רובוט
היי א אי
stars

תגידו שלום לתפקיד הבא שלכם

לראשונה בישראל:
המלצות מבוססות AI שישפרו
את הסיכוי שלך למצוא עבודה

מהנדס סייבר

מסמך
מילות מפתח בקורות חיים
סימן שאלה
שאלות הכנה לראיון עבודה
עדכון משתמש
מבחני קבלה לתפקיד
משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP

חברות מובילות
כל החברות
כל המידע למציאת עבודה
כל מה שרציתם לדעת על מבחני המיון ולא העזתם לשאול
זומנתם למבחני מיון ואין לכם מושג לקראת מה אתם ה...
קרא עוד >
לימודים
עומדים לרשותכם
חברות מגייסות
מיין לפי: מיין לפי:
הכי חדש
הכי מתאים
הכי קרוב
טוען
סגור
לפי איזה ישוב תרצה שנמיין את התוצאות?
Geo Location Icon

משרות בלוח החם
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
לפני 10 שעות
דרושים בTOP SOFT טופ סופט - השמה ומיקור חוץ
מיקום המשרה: תל אביב יפו
לחטיבת הסייבר דרוש/ה חוקר/ת מודיעין איומי סייבר לתפקיד מחקרי וטכנולוגי העוסק בזיהוי, חקירה וניתוח של תקיפות סייבר מתקדמות בסביבות ענן.

מה כולל התפקיד?

ביצוע מחקרים טכנולוגיים על תקיפות סייבר מתקדמות בסביבות Cloud.
חקירת שרשרת התקיפה וזיהוי Indicators / IOCs ומאפייני תקיפה.
גיבוש תפיסות ומתודולוגיות לחקירה בסביבות ענן.
זיהוי, איתור וניתוח איומים לצורך יצירת התרעות מוקדמות.
העשרת צוותי חקירות במידע מודיעיני וטכנולוגי.
ביצוע מחקרי עומק וכתיבת דוחות מודיעיניים וטכנולוגיים.
הפקת תובנות אופרטיביות לצורך שיפור יכולות הגילוי וההתמודדות עם תקיפות ענן.

תפקיד למי שרוצה להיות בחזית המחקר והמודיעין בעולם הCloud Security.
דרישות:
ניסיון של 4 שנים ומעלה בתחום Cyber / Threat Intelligence / Cyber Research.
ניסיון מוכח בחקירת תקיפות סייבר וניתוח שרשראות תקיפה.
ניסיון בסביבות Cloud - AWS / Azure / GCP.
ידע והבנה מעמיקה של Cloud Security ותשתיות ענן.
ניסיון באיתור וניתוח IOCs, TTPs וממצאים מודיעיניים.
היכרות עם MITRE ATT CK ומתודולוגיות Threat Intelligence - יתרון.
ניסיון בכלי חקירה, ניטור וניתוח בסביבות ענן - יתרון.
יכולות מחקר, אנליזה והסקת מסקנות ברמה גבוהה.
יכולת כתיבה והצגת מחקרים ודוחות טכנולוגיים.
יכולת עבודה עצמאית לצד עבודה מול צוותי Cyber וחקירות.

יתרון משמעותי:
ניסיון בחקירת תקיפות מתקדמות, APT, Cloud Attacks, Incident Response או Digital Forensics. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8781641
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
לפני 12 שעות
דרושים בלוגיקה IT
מיקום המשרה: לוד ויהוד מונוסון
סוג משרה: משרה מלאה
משרה מלאה / לוד /היברידי

לחברה מובילה דרוש/ה  Senior Incident Response Automation Engineer בעל/ת ניסיון מעמיק בתחקור אירועי סייבר, פורנזיקה דיגיטלית ופיתוח אוטומציות מתקדמות לצוותי אבטחת מידע.

תיאור התפקיד
במסגרת התפקיד תובילו חקירות של אירועי סייבר מורכבים, תנתחו מתקפות ופעילות תוקפים, ותפתחו תהליכי תגובה אוטומטיים שיסייעו לשיפור יכולות הזיהוי והתגובה בארגון.

תחומי אחריות:
ניהול וחקירה של אירועי סייבר מורכבים מקצה לקצה
ביצוע חקירות פורנזיות ברמת תחנות קצה, שרתים ולוגים
ניתוח טכניקות תקיפה, מנגנוני התמדה ותנועת תוקפים ברשת
פיתוח ותחזוקה של Playbooks במערכות SOAR
פיתוח אוטומציות ב- Python ואינטגרציות באמצעות APIs
שיפור תהליכי תגובה וקיצור זמני הטיפול באירועי אבטחת מידע
עבודה שוטפת מול צוותי SOC ואבטחת מידע
דרישות:
לפחות 4 שנות ניסיון ב- SOC, Incident Response או DFIR
ניסיון מוכח בטיפול באירועי אבטחת מידע מורכבים (Tier 2/3)
לפחות שנתיים ניסיון מעשי בתחום Digital Forensics Incident Response
לפחות שנה ניסיון בפיתוח אוטומציות ו-Playbooks במערכות SOAR
שליטה גבוהה ב- Python
ניסיון בעבודה עם APIs ואינטגרציה בין מערכות אבטחה
ניסיון עם פלטפורמות SIEM /XDR כגון Sentinel, QRadar או Cortex
ניסיון עם מערכות SOAR כגון Cortex XSOAR
היכרות עם סביבות ענן, יתרון ל-Azure
אנגלית ברמה גבוהה המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8780020
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
2 ימים
דרושים בSoftware AG-SPL
מיקום המשרה: לוד
חברת Software AG מגייסת מפתח.ת Splunk לארגון פיננסי במרכז.

