|
מומחה תקשורת ואבטחת מידע Sun, 31 May 2026 18:42:00 GMT
מיקום המשרה:
פתח תקווה
תחומי המשרה:
אבטחת מידע וסייבר, מחשבים ורשתות, מומחה תקשורת, מומחה אבטחת מידע / סייבר
סוג/היקף המשרה:
משרה מלאה
חברה מחפשת מומחה/ית תקשורת ואבטחת מידע להשתלבות בצוות ההנדסה והשירותים המקצועיים של החברה.
התפקיד כולל תכנון, הקמה, תחזוקה ותמיכה בתשתיות תקשורת ואבטחת מידע עבור לקוחות עסקיים וארגוניים, תוך עבודה עם טכנולוגיות מתקדמות ויצרנים מובילים בעולם. המועמד/ת ייקח/תיקח חלק בפרויקטים מורכבים, ילווה/תלווה לקוחות משלב האפיון ועד ההטמעה, ויספק/תספק פתרונות מקצועיים ברמה גבוהה. תחומי אחריות: תכנון והטמעת פתרונות תקשורת נתונים בארגונים ניהול ותפעול ציוד תקשורת מתקדם עבודה עם ציודי: o Cisco o Juniper o Aruba הקמה ותחזוקת פתרונות אבטחת מידע עבודה עם מערכות: o F5 BIG-IP o Fortinet / FortiGate o Firewalls מתקדמים טיפול בתקלות מורכבות ומתן מענה מקצועי ללקוחות עבודה מול לקוחות עסקיים וארגוניים השתלבות בפרויקטים חוצי ארגון ובצוותים מקצועיים לימוד והטמעה של טכנולוגיות חדשות בהתאם לצורכי החברה והלקוחות המשרה מיועדת לנשים ולגברים כאחד. |
|
Security Researcher Team Lead Sun, 31 May 2026 15:02:00 GMT
מיקום המשרה:
רמת גן
תחומי המשרה:
אבטחת מידע וסייבר, מחשבים ורשתות, איש לינוקס Linux, ראש צוות פיתוח אבטחת מידע / סייבר
סוג/היקף המשרה:
משרה מלאה
We are looking for an exceptional Security Research Team Lead to guide and grow our world-class Security Research team.
This role sits at the intersection of deep offensive research and strategic defensive innovation. You will lead a team of talented security researchers while actively contributing to cutting-edge research focused on Linux, runtime environments, and cloud-native attack techniques. Your work will directly influence how modern threats are detected, understood, and prevented at scale, shaping the security capabilities that protect production environments across global enterprises. If you are passionate about advanced threat research, malware analysis, and leading high-impact security teams, this role offers the opportunity to combine hands-on technical depth with strategic leadership. What Youll Do: Provide technical leadership, mentorship, and strategic direction to a team of security researchers, setting a high bar for research quality and impact. Lead research into advanced attack techniques targeting Linux-based cloud-native environments, including containers, Kubernetes, and serverless platforms. Guide the analysis and reverse engineering of Linux malware, uncovering attacker behavior patterns, execution flows, and persistence mechanisms. Translate threat intelligence and research insights into actionable detection, prevention, and hardening strategies. Design and prototype advanced runtime detection and observability mechanisms, including kernel-level approaches such as eBPF. Turn cutting-edge research into scalable security capabilities that protect large-scale production systems. Partner closely with engineering, product, and platform teams to ensure research outcomes translate into real product value. Influence long-term security strategy through research-driven insights and threat analysis. Foster a culture of technical excellence, curiosity, and innovation within the research team Requirements: 2+ years of experience leading or managing a security research team. 5+ years of hands-on security research experience, focused on Linux-based environments. Deep understanding of Linux internals, including processes, system calls, memory management, networking, and filesystems. Strong experience in Linux malware analysis and reverse engineering. Proficiency in C and Python for low-level research, tooling, and prototyping. Proven ability to analyze attacker techniques and translate them into detection and mitigation strategies. Strong familiarity with cloud-native technologies, including containers, Kubernetes, and container runtimes. Excellent communication skills with the ability to translate complex technical findings into clear insights. B.Sc. in Computer Science or equivalent experience (military or advanced technical background is a strong advantage). This position is open to all candidates. |
|
Splunk Developer ( SIEM Team) Sun, 31 May 2026 14:11:00 GMT
מיקום המשרה:
תחומי המשרה:
אבטחת מידע וסייבר, מחשבים ורשתות, מומחה תשתיות, מומחה אבטחת מידע / סייבר, SOC/SIEM
סוג/היקף המשרה:
משרה מלאה
Professional Services is seeking a Splunk Developer. We are looking for a skilled Splunk Developer to join a SIEM team within a leading financial organization. The role involves developing and maintaining Splunk-based security solutions, integrating log sources, creating dashboards and detection content, and enhancing monitoring capabilities across the organization's Cyber security environment. This role requires strong expertise in Splunk Enterprise/Cloud, advanced SPL development, Python programming, and React development, alongside a deep understanding of SIEM and security monitoring technologies. A full-time, on-site position, based in Central Israel Key Responsibilities:
