דרושים » אבטחת מידע וסייבר » Senior Cyber Security Specialist 2449

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Merkaz
We are Looking for a Senior Cyber Security Specialist for an operational position at the core of key intelligence operations
The role involves unique and covert missions, combining independent work with teamwork
Join an award-winning unit renowned for its dynamic and flexible-thinking people
Tackle complex technological challenges, that lead to significant breakthroughs in homeland security matters
Engage in meaningful work with a team of optimistic and driven professionals
We are seeking individuals who are determined to make a meaningful impact.
Requirements:
3 years of experience in one or more of the following:
Pen testing in complex networks or cloud platforms
Researching systems and frameworks to uncover vulnerabilities
Working in a red-team
Broad background in cyber - networks, operating system, vulnerabilities, exploitation, development of scripts\malware\cyber capabilities
כישורים נדרשים
Experience in python/C++/C# development
Proficiency in Computer Networks topology
Service in one of the technological units in the IDF.
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8835851
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time and Travel Required
We are looking for talented hackers to join our unique Adversarial Tactics Department. As a Red Team Expert ,you will work with clients to build their resiliency, i.e their capability to prevent and to sustain attacks. You will also be involved in IR engagements with companies that were attacked by adversaries, learn new TTPs and apply those in Red and Purple team engagements.
Your responsibility as a Cyber consultant is to bring the attackers perspective to engagements. You will help design, create and execute Adversary Simulation exercises, and perform attacks against client services, platforms and infrastructure. This will include, among other things, identifying vulnerabilities through simulated external and internal attacks, validating and enhancing an organizations ability to respond and recover from targeted attacks and persistent adversaries.
Requirements:
5+ years of Red Teaming or Adversarial Simulation Experience.
Experience conducting internal and external penetration testing.
Experience designing and/or executing phishing campaigns.
Experience in social engineering.
Experience with EDR/XDR evasion and bypass techniques.
Deep familiarity with Active Directory attacks and defenses.
Extensive experience in penetration testing methodologies and tools.
Deep technical understanding of a broad technology set and the ability to learn new information at a rapid pace.
Proven presentation skills.
Developing, extending, or modifying exploits, shellcode or exploit tools.
Willingness to travel abroad.
Advantages:
Background in application security.
Experience developing tools in one or more of the following: C/C++, Bash, C#, Python, Java, or PowerShell.
Experience with cloud penetration testing (AWS, Azure, Google Cloud Platform).
Fluent English (written and spoken).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8796330
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
6 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
Required Principal / Sr. Principal Security Research - Advanced Cyber Research (Cortex)
We are seeking a visionary and highly technical Principal / Sr. Principal Security Researcher to join our security research team. In this role, you will be at the forefront of innovating automated defense systems to rapidly protect platform customers against advanced cyber threats at an unprecedented scale. This position offers a unique opportunity to blend deep traditional cybersecurity expertise - including OS internals, reverse engineering, and advanced detection engineering with cutting-edge AI technologies like LLMs, SLMs, and agentic workflows.
You will spearhead the creation of innovative prevention solutions, leveraging massive streams of agent telemetry to design AI-driven logic that neutralizes threats before they execute. As a key technical leader, you will partner closely with top-tier data scientists and product engineers to translate cutting-edge security research into production-grade capabilities, ensuring we stay ahead of the evolving threat landscape.
Key Responsibilities:
Develop Automated Defense Systems:Create, engineer, and deploy automated solutions for the prevention and detection of advanced cyber threats, analyzing complex data to rapidly protect platform customers at scale.
Innovate with AI:Partner closely with data scientists to leverage LLMs, SLMs & deeplearning techniques to fuel these advanced prevention solutions and automated defense capabilities.
Research, develop, and continuously improve the Agentix solution. Drive the development of next-generation security content by designing and implementing specialized AI agents to automate security operations and workflows.