התפקיד כולל:
ביצוע פיתוחים על גבי תשתית של Splunk.
כתיבת דשבורדים.
כתיבת חוקים.
טיפול וטיוב חוקים התרעות ודשבורדים קיימים.
דרישות:
ניסיון של לפחות 3 שנים בעבודה עם Splunk Enterprise / Splunk Cloud.
ניסיון מעשי בכתיבת SPL מורכב joins, stats, tstats, transactions, lookups.
לפחות שנתיים ניסיון בפיתוח Python.
ניסיון בפיתוח React. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8805488
סגור
שירות זה פתוח ללקוחות VIP בלבד
לוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Petah Tikva
Job Type: Full Time
we are looking for a hands-on Security Operations Engineer to join our IT and Cybersecurity team.

You will take ownership of implementing, configuring, and operating security tools and controls across the organization. The role combines security operations, incident response, technical policy implementation, and compliance support.



Responsibilities
Implement, configure, and maintain security systems and policies.
Monitor and investigate security alerts and coordinate remediation.
Manage endpoint, identity, device, network, and cloud security controls.
Improve security coverage across endpoints, servers, users, and corporate systems.
Manage vulnerabilities and track remediation through completion.
Develop and maintain incident-response procedures and playbooks.
Translate security policies and regulatory requirements into technical controls.
Support security audits, evidence collection, risk assessments, and compliance activities.
Work closely with IT and R&D teams, business stakeholders, security vendors, and external providers.
Maintain security documentation, operational procedures, and management reports.
Requirements:
3+ years of hands-on experience in security operations, cybersecurity engineering, or a similar role.
Practical experience implementing and managing enterprise security systems.
Experience with technologies such as EDR/XDR, SIEM, MDM/UEM, IAM, SSO, MFA, firewalls, VPN, DNS security, and vulnerability management.
Knowledge of Windows, Microsoft 365, Entra ID, networking, and enterprise infrastructure.
Experience investigating security events and managing technical remediation.
Working knowledge of ISO 27001, SOC 2, and the NIST Cybersecurity Framework.
Strong troubleshooting, documentation, communication, and prioritization skills.
Ability to work independently and take ownership from identification through resolution.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8808648
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
3 ימים
Location: Petah Tikva
Job Type: Full Time
our company seeks a Senior Application Security Engineer to serve as the technical core of our bug bounty program within the Product Security Incident Response Team (PSIRT). This is the senior engineer who owns bug bounty reports from intake through resolution: reproducing and validating the vulnerability, assessing its severity, and seeing it through to a verified fix.
The work is deeply technical. Reproducing a vulnerability is only the starting point. From there you read the underlying code, identify root cause, and either propose the fix or design it alongside engineering before confirming it holds. You are also the person researchers deal with directly, which makes clear, credible communication as central to the role as the technical analysis itself.
As one of the most senior engineers on the team, you will set the standard for how triage is done and mentor earlier-career engineers. Beyond the bug bounty queue, you will conduct variant hunts, perform original platform security research, lead major product security incidents, and run forensic postmortems when a significant issue reaches production.
Key Responsibilities
Triage and Resolve Bug Bounty Reports
Own incoming reports end-to-end: intake, reproduction, severity scoring, root cause analysis, fix verification, and final disposition.
Reproduce and validate reported vulnerabilities, building out incomplete proof-of-concept code where needed.
Serve as the technical escalation point for the most complex and highest-severity reports, including multi-step exploit chains and cross-system issues.
Perform code review and root cause analysis to identify the underlying defect rather than the reported symptom.
Propose remediations, or design them with engineering, and verify the fix resolves the issue.
Assign and defend severity ratings using the program's severity framework.
Route issues to owning teams, file and track defects, and keep vulnerability records accurate through closure.
Own Researcher and Stakeholder Communication
Act as our company's primary technical point of contact for bug bounty researchers across the full lifecycle of a report.
Handle severity and validity disputes directly, keeping every exchange clear, timely, respectful, and technically credible.
Translate technical findings for internal stakeholders and keep engineering and leadership current on status and risk.
Mentor the Team and Raise Triage Standards
Provide technical mentorship to earlier-career PSIRT engineers, developing depth in reproduction, code analysis, severity judgment, and communication.
Set and maintain the bar for triage quality and strengthen program practices over time.
Lead Advanced Security Work Beyond Triage
Conduct variant hunts to find related instances of reported vulnerabilities before they are discovered externally.
Perform original platform security research to surface issues ahead of external researchers.
Lead major product security incidents on the PSIRT side, coordinating response across teams under pressure.
Run forensic postmortems after significant incidents to determine how the issue reached production, including how design-level flaws bypassed release processes, and confirm that remediations hold.
Requirements:
To be successful in this role, you have:
8+ years of hands-on experience in product security, application security, penetration testing, or vulnerability research. Depth of expertise matters more than years.
Expertise in:
Common web and application vulnerability classes and exploitation techniques.
Vulnerability reproduction, severity assessment, and defensible risk scoring under ambiguity.
Coordinated vulnerability disclosure.
Code and development fluency:
Strong code comprehension in Java, JavaScript, and Python, with the ability to trace root cause in large, unfamiliar codebases and review pull requests.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8808486
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
3 ימים