* Develop and maintain solutions on the Splunk platform. * Design and build advanced dashboards, reports, alerts, and saved searches. * Create, optimize, and maintain detection rules and monitoring content. * Integrate and onboard new data sources using Syslog, HEC, REST APIs, and other ingestion methods. * Develop backend components and automations using Python. * Build and maintain internal operational tools and user interfaces using React. * Perform performance tuning and search optimization across the Splunk environment. * Collaborate with Cyber security, infrastructure, and operations teams to improve monitoring and detection capabilities. Requirements: Requirements: * 3+ years of hands-on experience with Splunk Enterprise and/or Splunk Cloud. * Strong experience writing advanced SPL queries, including joins, stats, tstats, transactions, and lookups. * Experience developing and maintaining dashboards, alerts, reports, and saved searches. * Experience implementing and managing data inputs via Syslog, HEC, and REST APIs. * Strong understanding of indexes, sourcetypes, props.conf, and transforms.conf. * Experience with Splunk performance tuning and search optimization. * 2+ years of Python development experience. * Experience working with REST APIs, JSON/XML parsing, and data normalization. * Experience developing applications with React, including Hooks, Components, and State Management. * Strong knowledge of JavaScript ES6+, HTML, and CSS. Advantages: * Experience with Splunk SOAR. * Experience in Cyber security, SIEM, or SOC environments. * Experience integrating with cloud platforms (AWS, Azure, GCP). * Experience integrating security tools such as EDR, IAM, and CI/CD solutions. * Experience working with Git and CI/CD pipelines. * Familiarity with Docker and Kubernetes. * Splunk certifications (Power User, Admin, Architect). * Academic degree in Computer Science, Information Systems, Cyber security, or a related field This position is open to all candidates. |
|
מומחה/ית תקשורת ואבטחת מידע Sun, 31 May 2026 13:02:00 GMT
מיקום המשרה:
פתח תקווה
תחומי המשרה:
אבטחת מידע וסייבר, מחשבים ורשתות, מומחה תקשורת, מומחה אבטחת מידע / סייבר
סוג/היקף המשרה:
משרה מלאה
דרוש/ה מומחה/ית תקשורת ואבטחת מידע עם ניסיון* ב פתח תקווה
*שכר 21,000 ש"ח + רכב + קרן השתלמות + תן ביס* ימים א'-ה' עם נכונות לעבודה בשעות לא שגרתיות. דרישות: ניסיון בתחום תקשורת הנתונים - חובה היכרות מעמיקה עם ציוד Cisco / Juniper / Aruba - חובה ידע וניסיון במערכות Firewall ואבטחת מידע - חובה המשרה מיועדת לנשים ולגברים כאחד. |
|
Security & Network Administrator Thu, 28 May 2026 16:52:00 GMT
מיקום המשרה:
שמיר
תחומי המשרה:
אבטחת מידע וסייבר, מחשבים ורשתות, איש אבטחת מידע / סייבר, System administrator
סוג/היקף המשרה:
משרה מלאה, כולל נסיעות לחו"ל
Required Security & Network Administrator
Role Description Work as part of the IT team in a global company, providing support to group companies both in Israel and worldwide. Responsibilities include managing and maintaining network infrastructure, ensuring security compliance, and delivering technical assistance across multiple locations. Requirements: Minimum 5 years of hands-on experience in network and security administration. Manage and maintain network and security systems (firewalls, VPNs, switches, routers). Implement and monitor cybersecurity policies and best practices. Provide technical support and troubleshooting for global offices. Collaborate with IT team members on infrastructure and security projects. Document processes, configurations, and changes accurately. Ensure high availability and reliability of network services. Skills: Proven experience with network protocols, firewalls, and security tools. Strong understanding of cybersecurity principles and compliance standards. Ability to work effectively in a team and manage projects. High service orientation and excellent communication skills. Strong organizational skills with attention to detail and thorough documentation. Fluent in English (spoken and written). Willingness to travel abroad as needed. Availability for irregular working hours when required. Preferred Qualifications (Advantage): Relevant certifications such as CCNA, CCNP, Fortinet NSE, Palo Alto PCNSA/PCNSE, CISSP or equivalent. Experience with cloud security and hybrid environments. This position is open to all candidates. |
|
Cybersecurity Architect (GRC & Risk) Thu, 28 May 2026 16:41:00 GMT
מיקום המשרה:
הרצליה
תחומי המשרה:
אבטחת מידע וסייבר, מנהל אבטחת מידע / סייבר / CISO, מומחה אבטחת מידע / סייבר, ארכיטקט סייבר
סוג/היקף המשרה:
משרה מלאה
we are seeking a Cybersecurity Architect (GRC & Risk) to join our cybersecurity architecture team. In this role, you will lead security governance, risk, and control assessments, conduct third-party due diligence, support maturity assessments, and drive mitigation and architectural review processes. Youll work closely with CISOs, security leaders, engineering teams, and customers to develop risk-focused methodologies and improve security frameworks. This position is best suited for candidates with a technical GRC, risk, or security assessment background who excel in analysis, interpretation, and structuring of security information.
