רובוט
היי א אי
stars

תגידו שלום לתפקיד הבא שלכם

לראשונה בישראל:
המלצות מבוססות AI שישפרו
את הסיכוי שלך למצוא עבודה

SOC/SIEM

מסמך
מילות מפתח בקורות חיים
סימן שאלה
שאלות הכנה לראיון עבודה
עדכון משתמש
מבחני קבלה לתפקיד
שרת
שכר
משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP

חברות מובילות
כל החברות
כל המידע למציאת עבודה
כל מה שרציתם לדעת על מבחני המיון ולא העזתם לשאול
זומנתם למבחני מיון ואין לכם מושג לקראת מה אתם ה...
קרא עוד >
לימודים
עומדים לרשותכם
מיין לפי: מיין לפי:
הכי חדש
הכי מתאים
הכי קרוב
טוען
סגור
לפי איזה ישוב תרצה שנמיין את התוצאות?
Geo Location Icon

משרות בלוח החם
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
לפני 7 שעות
דרושים בQpoint Technologies
מיקום המשרה: מספר מקומות
סוג משרה: משרה מלאה
חטיבת הטכנולוגיות של חברת מקורות מגייסת נותן/ת שירות בודד/ת במשרה מלאה לתפקיד בקר/ית אבטחת מידע ( SOC ).
הזדמנות מצוינת להשתלב בארגון תשתית לאומי מוביל, לעבוד במערך אבטחת מידע מתקדם ולנהל אירועי סייבר בזמן אמת.
תיאור התפקיד:
ניטור, זיהוי וניתוח אירועי והתרעות אבטחת מידע בזמן אמת ממערכות ה- SIEM ומוקד הניטור המרכזי.
אבחון וטיפול באירועי סייבר, תיעודם, או ניתובם לצוותי תשתיות המחשוב ביחידת מערכות המידע ומעקב עד לסגירת האירוע.
תפעול שוטף של מערך שליחת הלוגים וההתרעות למוקדי הניטור וההתרעה של החברה.
ליווי וסיוע לצוותי התשתיות, אנשי התמיכה ומשתמשי המערכות בארגון בכל הקשור לאבטחת מידע.
דרישות:
ניסיון מקצועי: לפחות 3 שנות ניסיון כאיש בקרת מערכות ניטור ואבטחת מידע ( SOC / SIEM ).
השכלה והסמכה: תעודת הסמכה בקורס אבטחת מידע בהיקף של 100 שעות לפחות (מהארץ או מחו"ל).
ידע וניסיון במערכות אבטחת מידע שונות (Firewall, AV, IDS וכד').
היכרות מעמיקה עם מערכות הפעלה Windows.
היכרות עם טופולוגיית רשתות והבנה בסיסית בפרוטוקולי תקשורת. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8804472
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 7 שעות
דרושים בCalanit by One
מיקום המשרה: פתח תקווה
סוג משרה: משרה מלאה
אנחנו מחפשים מוביל/ה מקצועי/ת שיצטרף/תצטרף לצוות שלנו ויקח/תקח חלק משמעותי בתפעול ותחזוקת הסביבה הטכנולוגית שלנו.
הובלת אירועים מערכתיים, תחקור תקלות מורכבות ועבודה בסביבה טכנולוגית מתקדמת ורבת מערכות. מה אנחנו מחפשים?
דרישות:
ניסיון במערכות ניטור: לפחות 3 שנות ניסיון - חובה!
מומחיות ב-Splunk: ניסיון של שנתיים לפחות בכתיבת שאילתות SPL, בניית דשבורדים וניתוח לוגים - חובה!
סביבה היברידית: ניסיון בעבודה עם תשתיות ענן (AWS, Azure) לצד סביבות On-Premises.
מערכות הפעלה : שליטה ב-Windows ו- Linux.
וירטואליזציה: ניסיון בעבודה עם VMware ו-Nutanix.
Active Directory: הבנה עמוקה בארכיטקטורה, Group Policy, DNS, Kerberos ופתרון תקלות אימות רוחביות. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8720890
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 7 שעות
דרושים בExtreme Group
מיקום המשרה: פתח תקווה
תחומי אחריות:
תחקור אירועים ומתן מענה לאסקלציה פנימית עבור Tier 1
ביצוע חקירות מקיפות של התראות אבטחה מורכבות, אירועי פריצה וחשדות לפעילות זדונית (Malware, Phishing, Unauthorized Access)
ביצוע ציד איומים יזום (Proactive Threat Hunting)  בארגון תוך התמקדות בזיהוי פעילות זדונית בחתימה נמוכה ובאנומליות התנהגותיות באמצעות ניתוח סטטיסטי מתקדם, קורלציה של אירועים לאורך זמן ויישום טקטיקות זיהוי מבוססות MITRE ATT&CK
ביצוע ניתוח פורנזי בסיסי של תחנות קצה (Endpoint Forensics) וניתוח תעבורת רשת (Network Traffic Analysis) לזיהוי וקטור החדירה והיקף הפגיעה
ניתוח וטיוב חוקות במערכות ה- SIEM /XDR לטובת צמצום התראות False Positives ושיפור יעילות המערכות.
זיהוי פערים בתהליכי העבודה ב- SOC  ויזום פרויקטים לשיפורם
חניכה (Mentoring) והדרכה מקצועית לאנליסטים ברמת Tier 1
דרישות:
דרישות חובה מקצועיות (השכלה, ניסיון):
2-3 שנים כ- SOC Analyst (רצוי ניסיון קודם כ-Tier 1 או בתפקיד סיסטם/רשתות).
ניסיון מוכח בתחקור, ניתוח ותגובה לאירועי אבטחת מידע
ניסיון מוכח בעבודה וחקירה בסביבת multi-cloud (AWS/Azure)
ניסיון מעשי מול מערכות אבטחה, כגון: FW, IPS, WAF, XDR/EDR, SIEM
הבנה מעמיקה של פרוטוקולי תקשורת (TCP/IP, DNS, HTTP/S) וניתוח תעבורת רשת
יכולת ביצוע ניתוח סטטי ודינמי בסיסי של קבצים חשודים
יכולת כתיבת דוחות טכניים (בעברית ובאנגלית)