Location: Petah Tikva
Job Type: Full Time
This is a hands-on architecture role: deep research, secure systems design, and prototyping, applied across product lines with minimal direction and broad latitude to set the technical agenda. You will set platform-wide direction for securing the AI development lifecycle, define the security architecture, agents, and models operating within it, and represent our company's AI security point of view externally. You'll be a technical authority other engineers and other teams look to on emerging AI-specific threats, working in close partnership with the AI security research team - drawing on their findings and feeding real-world attack surfaces back into their agenda.
What you'll do
Own the security strategy and architecture for our Agentic AI ecosystem, LLMs, and models across product lines
Lead threat modeling for the most complex and novel GenAI/agentic surfaces: cross-agent autonomy, multi-agent tool orchestration, and emerging attack classes not yet standardised in the industry
Set the architectural standard for securing model/RAG/data pipelines platform-wide, including access-control and data-boundary models that other teams are expected to build against
Define what "secure-by-design" means for agentic systems at our company, and drive adoption across engineering orgs
Represent our company's AI security posture externally (standards bodies, industry publications, conferences) and internally to executive stakeholders
Mentor and technically guide engineers on AI-specific security work.
Requirements:
To succeed in this role, youll need:
Bachelors / Master's degree or PhD in Computer Science or a related technical field, specialisation in Security or AI/ML or an exceptional, well-evidenced track record substituting for it
10+ years of software engineering experience, including a track record of owning the architecture of complex systems at enterprise scale
A track record of setting technical direction beyond your own team - architecture or standards other teams adopted, senior engineers you've levelled up, and comfort operating where the problem isn't yet defined
7+ years in security engineering - network and systems security, security protocols, design reviews, and threat modeling - with a focus on AI-specific work in recent years
Multiple demonstrated engagements threat modeling and/or securing LLM, GenAI, or agentic systems, with evidence of platform-level or cross-team impact
Personal ownership of prompt injection / jailbreak defense, guardrail architecture, or AI red-teaming programs - ideally having built the program/methodology, not just executed within one
Deep, applied experience securing model, RAG, or data pipelines, including having designed the access-control and data-governance model others build against
Fluency with the OWASP LLM Top 10 (or equivalent) to the point of extending, critiquing, or contributing to such frameworks - not just applying them
Deep hands-on experience with agentic AI frameworks (e.g., LangChain, LangGraph)
Clear communication, a collaborative default, and a bias toward learning fast in a field that changes constantly
Bonus
Strong command of auth protocols (OAuth 2.0, OIDC, PKCE, API Keys) and agentic protocols (MCP, A2A), including having designed identity/consent models for them
Built and open-sourced (or productized) security tooling/automation for AI systems now used beyond one team
Track record of CVEs, top-tier publications, or invited talks specifically in AI/ML or LLM security
Prior experience setting AI security strategy at a platform or company level, not just a single product
5+ years of programming experience in Java or Python.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8808482
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
4 ימים
Location: Herzliya
Job Type: Full Time
About our company As a global semiconductor leader, our company  builds the hardware trust foundations powering modern computing - from trusted platform module (TPM) chips safeguarding millions of personal computers to complex root-of-trust architectures across cloud platforms and servers. Security is Embedded into the core of everything we design. As the global regulatory and threat landscape evolves, ensuring our products meet rigorous, gold-standard cybersecurity compliance and certifications is central to our mission and customer trust. About the Role We are looking for a highly motivated Security Certifications & Compliance Engineer to join our team and play a key role in ensuring our products meet the highest security, compliance, and certification standards. This position combines technical security expertise, compliance activities, product security governance, and collaboration with development teams to support industry-leading security products.
What You'll Do Certifications: Lead and support security certification activities, including Common Criteria (CC), FIPS 140-3, CSPN, OCP SAFE, and additional certification programs. Compliance & Frameworks: Support compliance initiatives related to the Cyber Resilience Act (CRA), Secure Development Lifecycle (SDL), NIST SSDF, and customer cybersecurity requirements. Cross-Functional Teamwork: Work closely with engineering teams, management, customers, certification bodies, and security experts across the organization. External Collaboration: Work closely with external laboratories and certification authorities throughout certification processes. Security Readiness: Review development processes, project documentation, and deliverables to ensure compliance and security readiness. Risk & Threat Assessment: Participate in threat modeling, risk assessments, security reviews, and secure development activities. Audits & Standards: Prepare for and support internal audits, external audits, and customer security assessments. Development Security system (DSS): Maintain, improve, and drive periodic activities for the Corporate Development Security system, including supporting security infrastructure, defining asset classifications, and driving employee awareness initiatives. Documentation: Prepare, review, and maintain certification documentation, including Security Targets, Security Policies, certification reports, and lifecycle evidence.
Requirements:
