דרושים » אבטחת מידע וסייבר » Security Engineer - Surface Coverage, Detection Engineering

4 ימים
משרה זו סומנה ע"י המעסיק כלא אקטואלית יותר
מיקום המשרה: תל אביב יפו
סוג משרה: משרה מלאה
משרות דומות שיכולות לעניין אותך
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
3 ימים
Meta
Location: Tel Aviv-Yafo
Job Type: Full Time
Meta Security is looking for a Security Engineer with experience in threat modeling, TTP identification, and detection engineering. Youll work alongside Software Engineers and Offensive Security Engineers to identify critical assets, assess the top risks, and evaluate potential attacks against Meta systems. You will be working across engineering teams supporting Production and Corporate systems to develop detection and response automation leveraging both industry-standard and custom detection and response platforms. Youll generate detection ideas utilizing some of the worlds largest data sets and build on top of hyper-scale data pipelines.
Security Engineer - Surface Coverage, Detection Engineering Responsibilities
Lead cross-functional projects to improve our capabilities to effectively detect and respond to security incidents
Review security architecture of large-scale custom and commercial systems and independently propose logging, detection and prevention controls
Perform TTP-based Threat Modeling for a wide variety of assets including endpoints, mobile, servers, internal services, public & private cloud environments and networking equipment
Perform analysis against logs from a variety of sources (e.g., individual host logs, network traffic logs) to identify potential threats and detection ideas
Build response workflows and actions that auto-resolve false positives and provide context scaling our ability to investigate
Support security incident response in a cross-functional environment and drive incident resolution
Design and implement attack testing automation to validate detection coverage
Build logging pipelines using our custom datasets and infrastructure
Requirements:
5+ years of experience in Detection & Response Engineering or similar Security Engineering role
Experience building complex automations and integrations using SOAR platforms
Bachelor's degree or equivalent experience in Security
Experience designing systems used for responding to both external and insider threats
Experience analyzing network and host-based security events
Knowledge of networking technologies, specifically TCP/IP and the related protocols
Knowledge of operating systems, file systems, and memory structures on Windows, MacOS and Linux
Coding/scripting experience in one or more general purpose languages
Experience with attacker tactics, techniques, and procedures
Preferred Qualifications
Background in security-focused software engineering, designing large scale systems and data pipelines, or offensive security
Experience in threat hunting including leveraging intelligence data to proactively identify and iteratively investigates suspicious behavior across networks and systems
Broad knowledge across the Security domain, as well as deep focus in one (or more) areas such as Logs and events processing, Incident Management, Digital Forensics, Offensive Security Testing, Detection and/or Response tooling development
.המשרה מיועדת לנשים ולגברים כאחד
 
Show more...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
69946
שירות זה פתוח ללקוחות VIP בלבד
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
3 ימים
Meta
Location: Tel Aviv-Yafo
Job Type: Full Time
Meta Security is looking for a Security Engineer with experience in threat modeling, TTP identification, and detection engineering. Youll work alongside Software Engineers and Offensive Security Engineers to identify critical assets, assess the top risks, and evaluate potential attacks against Meta systems. You will be working across engineering teams supporting Production and Corporate systems to develop detection and response automation leveraging both industry-standard and custom detection and response platforms. Youll generate detection ideas utilizing some of the worlds largest data sets and build on top of hyper-scale data pipelines.
Security Engineer - Surface Coverage, Detection Engineering Responsibilities
Lead cross-functional projects to improve our capabilities to effectively detect and respond to security incidents
Review security architecture of large-scale custom and commercial systems and independently propose logging, detection and prevention controls
Perform TTP-based Threat Modeling for a wide variety of assets including endpoints, mobile, servers, internal services, public & private cloud environments and networking equipment
Perform analysis against logs from a variety of sources (e.g., individual host logs, network traffic logs) to identify potential threats and detection ideas
Build response workflows and actions that auto-resolve false positives and provide context scaling our ability to investigate
Support security incident response in a cross-functional environment and drive incident resolution
Design and implement attack testing automation to validate detection coverage
Build logging pipelines using our custom datasets and infrastructure
Requirements:
7+ years of experience in Detection & Response Engineering or similar Security Engineering role
Experience building complex automations and integrations using SOAR platforms
Bachelor's degree or equivalent experience in Security
Experience designing systems used for responding to both external and insider threats
Experience analyzing network and host-based security events
Knowledge of networking technologies, specifically TCP/IP and the related protocols
Knowledge of operating systems, file systems, and memory structures on Windows, MacOS and Linux
Coding/scripting experience in one or more general purpose languages
Experience with attacker tactics, techniques, and procedures
Preferred Qualifications
Background in security-focused software engineering, designing large scale systems and data pipelines, or offensive security
Experience in threat hunting including leveraging intelligence data to proactively identify and iteratively investigates suspicious behavior across networks and systems
Broad knowledge across the Security domain, as well as deep focus in one (or more) areas such as Logs and events processing, Incident Management, Digital Forensics, Offensive Security Testing, Detection and/or Response tooling development
.המשרה מיועדת לנשים ולגברים כאחד
 
