|
Application Security Researcher Wed, 22 Jul 2026 13:19:00 GMT
מיקום המשרה:
רמת גן
תחומי המשרה:
אבטחת מידע וסייבר, חוקר סייבר
סוג/היקף המשרה:
משרה מלאה
We are seeking a highly motivated and technically proficient Senior Penetration Tester to join our security research division. This role is dedicated to performing advanced offensive security assessments against the biggest companies in the world
You need to be independent, attentive to details, organized, eager to learn new things, and like to research and solve problems What youll do: Lead and execute comprehensive, technically rigorous penetration tests targeting complex web applications, modern API architectures, and enterprise systems for organizations with significant global presence. Engage in sophisticated Red Team projects, including the identification of undisclosed API endpoints, development of novel bypass techniques for established security controls, and lateral movement within target environments. Contribute substantively to the design, development, and maintenance of proprietary internal security tools and automation frameworks to enhance the efficacy and efficiency of offensive operations. Requirements: Minimum of 3 years of proven, hands-on experience in application security analysis, with a heavy emphasis on complex API penetration testing and a mastery of the OWASP Top 10 landscape. Proficiency in developing and automating tasks using at least one language like Python, JavaScript, or GoLang. Strong experience with static and dynamic analysis of Android and iOS applications, including hands-on experience with techniques like detours, hooking, and runtime code manipulation Deep, hands-on knowledge of the latest tactics, techniques, and procedures (TTPs) used in advanced penetration testing and network analysis. Ability to author comprehensive and technically rigorous reports detailing identified vulnerabilities and research outcomes. Hands-on experience with industry-standard reversing tools like JADX, Ghidra, or IDA Pro. Nice to have: OSCP, OSWE, eWPTXv2, CRTP, or other high-level offensive certifications. Demonstrated online achievements, write-ups, or contributions on platforms such as HackTheBox, Pwn2Own, TryHackMe, Bug Bounty programs, or published security research. This position is open to all candidates. |
|
Malware Research (Mid-Level) Wed, 22 Jul 2026 13:02:00 GMT
מיקום המשרה:
רמת גן
תחומי המשרה:
אבטחת מידע וסייבר, חוקר סייבר
סוג/היקף המשרה:
משרה מלאה
We are hiring Intermediate Malware Researchers to analyze and review malware applications. Candidates should have a background in cybersecurity and software development.
The role includes training in malware analysis and detection and provides exposure to various malware threats and techniques. Researchers will combine technical and intelligence findings to reach accurate verdicts and assist in the bulk removal of malicious applications. The position requires adaptability and proactive identification of emerging malware trends. We are seeking candidates who are willing to learn, can perform effectively under pressure, and maintain high professional standards. Requirements: Must-Have: 2 years of proven experience in cybersecurity or software development: Cybersecurity experience must include hands-on work such as malware analysis, reverse engineering, deep-dive SOC investigation, mobile/APK analysis, or penetration testing Strong understanding of Java object-oriented programming Ability to trace execution flow through code analysis Comprehensive knowledge of cybersecurity, networking, and programming fundamentals Proficient English communication skills (reading and writing) Must have a valid international government-issued photo ID (e.g., current passport or international driver's license) for identity verification and global client interaction Nice-to-Have: Computer Science degree Proficiency in multiple programming languages (e.g., JavaScript, C/C++) Experience with disassemblers such as IDA Pro or Ghidra Experience with decompilers such as JADX or JEB Familiarity with instrumentation frameworks like Frida or Xposed Experience with HTTP debugging and network analysis tools (e.g., Fiddler, HTTP Toolkit, Burp Suite, Wireshark) Knowledge of common malware threats and techniques. This position is open to all candidates. |
|
Principal Security Research - Security Tue, 21 Jul 2026 15:45:00 GMT
מיקום המשרה:
תחומי המשרה:
אבטחת מידע וסייבר, חוקר סייבר
סוג/היקף המשרה:
משרה מלאה
We are seeking a Principal Security Researcher to set the technical direction for a critical area of our identity protection charter, drive multi-quarter research agendas end-to-end, and raise the bar of the team through mentorship and influence. You will partner with engineering, PM, data science, and other research teams across our company to shape strategy, and you will represent our research externally through publications, talks, and industry engagement. We expect our Principal researchers to fluently leverage Generative AI and to actively shape how the team applies it - turning AI assistance into a durable force multiplier across investigation, detection authoring, and customer protection at our company scale.