Responsibilities Lead customer third‑party security due diligence assessments. Lead mitigation workshops to translate penetration test and assessment findings into prioritized remediation workplans. Perform security maturity assessments, including reviews of organizational policies, standards, procedures, and governance practices, aligned with the NIST CSF 2.0 cybersecurity framework. Develop and refine security methodologies, processes, and architectural guidance. Maintain internal documentation and ensure alignment between frameworks, processes, and practical implementation. Analyze technical findings and map them to governance, risk, and control gaps. Produce clear, structured reports and executive‑ready summaries for technical and non‑technical audiences. Requirements: 3-4 years in cybersecurity GRC, IT risk, compliance, audit/assurance, or related process‑oriented security roles. Strong understanding of governance, risk management, and operational processes. Familiarity with cybersecurity frameworks (NIST CSF, ISO 27001 concepts), risk assessment, mitigation planning, and third‑party risk management. Basic conceptual understanding of cloud/SaaS shared responsibility models. Ability to communicate technical issues in business‑aligned language. Hands-on experience with security controls - an advantage. Strong writing, communication, and facilitation skills. Comfortable collaborating with internal stakeholders and external customers. This position is open to all candidates. |
|
Junior Cyber Security Specialist Thu, 28 May 2026 16:40:00 GMT
מיקום המשרה:
הרצליה
תחומי המשרה:
אבטחת מידע וסייבר, מומחה אבטחת מידע / סייבר, מומחה בדיקת חדירות, איש אבטחת מידע / סייבר
סוג/היקף המשרה:
משרה מלאה
we are looking for a Junior Cyber Security Specialist with a deep interest and basic knowledge of both information security and computer science.
Responsibilities Participate in Red Team and Risk assessments under the guidance of senior team members Assist in documenting findings, writing technical reports, and contributing to final deliverables for clients Learn and simulate attacker tactics, techniques, and procedures (TTPs) Support Risk Assessments, where the objective is to identify vulnerabilities, especially in Active Directory, without the requirement for stealth. These engagements provide deep insight into systemic weaknesses and offer high exposure to internal infrastructure. Contribute to external assessments, such as, perimeter testing, and reconnaissance Participate in internal, hands-on training program, which covers red team TTPs, tool usage, internal methodologies, and real-world scenarios Requirements: Strong interest in offensive security and Red Team methodologies Foundational understanding of Active Directory architecture, domain trust, Kerberos, GPOs, and domain privilege structures Familiarity with network protocols such as SMB, LDAP, DNS, and HTTP Knowledge of common attack techniques such as enumeration, privilege escalation, exploitation, credential dumping and C2 operations Ability to write or assist in technical documentation and reporting in English Comfortable working in a collaborative environment and eager to learn from experienced team members Experience with security tools such as - Nmap, Metasploit, Kali Linux, Burp Suite Pro, etc., as well as other various commercial and self-developed testing tools Comfortable with basic scripting and using CLI tools This position is open to all candidates. |
|
SecOps Engineer Thu, 28 May 2026 15:58:00 GMT
מיקום המשרה:
חיפה
תחומי המשרה:
תוכנה, אבטחת מידע וסייבר, מחשבים ורשתות, מומחה אבטחת מידע / סייבר, מתכנת Python, DevSecOps Engineer
סוג/היקף המשרה:
משרה מלאה
This is a full-time on-site role located in Haifa for a SecOps professional. The responsibilities include maintaining and optimizing security operations, identifying and mitigating potential vulnerabilities, implementing security monitoring solutions, and responding to security incidents. The role involves working collaboratively with cross-functional teams to ensure the deployment of robust security measures and policies across systems and infrastructures.
Requirements: 3+ years experience in SecOps / Cloud Security / Security Engineering Hands-on experience securing Google Cloud Platform environments Strong understanding of: IAM (roles, service accounts, workload identity) Network security (VPCs, firewall rules, load balancers) Organization policies and security baselines Experience operating and tuning security controls in production This position is open to all candidates. |
|
Cloud Support Engineer Thu, 28 May 2026 15:57:00 GMT
מיקום המשרה:
חיפה
תחומי המשרה:
אבטחת מידע וסייבר, מומחה אבטחת מידע / סייבר, מהנדס סייבר
סוג/היקף המשרה:
משרה מלאה
The Cloud Support Engineer will oversee, troubleshoot, and optimize cloud infrastructure for clients. This position requires deep knowledge of cloud operations, security, and performance optimization, along with a commitment to delivering outstanding support. The engineer will work directly with clients to ensure operational reliability, respond to incidents, and support secure migrations and optimizations.