Drive Security Innovations:Spearhead new research initiatives from the ground up. Act as the primary driver across key stakeholders, leading top-tier data scientists and engineers to ensure the successful delivery of enterprise-grade security capabilities.
Requirements:
Required Qualifications:
5+ years of hands-on experience in the cybersecurity research field.
Threat Research & OS Internals:Proven track record of applying deep cyber and analytical expertise to build robust security logic using endpoint telemetry. Supported by a profound understanding of Windows and Linux OS/kernel internals to engineer advanced defenses.
Reverse engineering experience:Demonstrated expertise in reverse engineering (e.g., IDA Pro, Ghidra) across multiple platforms to dissect malware and identify sophisticated attack vectors.
Programming & Native Code Comprehension:Strong proficiency in Python for data analysis and rapid prototyping, combined with the ability to comprehend native code (C, C++, or Rust) to effectively read and interpret agent code, low-level system interactions, and memory operations.
End-to-End Research Ownership:A scientific, data-driven approach to solving complex security challenges, with a proven track record of owning research initiatives from initial ideation through to the deployment of production-grade capabilities.
Communication & Mentorship:Excellent communication skills, with the ability to clearly articulate complex threat research to diverse audiences, mentor junior team members, and champion security initiatives across the organization.
Preferred Qualifications:
AI Agents & Frameworks:Hands-on experience developing and working with AI Agents and agentic workflows. Technical understanding of the architectural distinctions between an agent, a skill, and Model Context Protocol (MCP). Proven experience utilizing common agentic frameworks.
Data Scale & Telemetry Analysis:Proficiency in query languages (e.g., SQL) and big data platforms (e.g., GCP) to parse, manipulate, and query large-scale agent telemetry, extracting actionable security insights and uncovering threat patterns from massive datasets.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8830285
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking a seasoned security leader to manage a high-caliber research team focused on the security of Identity, SaaS, and Cloud ecosystems. In this role, you will provide technical mentorship and strategic vision, guiding research into service risk profiling and adversarial TTPs analysis. You will be the bridge between cutting-edge research and product innovation, ensuring our findings translate into high-impact security outcomes to stay ahead of modern adversaries.
Key Responsibilities:
Define the research roadmap for Identity, SaaS, and Cloud risks, ensuring the team's outputs align with the evolving threat landscape and company goals.
Lead and grow a diverse team of security researchers, providing the technical guidance and career development necessary to maintain a world-class research organization.
Leverage your experience in a product-focused environment to ensure research outcomes directly influence service security strategies and customer-facing solutions.
Oversee the execution of high-fidelity attack simulations and TTP deconstruction, ensuring the 'how-to' of secure service usage is clearly defined and actionable.
Partner with Engineering, Product Management, and Threat Intel teams to transform raw research into robust mitigation strategies and resilient service blueprints.
Represent the team's research internally and externally, positioning the organization as a premier authority on Identity-centric and Cloud security.
Requirements:
Required Qualifications
2+ years of experience in technical leadership or people management, with a proven track record of directing high-impact security research projects.
Proven experience leading, mentoring, or managing a team of technical security researchers.
Deep technical expertise in security research related to Identity platforms (e.g., Azure AD, Okta), SaaS applications, and major cloud environments (AWS, Azure, GCP).
Demonstrated ability to define and execute a strategic research agenda.
Preferred Qualifications:
Experience working in a product-driven cybersecurity company, translating research into product features or security solutions.
A track record of public speaking at security conferences or publishing research papers.
Experience with adversarial tactics, techniques, and procedures (TTP) analysis and simulation.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8834460
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
5 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking a Senior / Principal Security Researcher to join our high-caliber Security ML Team. Our team solves complex security challenges using disruptive technologies, AI/ML algorithms, and massive datasets to design and develop groundbreaking security solutions that transition directly from research into production-grade protection.