יתרונות:
יכולת כתיבה ב- Python  או PowerShell לאוטומציה של תהליכי חקירה
שליטה במערכות Sentinel, Splunk  או Palo Alto Cortex
יכולת כתיבת שאילתות מורכבות ב-KQL/SPL המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8724132
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 8 שעות
דרושים בBDO
מיקום המשרה: תל אביב יפו והרצליה
BDO מגייסת SOC Analyst
ההזדמנות להצטרף לצוות סייבר מקצועי ודינמי בתפקיד משמעותי
עם עבודה על טכנולוגיות מתקדמות מבית Microsoft
מיקום: מרכז, היברידי

מה נדרש לתפקיד:
ניסיון של לפחות שנתיים בעבודה ב- SOC
שליטה במערכות Microsoft Security בדגש על Sentinel
ניסיון בניתוח אירועי אבטחת מידע ותגובה לאירועים
אנגלית ברמה טובה
הסמכות Microsoft - יתרון משמעותי
סיווג ביטחוני בתוקף - יתרון
מתאים למועמדים שמחפשים סביבת עבודה טכנולוגית, מקצועית ומאתגרת עם אפשרות להתפתח ולהעמיק בעולם הסייבר.
דרישות:
מה נדרש לתפקיד:
ניסיון של לפחות שנתיים בעבודה ב- SOC
שליטה במערכות Microsoft Security בדגש על Sentinel
ניסיון בניתוח אירועי אבטחת מידע ותגובה לאירועים
אנגלית ברמה טובה
הסמכות Microsoft - יתרון משמעותי
סיווג ביטחוני בתוקף - יתרון
מתאים למועמדים שמחפשים סביבת עבודה טכנולוגית, מקצועית ומאתגרת עם אפשרות להתפתח ולהעמיק בעולם הסייבר. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8660140
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
לפני 8 שעות
דרושים במלם תים
מיקום המשרה: פתח תקווה
סוג משרה: משרה מלאה
לצוות SOC של קבוצת Malam Team דרוש/ה SOC Tier 2
התפקיד כולל חקירה מעמיקה ותגובה לאירועי סייבר מורכבים, טיפול באירועים המוסלמים מ-Tier 1, ניתוח לוגים, ביצוע פעולות Response ושיפור מתמיד של מערכות ה- SOC.
עבודת hands-on עם QRadar, טיוב ובניית חוקי ניטור וקורלציות, חיבור מקורות לוג, Parsing ו-DSM, לצד אוטומציה וייעול תהליכים.
העבודה במשרה מלאה בימי א-ה בשעות 8-17 / 9-18.
דרישות:
- שנה ומעלה ניסיון בתפקיד SOC Tier 2
- ניסיון מוכח בעבודה עם IBM QRadar - חובה
- ניסיון עם מערכות EDR כגון SentinelOne / Microsoft Defender / CrowdStrike
- ניסיון ב-Log Sources, Parsing, DSM ונרמול נתונים ב-QRadar
- ניסיון בטיוב חוקים, בניית קורלציות והחרגות
- ניסיון ב-XSOAR ופיתוח Playbooks - יתרון
- ידע ב- Python / PowerShell - יתרון
- ניסיון בסביבת MSSP / SOC מנוהל - יתרון המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8799606
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 8 שעות
דרושים בMertens – Malam Team
אנחנו מחפשים סוקר.ת PT חד.ה ויסודי.ת, עם יכולת מעשית לזהות חולשות, לנתח סיכונים ולהנגיש ממצאים מקצועיים לצוותי פיתוח וטכנולוגיה.
בתפקיד זה תבצע.י מבדקי חדירה 100% מהזמן במערכות Web ו-Mobile, בתשתיות, בסביבות AWS ו-Azure ובמערכות AI.
העבודה משלבת מתודולוגיות ותקנים מרכזיים ובהם OWASP, MITRE, NIST ו-PCI-DSS, לצד ביצוע סקרי סיכונים, בדיקות תאימות לרגולציה וכתיבת דוחות מקצועיים.
דרישות:
לפחות 3 שנות ניסיון בביצוע מבדקי חדירה למערכות ולאפליקציות Web ו-Mobile - חובה.
נכונות לעסוק בביצוע מבדקי חדירה לאורך 100% מהתפקיד - חובה.
ידע מעמיק במתודולוגיות תקיפה ובתקנים OWASP, MITRE ו-NIST - חובה.
הבנה בפרוטוקולי TCP/UDP, DNS, IP ו-HTTPS ובטכניקות תקיפת רשת - חובה.
היכרות עם AWS ו-Azure וניסיון בביצוע מבדקי חדירה בסביבות ענן - יתרון.
שליטה ב-PowerShell, ב-Bash, ב- JavaScript וב- Python, או ניסיון בעבודה בארגון פיננסי - יתרון.
זה הזמן להגיש קורות חיים דרך Mertens Malam Team, החברה הגדולה והמובילה במשק לגיוס טכנולוגי, ולבנות ולקדם איתנו את הקריירה הטכנולוגית שלכם. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8816760
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
לפני 9 שעות
דרושים בpeax talent
לארגון ממשלתי גדול ומוביל טכנולוגית בירושלים.  דרוש/ה בקר/ית SOC!
השתלבות בצוות אבטחת מידע וסייבר, הכוללת תפעול ותחזוקת מערכות שליטה ובקרה, זיהוי ותגובה לאירועי סייבר, עבודה עם מערכות SIEM /SOAR/XDR והובלת משימות מקצה לקצה.
דרישות:
דרישות המשרה:
ניסיון של 3 שנים ומעלה בתפקיד בקר/ית SOC או תפקיד דומה.
ניסיון בזיהוי, ניטור ותגובה לאירועי סייבר ובתפעול מערכות SIEM /SOAR/XDR.
ניסיון בעבודה עם פתרונות אבטחת מידע מתקדמים בסביבות On-Prem וענן.
ניסיון בבניית קורלציות, כתיבת Rules ושיפור יכולות הניטור וההגנה.
יתרון לידע ב- Linux, VMware, Microsoft/Group Policy, Portnox ומערכות הלבנה. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8751639
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 10 שעות
דרושים בוואן פתרונות טכנולוגיים בע"מ
מיקום המשרה: מספר מקומות
סוג משרה: משרה מלאה
- אחריות לטיפול מקצועי בחשד לאירועי סייבר
- פיקוח על הפעילות השוטפת של מרכז הניטור וניהול משימות של אנליסטים T1
- מעקב רציף על האירועים / חשד לאירועים
- ניהול משמרות ניטור
- הקצאה וניהול משימות במרכז הניטור
- הפעלת צוותים לניהול תגובה לאירועי סייבר
- ניהול ומעקב פערי ניטור מול הצוותים הרלוונטיים
דרישות:
לפחות שנה כאנליסט ב- SOC
לפחות שנה כמנהל צוות ב- SOC או כמנהל צוות תגובה
ניסיון בהגדרות חוקים במערכות ה- SIEM (יתרון ל-SPLUNK)
יכולת הובלה מקצועית
יכולת ראייה בוגרת
המשרה מיועדת לנשים ולגברים כאחד. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8165491
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 10 שעות
דרושים באלעד מערכות
מיקום המשרה: ירושלים
הזדמנות להוביל תחום טכנולוגי מרכזי בעולמות ה- SIEM, ה-Observability והסייבר, בסביבה מתקדמת המשלבת ענן, אוטומציה ו-AI ועבודה עם מערכות מורכבות ורחבות היקף.