Responsibilities: Support & Troubleshooting: Provide 24/7 monitoring of cloud infrastructure using NOC, proactively identifying and resolving issues to maintain high availability and system reliability. Client Collaboration: Act as the main point of contact for cloud-related inquiries, providing real-time troubleshooting support and practical guidance. Security & Compliance: Implement and monitor security protocols, including firewalls, access controls, and encryption, to protect client environments from vulnerabilities. Conduct security assessments, manage access controls, and ensure that client environments meet industry standards and compliance requirements. Documentation & Reporting: Maintain comprehensive documentation of troubleshooting steps, configurations, and best practices. Requirements: Excellent communication skills for client interactions and teamwork. Proactive approach to problem-solving, with the ability to prioritize issues effectively and manage multiple client environments. This position is open to all candidates. |
|
Senior/Lead/Principal Offensive Security JR327567 Thu, 28 May 2026 14:34:00 GMT
מיקום המשרה:
תל אביב יפו
תחומי המשרה:
אבטחת מידע וסייבר, מנהל אבטחת מידע / סייבר / CISO, ניהול ביניים, Senior Security Specialist, Senior Security Specialist
סוג/היקף המשרה:
משרה מלאה
We're building something special in our Israel-based Offensive Security organization, and we're hiring multiple people across three key areas:
Penetration Testing Red Team Product Security Research While these roles share a common foundation in offensive security tradecraft, each brings its own unique focus and impact. We're looking for deep expertise in at least one of these areas, with the ability to grow across others. We have multiple openings and are looking for talent at various levels. As we get to know you through the interview process, we'll work together to identify the best fit matching your expertise and interests with the specific role and level (Senior, Lead, or Principal) that makes the most sense for both you and the team. Role Overview We are seeking a highly skilled offensive security professional to join our elite team. This role is ideal for someone who thrives on breaking systems, finding creative attack paths, and using their findings to drive meaningful security improvements across our company's products and infrastructure. You will work alongside some of the best minds in security, operating with significant autonomy and impact. Whether you specialize in deep application level penetration testing, red teaming, security research or vulnerability discovery, we want to hear from you-you don't need to be an expert in all three domains. What unites these roles is a relentless attacker mindset, a drive to find and demonstrate real-world impact, and the ability to translate offensive findings into lasting security improvements. Responsibilities Conduct advanced penetration testing, red team operations, or security research targeting our company's cloud infrastructure, applications, and services Discover, exploit, and document security vulnerabilities using creative and methodical approaches Develop custom tools, exploits, and attack techniques to simulate real-world adversaries Collaborate with product teams to remediate vulnerabilities and improve secure design practices Contribute to the maturity of our offensive security program through automation, tooling, and process improvements Mentor and share knowledge with team members, fostering a culture of continuous learning Present findings and security insights to technical and executive audiences Stay ahead of emerging threats, attack techniques, and offensive security tradecraft. Requirements: 5+ years of hands-on experience in offensive security (Senior), 7+ years (Lead), or 10+ years (Principal). Deep, demonstrable expertise in at least one of the following domains: penetration testing, red teaming, application security research, or vulnerability discovery, with strong foundational knowledge and willingness to learn across other offensive security disciplines. Proven ability to identify and exploit complex vulnerabilities in web applications, APIs, cloud environments, or infrastructure. Strong programming/scripting skills (e.g., Python, Go, Bash, PowerShell) for tooling and automation. Deep understanding of attack frameworks (MITRE ATT&CK), common vulnerability classes (OWASP, CWE), and exploitation techniques. Excellent written and verbal communication skills, with the ability to clearly document technical findings. Self-motivated, intellectually curious, and comfortable working independently or as part of a team. Preferred Qualifications Experience in cloud security (AWS, GCP, Azure) and containerized environments (Kubernetes, Docker). Background in offensive security research, including CVE discoveries or contributions to security tools. Familiarity with CI/CD pipeline security, supply chain attacks, or infrastructure-as-code security. Experience with social engineering, physical security testing, or adversary simulation. Active participation in the security community (bug bounties, CTFs, conferences, open-source contributions). Relevant certifications (OSCP, OSCE, OSWE, GXPN, or equivalent). This position is open to all candidates. |
|
SOC Analyst Wed, 27 May 2026 19:44:00 GMT
מיקום המשרה:
תל אביב יפו
תחומי המשרה:
אבטחת מידע וסייבר, אנליסט סייבר
סוג/היקף המשרה:
משרה מלאה, עבודה היברידית
Join our Operation team. Help drive our world-class threat monitoring and fraud detection platform securing organization funds. Be part of the analysts team, work with customers and key POCs, to provide an additional level of security and confidence, by leveraging unique intelligence feeds, threat logs, and IOCs. Collaborate with our world-class research team and various RnD teams as you help shape our product, help customers be more secure, and immerse yourself to the cyber fraud tech ecosystem.
Proactively monitor and review threats and suspicious events from our customers. Investigate alerts, triage, deep dive, and come up with proper action items and remediation plans. Use multiple sources of our data intelligence trust network, external threat feeds, etc. Support customer's payment processes and workflows. Maintain excellent customer satisfaction through professional, proactive and personal service. Work closely with our research and development team. Contribute to our knowledge base by creating fraud analysis reports and best practices. Requirements: 3 years of experience in an analytical role in the cyber/fraud domain. Exceptional analytical skills, creative out-of-the-box thinking, and analytical mindset with research orientation. Self-initiative, multitasker, and problem-solving approach. Experience in research, information collecting, monitoring, and analysis. Professional and articulate with excellent written and verbal communication skills in English. Experience with Python (advantage for Pandas or other data analysis tools). Experience working and configuration rule engines - Advantage. Experience with incident response, and computer forensic investigations - Advantage. Working with data bases (no-sql) - Advantage. Experience with AI coding tools such as Cursor, Codex, Claude Code or similar - Advantage. This position is open to all candidates. |
|
GRC Specialist Wed, 27 May 2026 18:40:00 GMT
מיקום המשרה:
בני ברק
תחומי המשרה:
אבטחת מידע וסייבר, מומחה אבטחת מידע / סייבר, איש אבטחת מידע / סייבר
סוג/היקף המשרה:
משרה מלאה, עבודה היברידית
We are looking for a GRC Specialist to support our Governance, Risk, and Compliance (GRC) program, reporting directly to the CISO.
