fidelity or criticality scoring logic that combines signals across multiple data sources.
Proven track record of framing open-ended security data problems into scalable software feature requirements.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8830407
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 2 שעות
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
Were looking for people who are relentlessly curious and committed to continuous learning. AI is reshaping every function across our business, and we enable every team member, regardless of role or level, to build fluency in AI tools and concepts. Those who thrive here actively seek out new solutions, experiment thoughtfully, and apply what they learn to drive better, faster, smarter outcomes.
As a DFIR Analyst, you will be tasked with delivering rapid, expert breach response for global enterprises facing active cyber threats as part of Digital Forensics and Incident Response (DFIR) team, which operates 24x7x365 on a follow-the-sun model. Working under the direction of an investigation's Technical Lead and Engagement Manager, you will execute hands-on forensic analysis, threat hunting, and investigative work across live incidents spanning endpoint, network, and cloud environments, and incident types from ransomware and business email compromise to identity compromise, zero-day exploitation, APT activity, and cloud/SaaS breaches. This is a foundational technical role built on rigor, where every conclusion must be evidence-backed, every case well-documented, and every finding able to hold up to scrutiny.
Requirements:
A bachelor's or master's degree in Digital Forensics, Cybersecurity, Computer Science, or a related technical field, or equivalent practical self-study, plus 3 or more years of hands-on experience in digital forensics, incident response, or threat hunting, ideally in a consulting or services delivery environment.
Comfort analyzing Windows environments and forensic artifacts, with a foundational understanding of forensic methodologies, evidence handling, acquisition techniques, and chain-of-custody procedures.
Experience with forensic tools such as X-Ways Forensics, Axiom, and FTK; with EDR/XDR platforms (SentinelOne preferred) and SIEMs; and working knowledge of network protocols and network-based forensic analysis.
Scripting and automation capabilities.
Strong verbal and written communication, with comfort documenting and presenting technical findings clearly and precisely.
Ability to perform technical investigations under pressure in high-stakes, time-sensitive situations, while maintaining composure.
An evident self-starter with intellectual curiosity and the ability to adapt to change.
Knowledge of Linux and macOS forensic analysis, exposure to cloud environments (AWS, Azure, GCP) and memory analysis, and foundational experience conducting malware analysis and understanding the reverse engineering process are preferred.
Familiarity with endpoint threat hunting, cyber threat intelligence platforms, the MITRE ATT&CK framework, and AI-assisted tools for streamlining triage, analysis, or reporting workflows is preferred.
Relevant industry certifications, such as GCFE, GCFA, GREM, CFCE, or EnCE, and interest in contributing to industry publications, research, or speaking engagements are preferred.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8835483
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
Are you an innovative security researcher with a deep understanding of Linux systems and a passion for protecting modern environments? Do you want to lead the charge in securing enterprise networks against the latest threats?
We're looking for a skilled professional to join our team, focusing on the critical and rapidly evolving fields of Linux Security. You'll be a foundational member of a new and growing team dedicated to the blue ocean of detection, developing multiple new capabilities within the largest cybersecurity enterprise in the world.
This is a unique opportunity to apply your expertise and influence the future of threat prevention-helping us build cutting-edge security solutions from the ground up.
Key Responsibilitie
Play a pivotal role in shaping the future of our security solutions.
Enhance product effectiveness by designing advanced protection components and developing sophisticated detection rules.
Research Linux OS internals, virtualized environments, and malware behaviors to inform and strengthen our attack prevention mechanisms.
Apply advanced AI and big data approaches to investigate and analyze large-scale datasets across our client base.
Lead research on novel protection concepts and bring them to production-grade quality, serving as a subject matter expert.
Stay up to date with the latest attacker methodologies, APT campaigns, and TTPs targeting Linux systems.
Conduct static and dynamic reverse engineering of Linux malware to uncover new techniques and develop mitigation strategies.
Collaborate closely with engineering, product management, and other research teams to translate research findings into production features.
Requirements:
5+ years of experience in cybersecurity research, with a proven track record of impactful projects.
Good knowledge of Linux OS internals, including both user and kernel space.
Solid knowledge of the cyber threat landscape, modern malware techniques, and APTs.
Hands-on experience in real-world threat hunting, incident response, or detection engineering.
Proficiency in programming languages such as Python, C, and/or C++, with a strong understanding of system-level programming and APIs.
Excellent problem-solving skills and a passion for cybersecurity innovation.
Ability to work independently, take initiative, and collaborate effectively in a team environment.
Preferred Qualifications
Background in EDR/XDR products or security solution development.
Experience in reverse engineering, including familiarity with debugging and disassembly tools such as GDB, IDA Pro, or Ghidra.
Experience in advanced data analysis, statistics, or machine learning for security applications.
Experience with Linux kernel development or vulnerability research.
Familiarity with virtualization platforms (e.g., ESXi/vCenter).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8834125
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
e are currently seeking a dynamic Incident Response Analyst to contribute to the success of our rapidly growing business.