In this role, you will serve as the core security domain expert within a multidisciplinary team, providing essential security-side expertise to assist in the development of ML models, deeplearning models, and Small Language Models (SLMs). By translating complex malware behaviors and static file attributes into actionable logic, your research will directly shape the algorithms that protect millions of endpoints worldwide. If you are looking to autonomously drive high-impact research initiatives from inception to production and use data-informed critical thinking to influence advanced security modeling, we want to hear from you.
Key Responsibilities:
The Bridge to the AI Ecosystem: Serve as the core security domain expert within a multidisciplinary team, translating complex malware behaviors and static file attributes into actionable features, labels, or heuristics-fueling AI algorithms and automated, data-driven security logic.
Telemetry & Sensor Optimization:Analyze raw endpoint telemetry (such as memory buffers, hook outputs, and IPC artifacts) to evaluate algorithm effectiveness and work with AI researchers to tweak or implement new models..
Deconstruct File Behavior: Look past the "black box" of machine learning by digging into executable formats (PE, ELF, Mach-O) and scripts to identify malicious behavior(e.g., packing, anomalous imports, obfuscation).
Drive Intelligent Protections:Take a security hypothesis, validate it via data analysis, and build Python-based proof-of-concepts that scale into production-grade detections-spanning machine learning classifiers to AI-informed automated rule generation.
Shape the Pipeline: Influence data pipeline strategies and model design by ensuring our datasets and automated logic accurately capture the ground truth of modern threat landscapes.
Requirements:
Required Qualifications:
OS Internals Generalist:At least 3 years of experience in endpoint security research or offensive/defensive OS internals, with a strong conceptual grasp of Windows, Linux, or macOS subsystems (deep understanding of at least one).
Malware Analysis & Reverse Engineering:Practical experience with both dynamic and static analysis of malware, utilizing core reverse engineering concepts to parse file structures, unpack binaries, or understand execution flow.
System Diagnostics & Tracing: Hands-on experience utilizing low-level monitoring and tracing tools to dissect active system behavior (e.g., Sysinternals suite, strace, ptrace, lsof, netstat, ).
Malware Execution Mechanics:Solid understanding of common malware methodologies (MITRE ATT&CK), process injection, API hooking, and evasion techniques at the operating system layer.
Data-Informed Critical Thinking:Strong investigative skills using analytics and data interpretation to separate true security signals from normal OS noise.
Proficient Python Coding:Strong, hands-on Python skills for data manipulation, file parsing, and rapid prototyping.
Collaborative Communication:Excellent communication skills with the ability to explain low-level technical research results clearly to non-security disciplines (Data Scientists, MLOps, Product Managers).
End-to-End Project Ownership:Proven ability to autonomously drive complex research initiatives from inception to production, balancing independent deep-dives with cross-functional teamwork.
Preferred Qualifications:
Native Code Comprehension: Proficiency in C / C++ / Rust (specifically for reading/interpreting agent code, hook structures, and raw memory buffers).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8832143
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
30/08/2026
Location: Petah Tikva
Job Type: Full Time
We are looking for an Information Security and Cyber Specialist with hands-on experience in information security systems to join the company’s Information Security team. The role includes responsibility for the operation and management of security systems, the investigation of information security incidents, and advanced technological areas within the Information Security Department.

Responsibilities:

* Monitoring, operation, and maintenance of information security systems.
* Handling and analyzing information security incidents at the Tier 2 level.
* Conducting initial and advanced investigations of cyber incidents.
* Working with IT and DevOps teams and external vendors.
* Writing procedures and technical documentation.
* Assisting with regulatory controls, risk assessments, and audits.
* In-depth knowledge of Microsoft 365 and Azure Security systems.
* Experience in managing and implementing EDR/XDR and SIEM systems and endpoint protection solutions.
* In-depth understanding of networking and Windows and Linux operating systems.
* Experience working with firewalls, VPN, NAC, and network security solutions.
* Ability to work independently, learn quickly, and maintain a system-wide perspective.