Show more...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
69971
שירות זה פתוח ללקוחות VIP בלבד
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
3 ימים
Meta
Location: Tel Aviv-Yafo
Job Type: Full Time
Meta Security is looking for an Incident Response Engineer with experience in the identification, containment and mitigation of security incidents. You will be analyzing different data sources to detect, investigate and respond to internal and external threats. You will also be working with our software and production engineering teams to develop scalable systems to automate detection and remediation and help us build the next generation of security operations and response platforms.
Security Engineer, Incident Response Responsibilities
Lead security incident response in a cross-functional environment and drive incident resolution.
Contribute to Incident Response initiatives that improve Metas capabilities to effectively respond and remediate security incidents.
Perform digital forensic acquisition and analysis of a wide variety of assets including endpoints, mobile, servers and networking equipment.
Perform log analysis from a variety of sources (e.g., individual host logs, network traffic logs) to identify potential threats.
Perform security incident root cause analysis and drive implementation of containment and mitigation strategies.
Build automation for response and remediation of malicious activity.
Requirements:
5+ years in Security Incident Response and Detection & Response Engineering.
Knowledge of networking technologies and experience analyzing network-based security events.
Knowledge of operating systems, file systems, and memory structures and experience in host and memory forensics (including live response) on Windows, macOS and Linux.
Experience investigating and responding to both external and insider threats.
Coding/scripting experience in one or more general purpose languages.
Experience with attacker tactics, techniques, and procedures.
Bachelor's degree or equivalent experience in Security.
Preferred Qualifications
Experience as a Security Incident Responder and Investigator in a large and regulated organization.
Background in malware analysis, digital forensics, intrusion detection, and/or threat intelligence.
Experience in threat hunting including the ability to leverage intelligence data to proactively identify and iteratively investigates suspicious behavior across networks and systems.
Broad knowledge across the Security domain, as well as deep focus in one (or more) areas such as Logs and events processing, Incident Management, Digital Forensics, Detection and/or response tool development.
.המשרה מיועדת לנשים ולגברים כאחד
 