As an Incident Response Analyst, you will:

Investigate and respond to workspace security incidents across email, browser security and perimeter security domains.
Handle investigation requests submitted by customers
Perform targeted phishing analysis and investigation of new attack campaigns
Conduct threat hunting based on attack patterns, behaviors, and indicators
Build and improve detections based on new attack types, tactics, companies and trends
Collaborate with development and research teams to provide incident-driven insights, and develop new detection engines for identifying previously unknown attacks
Write professional blog posts based on incident investigations and attack trends, contributing to the companys research-driven content and public visibility
Work in rotating shifts as part of a 24/7 operation (including nights, weekends, and holidays)
Requirements:
At least 3 years of experience in an Incident Response or Security Operation roles
Strong understanding of attack vectors, including Phishing, BEC, Email spoofing and impersonation techniques, Malware, ATO and more
Knowledge of email protocols and security concepts: SMTP, SPF/DKIM/DMARC, headers, authentication methods
Strong querying skills using SQL, SPL, KQL or AQL
Good knowledge with Static & Dynamic techniques
Familiarity with and understanding of code and scripting languages such as Python, JavaScript, Visual Basic, or similar - with the ability to read, interpret, and analyze potentially malicious scripts
Excellent written and verbal communication in English
Team player with a proactive, ownership-driven approach
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8797736
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
10/09/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are seeking an experienced Security Analyst - Tier 2 for its Security Operations Center (SOC). This role is a hands-on position built for depth, serving as the investigative core of the SOC, focused on evidence and grounded conclusions. This role reports to the SOC Manager, under the Detection and Response function within the CISO Office.

You are welcome to work in our offices in Tel Aviv, Israel.

Key Responsibilities
Investigate escalated security alerts across endpoint, identity, cloud, email, and network layers.
Determine scope, impact, and root cause using EDR, SIEM, and supporting telemetry.
Escalate suspected incidents to the Incident Response team and complex investigations to Tier 3.
Provide structured feedback to relevant stakeholders on detection or prevention quality, false-positive patterns, and coverage gaps discovered during investigations.
Contribute to and refine SOC runbooks, triage guides, and investigation procedures.
Review Tier 1 escalations, coach on handoff quality, and act as the analytical reference during triage.
Document investigations to a standard that supports handoff, quality review, and lessons learned.
Participate in the on-call rotation, acting as the investigative point of contact outside business hours.
Requirements:
Around 5-7 years of hands-on security operations experience, with proven depth in alert investigation.
Experience taking investigations to a clear verdict, including confirmed incidents.
Technical Expertise

Strong working command of EDR platforms and SIEM-based investigation, including writing and adapting queries independently.
Solid understanding of attacker techniques, with the ability to map findings to MITRE ATT&CK in analysis and reporting.
Investigation capability across at least two of: endpoint, identity, cloud, email, or network domains.
Windows and Linux internals at the depth required for log and artifact analysis: processes, authentication flows, and persistence mechanisms.
Solid networking fundamentals: TCP/IP, DNS, HTTP/S, and the ability to interpret network telemetry.
Scripting ability (Python or similar) for analysis at scale, and familiarity with SOAR platforms.
Certifications such as BTL2, OSDA, or CDSA are an advantage.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8818090
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
10/09/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are seeking a deeply experienced Security Analyst - Tier 3 for its Security Operations Center (SOC). This role is a senior individual-contributor position, leading challenging investigations, setting the standards the SOC operates by. This role reports to the SOC Manager, under the Detection and Response function within the CISO Office.