Requirements:
Mandatory Requirements
* At least five years of experience in information security and cybersecurity.
* Experience working with Microsoft 365 Security and Defender.
* Experience with EDR/XDR or SIEM systems.
* Knowledge of networking, Active Directory, Windows Server, and Entra ID.
* Experience handling information security incidents.
* Strong self-learning capabilities and the ability to work independently.
Preferred Qualifications
* Experience in Azure and on-premises environments.
* Knowledge of PowerShell or Python.
* Experience working with information security standards and regulatory requirements.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8801753
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
6 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Security Researcher to join our research group as part of a growing team developing Autopilot, an innovative product for autonomous investigation and response.
As a core member of the team, you'll go beyond research: youll research, design, and develop investigation modules that allow Autopilot to autonomously detect, investigate, and respond to advanced threats at a massive scale.
Youll analyze everything from new malware behaviors to attacker techniques and process activity in enterprise-scale networks, using data collected from across millions of endpoints. Your work will span identifying attack patterns and uncovering statistical anomalies, as well as validating that the system responds effectively to real-world attacks and APT campaigns using production data.
Key Responsibilities:
Research and implement new autonomous methods for investigating and responding to targeted attackers, using large-scale, diverse security datasets
Develop and design the graph-based algorithms that power autonomous investigation and decision-making capabilities
Design automated incident response by developing reusable logic that transforms raw security data and alerts into clear, actionable insights.
Leverage graph algorithms, AI techniques, and statistical methods to mimic and scale human security analyst workflows
Conduct deep, hands-on investigations into modern malware, APTs, and complex attack flows to inform detection and response logic
Stay up to date with attacker methodologies, tools, and techniques (TTPs), ensuring our product remains effective against evolving threats
Contribute to a collaborative, fast-paced research team, helping shape our research strategy, improve processes, and continuously enhance the product
Requirements:
Required Qualifications:
5+ years of experience in security or threat research, in which you conducted deep research with actionable insights and real-world impact.
Proven experience as part of an R&D/development team, along with strong proficiency in Python programming
Intimate knowledge and understanding of attack methods and techniques over endpoints and enterprise networks
Comfortable working with large-scale datasets to extract meaningful insights through advanced analysis
Strong sense of ownership and ability to independently drive projects from concept to execution
Critical thinker who thrives both independently and in collaborative team environments
Excellent verbal and written communication skills
A cybersecurity professional driven to solve the next generation of security challenges.
Preferred Qualifications:
In-depth knowledge of the inner workings of operating systems (especially Windows)
Experience working with graph DB and algorithms
Experience in statistics, advanced data studies, or machine learning.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8831013
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
6 ימים
חברה חסויה
Location:
Job Type: Full Time
we are looking for a Cyber Researcher.
As a cyber researcher , you will be at the forefront of research on AI security. You will engage with questions such as how to protect the weights of an advanced model against cyber threats, and how to evaluate cyber capabilities such as AIs ability to exploit vulnerabilities, carry out network attacks, and develop malware. This role sits at a unique intersection of cybersecurity expertise and AI capabilities, where your background in vulnerability and security research will help shape the future of AI security.
Representative projects:
Expanding the quantity, quality, and variety of our cyber capabilities evaluation challenges (e.g. constructing original CTF-style vulnerability & exploitation challenges, network attack simulation challenges, and more, including original types of challenges).
Leading research into methods to mitigate cybersecurity risks related to the misuse of AI, the theft of model weights, or risks associated with integrating models with dangerous capabilities in AI agents.
Publishing your research and/or delivering research to our customers.
Advising and supporting the development of the products were building.
Requirements:
Have a strong background in vulnerability/security research & development such as having found vulnerabilities/CVEs, analyzed malware, researched detection methods for attacks, developed pentesting products or other attack tools, participated in CTF competitions or authored CTF challenges, or participated in other types of security research & development.