our companys mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond. Responsibilities Set the technical direction for a major area of our identity protection research charter, owning the multi-quarter strategy from threat landscape framing to shipped detection and measurable customer protection impact. Drive multiple concurrent end-to-end research initiatives, breaking ambiguous problems into tractable workstreams and unblocking the team on the hardest technical questions. Lead deep investigation and research of data across identity and adjacent sources to surface novel threats, attacker tradecraft, and detection opportunities others miss. Stay ahead of the evolving attacker landscape and design robust, sophisticated detection logics across the entire kill-chain - raising the bar on quality, coverage, and resilience to attacker evasion. Influence across organizational boundaries - partner with product management, engineering, data science, and peer research teams to shape product strategy, define new identity protection capabilities, and align roadmaps on a data-driven foundation. Mentor and grow other researchers, elevating the technical bar of the team through code/design review, research coaching, and apprenticeship on complex investigations. Shape how the team and discipline leverage Generative AI - define patterns, evaluate tools, and build durable AI-assisted workflows that scale research throughput across data triage, hypothesis generation, code and KQL authoring, and detection synthesis. Represent our company Security externally through high-quality research publications, conference talks, blog posts, and engagement with the broader security research community. Requirements: You have at least 10+ years of cyber security experience, including 4+ years working hands-on with identity-based attacks (research, hunting, or detection engineering) on top of the modern attacker kill-chain and MITRE ATT&CK. You have passion for defensive work - hunting, investigation, detection authoring, and protection enforcement design - with a track record of owning research end-to-end, from threat hypothesis to shipped detection and customer impact. You have Windows internals knowledge, along with working knowledge of the main identity protocols (e.g., Kerberos, NTLM, LDAP, OAuth 2.0, SAML). You demonstrated fluency leveraging Generative AI tools (e.g., GitHub Copilot, Security Copilot, ChatGPT/Claude) to multiply daily research output - including prompt design, model-output validation, and integrating AI assistance into investigation, coding, and detection authoring. Preferred Qualifications: B.Sc./M.Sc. in Computer Science or related technical discipline. Good knowledge of at least one programming language such as C# (preferred), Python, or C++, and at least one query language such as KQL, SQL, or Cypher. This position is open to all candidates. |
|
Senior Security Research- Security Tue, 21 Jul 2026 15:41:00 GMT
מיקום המשרה:
תחומי המשרה:
אבטחת מידע וסייבר, חוקר סייבר
סוג/היקף המשרה:
משרה מלאה
We are seeking an experienced Senior Security Researcher, excited by finding new attacks, to join our research team and focus on detecting and autonomously protecting against sophisticated enterprise attacks. The role spans novel attack-technique research, big-data analysis over rich sensor data, identifying the optics needed to expose malicious behavior, and crafting detection and protection logic so compromise does not go undetected. We expect our researchers to fluently leverage Generative AI to accelerate every stage of their work - from hypothesis generation and code prototyping to large-scale data triage and detection authoring.
our companys mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond. Responsibilities Own end-to-end large research projects that deliver identity protection against the most prevalent threats in the landscape, from initial threat hypothesis to shipped detection and customer protection impact. Conduct in-depth investigation and research of data across multiple identity and additional sources to identify threats and sophisticated attack incidents. Keep up to date with the latest trends in cyber-attacks and create robust, sophisticated detection logics across the entire kill-chain. Collaborate with product management, security, and engineering teams across the company to design innovative solutions and new identity protection capabilities and validate their effectiveness using a data-driven approach. Collaborate with data science teams to understand, identify, and implement detection gaps, capabilities, assumptions, and improvements. Leverage Generative AI tooling to scale research throughput - accelerating data triage, hypothesis generation, code and KQL authoring, literature review, and the synthesis of attacker tradecraft into shippable detections. Demonstrate thought leadership and engage and enlighten others through compelling, meaningful content and informative sessions. Requirements: You have at least 6+ years of cyber security experience, including 2+ years working hands-on with identity-based attacks (research, hunting, or detection engineering) on top of the modern attacker kill-chain and MITRE ATT&CK. You have pssion for defensive work - hunting, investigation, detection authoring, and protection enforcement design - with a track record of owning research end-to-end, from threat hypothesis to shipped detection and customer impact. You have Windows internals knowledge, along with working knowledge of the main identity protocols (e.g., Kerberos, NTLM, LDAP, OAuth 2.0, SAML). You demonstrated fluency leveraging Generative AI tools (e.g., GitHub Copilot, Security Copilot, ChatGPT/Claude) to multiply daily research output - including prompt design, model-output validation, and integrating AI assistance into investigation, coding, and detection authoring. Preferred Qualifications B.Sc./M.Sc. in Computer Science or related technical discipline. Good knowledge of at least one programming language such as C# (preferred), Python, or C++, and at least one query language such as KQL, SQL, or Cypher. Experience with Windows and/or Cloud forensics - key artifacts around credential theft and lateral movement across on-prem and hybrid identity environments. Experience authoring security research (papers, blogs, conference talks such as BlueHat / Black Hat / DEF CON, or CVEs). Experience building or applying AI/LLM-assisted workflows for security research, detection engineering, or threat intelligence at scale. Excellent cross-group, leadership, and interpersonal skills, with a drive to tackle ambiguous problems. This position is open to all candidates. |
|
Security Researcher Tue, 21 Jul 2026 15:32:00 GMT
מיקום המשרה:
תל אביב יפו
תחומי המשרה:
אבטחת מידע וסייבר, חוקר סייבר
סוג/היקף המשרה:
משרה מלאה
our mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond. In alignment with our company values, we are committed to cultivating an inclusive work environment for all employees to positively impact our culture every day. our mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond. In alignment with our company values, we are committed to cultivating an inclusive work environment for all employees to positively impact our culture every day.