קצת על התפקיד:
הובלה מקצועית של תכנון, הקמה, שדרוג ותחזוקה של מערכי SIEM ומערכי ניהול לוגים ( data Pipeline) מקצה לקצה
גיבוש והובלת תפיסת איסוף הלוגים, לרבות אגריגציה, נורמליזציה, אופטימיזציה ואגירת מידע ממגוון מקורות
תכנון ופיתוח אוטומציות וסקריפטים ושילוב כלי וסוכני AI לייעול תהליכי ניטור, תחקור ותגובה לאירועים
תכנון מערכות ניטור והתראה, בחינת טכנולוגיות הגנה, ביצוע הקשחות וליווי הטיפול באירועי סייבר
הובלת פרויקטים מורכבים של שדרוג, הגירה והטמעת טכנולוגיות SIEM וסייבר בסביבות ענן AWS ו-GCP ובסביבות היברידיות
פתרון תקלות עומק, ביצוע אופטימיזציה לביצועים ולעלויות והתוויית סטנדרטים מקצועיים בתחום
עבודה בשיתוף צוותי ענן, סייבר, תשתיות ופיתוח ומתן ייעוץ והנחיה מקצועית לצוותים וממשקים מרובים
דרישות:
מה אנחנו מחפשים?
לפחות 4 שנות ניסיון רלוונטי, כולל ניסיון מעשי בתכנון, ניהול ותפעול מערכי SIEM וניהול לוגים בסביבות מורכבות ורחבות היקף
ניסיון בהובלת data Pipelines, איסוף מידע ממקורות מרובים, אגריגציה, נורמליזציה ואופטימיזציה של לוגים
ניסיון בכתיבת סקריפטים ואוטומציות, יתרון לניסיון בשילוב כלי וסוכני AI בתהליכי ניטור ותחקור
ניסיון מעשי באבטחת מידע וסייבר, לרבות מערכות ניטור והתראה, מוצרי הגנה, הקשחות וליווי אירועי סייבר
ניסיון בסביבות AWS ו/או GCP והיכרות מעמיקה עם ארכיטקטורת לוגים ואבטחה בענן
ידע בתקשורת, פרוטוקולי רשת, ארכיטקטורה מאובטחת ומערכות הפעלה Linux ו-Windows
יכולת הובלה טכנולוגית, ראייה מערכתית רחבה, הנעת תהליכים ועבודה אפקטיבית בסביבה מרובת ממשקים
תואר ראשון רלוונטי בתחומי המחשוב/הטכנולוגיה או השכלה והכשרות מקצועיות מתאימות בהתאם לדרישות התפקיד

משרה מלאה בירושלים במודל היברידי גמיש 

אם יש לך ניסיון עמוק בעולמות ה- SIEM וה-Observability ורצון להוביל מערכות המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8833931
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 11 שעות
דרושים בתיגבור 6
מיקום המשרה: לוד
תנאים נוספים:קרן השתלמות
לארגון ביטחוני מוביל בלוד דרוש/ה אנליסט/ית בקרת סייבר ( SOC ) להצטרפות לצוות מקצועי ודינמי.
התפקיד כולל עבודה במערך SOC הפועל במתכונת 7/24, כולל משמרות בשעות לא שגרתיות, סופי שבוע וחגים.
תחומי אחריות:
ניטור, זיהוי וניתוח אירועי סייבר ואבטחת מידע.
יישום ותפעול תהליכי הגנת סייבר.
התקנה, ניהול, תפעול ותחזוקה של מוצרי הגנת סייבר, לרבות Anti-Virus, Firewall, IPS, DLP, בקרת גישה והגנת התקנים ניידים.
ביצוע פעולות אבטחה שוטפות ומתן מענה לאירועי אבטחת מידע.
עבודה עם מערכות וכלי אבטחת מידע כחלק מתהליכי הניטור והבקרה.
עבודה כחלק מצוות SOC ובממשק עם גורמים מקצועיים נוספים בארגון.
דרישות:
דרישות התפקיד:
    ניסיון של שנה לפחות בתפקיד SOC - חובה.
    ניסיון בעבודה עם לפחות אחת מהמערכות: SIEM, EDR או XDR - חובה.
    השכלה רלוונטית בתחום הסייבר / אבטחת מידע - חובה.
    אנגלית ברמה גבוהה.
    יכולת עבודה בסביבה מרובת משימות ותחת לחץ.
    יחסי אנוש מצוינים ותודעת שירות גבוהה.
    יכולת עבודה עצמאית ובצוות.
    מוטיבציה גבוהה, סקרנות ויכולת למידה עצמית.
היקף העבודה:
עבודה במשמרות במתכונת 7/24, כולל לילות, סופי שבוע וחגים.
סביבת העבודה:
הצטרפות לצוות מקצועי ודינמי, בסביבה טכנולוגית ומאתגרת, עם אפשרויות ללמידה ולהתפתחות מקצועית בתחום הסייבר. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8811899
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 11 שעות
דרושים באוקטאלי אינטגרציה בע"מ
מיקום המשרה: ירושלים
סוג משרה: משרה מלאה
מיקום: ירושלים - הר חוצבים
היקף: משרה מלאה