Work well in a multidisciplinary team and can adapt to rapidly evolving challenges.
Care about the societal impacts of your work.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8830658
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
23/08/2026
חברה חסויה
Location: Herzliya
Job Type: Full Time and Hybrid work
we are looking for a Cyber Security Expert with hands-on experience in offensive security, possessing strong technical capabilities, in-depth knowledge of adversary simulation, and a passion for Red Team operations.
we are a cybersecurity firm specializing in advanced adversary simulation and offensive security testing. We deliver Red Team assessments for Fortune 500 companies, simulating sophisticated, real-world attacks across external, internal, cloud and Active Directory environments. Our services span both stealth-based Red Team operations and risk-focused assessments, covering a wide range of attack surfaces including on-premise and cloud environments.
Responsibilities:
Participate in Red Team assessments that simulate real-world threats and remain undetected by the client's defensive team. These stealth operations simulate advanced adversaries and require careful planning, execution, and OPSEC
Lead or co-lead portions of internal and external offensive assessments, including perimeter exploitation and post-exploitation in Active Directory
Perform Purple Team engagements to help clients improve their monitoring and detection capabilities while sharpening your own offensive skills
Document attack paths, risk analysis, technical findings and remediation guidance in detailed reports tailored to both technical and executive audiences.
Collaborate with the team to develop and maintain internal tooling, scripts, and documentation for offensive operations
Continuously research and test new techniques, tools, and attack paths to further enhance CYE's Red Team capabilities
Requirements:
2+ years of hands-on experience in offensive security, red teaming, or penetration testing
Hands-on experience with C2 frameworks (e.g., Cobalt Strike, Mythic, Sliver)
Strong understanding of Active Directory, domain escalation paths, Kerberos, trust relationships, GPO abuse, credential access, etc.
Proficiency in various offensive techniques such as Relay Attacks, Coercion, Kerberos Attacks, Privilege Escalation, etc.
Familiarity with network protocols (e.g., SMB, DNS, LDAP, HTTP) and system internals (Windows and Linux)
Strong understanding of OPSEC considerations during covert operations
Ability to present and produce clear and actionable technical reports and documentation in English
Experience working in client-facing roles or as part of structured engagements
Proficient in one or more scripting/programming languages: Python, PowerShell, C#, or C++
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8793447
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
27/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a WAF Security Specialist.
What You'll Do:
Create - Produce production WAF rules across providers for high-impact CVEs and customer findings - driving the Copilot harness on most of them, writing the expression yourself on the hard ones (no public PoC, exploitable path reasoned out of a patch diff, urgent customer coverage). Your rules ship, and they set the bar generated rules are measured against.
**Optimize -**Tighten generated rules for real production constraints: WCU and rule-capacity budgets, latency, provider expression limits, and the anchoring required for a rule that fires against all traffic behind a shared Web ACL - not just the vulnerable app.
Validate - Own the adversarial pass. Build exploit variants the PoC doesn't cover, hunt bypasses in our own rules, and run the false-positive side seriously - verifying against how the legitimate client actually behaves on the wire, not against an assumption.
Monitor - Watch deployed rules in production: false-positive signals, hit patterns, coverage drift as managed rulesets shift underneath us, and the log→block promotion decision. Retire what no longer earns its capacity.
Make it reproducible - Turn every finding into a regression test. Build and curate the golden CVE datasets and scoring rubrics that gate whether a new Copilot version ships.
Set the coverage line. Judge which CVEs are genuinely WAF-mitigatable and which aren't, and make the call on what enters and leaves our managed rulesets - with the reasoning written down.
Requirements:
Deep, hands-on WAF expertise across multiple major providers - you've written, tuned, and operated real rules in production on several of: AWS WAFv2, Cloudflare, F5, Imperva, Akamai, Azure, GCP, Fortinet, ModSecurity/CRS. Not "managed a WAF vendor relationship" - written the rules.
