לוח הדרושים של ישראל כל המשרות

Information Security Engineer (maternity cover)

evoke · herzliya

Description About the Role We are looking for a hands-on Cyber Security Engineer to join our security team and help protect our organization across multiple layers of infrastructure and technology. In this role, you will be responsible for implementing, managing, and maintaining security controls across cloud and on-premises environments, networks, endpoints, applications, and data. You will work closely with the Security Architecture team , translating security standards and designs into effective operational controls. This is a highly practical role for someone who enjoys working with security technologies, solving real-world security challenges, responding to incidents, and continuously improving the organization's security posture. What you will be doing: Perimeter Security Collaborate with the Security Architecture team to implement perimeter security controls designed to protect against unauthorized access and external threats. Manage firewall policies and Web Application Firewalls (WAF) according to security architecture standards. Operate security mechanisms designed to mitigate DDoS attacks and other external attack vectors. Deploy and maintain cloud security guardrails and configurations across AWS, GCP, and Azure workloads. Network Security Implement network segmentation and enforce security policies across internal systems in collaboration with the Security Architecture team. Manage email security solutions and protocols to protect against phishing, spam, and malware. Implement and maintain mobile security solutions to protect devices and corporate data. Manage web proxy configurations to control and monitor internet traffic and ensure secure web usage. Operate Intrusion Detection and Prevention Systems (IDS/IPS) to identify and respond to potential threats. Manage network patching processes to ensure systems remain up to date and protected against known vulnerabilities. Endpoint Security Implement and manage endpoint protection solutions to protect devices against malware, unauthorized access, and other threats. Deploy and maintain Data Loss Prevention (DLP) and Endpoint Detection and Response (EDR) solutions in line with architectural standards. Continuously assess and improve endpoint security posture and address identified vulnerabilities. Application Security & DevSecOps Work with development teams and Security Architects to integrate security best practices throughout the Software Development Lifecycle (SDLC) . Conduct security reviews and implement safeguards across code repositories, CI/CD pipelines, and applications . Help enforce secure coding practices and application security standards defined by the Security Architecture team. Experience with GitLab, GitHub, Azure DevOps, Infrastructure as Code (IaC), Terraform, or CloudFormation is a plus. Experience working in a DevSecOps environment is a plus. Data Security & Compliance Implement encryption and data protection mechanisms to safeguard sensitive information. Support compliance with relevant regulatory and industry standards, including GDPR, PCI-DSS, and ISO 27001 . Partner with the Compliance team on data security audits and implement preventive and corrective measures to reduce the risk of data leakage. SOC & Incident Response Configure security alerts, monitoring scenarios, and detection mechanisms within SOC tools according to Security Architecture guidelines. Support the execution of incident response plans and procedures , ensuring security incidents are addressed quickly and effectively. Participate in root cause analysis following security incidents and implement remediation strategies. Conduct regular security assessments, audits, and testing to maintain operational readiness and continuously strengthen security controls. Requirements Who we are looking for: Bachelor's degree in Information Security, Computer Science, or a related field . Strong hands-on experience implementing security controls across perimeter, network, endpoint, application, and data security . Experience with at least one major public cloud platform: AWS, GCP, or Azure . Proven experience in security operations and incident response . Experience working with security technologies such as firewalls, WAF, DDoS protection, IDS/IPS, EDR, DLP, email security, and web proxies . Good understanding of cloud security, network security, endpoint security, and application security . Familiarity with regulatory requirements and security standards , including GDPR, PCI-DSS, and ISO 27001. Experience with CI/CD, IaC, Terraform, CloudFormation, or DevSecOps is a plus. Relevant certifications such as CISSP, CISM, or equivalent are a plus. A hands-on, proactive approach with the ability to investigate security issues, work across teams, and turn security requirements into practical solutions. *Please provide an English CV with your application. What we offer: Our roles offer more than just a job; you’ll become part of the evoke family! We have created an env

הגשת מועמדות »

מצאו את המשרה הבאה שלכם בלוח הדרושים של ישראל.

כל המשרות