Responsibilities Conduct investigations of advanced threat actor activity across cloud, identity, endpoint, and on-premises environments to identify intrusion methods, attacker objectives, and operational patterns. Identify and track emerging threats, attacker techniques, campaigns, and trends to enable proactive detection, disruption, and defence before customer impact. Develop detections, mitigations, and security guidance by identifying attack paths, security weaknesses, and opportunities to strengthen defensive coverage. Build investigative tooling, automations, proof-of-concepts, and research capabilities that improve the scale and effectiveness of security investigations. Drive product, detection, and engineering improvements by translating investigation findings into actionable changes across our company security platforms and services. Providing recommendations to improve customers cybersecurity posture going forward and performing threat intelligence knowledge transfer to prepare customers to defend against todays threat landscape Synthesize complex technical research into clear, actionable intelligence, reports, briefings, and recommendations for technical and executive audiences. Advance understanding of nation-state, cybercriminal, and emerging threat actors through research, attribution, capability assessments, and adversary tracking. Share findings, influence strategy, and drive organizational change through knowledge transfer, best practices, and adoption of security improvements. Requirements: 4+ years of experience in Threat Hunting, Incident Response (DFIR), Threat Intelligence, or Security Research. Experience investigating sophisticated cyber threats, including APT or nation-state activity. Experience working with security telemetry, logs, and SIEM platforms. Familiarity with KQL or equivalent query languages (Splunk, Humio, Kibana, etc.). Experience with EDR and security monitoring technologies such as our company Defender, Sentinel, CrowdStrike, or similar platforms. Ability to analyze security data, investigate attacker behavior, and identify indicators of compromise (IOCs), indicators of activity (IOAs), and TTPs. Understanding of scripting or the ability to read and interpret code and automation workflows. Strong communication skills in English and ability to work in a global team environment. Preffered Qualifications Industry certifications in cybersecurity, DFIR, incident response, or threat hunting (e.g., CISSP, GIAC). Experience identifying novel attacker techniques and translating findings into scalable detections. Experience performing malware analysis or reverse engineering. Experience analyzing large-scale security telemetry and hunting across enterprise environments. This position is open to all candidates. |
|
Senior Low-Level Security Researcher Tue, 21 Jul 2026 13:37:00 GMT
מיקום המשרה:
הרצליה
תחומי המשרה:
תוכנה, אבטחת מידע וסייבר, מתכנת ++C, מתכנת C, מומחה אבטחת מידע / סייבר, חוקר סייבר
סוג/היקף המשרה:
משרה מלאה
we are looking for a Senior Low-Level Security Researcher.
As an Embedded security researcher, you will be dealing with: Embedded systems reverse engineering. Kernel drivers research and development. Real-time Embedded End-to-End Low-Level software developments on various unique embedded platforms and environments. Requirements: Deep understanding of embedded systems internals and OS. 5+ years of experience in real-time embedded systems development, writing code in Rust / C / C++ / Assembly. Experience in reverse-engineering using disassemblers (IDA or GHIDRA). Deep knowledge of network communication protocols and topologies. Highly motivated and very creative individual. Advantages: Experience in vulnerability research. Graduate of an elite technological unit in the IDF. Bachelor's degree in computer science or engineering. This position is open to all candidates. |
|
Senior Vulnerability Researcher Tue, 21 Jul 2026 13:36:00 GMT
מיקום המשרה:
הרצליה
תחומי המשרה:
אבטחת מידע וסייבר, חוקר סייבר, ניהול ביניים, Senior Security Specialist, Senior Security Specialist
סוג/היקף המשרה:
משרה מלאה
we are looking for a Senior Vulnerability Researcher.
As a vulnerability researcher, your main focus will be on vulnerability discovery and exploitation of most prominent OS`s in the market, and on various challenging platforms. Requirements: ● 4+ years of relevant industry experience as a vulnerability researcher or equivalent. ● Experience with writing code in assembly or c and Python. ● Experience with a dis-assembler for vulnerability research (IDA Pro or GHIDRA). ● Experience with complicated exploitation methods. ● Deep understanding of OS internals (Mac, Windows, Android etc.). ● Good understanding of common security mitigations. ● Highly motivated and creative individual. Advantges: Graduate of an elite technological unit in the IDF Bachelor's degree in computer science or software engineering This position is open to all candidates. |
|
מהנדס.ת מערכת ראשי.ת ליחידת הסייבר Tue, 21 Jul 2026 12:28:00 GMT
מיקום המשרה:
תחומי המשרה:
תוכנה, אבטחת מידע וסייבר, מהנדס מערכת - תוכנה, הנדסה, מהנדס מערכת, מהנדס סייבר
סוג/היקף המשרה:
משרה מלאה, כולל נסיעות לחו"ל
אחריות לכלל הנושאים הטכניים והמקצועיים ביחידה העיסקית, הסמכות האמונה על ניהול טכנולוגי והובלת מוצרי היחידה
הנחיה מקצועית של צוות מהנדסי המערכת ביחידה שותפות במטה היחידה ובהובלת היחידה לעמידה ביעדיה העסקיים, בגיבוש התוכנית האסטרטגית והתוכניות העסקיות עבודה שוטפת מול הפרויקטים ביחידה וביצוע בקרה מקצועית קבועה מול יעדי הפרויקטים הובלת הגדרת נקודת העבודה למוצרים ולפרויקטים ביחידה למול דרישות הלקוח והיעדים העסקיים כתיבה ובקרה של מסמכי הדרישות והפיתוח של הפרויקטים המובילים ביחידה בקרה והשתתפות בסקרים מול לקוחות היחידה ומול גורמים פנימיים בקרה על תוכניות העבודה בפרויקטים המובילים ביחידה שותפות והובלה טכנית של לידים מול לקוחות שונים בעולם ובניית הצעות מחיר ומענים טכניים מתאימים בנייה וקידום תשתיות לשיפור יעילות המענה הפרויקטלי ביחידה ניהול תוכנית המו"פ של היחידה מול גופי והביצוע והמטה דרישות: תואר ראשון בהנדסה תואר שני - יתרון לפחות 5 שנות ניסיון בפיתוח hands on בתחום הסייבר לפחות 5 שנות ניסיון בניהול מוצרי סייבר, בעדיפות מחברות טכנולוגיה מובילות היכרות עמוקה עם תחום הסייבר עדיפות לבעלי ניסיון בסייבר הגנתי בscale משמעותי רקע בפיתוח ויכולת להניע צוותי פיתוח, להוביל תהליכים ולדחוף את מפת הדרכים קדימה ניסיון בעבודת מטה ועבודה אפקטיבית מול גורמי הנהלה ניסיון בעבודה מול לקוחות חו"ל יחסי אנוש וקשרי לקוח מעולים, ייצוגיות שליטה מלאה באנגלית, נכונות לנסיעות לחו"ל המשרה מיועדת לנשים ולגברים כאחד. |
|
מהנדס.ת מערכת להגנת סייבר Tue, 21 Jul 2026 12:26:00 GMT
מיקום המשרה:
ירושלים
תחומי המשרה:
תוכנה, אבטחת מידע וסייבר, מהנדס מערכת - תוכנה, מיישם הגנת סייבר, מהנדס סייבר
סוג/היקף המשרה:
משרה מלאה
דרוש.ה מהנדס.ת מערכת להגנת סייבר.