Education: B.Sc. in Computer Engineering, Electrical Engineering, Computer Science, Information Security, or a related field. Experience: 5+ years of experience in at least one the following: Cybersecurity, Product Security, Secure Development, Security Compliance, Information Security, Security Certifications, or Security Audits Domain Expertise: Background in the semiconductor industry. Core Technical Knowledge: Strong understanding of some of these areas: o Cryptography fundamentals o Secure Development Lifecycle (SDL) o Vulnerability management processes o Threat Modeling and Risk Assessment o Hardware and Embedded Security o Firmware and Software Security o Security Testing and Penetration Testing concepts
Advantages
* Experience with Common Criteria (CC), FIPS 140-3 or other security certifications.
* Familiarity with TPM technologies, Root of Trust architectures, Secure Boot and Post-Quantum Cryptography
* Knowledge of Cyber Resilience Act (CRA) and NIST frameworks
* Experience working with certification laboratories and regulatory bodies.
If you are passionate about silicon security and want to lead compliance for industry-defining hardware, send your CV to join our team.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8806462
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
5 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a Senior Security Engineer.
As a Senior Product Security Engineer, you will help ensure that security is built into the products, platforms, AI systems, and clinical workflows that support healthcare providers and patients at scale. This is a hands-on technical role focused on securing real systems in production, influencing architecture, and partnering closely with engineering, AI, DevOps, product, quality and regulatory.
You will work across cloud-native services, medical imaging workflows, healthcare integrations, AI/ML pipelines, APIs, data flows, and regulated product development processes. Your work will directly support ability to deliver secure, reliable, and trusted clinical AI solutions to healthcare organizations worldwide.
What Makes This Role Unique :
Clinical AI with real-world patient impact - we operate in an environment where security is not only about protecting systems and data. Security decisions can affect clinical workflows, care-team coordination, customer trust, and patient safety.
Highly sensitive healthcare data - You will help protect medical imaging data, clinical metadata, PHI/PII, customer environments, and AI-driven workflows that require strong privacy, access control, data protection, and auditability.
Security for AI/ML and medical imaging systems - The role extends beyond traditional AppSec into AI/ML security, data pipeline protection, inference integrity, model-related risks, and misuse scenarios in clinical workflows.
Complex healthcare integrations - we integrates with hospital systems and healthcare workflows that may include PACS, EHR, VNA, RIS/worklists, scheduling systems, and communication platforms. You will help secure the data flows, authentication models, APIs, and deployment patterns behind these integrations.
Engineering-driven security in a regulated environment - This is not a checkbox compliance role. However, because operates in healthcare and clinical AI, security must be practical, evidence-based, and aligned with regulatory, customer, and quality expectations.
Cloud-native scale and production ownership - You will work with modern cloud infrastructure, Kubernetes, containers, CI/CD pipelines, identity and access management, observability, vulnerability management, and software supply-chain controls.
דרישות:
5+ years of experience in Product Security, Application Security, Cloud Security, or a similar hands-on security engineering role.
Strong hands-on experience securing production systems, not only performing assessments or reviews.
Strong understanding of secure design, threat modeling, and architecture risk analysis.
Deep knowledge of application security, including OWASP Top 10, API security, authentication, authorization, access control, secure session handling, input validation, and modern attack vectors.
Experience securing distributed systems, APIs, web applications, backend services, and cloud-native architectures.
Strong experience with cloud environments, especially AWS and/or Azure, including IAM, network security, encryption, logging, monitoring, and workload security.
Experience with Kubernetes, containers, infrastructure-as-code, CI/CD pipelines, and modern DevOps workflows.
Practical experience with security tooling such as SAST, SCA, IaC scanning, container scanning, secrets detection, SBOM tools, vulnerability scanners, and cloud security tools.
Experience with vulnerability management, risk prioritization, remediation planning, and working with engineering teams to fix issues at scale.
Strong understanding of software supply-chain security, including dependency risk, build/release integrity, artifact security, and third-party component governance.
Experience working with modern development stacks such as Python, Java, JavaScript/TypeScript, React, microservices, APIs, and cloud-native services.
Ability to influence engineers through technical credibility, practical guidance, and strong collaboration.
Strong commu המשרה מיועדת לנשים ולגברים כאחד.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8805560
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
7 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
Youll be part of a small, elite founding engineering team solving real-world security problems that sit at the intersection of network security, cloud infrastructure, and large-scale data systems.
This is a hands-on role where youll design and build core parts of the product - from network-aware security logic and attack-path modeling, to high-performance pipelines that process massive volumes of security and infrastructure data.
If youre excited about deep security challenges, love building real systems end-to-end, and want massive impact in an early-stage team - wed love to meet you.
Requirements:
Experience: 5+ years of hands-on experience in cybersecurity engineering or security-focused backend engineering.
Strong Networking Knowledge: Deep understanding of:
Firewalls, routing, NAT, ACLs, subnets
Common enterprise network architectures
Network segmentation and exposure concepts
Security Engineering: Strong foundations in:
Threat modeling
Attack paths / exposure chains
Security best practices for modern on prem and cloud systems
Backend / Systems Engineering: Ability to build production-grade systems with clean architecture and strong engineering standards.