Show more...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
69947
שירות זה פתוח ללקוחות VIP בלבד
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
3 ימים
Meta
Location: Tel Aviv-Yafo
Job Type: Full Time
Meta is seeking a Security Analyst to join the Global Security Operations and Incident Response team. The Analyst will serve on the front lines of Metas Security team and will lead and support security investigations across the companys global infrastructure as well as respond to escalations from the Tier1 team. The analyst will leverage an armory of tools to investigate and respond to both external and internal security threats. Utilizing Metas tooling, you will monitor security events in real-time, assess external and internal threats, and provide accurate and timely response. You will collaborate closely with technical teams, with a diverse set of skills to tackle the panoply of unique security challenges that we encounter at Meta scale.
Security Analyst, Security Operations and Incident Response Responsibilities
Investigate and respond to external and internal cybersecurity threats in a timely manner while communicating clearly and proactively until remediation.
Act as an escalation point for Tier1 investigations, contribute to the development of the Tier1 capability, and ensure adherence to internal service level objectives.
Document security investigations and produce high quality and accurate reports for a wide range of stakeholders.
Collaborate with Security Engineers and cross-functional teams to investigate and remediate large scale security incidents.
Support security incident root cause analysis, identify control gaps, and recommend mitigation strategies.
Collaborate with cross-functional teams to drive improvements to security tools, policies and processes.
Improve the effectiveness and efficiency of the Security Operations and Incident Response team including the development and refinement of processes and technical capabilities.
Understand and support requirements of internal and external stakeholders, regulators, and auditors.
Requirements:
4+ years of professional experience in a Security Operations Center or in a relevant investigative role.
4+ years of experience navigating and understanding Windows, macOS, and Linux operating systems.
Experience analyzing network and host-based security events.
Professional experience using a wide range of investigative tools including EDR, SIEM/SOAR, UBA.
Knowledge of networking technologies, specifically TCP/IP and related protocols.
Experience with attacker tactics, techniques, and procedures.
Experience making important decisions independently and multi-tasking under pressure.
Experience responding quickly to changing situations without compromising quality.
Preferred Qualifications
Experience in a Security Operations, Incident Response, or investigation role in a large and regulated organization.
Experience with database query languages.
Experience handling and triaging malware.
Experience handling digital forensic evidence and writing reports to support internal investigations.
Experience driving changes to processes that can scale across teams and regions and affect organizations outside Security.
.המשרה מיועדת לנשים ולגברים כאחד
 
Show more...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
69948
שירות זה פתוח ללקוחות VIP בלבד
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
MICROSOFT ISRAEL
Location: Tel Aviv-Yafo
Job Type: Full Time
Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end to end, simplified solutions. The Microsoft Security organization accelerates Microsofts mission and bold ambitions to ensure that our company and industry is securing digital technology platforms, devices, and clouds in our customers heterogeneous environments, as well as ensuring the security of our own internal estate. Our culture is centered on embracing a growth mindset, a theme of inspiring excellence, and encouraging teams and leaders to bring their best each day. In doing so, we create life-changing innovations that impact billions of lives around the world.

Cloud Apps and Identity Research team is covering multiple SaaS based threat scenarios including Cloud Based Ransomware, Email and Files extortion, Business Email Compromise and related Nation State activity.
Responsibilities
Perform financial motivated attacker tradecraft research and threat landscape investigation across cloud-based attacks spanning permissions, identities, applications, and data.
Partner with engineers and data scientists in a geographically distributed team to deliver innovative new product capabilities.
Threat hunting to discover real world advanced attacks together with designing and implementing automated detection and hunting analytics combining alerts and signals across Microsoft Defender security products.
Contribute to active engagement with the security ecosystem through papers, presentations, and blogs.
Provide subject matter expertise to customers based on industry attack trends and product capabilities.
Requirements:
You have at least 5+ years of experience in cyber security with a background in the modern attacker kill-chain, MITRE ATT&CK, and emerging enterprise threats including attacks against SaaS Apps (Sharepoint, Exchange, Entra ID), Oauth Apps, Enterprise Apps.
You have BS or equivalent experience in computer science, engineering, or information technology.
You have understand and deep knowledge of few commonly used attack tools and frameworks used by Redteam Proficient in at least one programming language such as Python, C#, or C++.
You have excellent cross-group and interpersonal skills, with the ability to articulate the business need for product improvements and a desire to engage directly with customers. Experience working with and manipulating large data sets (i.e. billions of events per day).
.המשרה מיועדת לנשים ולגברים כאחד
 
Show more...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
70025
שירות זה פתוח ללקוחות VIP בלבד
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
WIX
Location: Tel Aviv-Yafo
Job Type: Full Time
required Application Security Expert
Work closely with dev teams on all SDLC levels, performing security design reviews, threat modeling, and penetration tests, while acting as a security mentor for developers
Perform code reviews to identify security flaws and vulnerabilities
Research the platform code and services used by our developers
Build creative tools and services to detect and solve cross-security issues
Develop and deliver security training CTFs for Wix developers
Requirements:
2+ years of hands-on experience in offensive application security.
In-depth knowledge of web application vulnerabilities, their exploitation in the real world, and browser security mechanisms.
Passion about cutting-edge technologies
Open-minded self-learner.
Youll get bonus points if youve:

Published security research
Participated in bug bounty programs
Familiar with Node/Java/Scala programming languages
Worked with Docker containers and Kubernetes
Knowing your way around AWS and GCP environments, or cloud and microservice architectures
.המשרה מיועדת לנשים ולגברים כאחד
 
Show more...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
70198
שירות זה פתוח ללקוחות VIP בלבד
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
6 ימים
Check Point
Location: Tel Aviv-Yafo
Job Type: Full Time and Hybrid work
The IGS IT and Cloud Consultant works within ISG Managed Services team as a member of the Cloud and IT Services Team. The IGS IT and Cloud Consultant will serve as a technical leader, focusing on supporting the ISG Managed Services offerings. This will be a senior operational and customer facing position, providing thought leadership and technical expertise in Microsoft Azure, 365, on-prem server infrastructure, and endpoint protection agents.

Key Responsibilities
Collaborate with IGS management to grow and support the IGS Cloud and IT service offerings.
Collaborate with client operational leadership to address, develop, and support client security requirements.
Design, implement and manage secure Azure and 365 environments.
Design, implement and manage migrations into Azure and 365.
Work with IGS Security teams to ensure proper security policy adherence.
Collaborate with clients to plan and collaborate on Cloud Security Posture Management.
Assist, when necessary, supporting ITG IT and Cloud Engineers
Assist, when necessary, to triage production issues and environments.
Assist, when necessary, to triage security issues (incident response).
Take complete ownership for assigned tasks and provide timely updates on progress to project management and management team.
Requirements:
At least 4 years of technical experience in:

Server administration (Windows)
Active Directory support and administration
Azure support and administration
O365 support and administration
Active Directory security
O365 security
Migration from on-prem to Azure - advantage
365 Tenant to Tenant migration - advantage
365 Migration from on-prem - advantage
Azure security architecture design - advantage
365 security architecture design - advantage
Non-Technical Experience:

Superb interpersonal and communication skills
Excellent presentation and technical writing skills
Foundational knowledge on information security
Basic project management skills
Multi-tasking and task prioritization
Desired Certifications (not required)

Microsoft Certified: Azure Fundamentals
Microsoft Certified: Azure Administrator Associate
Microsoft 365 Certified: Messaging Administrator Associate
Microsoft 365 Certified: Teams Administrator Associate
Microsoft Certified: Azure Security Engineer Associate
Vendor or non-vendor specific security-focused certification (Security+, GIAC Security Essentials, etc.)
.המשרה מיועדת לנשים ולגברים כאחד
 
Show more...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
68575
שירות זה פתוח ללקוחות VIP בלבד
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
6 ימים
Check Point
Location: Tel Aviv-Yafo
Job Type: Full Time
At Check Point, we are committed to fostering a culture of innovation, collaboration, and continuous learning. As a Data Protection Officer, you will play a pivotal role in shaping and enhancing our data protection practices. Join us in our mission to create a secure digital future while enjoying professional development opportunities, and a vibrant workplace culture.

If you are passionate about data protection and privacy and eager to make a significant impact in a cutting-edge security software company, apply now to be part of our dynamic team!

* This role reports directly to the CISO.

Key Responsibilities
Policy Development: Formulate and enforce comprehensive data protection policies in alignment with relevant laws and regulations.
Data Privacy Impact Assessments (DPIA): Lead the DPIA process to evaluate and mitigate privacy risks associated with new projects and systems.
Risk Assessment: Conduct thorough risk assessments to identify and mitigate potential data protection risks within the organization.
Compliance Oversight: Stay abreast of evolving privacy laws and regulations, ensuring our company policies and practices remain in compliance.
Training and Awareness: Implement training programs to educate employees on data protection policies and best practices, fostering a culture of privacy awareness.
Data Subject Rights: Manage and respond to data subject access requests and other requests related to individual privacy rights.
Collaboration: Work closely with cross-functional teams, legal counsel, and IT security to integrate data protection principles into business processes.
Reporting: Regularly report to executive leadership on the state of data protection within the organization.
Requirements:
Experience: 3+ years of experience in data protection and privacy management, with a strong understanding of data protection practices, technologies, solutions and global privacy laws and regulations.
Certifications: Relevant Data Privacy certification (e.g. CIPP, CDPSE).
Communication Skills: Excellent communication and interpersonal skills to effectively engage with stakeholders at all levels.
Analytical Thinking: Strong analytical and problem-solving skills to assess risks and develop effective mitigation strategies.
.המשרה מיועדת לנשים ולגברים כאחד
 