ביצוע ניתוח איומי סייבר לאמצעי לחימה הגדרת תהליכים ממתני סיכון ובקרת מפצות (Threat Mitigation) והגדרת פתרונות ודרישות ליישום גיבוש קונספט פתרון ההגנה כחלק מקונספט המערכת כתיבת מענה למכרזים, גיבוש הצעות מחיר ותוכניות עבודה הנחייה מקצועית מולטי-דיסצפלינארית בתחום אבטחת סייבר לאמצעי לחימה בקרה פרויקטאלית והובלה של מימד האבטחה בפרויקטים השונים דרישות: תואר בהנדסת תוכנה/ הנדסת מחשבים/ מדעי המחשב/ תואר הנדסי רלוונטי אחר. ניסיון של 3 שנים לפחות בפיתוח תוכנה למערכות Embedded או/ו הגנה על מערכות IT ניסיון של 5 שנים לפחות בהנדסת מערכת/ הנדסת מערכות תוכנה למערכות מורכבות ומולטי-דיסצפלינריות ידע מעמיק וניסיון באבטחת מידע/ הגנת סייבר/ ניצול חולשות - יתרון משמעותי ניסיון בניהול צוותים טכנולוגיים - יתרון המשרה מיועדת לנשים ולגברים כאחד. |
|
ממונה ביטחון אבטחת מידע וטכנולוגיות Tue, 21 Jul 2026 12:13:00 GMT
מיקום המשרה:
קרית ביאליק, קרית ים
תחומי המשרה:
אבטחת מידע וסייבר, מומחה אבטחת מידע / סייבר, ניהול ביניים, Senior Security Specialist, Senior Security Specialist
סוג/היקף המשרה:
משרה מלאה
אחריות ליישום מדיניות הביטחון בשטחים שבאחריות חטיבת מופת, על כלל היבטיה הביטחוניים ובהתאם להנחיות מב"ט החטיבה.
מתן מענה ביטחוני לפרויקטים בחטיבה, משלב ההנבטה ועד לסיום הפרויקט, לרבות כתיבת תיק אבטחת פרויקט, ליווי העבודה לאורך חיי הפרויקט, שיווק הפרויקט וביצוע ניסויים. ריכוז הטיפול הביטחוני בתחום הרכש של חטיבת מופת, כולל טיפול בבקשות לשימוש ולמשתמש סופי, מתן הצהרות לגורם הדורש, חתימה על הצהרות שונות, ביצוע הדרכות ובקרה על הפיקוח המבוצע על הרכיבים ביחידות, בהתאם להנחיות מב"ט החטיבה. מתן מענה ביטחוני למערכות המחשוב והאמצעים הדיגיטליים ביחידות, כולל הדרכות ובקרה אחר יישום ההנחיות הביטחוניות, בהתאם להנחיות מב"ט החטיבה. טיפול ובקרה במסמכי TAA המגיעים לחטיבה, וכן פיקוח על אופן ניהול הידע. ליווי ביטחוני של ניסויים ופעילויות חוץ המבוצעים על‑ידי השטחים המקצועיים ו/או בהובלתם. הובלת נושאי ליבה ביטחוניים‑טכנולוגיים בחטיבה כפי שיוגדרו על‑ידי מב"ט החטיבה, ובכלל זה שימוש בכלי AI, טכנולוגיות מתפתחות, הגנה על שרשרת האספקה, הגנת אמל"ח, רשתות פרויקטליות, מערכות מידע ועוד. אחריות על התאמת תכניות ההסברה והובלת תהליכי העלאת המודעות הביטחונית בקרב עובדי החטיבה. טיפול בתקלות ואירועים ביטחוניים, ביצוע תחקירים, הנחיה לתיקון ממצאים ובקרה על יישומם. קיום פגישות תקופתיות עם צוותי תפעול, ממ"רים, גורמי ניהול, מובילי מיקור חוץ וגורמים רלוונטיים נוספים. השתתפות בפורומים ניהוליים ומקצועיים בחטיבה. דרישות: תואר ראשון, עדיפות להשכלה הנדסית או טכנולוגית ניסיון בעולות הסייבר ואבטחת מידע- לפחות 5 שנים ניסיון בהתמודדות עם אתגרים טכנולוגיים היכרות ורקע עם מערכת הביטחון ניסיון בהובלה ומימוש של תהליכים מורכבים והשפעה רחבה בסביבה מרובת ממשקים רקע בתחום אבטחת מידע (Information Security) בסביבות מבוססות ענן ומשולבות AI - יתרון המשרה מיועדת לנשים ולגברים כאחד. |
|
Director of IT & Security Mon, 20 Jul 2026 19:44:00 GMT
מיקום המשרה:
תל אביב יפו
תחומי המשרה:
אבטחת מידע וסייבר, מחשבים ורשתות, מנהל IT, מנהל אבטחת מידע / סייבר / CISO, מנהל תשתיות מחשוב
סוג/היקף המשרה:
משרה מלאה
We are a global, data-driven, end-to-end e-commerce powerhouse. With our main offices located in Tel Aviv and our workforce spread across various centers worldwide, we are leaders in our category of personalized, on-demand, classic, and fashionable jewelry.