Production Ownership: Comfortable owning systems in production - observability, debugging, performance, and reliability.
Team Mindset: Strong communication skills, high ownership, and the ability to thrive in a fast-paced, build-first startup environment.
Advantage
Experience with Vulnerability Management, CVEs, scanners, asset inventory, risk scoring, and remediation workflows.
Experience with Exposure Management concepts (attack surface, reachable assets, blast radius, privilege paths).
Experience with cloud security.
Experience with high-scale data ingestion and normalization pipelines.
Familiarity with graph-based security modeling (attack graphs, exposure graphs, reachability analysis).
Experience with high-performance data systems (ClickHouse / Postgres / graph databases).
Strong debugging skills and ability to optimize complex distributed systems.
Cloud & Kubernetes: Experience working with cloud-native systems and Kubernetes environments.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8802450
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
7 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
As a Senior Cloud Security Engineer at our company, you'll own the security controls customers actually trust us to ship. Every major cloud - AWS, Azure, GCP, OCI - gives you a partial set of our company controls, and none of them cover what an enterprise security team really needs. You'll close the gaps: research what each cloud exposes, design controls that produce a consistent security outcome across all of them, and tailor each one to the provider it runs on. You'll work end-to-end. Research, threat model, design, infrastructure-as-code, rollout, production validation. No handoffs, no thrown-over-the-wall designs
Key Responsibilities
As a Senior Cloud Security Engineer, you'll take full ownership of security controls - from concept to delivery.
You'll engage with customers, align with our strategic direction, and identify what you and the team should build next.
You'll ship MVPs directly in production with real customer environments, iterate quickly based on feedback, and ensure the long-term success of your work.
And yes - you'll also jump in as a Security Hero, helping customers understand what their cloud is doing and what to do about it.
Requirements:
6+ years of experience in cloud security, security engineering, or offensive security.
You've shipped real controls or built real attacks against at least two of AWS, Azure, GCP, and OCI. You can speak fluently about IAM, resource policies, network
controls, and audit logs on the clouds you've worked with - not because you read about them, but because you've worked on them in production. Certifications are notwhat we're looking for.
You think like a product engineer - focused on shipping security controls that actually move customer posture, not perfect designs that never leave the doc. You
care about impact alongside craft.
You love getting things done. Engineers at our company enjoy a high degree of autonomy to choose what to build next - so being proactive and taking ownership is key.
You're comfortable enough in CloudFormation, Terraform, and ARM to prototype your own designs instead of waiting on someone else. And when a cloud provider tells you something is impossible, you don't take that as the final answer.
And most importantly, you're ready to do the best work of your career. With strong distribution, solid financial backing, and an exceptional team, there's no better
place to see how far you can go.
Experience with reactive remediation engines (Cloud Custodian, Stratus Red Team, Prowler, or in-house equivalents), workload identity federation across clouds, or
multi-tenant / MSP security platforms is a plus.
Collaboration Skills: Excellent communication and teamwork abilities, with experience working in cross-functional teams - partnering with product, design, backend, and frontend engineers on every control you ship.
Security Craft: Strong focus on auditability and explainability - every action a control takes should have a before/after, every automation should self-filter its own changes; every recommendation should be defensible.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8801650
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
26/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
Were looking for a Technical Product Associate to join our Product team and help expand the power. In this role, youll play a key role in protecting our customers' cloud environments from cyber threats. Your work will directly contribute to customer success and push the boundaries of cloud security. This isnt just a job, its a unique growth opportunity. Youll gain hands-on experience that can pave the way for exciting career paths in product management, security research, or development
Responsibilities:
Innovate and develop advanced detection mechanisms, algorithms, and automated solutions to accurately identify and classify technologies within cloud environments, enhancing our vulnerability management offering.
Analyze cloud services, APIs, and log payloads to ensure compliance with industry standards and customer requirements.
Stay current with the latest technologies and industry trends.
Implement customer requests and industry standards to position us as a market leader.
Collaborate with our Research and Backend teams.
Requirements:
Minimum Qualifications:
Hands-on proficiency in Linux, Windows, Python, Bash, Docker, Kubernetes, PowerShell, and a strong understanding of the OSI model.
Solid knowledge of networking concepts and cloud infrastructure.
Proven experience in applying cybersecurity best practices to real-world scenarios.
Preferred Qualifications:
Self-motivated and capable of working both independently and collaboratively within a team.
Strong communication skills.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8798611
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for a passionate Lead or Senior Offensive Security Engineer for our growing Offensive Security Automation team. This hands-on offensive security position requires a cyber security professional whose primary focus is to perform security assessments and vulnerability research using internal AI tools using frontier models, with a focus of designing and developing the AI automation and autonomous harnesses together with the team.
This is a role for someone who can perform offensive security testing at scale, combining deep security expertise with the judgment to direct and improve AI-driven tooling.