Show more...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
68562
שירות זה פתוח ללקוחות VIP בלבד
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
 

חברת השמה / כח אדם

1 ימים
CyWayz Recruitment & Outsourcing
Job Type: More than one
A successful Cyber-Security Service company, is looking for a Senior Information Security Consultant to lead a team of consultants, managing and executing consultancy tasks in information compliance and security areas like infrastructure security, cloud security, software quality and all kinds of regulation.
What you will do:
Act as a technical focal point regarding Cyber security in infrastructure, cloud and application matters.
Manage a team of Cyber security experts, providing then professional guidance.
Evaluate and review the effectiveness of Cyber security policies, procedures, standards, guidelines, and processes.
Deliver strategic presentations (business-risk-technology)
Support the sales and marketing teams.
This is a hybrid position (very flexible).
Requirements:
5+ years of experience as an information security consultant- a must
Bachelor's degree in Information Systems/Industrial Management or other relevant technology field required
Relevant certifications in information security - required
Proven technical experience and knowledge.
Experience in project management and leading Cyber security projects.
Team management experience- a must
Broad Business orientation.
English- very high level- a must
.המשרה מיועדת לנשים ולגברים כאחד
 
Show more...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
69964
שירות זה פתוח ללקוחות VIP בלבד
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
בינת מערכות תוכנה
סוג משרה: משרה מלאה ועבודה היברידית
אנו מחפשים ר"צ יישום ופיתוח תשתיות סייבר מנוסה ומוכשר/ת להצטרף לצוות שלנו!
המשרה ברמת גן (על קו רכבת)
במסגרת התפקיד:
ניהול צוות יישום תשתיות סייבר.
Hands-on 60% לפחות.
בניית תוכנית עבודה ופיתוח הצוות.
ניהול והובלת פרויקטים טכנולוגיים סייבר מקצה לקצה
מענה לסוגיות סייבר באמצעות חיפוש והמלצות אודות פתרונות טכנולוגים.
ביצוע ובחינת POCים.
אחריות תפעולית לכל הקשור לתפעול אוטמציות (SOAR ) פעילות  SIEM  וכן פעילות Big Data סייברי.
דרישות:
ניסיון כר"צ בשנתיים האחרונות בצוותי אבטחת מידע- יתרון
ביצוע משימות אל מול יעדי תוכניות עבודה מוסדרות ועמידה בלוחות זמנים
היכרות עם מגוון כלי אבטחת מידע וסייבר (מערכות END POINT סייבריים, מערכות השטחה והלבנה, מערכות אוטמציה ו/או SOAR ) - חובה
היכרות עם איומי סייבר פופלריים - חובה
ניסיון מוכח Hands-on במערכות אבטחת מידע וסייבר - חובה
תכונות עיקריות הנדרשות לצורך ביצוע מוצלח של התפקיד:
אסרטיביות ויכולת חשיבה מורחבת.
מציאת פתרונות יצרתיים בהתאם לצרכי הארגון מעת לעת וכן חשיבה מחוץ לקופסה
יכולת ראיה הוליסטית בהבטי ניהול אנשים ותיעדוף משימות.
יכולת עבודה בסביבה אינטנסיבית ורצופת שינויים.
יכולות למידה גבוהות.
ראש גדול, חשיבה מחוץ לקופסה.
אנגלית - דיבור, כתיבה וקריאה ברמה טובה.
נכונות לעבודה מאומצת. המשרה מיועדת לנשים ולגברים כאחד.
 
עוד...
הגשת מועמדות
עדכון קורות החיים לפני שליחה
57322
שירות זה פתוח ללקוחות VIP בלבד