לחברה ממשלתית דרוש/ה SOC Analyst Tier 2 / מיישם /ת הגנת סייבר לתפקיד מקצועי ומאתגר הכולל חקירה וניתוח של אירועי סייבר, ניטור מערכות אבטחה ומתן מענה לאירועים מורכבים בסביבה ארגונית.
מה כולל התפקיד?
חקירה עצמאית ומעמיקה של אירועי סייבר.
ניתוח התראות אבטחה וקורלציה בין מקורות מידע שונים.
ביצוע Threat Hunting וזיהוי איומים.
Triage של אירועים, קביעת חומרה, Scope ו-Impact.
ביצוע פעולות Mitigation ו-Containment.
עבודה עם מערכות SIEM, SOAR, EDR ו-XDR.
חקירת אירועים בסביבות Endpoint, Identity, Network ו-Cloud.
עבודה עם IOCs ו-TTPs.
זיהוי וטיפול באירועי אבטחה והסלמת אירועים מורכבים ל-Tier 3 ולצוותי Incident Response.
תפעול, קונפיגורציה ותחזוקה של מוצרי אבטחת מידע.
כתיבת דוחות אירוע ותיעוד פעולות החקירה והטיפול.
דרישות:
דרישות התפקיד
לפחות 3 שנות ניסיון בתחום הגנת הסייבר.
ניסיון כ- SOC Analyst Tier 2 או בתפקיד מקביל.
ניסיון בחקירה וניתוח של אירועי סייבר באופן עצמאי.
ניסיון מעשי עם מערכות SIEM / SOAR / EDR / XDR.
היכרות טובה עם רשתות תקשורת, מערכות הפעלה ותשתיות IT.
היכרות עם Network Security ו-Endpoint Security.
ניסיון בעבודה עם חשבונות והרשאות, בקרת גישה וניטור מערכות.
אנגלית ברמה גבוהה.
יכולת עבודה עצמאית ובצוות, למידה מהירה ותפקוד בתנאי לחץ.
ניידות ורכב - חובה.
נכונות לזמינות במערכות קריטיות, כולל כוננויות וזמינות 24/7 לפי הצורך.

השכלה
תואר בתחום המחשבים / מערכות מידע / אבטחת מידע - יתרון.
ניתן להתאים גם למועמדים ללא תואר בעלי הכשרות מקצועיות משמעותיות בתחום הסייבר או רקע טכנולוגי רלוונטי. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8823920
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 12 שעות
דרושים בוראסיטי
מיקום המשרה: רמת גן
סוג משרה: משרה מלאה
מיישם Splunk / data Analyst
דרישות:
שנתיים ניסיון בתפקידי תמיכה טכנית - חובה
היכרות עם עולם תשתיות ה-IT בארגוני Enterprise - חובה
ניסיון במערכות הפעלה Linux / Unix - חובה
ניסיון עם Splunk (כתיבה ב-SPL) - יתרון משמעותי
ניסיון בכתיבת סקריפטים Python, Bash וכו' - יתרון משמעותי
ניסיון בפלטפורמות Big Data אחרות כגון Elastic - יתרון
ניסיון בסביבות ענן AWS/GCP/Azure - יתרון
כישורי SQL חזקים וניסיון בכתיבת שאילתות מורכבות - יתרון
יכולת תכנות ב- JAVA / JavaScript - יתרון
סיווג בטחוני - יתרון המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8807278
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 12 שעות
דרושים בתבל מטרו בע"מ
חברת תבל מטרו, שמפעילה ומתחזקת את הקו האדום של הרכבת הקלה, מחפשת מפעיל/ת SOC מקצועי/ת להצטרף לצוות אבטחת המידע שלנו ולפעול במרכז הבקרה בזמן אמת.

התפקיד כולל:
ניטור ותחקור מתקדם של אירועי אבטחת מידע במתקן בזמן אמת.
זיהוי, ניתוח וביצוע בדיקות מתמידות של איומי אבטחת מידע חדשים.
תיאום ודיווח עם גורמים רלוונטיים בארגון בהתאם לממצאים.
תחקור אירועי אבטחת מידע ברמת Tier 1 וכתיבת דו"חות מקצועיים.
פיתוח וכתיבת נהלים והוראות עבודה בהתאם לסטנדרטים הארגוניים.
דרישות:
ניסיון בעולמות ה SOC של חצי שנה לפחות - חובה.
זיקה לעולמות ה IT / לימודי אבטחת מידע - חובה
פרואקטיביות בתחום אבטחת מידע - יתרון.
הבנה ברשת ופרוטוקולי תקשורת - יתרון.
הכרות עם מוצרי אבטחת מידע כדוגמת:
SIEM, IPS, EDR, FW (Firewall), AV(Antivirus),NAC יתרון.
נכונות לעבודה במשמרות במשרה חלקית (3 פעמים בשבוע), כוננויות ועבודה בשעות לא שגרתיות ע"פ הצורך. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8788601
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 12 שעות
דרושים בתיגבור 6
מיקום המשרה: לוד
לארגון ביטחוני מוביל בלוד דרוש/ה אנליסט/ית בקרת סייבר ( SOC ) להצטרפות לצוות מקצועי ודינמי.
התפקיד כולל עבודה במערך SOC הפועל במתכונת 7/24, כולל משמרות בשעות לא שגרתיות, סופי שבוע וחגים.
תחומי אחריות:
    ניטור, זיהוי וניתוח אירועי סייבר ואבטחת מידע.
    עבודה עם מערכות וכלי אבטחת מידע כחלק מתהליכי הניטור והבקרה.
    ביצוע פעולות אבטחה שוטפות ומתן מענה לאירועי אבטחת מידע בהתאם לנהלים.
    תפעול מערכות הגנת סייבר כחלק מפעילות ה- SOC.
    תיעוד, תחקור והסלמת אירועים בהתאם לצורך.
    עבודה כחלק מצוות SOC ובממשק עם גורמים מקצועיים נוספים בארגון.
    למידה והתמקצעות בעולמות ה- SOC, אבטחת המידע והגנת הסייבר.
דרישות:
בוגר/ת קורס סייבר / אבטחת מידע או בעל/ת הסמכה מקצועית רלוונטית - חובה.
    ידע וניסיון מעשי בהבנת תקשורת ורשתות - חובה.
    הבנה טובה של TCP/IP, DNS, HTTP/HTTPS ופרוטוקולי תקשורת מרכזיים - חובה.
    ידע בסיסי בעולמות הסייבר ואבטחת המידע.
    היכרות עם מערכות SIEM, EDR או XDR - יתרון.
    היכרות עם מערכות הגנת סייבר כגון Firewall, Anti-Virus, IPS, DLP - יתרון.
    אנגלית ברמה טובה.
    יכולת למידה עצמית, סקרנות ומוטיבציה גבוהה להתפתח בתחום.
    יכולת עבודה בסביבה מרובת משימות ותחת לחץ.
    יכולת עבודה עצמאית ובצוות.
    יחסי אנוש טובים ותודעת שירות גבוהה.
היקף העבודה:
עבודה במשמרות במתכונת 7/24, כולל לילות, סופי שבוע וחגים.
סביבת העבודה:
הצטרפות לצוות מקצועי ודינמי, בסביבה טכנולוגית ומאתגרת, עם אפשרויות ללמידה ולהתפתחות מקצועית בתחום הסייבר המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8815529
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 13 שעות
דרושים באלעד מערכות
מיקום המשרה: מספר מקומות
סוג משרה: משרה מלאה ומשמרות
אם אתם חיים ונושמים סייבר ורוצים להיות בחזית הזיהוי והתגובה לאירועי אבטחת מידע - זו ההזדמנות שלכם להצטרף לצוות מקצועי ומשמעותי.