Key Responsibilities:

Offensive Security & Vulnerability Research (primary)

Perform security assessments and vulnerability research across web applications, APIs, and cloud/hybrid infrastructure, using internal AI tools and frontier models to scale coverage and depth that you will develop.

Make sure our internal solution can perform exploitation, vulnerability chaining, business logic and authorization abuse, privilege escalation, and lateral movement, beyond what automated tooling alone can find.

Run end-to-end engagements: scoping, execution, reporting, and remediation guidance.

Discover systemic/architectural weaknesses, not just isolated bugs, and drive secure-by-default fixes.

Partner with engineering, security architecture, and detection & response teams to close root causes and validate control effectiveness.

Produce high-quality technical reports with clear exploitation paths and prioritized remediation.


AI Automation & Autonomous Harness Design (secondary)

Develop the automation and autonomous harnesses that direct frontier models to perform offensive security testing continuously and at scale.

Design agent-based workflows that reason over large data, plan for risk signals, business logic and execute multi-step offensive testing that will adapt based on results, recon, hypothesis ranking, chaining of bugs exploitation, AI-Driven assessments, and reporting.

Establish human-in-the-loop checkpoints so automation scales offensive coverage without sacrificing safety or precision.

Translate your own tradecraft into reusable, explainable automation that the team can run and build on.
Requirements:
Required Qualifications:

6+ years (Senior) / 8+ years (Lead) hands-on offensive security experience such as pentesting, red teaming, or app/security research, with proven complex engagement delivery.

Deep, must-have vulnerability knowledge in cloud and web application security: OWASP Top 10+ vulnerability classes, identity/authz attack vectors, and cloud/hybrid attack surfaces.

Hands-on experience using internal AI tools and frontier models to perform or accelerate security testing, not just conceptual familiarity!

Software engineering fundamentals: System design, API integration, working with distributed services and technologies.

Ability to write custom scripts/tooling/payloads and contribute to building automation and autonomous harnesses including prompt engineering.

Excellent written and verbal communication skills.


Preferred Qualifications:

Experience with agentic frameworks, prompt optimization, agent evaluation, or lightweight model fine-tuning.

Published security research, CVEs, or conference talks.