This is a hands‑on, execution‑focused role responsible for maintaining and scaling our compliance posture, reducing audit friction, addressing vendor risk, and supporting the integration of newly acquired companies into our security and compliance frameworks. You will work closely with Security Engineering, IT, Legal, Privacy, Sales/Revenue, Procurement, Product, HR, and other business stakeholders to ensure security controls, compliance activities, and risk management processes are practical, effective, and aligned with business needs. The day‑to‑day: Lead audit preparation and ongoing compliance maintenance for frameworks such as SOC 2 / SOC 3, ISO 27001, ISO 27701, ISO 22301, NIST, and GDPR, including evidence collection, gap tracking, and remediation coordination. Own and execute vendor and third‑party security assessments, helping reduce backlog and improve risk visibility across suppliers and partners. Respond to customer security questionnaires and audits, partnering with Sales and Security teams to support deal velocity and customer trust. Support the integration of newly acquired companies into our security, risk, and compliance programs, including gap assessments and remediation planning. Maintain and improve the ISMS, governance processes, policies, standards, and procedures. Act as a central point of contact for internal security and compliance inquiries from business and technical teams. Support the administration and continuous improvement of GRC and compliance tooling, including workflows, evidence management, and reporting. Contribute to the Security Awareness Program and cross‑organizational education efforts. The perks: Hybrid, flexible work environment. Extended private health (including mental) insurance. Personal and professional development programs. Occasional Cross company long weekends. Requirements: Ideally, were looking for: 1-2 years hands‑on experience in GRC, information security, audit, or compliance, with a strong focus on execution and coordination. Practical experience working with ISO 27001, SOC 2, GDPR, and/or NIST CSF, including audits and ongoing compliance activities. Solid understanding of risk management, control design, and governance processes in a SaaS or cloud environment. Experience performing vendor / third‑party risk assessments and driving remediation. Strong ability to work cross‑functionally with technical and non‑technical stakeholders. Clear, concise written and verbal communication skills in English, including customer‑facing documentation. Strong organizational skills and attention to detail, with the ability to manage multiple parallel workstreams. These would also be nice Relevant certifications such as CISA, CISM, CRISC, or ISO 27001 Lead Auditor / Implementer. Experience with privacy governance, DPIAs/PIAs, and collaboration with legal and privacy teams. Familiarity with cloud and SaaS environments, particularly AWS. Experience with GRC platforms or compliance automation tools. This position is open to all candidates. |
|
Cloud Security Engineer Wed, 27 May 2026 14:46:00 GMT
מיקום המשרה:
תל אביב יפו
תחומי המשרה:
אבטחת מידע וסייבר, מחשבים ורשתות, מהנדס סייבר, ארכיטקט/ית ענן/Cloud Solutions Architect
סוג/היקף המשרה:
משרה מלאה
We help organizations reinvent themselves.
Through data, technology, and strategic thinking, we lead transformation processes that reshape how organizations operate, make decisions, and grow. If youre looking to work in an environment that encourages initiative, challenges ideas, and creates real impact - this is the place for you. Integrity, excellence, and innovation are not just values - they are our standard. we are looking for an excellent Cloud Security Expert . Major Responsibilities: Be part of our Great and growing Cloud security team to consult, design, develop, implement, and support our customers secure cloud environments Deliver technology-related aspects of cloud security solutions and services to client engagements Requirements discovery, architecture, design, and implementation of technical controls and cloud security tools Cloud environments configuration reviews and assessment Act as technical subject matter expert and the technical focal point for clients When working with clients abroad, collaborate with our company member firms teams. Requirements: 2-5 years of experience in Cloud security - Must Technical background and hands-on experience with public cloud providers: Azure, AWS, GCP - Must Experience with SaaS solutions such as: Office365,Microsoft Teams, Workspace, SalesForce - Must Technical background and hands-on experience with Containers, Dockers, Microservices and Kubernetes - preferred Familiarity with security frameworks/standards (NIST, CiS , CMMC controls, etc.) - Preferred Deep Understanding in the fields of: EDR, Monitoring, Identities, Security Policies, Data Security, Networking, Hybrid environments, Automations - Must (at least 3) Experience with Security Solutions in the fields of: SIEM, WAF, IPS, Anti-DLP, MDM/MAM, Collaboration, Security Policies, CasB Zero Trust, SASE, Firewalls & More - Must (at least 3) Experience with various OSs (Linux/Windows/Mac) - Advantage knowledge of networking and network security technologies - Advantage Experience and understanding of common cloud security attacks and their remediation - Advantage Experience with automation/configuration management using tools like Terraform, Ansible, CloudFormation or an equivalent - Advantage. This position is open to all candidates. |
|
Cloud Security Engineer (Azure & AI Focus) Wed, 27 May 2026 14:42:00 GMT
מיקום המשרה:
תל אביב יפו
תחומי המשרה:
אבטחת מידע וסייבר, מומחה אבטחת מידע / סייבר, מהנדס סייבר
סוג/היקף המשרה:
משרה מלאה
We are seeking a Cloud Security Engineer with 2-5 years of experience to provide advisory services to leading clients and support the design and security of cloud environments, with a growing focus on AI security.