מה בתפקיד?
זיהוי, טיפול ותגובה לאירועי סייבר
ניטור מערכות SIEM וטכנולוגיות אבטחה מתקדמות
זיהוי חריגות בתעבורת רשת, מערכות ומערכות רפואיות
תחקור אירועי אבטחת מידע והצגת ממצאים
ניטור איומים באופן פרואקטיבי
עבודה מול צוותים שונים בארגון ותיעוד אירועים
דרישות:
קורס רלוונטי / תואר / ניסיון צבאי בתחום הסייבר - חובה
לפחות שנה ניסיון בעולמות SOC - חובה
היכרות עם SIEM, EDR, FW, Windows Event Logs - חובה
אנגלית ברמה גבוהה - חובה המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8801292
סגור
שירות זה פתוח ללקוחות VIP בלבד
לוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
4 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
Required Sr MSIAM SOC Engineer (Unit 42)
Job Summary
As a Senior SOC Engineer within Unit 42, you will drive the creation, validation, and optimization of custom detection rules and automated playbooks across our global customer base. Acting as a trusted advisor, you will collaborate closely with clients to maximize their security posture using Cortex XSIAM and Unit 42 expertise. This highly analytical role leverages your deep understanding of detection lifecycles, proactive automation, and threat intelligence to secure enterprise environments. You will architect end-to-end security lifecycles that seamlessly connect data ingestion with high-fidelity detection engineering.
Key Responsibilities:
Own the full lifecycle of custom detections and response automations, deploying them as high-fidelity Cortex XSIAM correlation rules and playbooks through a rigorous engineering process of development, testing, staging, and soft implementation.
Drive the continuous refinement of correlation rules to ensure strict standards for performance, accuracy, and operational relevance.
Translate Unit 42 threat intelligence research and emerging adversary TTPs into actionable, robust detection logic.
Champion proactive automation by engineering sophisticated playbooks to resolve emerging security challenges and optimize operational workflows ahead of demand.
Architect the end-to-end security lifecycle within Cortex XSIAM, seamlessly connecting data ingestion, high-fidelity detection engineering, and sophisticated response automation.
Requirements:
Required Qualifications:
5+ years of hands-on experience in a Senior SOC, Detection Engineering, or Security Architecture role utilizing SIEMs, firewalls, EDR, sandboxes, and SOAR platforms in complex enterprise environments.
Proven mastery of the Detection Engineering lifecycle, including experience with rule testing frameworks, soft-deployment strategies, and continuous tuning.
Demonstrated experience reviewing and QA-ing detection logic written by others, with the ability to provide constructive optimization feedback.
Exceptional consultative and communication skills, with the confidence to guide enterprise customers through complex architectural and workflow decisions.
Proactive engineering mindset with a track record of designing complex automation playbooks (Cortex XSOAR or similar) based on anticipated threat vectors, not just reactive requests.
Strong background in incident response, threat hunting, and translating threat intelligence into actionable defense mechanisms.
Software development experience with a strong proficiency in Python for security automation and scripting.
Preferred Qualifications:
Previous hands-on experience utilizing and optimizing Cortex XSIAM.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8830540
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
As a Senior SOC Engineer within Unit 42 at Palo Alto Networks, you will drive the creation, validation, and optimization of custom detection rules and automated playbooks across our global customer base. Acting as a trusted advisor, you will collaborate closely with clients to maximize their security posture using Cortex XSIAM and Unit 42 expertise. This highly analytical role leverages your deep understanding of detection lifecycles, proactive automation, and threat intelligence to secure enterprise environments. You will architect end-to-end security lifecycles that seamlessly connect data ingestion with high-fidelity detection engineering.
Key Responsibilities
Own the full lifecycle of custom detections and response automations, deploying them as high-fidelity Cortex XSIAM correlation rules and playbooks through a rigorous engineering process of development, testing, staging, and soft implementation.
Drive the continuous refinement of correlation rules to ensure strict standards for performance, accuracy, and operational relevance.
Translate Unit 42 threat intelligence research and emerging adversary TTPs into actionable, robust detection logic.
Champion proactive automation by engineering sophisticated playbooks to resolve emerging security challenges and optimize operational workflows ahead of demand.
Architect the end-to-end security lifecycle within Cortex XSIAM, seamlessly connecting data ingestion, high-fidelity detection engineering, and sophisticated response automation.
Requirements:
5+ years of hands-on experience in a Senior SOC, Detection Engineering, or Security Architecture role utilizing SIEMs, firewalls, EDR, sandboxes, and SOAR platforms in complex enterprise environments.
Proven mastery of the Detection Engineering lifecycle, including experience with rule testing frameworks, soft-deployment strategies, and continuous tuning.
Demonstrated experience reviewing and QA-ing detection logic written by others, with the ability to provide constructive optimization feedback.
Exceptional consultative and communication skills, with the confidence to guide enterprise customers through complex architectural and workflow decisions.
Proactive engineering mindset with a track record of designing complex automation playbooks (Cortex XSOAR or similar) based on anticipated threat vectors, not just reactive requests.
Strong background in incident response, threat hunting, and translating threat intelligence into actionable defense mechanisms.
Software development experience with a strong proficiency in Python for security automation and scripting.
Preferred Qualifications
Previous hands-on experience utilizing and optimizing Cortex XSIAM.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8830331
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
7 ימים
Location: Giv'atayim
Job Type: Full Time and Hybrid work
We are looking for a Head of DevOps to own the strategy and standards for the function that keeps our cloud infrastructure fast, reliable, and secure. You'll manage the DevOps team lead, giving direction on architecture, priorities, and the technical bar while they run the team's day-to-day work. You'll be the person engineering leadership turns to when infrastructure and security decisions need to move fast without cutting corners
Responsibilities:
Manage the DevOps team lead: set direction, priorities, and the technical bar for the team, and support their growth as a manager
Own our cloud infrastructure and architecture (multi-cloud), including provisioning, scaling, and cost governance
Drive CI/CD, release processes, and deployment reliability so engineers can ship confidently
Own observability and incident response tooling, ensuring issues are caught early and resolved fas
Introduce and evaluate new cloud technologies and tools to improve delivery, scalability, and availability
Partner with R&D, product, and IT leadership to align infrastructure decisions with business needs
Own the R&D budget: plan and track spend, prioritize investment across infrastructure, tooling, and security, and report on it to leadership
Requirements:
8+ years in DevOps, Site Reliability, or Platform Engineering, including experience managing a team lead or manager (not just individual contributors)
Deep expertise in at least one major cloud provider (AWS, Azure, or GCP), including networking, IAM, and cost management
Strong hands-on experience with Kubernetes, Terraform (or equivalent IaC), and modern CI/CD tooling
Working knowledge of security tooling (SIEM, EDR, IDS/IPS, vulnerability management) and compliance frameworks (SOC 2, ISO 27001, NIST)
Solid observability experience (metrics, logging, tracing) and a track record of owning incident response end-to-end
Strong people leader: coaches and grows managers, sets direction others can execute against, and represents DevOps and security credibly across the organization
Pragmatic and outcome-oriented, comfortable balancing technical depth with leadership responsibilities and defending trade-offs to non-technical stakeholders
Experience owning a budget: planning spend, prioritizing trade-offs, and reporting to leadership
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8827117
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
You will be the only SOC analyst based in Israel, while the rest of the analyst team operates from the Philippines. You will act as the SOCs local anchor - the on-site technical counterpart for the Israel-based Cyber Security, IT, Operations, and R&D teams, and the escalation and knowledge bridge between them and the offshore shifts. The role calls for ownership, independence, and the appetite to build and improve, not only to operate.