Familiarity with MITRE ATT&CK/ATLAS and offensive AI/ML attack surfaces (prompt injection, agentic privilege abuse).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8798562
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
26/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for a Security Engineer - Product to spread the power. The ideal candidate will have experience performing security reviews, vulnerability management, and detection and response operations in cloud-native environments. Youll get to collaborate with our software development and DevOps teams to secure our products, CI/CD infrastructure, and production infrastructure. Youll also have the opportunity to influence our product roadmap by utilizing our platform to assess, monitor, and harden our environments.
Responsibilities:
Lead threat modeling and security review exercises across our production and CI/CD environments - identifying and mitigating risks in our products and the cloud services that support them.
Drive vulnerability management and remediation efforts - prioritizing issues, implementing mitigations, and designing strategic preventative controls.
Extend our detection and response capabilities - building scalable solutions to identify malicious activity, triage alerts, and investigate and remediate incidents.
Collaborate with our Federal team - extending our DevSecOps and Product Security practices to our FedRAMP environment and ensure it meets key security requirements.
Build deep functional partnerships with our engineering and operations teams - helping them deliver secure-by-design solutions.
Requirements:
Minimum Qualifications
5+ years of experience in security engineering or security operations work in cloud environments.
Experience with AWS platforms and services (equivalent experience in Azure and GCP also considered), Kubernetes (AWS EKS), and container infrastructure.
Experience with IAM, managing cloud identities at-scale, and secure development and application of IAC solutions (Terraform, Helm).
Experience with cloud-native observability and management tools.
Experience with automation and tooling development in one or more: Python, Go, Shell, HCL, Rego.
Preferred Qualifications:
Bachelor's degree in computer science or a related field and / or candidates with equivalent job experience in lieu of a degree.
Experience working with remote, globally distributed teams.
Experience working in organizations that develop software and / or operate managed infrastructure and technology services for their own customers.
Experience with CNAPP, CSPM, or CIEM solutions.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8798565
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
26/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
Were looking for a top-notch Detection Software Engineer to join our Threat Research team and further develop the Runtime Sensor. In this role, you will work on a world-class runtime security solution affecting some of the largest cloud workloads, collaborating closely with engineering and research to enable new and better threat detection capabilities.
Check out some of our recent research:
PostgreSQL Cryptomining
SeleniumGreed Cryptomining Exploit Attack Flow & Remediation Steps
PyLoose: First Python-based Fileless Attack on Cloud Workloads
Responsibilities:
Work on a world-class runtime security solution affecting some of the largest cloud workloads.
Work closely with engineering and research to enable new and better threat detection capabilities.
Build and extend our research infrastructure, automated testing infra and release processes.
Conduct research and develop new detection capabilities, from concept to implementation.
Constantly shift things from an art to a science - make the hard things easy, fast and scalable.
Quickly address gaps and changes when needed. Bias towards action.
Analyze, debug and solve problems in test, staging and production environments.
Create and enforce best practices and security policies.
Work with customers in response to requests and questions when needed.
Requirements:
Minimum Qualifications
5+ years of experience in software engineering.
3+ years of experience in cloud-based development. Familiarity with cloud services, Kubernetes, cloud environment architecture, and the major cloud providers (AWS, GCP, Azure).
Deep knowledge of OS internals (Windows/Linux) and networking.
Experience delivering real-world impact on products affecting customers.
The ability to learn independently, to be self-driven and goal-oriented.
Preferred Qualifications:
Experience with runtime security products.
Hands-on experience in a detection engineering role/malware analysis/reverse engineering/vulnerability research.
Familiarity with notable threat actors and threat intelligence analysis.
IR/red-team/threat-hunting experience.
Familiarity with the following languages / tools: Python, PowerShell, Linux shell scripting, Terraform, CircleCI, Github Action.
Excellent communication and teamwork skills.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8797741
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
25/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
our company's attack surface spans several distinct businesses: the engine and editor developers build on, a wide portfolio of cloud products and services, a large monetization business, and a growing set of AI-assisted creation tools. Code built with our company runs everywhere from a developer's workstation to billions of end-user devices, so targets range from native binaries to distributed cloud systems to AI pipelines, and findings here matter.
This role brings an attacker's mindset to that landscape: penetration testing and red team engagements built on complex attack chains. You would combine manual techniques with automation and tooling you develop as part of your craft, extending your reach across the company ecosystem.
What you'll be doing
Plan and execute objective-based penetration tests and red team engagements across our company's products, cloud services, and infrastructure
Find and validate exploitable vulnerabilities, chain them into realistic attack paths, and demonstrate impact with reproducible proofs of concept
Develop the automation and tooling that extend the team's offensive reach across the company ecosystem
Run joint exercises with the SOC and detection engineering teams to validate telemetry and improve detections
Deliver clear findings to engineering teams and surface recurring risk patterns to security leadership.
Requirements:
5+ years of hands-on experience in offensive security, penetration testing, or red teaming
Proven ability to find, exploit, and chain vulnerabilities across applications
Deep understanding of how modern web applications and APIs break
Hands-on experience assessing cloud environments (AWS or GCP)
Strong ability to develop and validate offensive tooling
You might also have
Adversary emulation experience: designing engagements around real threat actor TTPs
Security research in real-time 3D, game engines or SDKs, or mobile runtimes
Experience attacking CI/CD and build systems.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8796320
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
25/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
our company builds the real-time 3D platform that powers games and interactive experiences, along with tools used across ads, automotive, aerospace, architecture, retail, energy, and government. Our Product Security team keeps that platform, and the software built on top of it, safe for millions of creators and their users.
We are seeking a Senior Application Security Engineer with profound expertise in application security. In this role, you will execute fundamental AppSec tasks, including threat modeling, secure design reviews, code evaluation, and vulnerability management, leveraging both manual methods and advanced AI tooling. You will also help secure the AI systems our company itself is building, including agentic tools and AI-assisted development workflows.
You will work directly with engineering teams across the US and EMEA.
What you will do
Lead threat modeling, secure design reviews, and penetration testing for our company products and services, from the engine and editor to cloud services, APIs, and internal platforms.
Perform deep code review and manual testing on high-risk systems, using AI-assisted review processes and covering areas automated tooling cannot fully reach.
Build and operate security automation. Use and extend AI-assisted tooling for continuous code review, finding triage, and automated penetration testing, and step in where human judgment is required.
Secure our company's AI and agentic systems. Assess AI-native products, LLM integrations, and agent workflows for the risks specific to them.
Partner with engineering teams to drive remediation, turning recurring findings into guardrails, secure defaults, and paved paths.
Investigate and respond to application security incidents, including root cause analysis and durable corrective action.
Contribute to our company's secure development lifecycle and to compliance work.
Requirements:
5+ years in application security, with a track record on complex, large-scale systems.
Strong command of secure coding and common vulnerability classes (OWASP Top 10 and beyond)
Hands-on secure development experience across several languages.
Practical penetration testing, security assessment, and vulnerability management experience with standard tooling (SAST, DAST, SCA, and manual techniques).
Experience with Cloud security (GCP, AWS, or Azure).
Working knowledge of authentication, authorization, cryptography, and secure architecture patterns.
Clear technical communication for both engineers and non-technical partners across regions.
Preferred Qualifications
Experience in the technology, gaming industry or Ad tech.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8796309
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
25/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Senior Product Security Engineer to own and evolve our Application and Cloud Security programs end-to-end. You'll embed security early in the development lifecycle, drive automation-first security practices across engineering, and partner closely with DevOps and product teams to keep our platform secure by design - from code to cloud.