This is a temporary position (maternity leave replacement). Major Responsibilities Advise clients on designing and securing cloud environments Deliver cloud security solutions as part of client engagements Lead requirements analysis, architecture design, and security controls planning Perform cloud security assessments and configuration reviews Act as a technical focal point for clients Provide guidance on AI systems security, including risk identification and data protection. Requirements: Technical background with experience in Microsoft Azure and Office365 Security - Must Familiarity with Azure security tools (Defender, Sentinel, Conditional Access, Entra ID) - Preferred Familiarity with Office365 security (Teams, Intune, Purview, CASB, Zero Trust) - Preferred Understanding of AI security concepts (data protection, model risks) - Advantage Knowledge of networking and network security - Advantage Experience with automation tools (Terraform, Ansible or similar) - Advantage Relevant certifications (e.g., SC-900, SC-200, AZ-500) - Advantage Fluent English - written and spoken The position is open for all genders as well as people with disabilities. This position is open to all candidates. |
|
Application Security Lead Wed, 27 May 2026 14:41:00 GMT
מיקום המשרה:
תל אביב יפו
תחומי המשרה:
אבטחת מידע וסייבר, ראש צוות פיתוח אבטחת מידע / סייבר
סוג/היקף המשרה:
משרה מלאה
We are seeking a highly skilled and hands-on Application Security Lead to take ownership of our product and infrastructure security. Reporting directly to the CISO with a dotted line to the CTO, you will act as the critical bridge between our Security and Engineering teams, driving a robust "security-first" culture.
While this role encompasses both application and infrastructure security, our primary focus is on the Application Security domain. You will lead our transition towards a mature DevSecOps organization, ensuring that security is seamlessly embedded into every phase of our SDLC without compromising delivery speed. Key Responsibilities Application Security & Secure Engineering: Secure SDLC Integration: Embed security practices throughout the entire SDLC, from initial design and planning to deployment and maintenance. Threat Modeling & Architecture: Lead threat modeling (e.g., STRIDE) and architectural reviews for high-risk features like authentication, PII, and payments. AppSec Tooling & Automation: Integrate and manage automated security scanning (SAST, SCA, DAST) within CI/CD pipelines to ensure code integrity seamlessly. Mobile & API Security: Enforce least-privilege models for API configurations. Lead security initiatives specifically tailored to mobile environments (iOS/Android), protecting our core mobility platform. Offensive Security & Pentesting: Orchestrate internal red teaming and external penetration tests for web and mobile applications. Manage Vulnerability Disclosure Programs (VDP) / Bug Bounties. Developer Empowerment & DevEx: Collaborate with developers to provide automated tools, coding guidelines, and frictionless guardrails for secure-by-design development, ensuring security acts as an enabler, not a blocker. Incident & Vulnerability Management: Act as the technical escalation point for application security incidents, leading detection and recovery efforts, while prioritizing vulnerabilities across the product suite for timely remediation. Cloud & Infrastructure Security: Cloud & Network Posture: Manage cloud security posture (CSPM) across AWS/GCP and oversee broad network security measures, including WAF, Bot management, and environment segmentation. Pipeline & Secrets Management: Secure the CI/CD infrastructure against tampering and enforce robust secret management and secure repository controls across the organization. Resilience & Recovery: Manage disaster recovery (DR) and business continuity planning for production environments. Governance, Culture & Compliance: DevSecOps Strategy: Lead the strategic evolution of DevOps into a mature DevSecOps model, aligning with industry frameworks like OWASP SAMM and NIST SSDF. Metrics & Measurement: Define and track key security metrics (e.g., MTTR, vulnerability density) to measure and improve program effectiveness. Security Champions: Build and mentor a Security Champions program within R&D to scale security knowledge and foster a grassroots culture. Compliance & Privacy: Ensure continuous compliance with PCI-DSS, ISO27001, and GDPR, championing privacy-by-design principles across all user data and R&D operations. Requirements: 5+ years of proven experience with a strong emphasis on Application Security, Product Security, and Developer interaction. Cloud/Infrastructure security experience is highly valued but secondary to AppSec expertise. Hands-on experience with AppSec tooling across the CI/CD pipeline, mobile application security (iOS/Android), and robust API security management. Solid understanding of cloud architectures (AWS/GCP), secret management, and security posture tools. Deep understanding of OWASP SAMM, NIST, Threat Modeling (STRIDE), and regulatory standards (PCI-DSS, GDPR). Exceptional communication skills with the ability to bridge the gap between engineering, C-level executives (CISO/CTO), and security teams to embed a security culture seamlessly. This position is open to all candidates. |
|
Information Security Architect Wed, 27 May 2026 14:32:00 GMT
מיקום המשרה:
תל אביב יפו
תחומי המשרה:
אבטחת מידע וסייבר, ארכיטקט סייבר
סוג/היקף המשרה:
משרה מלאה
We help organizations reinvent themselves.