Your responsibilities will include:

Lead complex, multi-stage, multi-domain investigations end to end, from scoping through deep technical analysis to a clear determination of impact and root cause.
Serve as the SOC's senior escalation point and the quality gate for investigations across the team.
Support the Incident Response team during confirmed incidents with continued telemetry investigation, scoping, and analytical depth.
Continuously sharpen how the SOC investigates, identifying gaps in methods, runbooks, and tooling through daily casework and turning them into concrete improvements.
Mentor Tier 1 and Tier 2 analysts through case reviews, coaching, and pairing during investigations.
Partner with Security Engineering, Platform Security, Threat Intelligence, SOC Automation, and additional teams to turn what the SOC learns into stronger detection and response across .
Participate in readiness activities - tabletops, post-incident reviews, and purple-team engagements.
Participate in the on-call rotation as the senior point of contact outside business hours.
Requirements:
Around 8-10 years of hands-on experience in security operations or incident response, with a track record of leading complex investigations.
Technical Expertise

Expert-level investigation capability across multiple domains: endpoint, identity, cloud, and network.
Solid understanding of cloud-native environments, including containers, Kubernetes.
Deep practical fluency with EDR, SIEM query languages, and log analysis.
Deep knowledge of Windows and Linux internals, applied to artifact and behavioral analysis.
Fluency in attacker TTPs (MITRE ATT&CK), including the Cloud and Containers matrices.
Strong scripting and data-analysis skills (Python, SQL/KQL) for investigation at scale, with the ability to validate findings independently and challenge assumptions.
Advanced certifications such as GCIH, GCFA, GNFA, GCFE, or OSCP are an advantage.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8818085
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
19/08/2026
חברה חסויה
Location: Herzliya
Job Type: Full Time
Required Technical Intelligence Analyst
As a Technical Intelligence Analyst, you will:
Conduct OSINT and technical research on mobile security, spyware, surveillance tools, cyber products, cybercrime markets, threat actors, companies, individuals and industry developments
Prepare clear analytical outputs, including company profiles, technical summaries, market overviews, incident analyses, timelines, trend reports and strategic briefs
Research corporate structures, founders, executives, investors, customers, partnerships, acquisitions, legal issues, sanctions and regulatory developments
Analyze mobile-related products, technical claims, infrastructure, capabilities and market movements to identify trends, red flags, intelligence gaps and signals.
Requirements:
3+ years of experience in intelligence, cyber intelligence, military intelligence, technical OSINT, corporate intelligence, threat intelligence or a comparable research role
Strong understanding of mobile and cyber concepts, including mobile apps, device identifiers, mobile malware, spyware, vulnerabilities, cloud services, telecom concepts and network fundamentals
Familiarity with cyber operations, including targeting, exploitation, persistence, collection, exfiltration, infrastructure usage and OPSEC
Strong OSINT skills across corporate registries, LinkedIn, media, regulatory filings, court records, GitHub, technical blogs, WHOIS/DNS, certificate transparency, forums, marketplaces, messaging platforms, app stores, social media and dedicated OSINT platforms/tools
Familiarity with OSINT tools and investigative workflows for entity resolution, link analysis, infrastructure mapping, social media research, breach/leak research, dark web/forum monitoring, domain/IP enrichment and data validation
Ability to assess source credibility, separate facts from assumptions and produce concise, source-backed analysis
Basic scripting ability, preferably in Python or similar languages, for data collection, parsing, enrichment and automation
SQL skills for querying, filtering, joining and analyzing datasets from internal and external sources
Excellent written English
Strong operational security awareness
It would be great if you also have:
IDF intelligence, IDF cyber or technology units, government intelligence/security organizations, mobile security research, cyber intelligence, technical OSINT, cybercrime research, spyware/surveillance technology research, corporate intelligence, due diligence or technology-focused business intelligence
Additional languages are an advantage.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8788513
סגור
שירות זה פתוח ללקוחות VIP בלבד