We are currently seeking a skilled and dynamic Director of IT & Security to lead our IT department, managing on-prem and cloud infrastructure of the company. In this pivotal role, you will lead the companys IT and Security strategy, overseeing both on-premises and cloud environments to ensure a robust, secure, and scalable infrastructure. Youll manage the full spectrum of IT operations, from system architecture and cybersecurity to vendor management and process optimization, ensuring business continuity and efficiency across all global sites. Responsibilities: Oversee IT operations and supervise systems and IT staff both on-premises and cloud Maintain and preserve a 24/7 production environment Plan and manage the company's physical infrastructure and network design Develop, manage, and track the IT department's annual budget including infrastructure, Software & Hardware in cloud and various geographical locations Create and maintain processes and standards for selection, implementation, and support of systems Lead and manage the DevOps and IT teams, ensuring secure, scalable, and reliable infrastructure across all environments. Lead the company Cyber security, operational and projects wise Oversee the company's cybersecurity strategy, operations, and project execution. Requirements: 10+ years experience as a system administrator/equivalent 10+ years experience managing an IT department and teams Experience Planning and managing physical IT & Security infrastructure Experience managing medium to large scale windows-based infrastructure across multiple locations Experience with Macs and their relevant management systems (e.g. Jamf) Familiarity with Web & DB servers, mainly Windows based Familiarity with Kubernetes and DevOps - an advantage Familiar with industrial workflows - an advantage Experience in managing remote teams Strong managerial skills both with employees, peers and management level Experience with Procurement processes in medium-large scales Proven skills of IT suppliers/Vendors management Experience with AWS cost optimizations. This position is open to all candidates. |
|
SecOps Detection & Response Mon, 20 Jul 2026 14:23:00 GMT
מיקום המשרה:
תל אביב יפו
תחומי המשרה:
אבטחת מידע וסייבר, מומחה אבטחת מידע / סייבר, חוקר סייבר
סוג/היקף המשרה:
משרה מלאה
we are looking for a SecOps Detection & Response.
As a Security Operations Analyst, Detection & Response, you will help protect Aidocs cloud environments, products, corporate systems, and sensitive healthcare data by investigating SIEM alerts, supporting incident response, and improving the quality of security monitoring. This is a hands-on security operations role for someone who can analyze security signals, understand real risk, communicate clearly, and help the organization respond quickly and effectively to security events. You will work closely with real production environments, where accurate investigation, clear documentation, and practical escalation are critical to protecting sensitive healthcare data, customer trust, and the reliability of Aidocs clinical AI platform. Responsibilities: Own the end-to-end investigation of SIEM alerts across cloud, product, identity, endpoint, and SaaS environments: analyze the relevant evidence, separate false positives from real threats, and prioritize cases based on risk and impact. Escalate high-risk findings with a clear summary of what happened, what is affected, why it matters, and what actions are required. Support incident response by collecting evidence, assisting with containment, tracking remediation, and maintaining clear investigation records for internal reviews, compliance needs, and post-incident learning. Improve SIEM rules, dashboards, alert logic, playbooks, telemetry coverage, and detection quality to reduce noise and strengthen security monitoring. Work with Security, IT, DevOps, R&D, Product Security, and Compliance teams to resolve issues and improve security operations. Requirements: 2+ years of experience in Security Operations, SOC analysis, detection and response, incident response, cloud security operations, or a similar hands-on security role. Hands-on experience with SIEM-based investigations, including alert triage, log analysis, event correlation, evidence review, case prioritization, and escalation. Experience working with security telemetry from cloud platforms, identity providers, endpoints, SaaS systems, network tools, application logs, and production environments. Familiarity with cloud-native environments, including IAM, storage access, workloads, Kubernetes, containers, APIs, logging, monitoring, and CI/CD pipelines. Understanding of common attack techniques, including credential compromise, phishing, privilege escalation, suspicious API activity, malware, data exposure, lateral movement, and cloud misconfigurations. Experience with identity and endpoint investigation, including SSO, MFA, service accounts, privileged access, EDR alerts, and suspicious user or device activity. Ability to use query or scripting languages such as KQL, SPL, SQL, Python, Bash, or similar. Familiarity with incident response workflows, case management, evidence collection, remediation tracking, and post-incident review. Strong analytical judgment, with the ability to separate false positives from real risk and explain findings clearly. Ability to work independently, document investigations clearly, and escalate issues with the right level of urgency. Strong communication skills and the ability to work with Security, IT, DevOps, R&D, Product Security, Compliance, and business stakeholders. Close attention to detail, strong ownership, and comfort working in a fast-moving production environment. Additional Strengths This position is open to all candidates. |
|
Senior Security Engineer Mon, 20 Jul 2026 14:13:00 GMT
מיקום המשרה:
תל אביב יפו
תחומי המשרה:
אבטחת מידע וסייבר, מומחה אבטחת מידע / סייבר, מהנדס סייבר
סוג/היקף המשרה:
משרה מלאה
we are looking for a Senior Security Engineer.