Through data, technology, and strategic thinking, we lead transformation processes that reshape how organizations operate, make decisions, and grow. If youre looking to work in an environment that encourages initiative, challenges ideas, and creates real impact - this is the place for you. Integrity, excellence, and innovation are not just values - they are our standard. Our Cyber & Cloud Security Department is seeking an Information Security Architect to join us. This role focuses on leading and advising clients and internal teams on integrating information security into complex technology, cloud, and digital transformation projects. Responsibilities: Lead security aspects in projects such as system implementations, cloud migrations, and digital transformation initiatives Design and define end-to-end security architectures and protection strategies across cloud and on-prem environments Provide expert guidance on Security by Design, Privacy by Design, and emerging areas such as AI Security Conduct risk assessments, threat modeling, and comprehensive security reviews Support implementation of security solutions and oversee security testing activities Define security requirements and support RFP processes and vendor evaluations Collaborate closely with development, product, infrastructure, cloud, and DevOps teams. Requirements: At least 5 years of experience in information security, including consulting, architecture, or hands-on implementation Proven experience and strong familiarity with Cloud Security concepts, architectures, and best practices Relevant security certifications (e.g., CISSP, CCSP, Azure/AWS security certifications) - an advantage Experience with security frameworks, methodologies, and industry standards Solid understanding of software development processes and modern IT architecture Experience in defining and reviewing security requirements and technical designs Ability to combine strategic thinking with hands-on execution Excellent communication skills in Hebrew and English Strong interpersonal skills and ability to work effectively with multiple stakeholders The position is open for all genders as well as people with disabilities. This position is open to all candidates. |
|
מומחה/ית Penetration Testing Tue, 26 May 2026 10:45:00 GMT
מיקום המשרה:
בני ברק
תחומי המשרה:
אבטחת מידע וסייבר, מומחה אבטחת מידע / סייבר, מומחה בדיקת חדירות
סוג/היקף המשרה:
משרה מלאה
חברתנו מתרחבת, ואנחנו מחפשים מומחה/ית Penetration Testing מנוסה להצטרף לצוות הסייבר והביקורת הטכנולוגית שלנו.
אם עולמות ה-Red Teaming, חקירת תשתיות ואפליקציות הם המגרש הביתי שלך - המקום שלך איתנו. מה תעשה/י אצלנו? ביצוע מבחני חדירה (PT) תשתיתיים ואפליקטיביים (Web, Mobile, Cloud, LAN) עבור הגופים הגדולים במשק. ביצוע סקרי סיכוני סייבר וניתוח ארכיטקטורה.כתיבת דוחות מקצועיים המשלבים את הממצאים הטכניים עם המלצות פרקטיות לתיקון. למה כדאי לך להצטרף? חשיפה לטכנולוגיות המתקדמות ביותר ולמערכות המורכבות של בנקים, חברות ביטוח וארגוני. דרישות: מה אנחנו מחפשים? ניסיון מעשי: לפחות שנתיים-שלוש בביצוע PT (תשתיות/אפליקציות) - חובה. ארגז כלים: היכרות עמוקה עם מתודולוגיות (OWASP וכדומה) וכלי תקיפה/סריקה מובילים. יכולת כתיבה: יכולת מוכחת בכתיבת דוחות טכניים ברמה גבוהה (עברית ואנגלית). ראש גדול: יכולת עבודה עצמאית מול לקוחות בסביבה דינמית. יתרון משמעותי: הסמכות רלוונטיות (OSCP, GPEN, CRT וכדומה) או ניסיון קודם מחברות ייעוץ/ביטחון. ניסיון Hands-on מוכח: לפחות 5 שנים בביצוע מבחני חדירה (PT) לתשתיות ואפליקציות Web.שליטה במתודולוגיות וכלים: היכרות עמוקה עם OWASP Top 10 ושליטה מלאה ב-Burp Suite וכלים דומים.יכולת כתיבת דוחות עצמאית: כושר ביטוי גבוה בכתב להפקת דוחות טכניים ברורים הכוללים הסברי Remediation (בעברית ובאנגלית)."ראש של תוקף": יכולת מוכחת בביצוע חקירות עומק, ניצול חולשות ויצירת PoC (Proof of Concept).עבודה עצמאית מול לקוח: יכולת לניהול תהליך הבדיקה מקצה לקצה, כולל הצגת הממצאים. המשרה מיועדת לנשים ולגברים כאחד. |
|
Cyber Researcher Mon, 25 May 2026 19:52:00 GMT
מיקום המשרה:
תל אביב יפו
תחומי המשרה:
אבטחת מידע וסייבר, חוקר סייבר
סוג/היקף המשרה:
משרה מלאה
We are looking for a versatile and innovative Attack-oriented Cyber Researcher to join our R&D team and become part of the revolution. You will conduct state-of-the-art research across multiple environments, ranging from Windows internals and kernel-level security to cloud platforms like AWS, Azure, Web technologies, etc' to stay one step ahead of real threat actors.