Responsibilities

Monitoring and Detection: Continuously monitor SIEM, endpoint protection (EDR), IPS, mail security, CASB, cloud, and identity security solutions to identify potential threats.
Incident Response: Serve as one of the first levels of escalation for security incidents - investigate, contain, and drive resolution before escalating to the senior SecOps members, in accordance with defined procedures and SLAs.
Incident Coordination: Lead coordination of major incidents until ownership is transferred to the relevant SecOps, IT, Operations, or R&D team; ensure clear communication, escalation, and tracking of action items.
Threat Analysis: Analyze logs, network traffic, endpoint telemetry, and native (in-tool) alerts to determine root cause, scope, impact, and remediation steps.
SIEM and Detection Engineering: Own day-to-day operation of the SIEM - data onboarding and ingest pipelines, field mapping and data quality, dashboards and platform health - and write, tune, and maintain detection rules while measuring their effectiveness.
Exclusion and Exception Management: Own the exclusion and exception lifecycle across the security stack: review requests, assess risk, apply scoped, time-bound exclusions, and revalidate them periodically.
Automation and AI-Assisted Operations: Build and maintain automations across the SOC toolchain (enrichment, containment, ticketing, reporting), and design, implement, and validate AI/LLM-based workflows for alert triage, investigation support, and documentation - including guardrails and quality control of AI output.
Investigation Documentation: Create and maintain detailed incident tickets, including investigation audit trail, action items, and timelines.
Technical Leadership: Act as the senior operational reference for the analyst team: help prioritize workload, assure investigation quality, maintain consistent handling of incidents, escalations, and shift handovers, and mentor analysts on tooling and methodology.
Collaboration: Work closely with the Cyber Security team, IT, Operations, and R&D locally, and with the offshore SOC team across time zones.
Continuous Improvement: Drive improvements to detection logic, automation, operational runbooks, and shift handover documentation based on lessons learned from incidents.
Compliance and Reporting: Support reporting for compliance audits, management reviews, and threat intelligence updates.
Requirements:
3-5 years of hands-on experience in a SOC or cybersecurity operations role.
Proven experience with a SIEM platform, including detection rule engineering and content development (Advantage: Elastic).
Experience with EDR and additional security tools and platforms (Advantage: CrowdStrike Falcon).
Practical experience using AI/LLM tools in technical workflows, with a clear understanding of their limitations and failure modes.
Broad technical foundation across the SOC domain: threat vectors, malware behavior, network protocols, operating system internals, identity, cloud, and SaaS security controls.
Strong analytical and problem-solving skills, with the ability to correlate events across multiple data sources and think beyond the alert.
High degree of ownership and autonomy - able to operate as the only analyst on site, set priorities independently, and drive tasks to closure.
Excellent communication skills and the ability to work effectively with distributed teams across time zones.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8820142
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
10/09/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a skilled Security Automation Engineer to join our SOC Automation team and play a key role in building and scaling automation across Security Operations. This is a hands-on role - you will design, develop, and integrate automation solutions across SIEM, EDR, and other security platforms, contributing to our SOAR capabilities from the ground up.

You will work in a technologically rich environment, integrating with a wide range of security and infrastructure systems across the network - a unique opportunity to build automation at scale in a greenfield setting, with real influence over the architecture and tooling decisions.

We are especially interested in candidates who are curious about leveraging AI and intelligent agents to help evolve next-generation automation and response workflows - and who want to be a driving voice in how we apply those technologies.