As a Senior Product Security Engineer, you will help ensure that security is built into the products, platforms, AI systems, and clinical workflows that support healthcare providers and patients at scale. This is a hands-on technical role focused on securing real systems in production, influencing architecture, and partnering closely with engineering, AI, DevOps, product, quality and regulatory. You will work across cloud-native services, medical imaging workflows, healthcare integrations, AI/ML pipelines, APIs, data flows, and regulated product development processes. Your work will directly support ability to deliver secure, reliable, and trusted clinical AI solutions to healthcare organizations worldwide. Responsibilities: Secure product and clinical workflows end-to-end - Work directly with engineering and product teams to identify, prioritize, and remediate security risks across services, APIs, medical imaging workflows, AI outputs, data flows, and customer-facing product features. Drive secure-by-design architecture - Provide practical security guidance on authentication, authorization, tenant/customer isolation, encryption, secrets management, service-to-service communication, audit logging, and secure data handling. Strengthen cloud-native security - Improve security across cloud environments, Kubernetes, containers, IAM, network segmentation, workload identity, infrastructure-as-code, logging, monitoring, and cloud security posture management. Embed security into the development lifecycle - Integrate, tune, and operationalize security tooling across CI/CD pipelines, including SAST, SCA, IaC scanning, container scanning, secrets detection and build/release integrity controls. Own vulnerability management as an engineering system - Prioritize vulnerabilities based on exploitability, product exposure, customer impact, clinical risk, and regulatory relevance. Drive remediation with engineering teams and reduce recurring issues through root-cause improvements. Secure AI/ML-driven features and data pipelines - Partner with AI, data, and platform teams to identify risks related to training and inference data, model inputs and outputs, model misuse, data leakage, access to sensitive datasets, pipeline integrity, and production monitoring. Improve software supply-chain security - Reduce risk across open-source dependencies, third-party components, third-party algorithms, container images, build systems, artifact repositories, release pipelines, and deployment processes. Mentor and enable engineers - Help developers understand security risks, make secure design decisions, and take ownership of security in their code, services, and infrastructure. Communicate risk clearly - Translate technical security findings into clear risk, impact, and trade-off language for engineering, product, leadership, quality, regulatory, and customer-facing stakeholders. דרישות: 5+ years of experience in Product Security, Application Security, Cloud Security, or a similar hands-on security engineering role. Strong hands-on experience securing production systems, not only performing assessments or reviews. Strong understanding of secure design, threat modeling, and architecture risk analysis. Deep knowledge of application security, including OWASP Top 10, API security, authentication, authorization, access control, secure session handling, input validation, and modern attack vectors. Experience securing distributed systems, APIs, web applications, backend services, and cloud-native architectures. Strong experience with cloud environments, especially AWS and/or Azure, including IAM, network security, encryption, logging, monitoring, and workload security. Experience with Kubernetes, containers, infrastructure-as-code, CI/CD pipelines, and modern DevOps workflows. Practical experience with security tooling such as SAST, SCA, IaC scanning, container scanning, secrets detection, SBOM tools, המשרה מיועדת לנשים ולגברים כאחד. |
|
Penetration Tester & Security Researcher Mon, 20 Jul 2026 13:25:00 GMT
מיקום המשרה:
תל אביב יפו
תחומי המשרה:
אבטחת מידע וסייבר, מומחה אבטחת מידע / סייבר, מומחה בדיקת חדירות, חוקר סייבר
סוג/היקף המשרה:
משרה מלאה
We are seeking a talented Penetration Tester & Researcher to lead complex offensive security engagements and groundbreaking research. You will execute sophisticated attack simulations, identify high-value vulnerabilities, and collaborate with clients to enhance their security posture.
This role offers a balance between hands-on technical assessments and original research that shapes the broader cybersecurity community. Roles and Responsibilities: Conduct advanced penetration tests across web, mobile, and thick-client applications. Contribute to internal tools, scripts, and methodologies that enhance efficiency. Design and simulate real-world attack chains reflecting modern threat actors. Perform vulnerability research, exploit development, and threat modeling. Research, develop, and implement offensive security methodologies utilizing AI technologies. Produce detailed technical reports with actionable remediation strategies. Collaborate directly with clients to guide mitigation and improve resilience. Publish research, present findings, and represent us at conferences or in public forums. Requirements: Requirements 2-3 years of experience in application penetration testing, including mobile, web, and thick-client applications. Hands-on experience using AI offensively and attacking AI-powered systems. Solid technical foundation in networking, operating systems, and cloud. Excellent communication and presentation skills. Fluency in Hebrew and English. Preferred Skills Active participation in bug bounty programs or responsible disclosure initiatives. Industry certifications such as OSCP, OSWA, OSWE, or OSCE. Familiarity with cloud and container security, Kubernetes, and IaC. Experience integrating security practices within development lifecycles. Proven ability to lead or publish offensive research. This position is open to all candidates. |
|
Senior Security Engineer- Hybrid Sun, 19 Jul 2026 18:25:00 GMT
מיקום המשרה:
הרצליה
תחומי המשרה:
אבטחת מידע וסייבר, מומחה אבטחת מידע / סייבר, מהנדס סייבר
סוג/היקף המשרה:
משרה מלאה, עבודה היברידית
we are looking for a Senior Security Engineer.
In this role, your solutions and expertise will have a company-wide impact. You will build cutting-edge software that solves complex pain points, actively support security efforts, and collaborate directly with teams across Akamai to reduce our overall attack surface. As a Senior Security Engineer, you will be responsible for: Designing, developing, testing, and deploying scalable security tools adopted across the organization. Acting as a technical resource during security incidents to analyze threats and deploy scripts. Researching and integrating AI and machine learning to automate workflows and enhance security. Partnering with diverse teams to understand operational environments and engineer customized solutions. Managing, documenting, and upgrading internal security tools to address evolving business needs. Staying at the forefront of InfoSec and AI landscapes to upskill the team. Requirements: Possess at least 4 years of experience in cybersecurity and software engineering. Demonstrate proficiency writing complex scripts and production-grade tools using one or more of the following languages: Python, Go, Rust, Bash, Groovy. Have to apply AI (LLM) technologies to solve security problems. Understand threat modeling, attack vectors, and incident response to neutralize modern threats. Manage Jenkins pipelines, Git workflows, and infrastructure tooling like Terraform or Ansible. Communicate effectively with a diverse user base to define technical needs. This position is open to all candidates. |
|
Intern Solution Developer - Magshimim Sun, 19 Jul 2026 13:24:00 GMT
מיקום המשרה:
תל אביב יפו
תחומי המשרה:
אבטחת מידע וסייבר, חוקר סייבר, מהנדס סייבר
סוג/היקף המשרה:
משרה מלאה, התמחות
We are looking for a brilliant, hands-on Technical Demo Intern to own the evolution and reliability of our core company demo environment. In this role, you will be the bridge between engineering, product, and sales engineering, ensuring our demo platform seamlessly integrates cutting-edge features while reliably showcasing complex, real-world attack flows.