Your findings, your code and attack tools will feed directly into our automated attack platform, enhancing its capabilities with new offensive techniques and AI-powered decision-making algorithms. Roles and Responsibilities: Perform in-depth research in multiple areas such from AV/EDR evasion, binary exploitation, vulnerability discovery, and subversion of communication channels across both OS-level, domains, cloud-native domains, external surfaces. Integrate research outputs into production-grade attack functionalities within our automation ecosystem. Architect and develop AI-driven decision-making modules that enable the platform to mimic experienced attackers, making real-time choices during automated operations. Develop production-ready attack capabilities using whatever technologies are necessary, Python, C/C++, C#, Java, Office Macros, Bash, PowerShell, Go, Ruby, Assembly, etc. Mentor and collaborate with fellow R&D team members, fostering a culture of innovation and continuous learning. Requirements: 5+ years of experience in Windows internals, low and high-level attack-oriented development, penetration testing, and offensive security. 3+ years of experience in Python development. Demonstrated skill in writing cyber-related code optimized for performance, memory, and stealth. Experience with attack frameworks and tools such as Metasploit, Nmap, Cobalt Strike, Impacket, Burp, Pacu, and similar. Proficiency in reverse engineering and debugging (e.g., IDA, Radare2, WinDBG) for low-level research. Familiarity with cloud ecosystems and hybrid environments, specifically AWS, Azure. Ability to apply AI or machine learning concepts and models to decision-making processes within the automated attack platform. Excellent teamwork, adaptability, and a quick learning mindset. Preferred skills: IDF cyber team veteran. Passion for cyber research and hands-on experience with red/blue team operations. Experience in Agile methodology and security product development. Bachelors degree in Computer Science or related field. This position is open to all candidates. |
|
Senior Security Researcher Mon, 25 May 2026 19:48:00 GMT
מיקום המשרה:
הרצליה
תחומי המשרה:
אבטחת מידע וסייבר, מומחה אבטחת מידע / סייבר, חוקר סייבר, ארכיטקט סייבר
סוג/היקף המשרה:
משרה מלאה
As a Senior Security Researcher you will be responsible for researching multiple domains in the Automotive, AI, API, IoT and Mobility ecosystems, work closely with our domain researchers, data-scientists, development teams, as well as work with customers to build a cutting edge cybersecurity product at Upstream.
This role is full-time and is Israel based. Responsibilities AI Security - research LLM and MCP based attack methods API Security - research API vulnerabilities and attack methods. Research the Automotive Cybersecurity ecosystem: Automotive protocols - Both in-vehicle and external vehicle communications, Vehicle Architectures, Device research - Hardware, reverse-engineering, vulnerability research. Mobility IoT Security - research IoT protocols and devices for vulnerabilities and attack methods. Develop cyber-attack detection techniques and methodologies. Develop research tools and technologies. Requirements: At least 4 years of experience as a security researcher University B.Sc or equivalent technological military service Network / Application security experience Experience in API security research Experience in IoT - an advantage Experience in Python or any other high-level programming language Experience in C/C++ or any other low-level programming language Experience with embedded devices and automotive systems - an advantage Experience in reverse engineering - an advantage Motivated, fast learner, and independent Out of the box thinking style and ability to analyze complex systems A team player, excellent collaboration skills This position is open to all candidates. |
|
Head of Services Security Mon, 25 May 2026 19:11:00 GMT
מיקום המשרה:
אור יהודה
תחומי המשרה:
אבטחת מידע וסייבר, מנהל אבטחת מידע / סייבר / CISO, מומחה אבטחת מידע / סייבר
סוג/היקף המשרה:
משרה מלאה
We are looking for a Head of Services Security to lead and strengthen the security posture of our global Services organization. In this role, you will drive security strategy, governance, and operational excellence across customer-facing services, enabling business growth while maintaining customer trust and compliance.
Your mission Lead the security strategy and governance for all service-delivered platforms and environments Define and enforce security standards across SaaS, managed services, and customer-hosted solutions Partner with Services, R&D, IT, Product, and Customer-facing teams to embed security across operations and delivery Lead customer-facing security engagements including audits, escalations, and due diligence processes Establish and oversee security controls, monitoring, and incident response capabilities across production environments Drive Secure Software Development Lifecycle practices in collaboration with R&D and Product teams Ensure compliance with industry standards and customer security requirements including SOC2 and ISO27001 Define KPIs, reporting frameworks, and continuous improvement processes for services security Requirements: Bachelors degree in Computer Science, Information Systems, Cybersecurity, Engineering, or a related technical field MBA or advanced degree in Cybersecurity or Business - an advantage Relevant certifications such as CISSP, CISM, CCSP, or ISO27001 Lead Auditor - strong advantage Experience Required: 8+ years of experience in cybersecurity and information security At least 5 years in leadership or senior management roles within SaaS, Cloud, or Services organizations Proven experience working with enterprise customers, security audits, compliance reviews, and security questionnaires Strong hands-on understanding of Cloud Security, Application Security, and Security Operations Experience driving cross-functional initiatives across R&D, IT, Services, Sales, and Compliance teams This position is open to all candidates. |