Your responsibilities will include:

Automation development

Design and develop automation workflows for incident response and SOC operations
Identify and eliminate manual processes through scalable automation
Build reusable components and maintainable automation patterns
Engineering & integration

Develop integrations using REST APIs, webhooks, and event-driven architectures
Write high-quality, maintainable Python for automation and orchestration
Implement data parsing, enrichment, and transformation across multiple systems
SOAR & platform buildout

Lead or actively contribute to the evaluation, selection, and implementation of SOAR/automation platforms
Design the automation architecture and integration strategy for the team
Build automation capabilities in a greenfield environment - your decisions will shape the foundation
SOC collaboration

Work closely with SOC analysts and incident responders to translate operational needs into automation solutions
Improve end-to-end detection and response workflows through close partnership with the team
AI & innovation

Actively build and evaluate AI/LLM and agent-based workflows applied to security automation
Prototype AI-assisted enrichment, triage, and response solutions and drive them toward production
Requirements:
Minimum 3 years of hands-on experience with SOAR platforms (e.g., Torq, Cortex XSOAR, Splunk SOAR, or similar)
Strong hands-on experience with Python (or a comparable language)
Experience designing or implementing automation frameworks or workflows
Experience building integrations using REST APIs and web services
Experience working with security tools such as SIEM, EDR/XDR, or ticketing systems
Experience with at least one cloud platform (Azure, AWS, or GCP)
Solid understanding of incident response processes and SOC alert-handling workflows
Experience with at least one SIEM platform (Splunk,Sentinel,Qradar,Crowdstrike)
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8817744
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 
משרה בלעדית
09/09/2026
Location: Ra'anana
Job Type: Full Time and Shifts
Salary: 10,000-12,000
Location: Raanana
Shift-Based: Includes night shifts, weekends and holidays

Responsibilities:
Continuously track security alerts and logs from NG- SIEM, EDR, FW, NAC, WAF to identify and respond to threats.
Investigate, analyze, and resolve security incidents, ensuring minimal impact on operations.
Support the maintenance and updates of security tools and systems.
Integrate threat intelligence into daily operations and update security protocols.
Document security events and assist in preparing reports for audits and compliance.
Work with IT teams to ensure security measures align with projects and operations.
Assist in vulnerability scanning and suggest improvements for security gaps.
Help enforce security policies and promote cybersecurity awareness across the organization.
Requirements:
Requirements:
Minimum 2 years of experience in IT helpdesk roles or as a SOC Analyst.
Strong learning abilities and a customer service mindset.
High level of proficiency in English.
Must undergo a security clearance process.

What We Offer:
Comprehensive training and development opportunities.
A dynamic work environment with advanced security technologies.

This position is open to all qualified candidates, regardless of gender.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8815058
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Work At Home
Job Type: Full Time
we are looking for a SecOps Engineer.
As a SecOps Engineer, you'll be the operational nerve center of Guardicore's R&D Security Squad, the team protecting the platform we build. Embedded with the engineers creating Guardicore, you'll drive real-time detection, response, and full-lifecycle vulnerability management, turning every finding into measurable risk reduction. If you thrive on hunting threats, reducing signal-to-noise, and driving remediation to closure, this is your arena.
As a SecOps Engineer, you will be responsible for:
Ingesting and analyzing vulnerabilities from tools such as Wiz, Vulcan, Grype, and Tenable, while quantifying impact by exploitability and reachability.
Building AI automations that streamline the full security operations loop. Auto-triaging and containing SIEM alerts by prioritizing vulnerability data across tools.
Engineering signal quality by designing correlation searches and tuning detection rules. Automating SOAR playbooks to cut false positives and shrink MTTR.
Driving remediation governance by generating tickets, assigning owners, enforcing deadlines, verifying fixes through rescans, and collecting evidence comprehensively.
Building visibility and KPIs through live dashboards for monitoring remediation speed, SLA compliance, MTTR/MTTD, patch age, and risk trends
Running detection and response, monitoring SIEM telemetry, triaging alerts, mitigating threats, conducting root-cause analysis, aligning TTPs with MITRE ATT&CK, recommending safeguards.
Requirements:
5+ years in Security Operations, SOC, or Incident Response, handling live incidents and vulnerability remediation end-to-end.
Develop parsers, analytics, and automation scripts using Python, Bash, or Go; utilize SIEM tools such as Splunk and SOAR platforms.
Design vulnerability-management dashboards and SLA tracking for leadership visibility.
Experience triaging and analyzing vulnerabilities, assigning owners, recommending mitigations, and writing clear post-mortem reports.
Demonstrate expertise in network protocols, Linux/Windows internals, and cloud telemetry such as GCP or AWS.
Gain experience with vulnerability-management platforms and risk-based prioritization models.
Present metrics, incident summaries, and remediation roadmaps to both engineers and executives.
Proactive, clear communication with stakeholders across technical and business teams.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8806370
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
01/09/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a SecOps Detection & Response.
As a Security Operations Analyst, Detection & Response, you will help protect Aidocs cloud environments, products, corporate systems, and sensitive healthcare data by investigating SIEM alerts, supporting incident response, and improving the quality of security monitoring.

This is a hands-on security operations role for someone who can analyze security signals, understand real risk, communicate clearly, and help the organization respond quickly and effectively to security events.

You will work closely with real production environments, where accurate investigation, clear documentation, and practical escalation are critical to protecting sensitive healthcare data, customer trust, and the reliability of clinical AI platform.
Responsibilities:
Own the end-to-end investigation of SIEM alerts across cloud, product, identity, endpoint, and SaaS environments: analyze the relevant evidence, separate false positives from real threats, and prioritize cases based on risk and impact.
Escalate high-risk findings with a clear summary of what happened, what is affected, why it matters, and what actions are required.
Support incident response by collecting evidence, assisting with containment, tracking remediation, and maintaining clear investigation records for internal reviews, compliance needs, and post-incident learning.
Improve SIEM rules, dashboards, alert logic, playbooks, telemetry coverage, and detection quality to reduce noise and strengthen security monitoring.
Work with Security, IT, DevOps, R&D, Product Security, and Compliance teams to resolve issues and improve security operations.
Requirements:
2+ years of experience in Security Operations, SOC analysis, detection and response, incident response, cloud security operations, or a similar hands-on security role.
Hands-on experience with SIEM-based investigations, including alert triage, log analysis, event correlation, evidence review, case prioritization, and escalation.
Experience working with security telemetry from cloud platforms, identity providers, endpoints, SaaS systems, network tools, application logs, and production environments.
Familiarity with cloud-native environments, including IAM, storage access, workloads, Kubernetes, containers, APIs, logging, monitoring, and CI/CD pipelines.
Understanding of common attack techniques, including credential compromise, phishing, privilege escalation, suspicious API activity, malware, data exposure, lateral movement, and cloud misconfigurations.
Experience with identity and endpoint investigation, including SSO, MFA, service accounts, privileged access, EDR alerts, and suspicious user or device activity.
Ability to use query or scripting languages such as KQL, SPL, SQL, Python, Bash, or similar.
Familiarity with incident response workflows, case management, evidence collection, remediation tracking, and post-incident review.
Strong analytical judgment, with the ability to separate false positives from real risk and explain findings clearly.
Ability to work independently, document investigations clearly, and escalate issues with the right level of urgency.
Strong communication skills and the ability to work with Security, IT, DevOps, R&D, Product Security, Compliance, and business stakeholders.
Close attention to detail, strong ownership, and comfort working in a fast-moving production environment.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8805569
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
e are currently seeking a dynamic Incident Response Analyst to contribute to the success of our rapidly growing business.