Responsibilities: AI-driven research: use LLMs and AI tools to find better ways to explain and fix complex security issues. Use Python to analyze datasets and benchmark prompt performance to ensure AI accuracy in security contexts. Rapid Prototyping: Build functional Proof of Concepts (POCs) for AI Agents that automate complex security workflows. This includes enhancement to server-side attack simulation logic using Node.js, MongoDB. Work with Python and Node.js to develop innovative security solutions. Translate new cloud attack techniques into logic that our AI can simulate and explain. Collaborate with the development team to maintain and improve existing AI infrastructure. Key Responsibilities: Feature & API Integration: Own the end-to-end integration of new product features and capabilities into the company's master demo environment, leveraging and connecting various APIs to ensure smooth data flows. Attack Flow Validation: Design, script, and continuously validate realistic cyber attack scenarios and security flows to ensure the demo perfectly highlights our products value proposition. Environment & Server Maintenance: Maintain, troubleshoot, and optimize the demo infrastructure-including server setups, containers, cloud environments, and scripts-to guarantee 100% uptime and seamless performance during high-stakes client presentations. Cross-Team Collaboration: Work closely with Product, Engineering, and Sales Engineering teams to translate complex technical updates into clear, repeatable, and impactful demo scenarios. Requirements: The Background: Magshimim / Mamriot program trainee or graduate, or equivalent independent cybersecurity research and development experience. The Tech: Strong Python skills, hands-on experience building and consuming RESTful APIs, and standard cloud concepts. Infrastructure & Servers: Basic knowledge of working with servers and hands-on infrastructure (e.g., computer lab maintenance, hardware/software troubleshooting, or basic system administration). The Cyber Edge: Solid understanding of modern attack vectors, vulnerabilities, and security frameworks. You know how to simulate realistic threat vectors. The Communicator: You don't just sit behind a screen. You have excellent communication skills, a positive attitude, and the ability to "translate" deep technical engineering concepts into clear, logical stories for product and sales teams. You ask the right questions, collaborate naturally, and aren't afraid to speak up. This position is open to all candidates. |
|
Exposure Analyst (Customer-Facing) Sun, 19 Jul 2026 13:21:00 GMT
מיקום המשרה:
תל אביב יפו
תחומי המשרה:
אבטחת מידע וסייבר, שירות לקוחות, Customer Success Manager, אנליסט סייבר
סוג/היקף המשרה:
משרה מלאה, לדוברי אנגלית
Required Exposure Analyst (Customer-Facing)
About us: We are a leading hybrid cloud security company thats changing the way organizations approach cyber risk. We transform exposure management by showing our customers exactly how attackers might combine misconfigurations, vulnerabilities, and identity exposures across cloud and on-prem environments to compromise critical assets. With us, our customers can see all the ways attackers might get in-and the best ways to stop them with a fraction of the effort. About You & The Role: Are you someone who loves connecting with people just as much as you love talking tech? We are looking for a highly empathetic, customer-focused Exposure Analyst to join our managed services team. In this role, youll be the friendly face and trusted advisor helping our premium customers get the absolute best out of the platform. Youll dive deep into security postures, translate complex attack paths into simple, actionable steps, and build the kind of trust that makes IT and Security teams excited to work with you. Responsibilities: Be the Trusted Advisor: Own the primary technical relationship for a portfolio of enterprise and mid-market customers, establishing yourself as their go-to security partner representing us in the customers organization. Daily Posture Reviews & Action: Conduct daily reviews and analyses of your customers' security postures using the platform. You'll turn complex findings into clear, risk-based insights and proactively open remediation tickets. Weekly Check-ins & Deep Dives: Lead engaging weekly calls with your customers, hosting targeted deep-dive sessions to guide them on configuration, best practices, and new features to ensure optimal ROI. Bridge the Gap: Drive remediation outcomes by pushing discussions directly with the customers IT, DevOps, and Cloud teams-not just their security teams-helping them prioritize efforts based on attack path analysis. Deliver the Big Picture: Proactively track progress and provide monthly reports to both technical and executive stakeholders. Youll also co-host Executive Business Reviews (EBRs) alongside our Customer Success team. Champion the Customer: Act as the lead technical escalation point, partnering with our internal R&D, Product, and Support teams to make sure your customers' needs are always heard and resolved. Requirements: Must have: 5+ years in a customer-facing tech role (e.g., Customer Success Manager, TAM, Security Consultant, or MSSP/SaaS Support), with a proven track record of managing large enterprise clients. Outstanding interpersonal skills: You easily break down complex tech issues. You are equally comfortable driving an IT team to take action as you are presenting to C-suite executives. Cyber orientation: Key understanding of: On-Prem/Active Directory, Cloud environments (AWS, GCP, Azure) and Kubernetes. Posture Management - KSPM, ADSPM, and CSPM. Identity Management - CIEM, IAM General ethical hacking and cybersecurity principles. Self-driven learning style: You are naturally curious, highly analytical, and comfortable in a dynamic, fast-paced environment where you are always eager to expand your skills. Communication: Native-level fluency in English (written and spoken) is a must. This position is open to all candidates. |
|
Software Detection Engineer - Cloud, Identity Protection (Hybrid, ISR) Sun, 19 Jul 2026 13:20:00 GMT
מיקום המשרה:
תל אביב יפו
תחומי המשרה:
תוכנה, אבטחת מידע וסייבר, מהנדס תוכנה, הנדסה, מהנדס תוכנה, מומחה אבטחת מידע / סייבר, חוקר סייבר, מהנדס תוכנה בכיר
סוג/היקף המשרה:
משרה מלאה
You will build globally distributed, fault-tolerant, and highly scalable identity threat detection systems that analyze billions of authentication events per day to detect sophisticated Active Directory attacks, credential theft, and lateral movement across hybrid and multi-cloud (Azure/Entra, Okta, AWS) environments. You'll design, lead, and implement the next generation of CrowdStrike's Identity Protection detection platform - evolving it from on-prem appliances toward cloud-native, event-streaming microservices.