You know the caveats cold. Body-inspection limits and oversize handling, text transformations and normalization order, encoding and unicode evasion, parameter pollution, chunked and multipart edge cases, rule precedence and evaluation order, WCU/capacity economics, and how each provider's expression language quietly differs from the others.
Strong security research background - application security, vulnerability research, or offensive security. You can read an advisory, build the PoC, derive the variants nobody published, and explain exactly which request component carries the exploit primitive.
A real feel for the false-positive tradeoff. You've had to defend a blocking decision to someone whose production traffic you broke, and you know why "block everything suspicious" is not a security posture.
Comfortable in code. Enough Python (or similar) to automate replay, build variant generators, and query exploit and traffic data yourself rather than waiting on someone.
Fast under pressure, systematic afterward. You can get a solid rule out the door when a customer needs one today - and your instinct once it ships is to build the check that catches the whole class, not just the instance you fixed.
Advantage: virtual patching / vulnerability-mitigation experience, or time on a WAF vendor's rules or research team.
Advantage: hands-on with LLMs and agentic tooling - you'll be shaping an AI system's output, and it helps to understand how it fails.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8800121
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
חברה חסויה
Location: Herzliya
Job Type: Full Time and Hybrid work
we are looking for a GRC Security Specialist.
Cyber Security Governance protects the security of an organizations information systems and data by setting policies, monitoring compliance, and following defined procedures to identify, assess, and manage risks from external and internal threats. We are seeking a GRC Security Specialist to join our Cyber GRC Team . You will be joining a tight-knit and highly respected team of GRC experts who are central to security strategy. In this role, you will be at the heart of protecting our global financial platform, directly influencing the trust and safety of millions of users worldwide. As a GRC Security Specialist, you will be responsible for the following:
Glilot, Israel
Hybrid
Full-time
What you'll do:
Directly responsible for policies, procedures, and controls to assure compliance with applicable regulatory, legal, and audit requirements as well as good business practices.
Develop a Cyber security compliance strategy and approach and ensure compliance with contractual requirements and globally recognized standards and guidelines.
Identify regulatory, legislative, and industry-specific compliance requirements and define controls that can be used to meet those requirements.
Conduct and participate in periodic internal reviews or audits to ensure that compliance procedures are followed.
Oversee and evaluate compliance systems to ensure they function effectively.
Compile and present reports to management on compliance activities and progress.
Stay updated on industry developments, regulatory trends, and best practices to evaluate their potential impact on the organization.
Design and implement enhancements in compliance communication, monitoring, and enforcement mechanisms.
Develop and execute a compliance awareness program, including the creation and distribution of materials for all employees.
Partner with Legal and IT teams to manage data protection agreements and compliance initiatives.
Lead the development and execution of company-wide security awareness and training initiatives.
Assist in incident response planning and investigations when necessary.
Requirements:
3+ years of experience in GRC, information security, or compliance within SaaS, cloud, or enterprise IT environments.
Strong understanding of regulatory frameworks and security standards such as SOC 2, PCI-DSS, NIST, and cloud security frameworks.
Knowledge and experience in AI Governance, including AI risk management, ethical AI principles, and alignment with frameworks such as EU AI Act, NIST AI RMF, and ISO/IEC 42001.
Strong knowledge of SDLC methodology.
Strong knowledge of IT systems and security controls.
Experience conducting security risk assessments and working with auditors or regulatory bodies.
Strong project management skills with the ability to manage multiple compliance initiatives.
Experience working with IT teams and business stakeholders to enhance security measures.
Excellent communication and collaboration skills, with the ability to translate compliance requirements into actionable business processes.
Ability to effectively interface with technical staff and senior management.
Proficiency in English and Hebrew, both written and spoken, to effectively communicate with local and global teams and stakeholders.
Excellent teamwork and interpersonal communication abilities
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8834274
סגור
שירות זה פתוח ללקוחות VIP בלבד