As an Incident Response Analyst, you will:

Investigate and respond to workspace security incidents across email, browser security and perimeter security domains.
Handle investigation requests submitted by customers
Perform targeted phishing analysis and investigation of new attack campaigns
Conduct threat hunting based on attack patterns, behaviors, and indicators
Build and improve detections based on new attack types, tactics, companies and trends
Collaborate with development and research teams to provide incident-driven insights, and develop new detection engines for identifying previously unknown attacks
Write professional blog posts based on incident investigations and attack trends, contributing to the companys research-driven content and public visibility
Work in rotating shifts as part of a 24/7 operation (including nights, weekends, and holidays)
Requirements:
At least 3 years of experience in an Incident Response or Security Operation roles
Strong understanding of attack vectors, including Phishing, BEC, Email spoofing and impersonation techniques, Malware, ATO and more
Knowledge of email protocols and security concepts: SMTP, SPF/DKIM/DMARC, headers, authentication methods
Strong querying skills using SQL, SPL, KQL or AQL
Good knowledge with Static & Dynamic techniques
Familiarity with and understanding of code and scripting languages such as Python, JavaScript, Visual Basic, or similar - with the ability to read, interpret, and analyze potentially malicious scripts
Excellent written and verbal communication in English
Team player with a proactive, ownership-driven approach
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8797736
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
25/08/2026
Location: Merkaz
Job Type: Full Time and Hybrid work
We are looking for an experienced Security Operations (SecOps) Specialist to join our Information Security team.
The role involves hands-on operation, maintenance, and troubleshooting of advanced security solutions, with a focus on Check Point Firewalls, CyberArk PAM, Trend Micro EDR/XDR, WAF and DDoS protection solutions, as well as supporting security incident investigation and remediation.
The position also includes leveraging AI and Generative AI technologies to investigate security events, analyze threats, and address emerging security risks in AI-enabled environments.

Responsibilities
Manage, configure, maintain, and troubleshoot Check Point Firewalls, including rules and security policies.
Operate and maintain WAF and DDoS protection solutions, with an emphasis on Radware, Reblaze, and Cloudflare.
Manage and maintain CyberArk PAM, including identity and privileged access management.
Operate Trend Micro Vision One / Apex One and investigate EDR/XDR alerts.
Support email security solutions and investigate phishing and malware threats.
Work closely with the SOC, respond to security alerts, perform initial Incident Response investigations, and support remediation processes.
Use AI, Generative AI, and automation tools to analyze security alerts and logs, identify anomalies, and accelerate security investigations.
Support the identification and mitigation of emerging cybersecurity risks in environments that incorporate AI technologies.
Requirements:
Requirements
Approximately 3 years of experience in a SecOps, SOC Tier 2, SOC Analyst, or similar security operations role.
Proven hands-on experience managing, maintaining, and troubleshooting Check Point Firewalls.
Hands-on experience with CyberArk PAM.
Hands-on experience with Trend Micro solutions and investigating alerts in EDR/XDR environments.
Practical familiarity with WAF solutions, preferably Radware, Reblaze, or Cloudflare.
Familiarity with SOC environments and SIEM/SOAR solutions.
Strong understanding of networking and security protocols, including TCP/IP, HTTP/S, SSL/TLS, and DNS.

Advantage
Experience using AI-driven security tools, automated analysis solutions, or AI capabilities within SOC/SecOps environments.
Understanding of cybersecurity risks related to AI, such as Prompt Injection and Data Leakage.
Experience leveraging AI tools for security investigation and threat analysis.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8796612
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
21/08/2026
מיקום המשרה: מרכז
סוג משרה: משמרות
אנחנו מחפשים אנליסט/ית SOC להצטרף לצוות שלנו ולעבוד עם מערכות וטכנולוגיות אבטחת מידע מתקדמות.
מה תעשו בתפקיד?
ניטור, זיהוי וחקירת אירועי אבטחת מידע
ניתוח התראות וזיהוי פעילות חשודה
עבודה עם מערכות SIEM ו-EDR/XDR
תחקור אירועים ומתן מענה לאיומי סייבר בזמן אמת
דרישות:
הכשרה / לימודים בתחום אבטחת מידע ורשתות - חובה
יתרון לבעלי רקע קודם בתפקיד טכני מהאזרחות או מהצבא
יכולת אנליטית, סקרנות ורצון ללמוד ולהתפתח
נכונות לעבודה במשמרות 24/7 המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8791461
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
19/08/2026
Location: Herzliya
Job Type: Shifts and Night Job
Required SOC Analyst Tier 1
As a SOC Analyst Tier 1, you will:
Work in shifts 247, including weekends and holidays
Proactively hunt and monitor cyber threats
Analyze raw data, traffic and TTPs to maintain a dynamic comprehensive threat model
Develop a dashboard to handle security alerts and incidents
Work with forensic tools.
Requirements:
At least 1 year of experience as a SOC analyst or in a similar role
Completion of a cybersecurity course
Knowledge in security analysis technologies (e.g., SIEM, FW, AV, IPS or EDR)
Experience in technical-oriented intelligence collection from open sources
Knowledge of cyberattack methodologies and tools
It would be great if you also have:
Experience in querying and basic coding (e.g., SIEM languages)
Knowledge in Windows, Linux and security components
Completion of cybersecurity courses and certificates.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8788542
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות שנמחקו