What You'll Do Design and implement real-time detection rules and pipelines over high-throughput Kafka event streams, maintaining sub-second detection latency at massive scale. Build the pluggable detection engine and rule framework that turns raw authentication telemetry into indicators, and indicators into enriched, customer-facing alerts. Develop machine-learning and behavioral-anomaly models, and integrate LLM-based detection reasoning (e.g. AI-driven severity scoring) into production detection flows. Translate security research into production-grade detections, partnering with security researchers who guide you on the threat landscape. Own detections in production: observability, latency SLOs, safe per-customer rollouts (feature-flag-gated), and incident response for the detection pipeline. Work across a polyglot stack - Python for detection logic and ML, Go for the high-performance streaming services, Java for backend alert management. Requirements: Programming mastery in Python with deep expertise in data structures, algorithms, and distributed systems (Go experience a strong plus - it's core to our next-gen services). 6+ years building backend / distributed systems at scale. Hands-on experience with event-streaming / message-queue architectures (Kafka or similar) and distributed data processing. Experience with relational and document stores (PostgreSQL, MongoDB) and caching (Redis). BS or MS in Computer Science or related engineering discipline. Bonus: security/detection background, ML for anomaly detection, or applied LLM/GenAI experience. Proven experience utilizing AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes. This position is open to all candidates. |
|
Malware Researcher Sun, 19 Jul 2026 11:51:00 GMT
מיקום המשרה:
תל אביב יפו, נתניה
תחומי המשרה:
אבטחת מידע וסייבר, חוקר סייבר
סוג/היקף המשרה:
משרה מלאה
We are looking for an experienced malware researcher to join the team.
As a Malware Researcher, you will perform research on source code, compiled code, and various software supply chain attacks. The position requires proven experience in security nomenclature and an understanding of both high-level and low-level attacks. As a Malware Researcher you will... Research malicious code in public repositories from various coding languages and technologies. Define and implement ways to automatically detect malicious code in open-source software. Write technical reports and outward-facing publications regarding all research subjects mentioned above. Requirements: 3+ years malware research experience in any of the following languages: Native code (C, C++),.NET (C# etc), Python, Node.JS, Java, Go Experience in writing technical reports Programming experience in Python Advantage - Binary reverse engineering experience Advantage - DevOps experience. This position is open to all candidates. |
|
Data Analyst - Risk & Fraud Thu, 16 Jul 2026 13:20:00 GMT
מיקום המשרה:
רמת גן
תחומי המשרה:
תוכנה, אבטחת מידע וסייבר, Data Analyst, אנליסט סייבר
סוג/היקף המשרה:
משרה מלאה, עבודה היברידית
Were looking for a Fraud Data Analyst who combines deep technical analytical skills with a strategic mindset and a curiosity for identifying fraud signals and driving trust in the fintech domain. Youll partner closely with product, engineering, and support teams to turn complex data into automated detection models, scalable protocols, and measurable business protection.
As a Fraud Data Analyst, you will be responsible for safeguarding the platform by identifying, investigating, and mitigating fraudulent activity. Your goal is to move beyond manual ticket handling by architecting scalable investigation protocols, automating detection logic, and providing strategic data insights that reduce the teams dependency on manual intervention. Responsibilities Lead complex transactional data into insights for suspicious patterns. Design and maintain Standard Operating Procedures (SOPs) for fraud investigations to ensure consistent, repeatable, and fast resolution times across the team. Build, automate, and maintain dashboards and reports to track platform health, user behavior, and key trends. Communicate findings clearly to stakeholders - Product, BE, etc. influencing both tactical and strategic decisions. Partner cross-functionally to translate data findings into actionable product and business decisions. Leverage AI and automation tools to accelerate analytical workflows and uncover deeper insights. Requirements: 4+ years of experience in data analytics, with a relevant degree and a strong foundation in statistics. 2+ years in Risk Operations, or Trust & Safety (Fintech/Payments a plus), with a proven track record of preventing 1M+ in annual fraudulent losses. Proven ability to translate complex fraud patterns into high-performance heuristic rules and decision trees that function in real-time environments without degrading system latency. Strong command of SQL, Python, and data visualization tools (Tableau). Proven track record of turning manual processes into automated workflows. Proficient in using AI/LLM for advanced fraud detection, pattern recognition, accelerating analytical workflows. Experience working with a transaction volume of at least 10M/day at scale. Advantages Experience with European and International fintech regulations (e.g. GDPR) and their impact on fraud monitoring and user data privacy. Experience mentoring analysts or leading analytical projects. A deep interest in fraud, AI, or communication apps. This position is open to all candidates. |