What Youll Do
Responsibilities:
Own, maintain, and continuously improve the Secure Design Review process, ensuring security considerations are integrated early in the development lifecycle.
Develop, implement, and maintain our Application Security Program, including controls, standards, developer enablement, and automation - managing SAST and DAST tooling, integrations, alerting, and program-wide reporting.
Develop and maintain our Cloud Security Program, defining guardrails, policies, and automated controls for secure-by-default cloud deployments, including CSPM tooling, findings triage, and alignment with internal risk and compliance processes.
Monitor and enforce SDLC security controls, ensuring consistent application of secure development practices across all engineering teams.
Partner with DevOps to design, implement, and maintain a fully secured CI/CD pipeline, embedding security checks, guardrails, and automated gates throughout build, test, and deployment stages.
Collaborate closely with engineering teams to deliver actionable guidance, model threats, advise on architecture, and support secure implementations.
Identify gaps in product, application, and cloud security posture, and drive end-to-end remediation and vulnerability management campaigns.
Define and track KPIs, metrics, and reporting for application and cloud security health.
Drive automation-first approaches to product and cloud security, reducing friction and enabling fast, safe development, while promoting a culture of security and developer empowerment.
Requirements:
5+ years of experience in Engineering / Security Engineering, including 3+ years in an Application Security or Product Security focused role.
2+ years of experience managing enterprise-wide security projects, with strong project planning and organizational skills.
Proven experience leading AppSec-focused Security Review programs and CloudSec-focused Secure Design reviews.
Hands-on experience owning the migration or deployment of AppSec tooling (SAST, DAST, ASPM, or similar).
Strong proficiency with Kubernetes, Helm, and Terraform.
Strong proficiency with Python and TypeScript.
A builder's mindset - comfortable developing in-house solutions when faced with a capability gap.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8796083
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking an Incident Response Engineer to join the IR team. This technical role focuses on active investigation, threat mitigation, and the continuous improvement of the security organizations posture through detection engineering and automation development.
The successful candidate will be responsible for the full lifecycle of security incidents, from initial triage to recovery. Beyond reactive response, this role involves tuning SIEM correlation rules and developing SOAR workflows to increase operational efficiency.
What Youll Be Doing:
Incident Management: Execute the IR lifecycle (Triage, Containment, Eradication, Recovery) for complex security events.
Technical Investigation: Perform root cause analysis and forensic examination across Windows, Mac, and Linux environments.
Detection & Tuning: Collaborate with the IR team to create, test, and tune SIEM rules and dashboards to reduce false positives and improve visibility.
Automation Engineering: Build and refine SOAR playbooks and automated response actions to streamline repetitive investigation tasks.
Cloud Security: Monitor and mitigate cloud-native threats across Azure, AWS, and GCP environments.
Requirements:
Experience as a SecOps/IR Analyst or Engineer with a heavy focus on active investigation.
Deep understanding of the Incident Response lifecycle (Triage, Containment, Eradication, Recovery).
Hands-on experience handling and managing security alerts, performing root cause analysis, and leading investigations.
Experience working across cloud providers (Azure, AWS, GCP) to identify and mitigate cloud-native threats.
Strong knowledge of operating systems (Mac, Windows, Linux) and their respective artifacts.
Proficiency with Splunk or other SIEM platforms for log analysis and threat hunting.
Experience with XSOAR or other security automation tools from an end-user/analyst perspective.
Strong knowledge of security technologies, including EDR, Mail Relay, Vulnerability Scanning, Secure Access, and MDM.
Scripting experience with Python or Bash to assist in data parsing and investigation tasks.
Nice to Have:
Detection Engineering: Ability to build and improve SIEM rules, correlations, and dashboards.
Automation Development: Experience developing new SOAR workflows, automated actions, and response playbooks.
Technical Literacy: Familiarity with REST APIs and Regex for advanced querying and tool integration.
Container Security: Familiarity and experience with K8S (Kubernetes).
Consultative Skills: Ability to guide best practices in Cloud Security and SIEM operations.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8794710
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות שנמחקו