Information Security Analyst
Description About the role The Information Security Analyst plays a key role in delivering the organization's information security roadmap by combining technical expertise with cross-functional collaboration. This role is responsible for supporting day-to-day security operations, including security monitoring, threat detection, incident response, and the continuous improvement of security processes and capabilities. Working in a dynamic and fast-paced environment, you will serve as a security subject matter expert, providing technical guidance, consultancy, and security advice to projects and business stakeholders. Leveraging your experience in Information Security, you will proactively identify threats, enhance detection capabilities, and help strengthen the organization's overall security posture while ensuring the consistent delivery of security services. The role blends hands-on technical responsibilities with business engagement, including supporting security initiatives, developing and optimizing monitoring and detection capabilities, participating in incident response activities, and collaborating closely with teams across Security Architecture, Governance, Risk & Compliance (GRC), Security Engineering, and IT to implement and maintain effective security controls. What you will be doing: Technical Delivery As an Information Security Analyst, you will play a hands-on role in strengthening the organisation's security posture by designing, improving, and operating key security capabilities. You will: Partner with technical and project teams to gather operational security requirements and ensure security is embedded throughout delivery. Support the implementation, operation, and continuous improvement of security monitoring, logging, and alerting capabilities. Develop, tune, and maintain detection rules and use cases to improve threat visibility while reducing false positives. Collaborate with Delivery, Product, and Planning teams to help shape security priorities and contribute to the security roadmap. Support the vulnerability management lifecycle by validating findings, assisting with remediation prioritisation, and verifying remediation activities. Perform proactive threat hunting across endpoint, identity, cloud, and network telemetry to identify emerging threats before they trigger alerts. Deploy, maintain, and optimise Web Application Firewall (WAF) policies, investigating web-based attacks and enhancing application protection. Investigate security events across endpoints, identities, networks, cloud platforms, and applications using EDR/XDR, SIEM, and cloud-native security tools. Monitor and investigate security events across AWS environments, supporting the organisation's cloud security operations. Identify opportunities to automate repetitive security processes and contribute to the development of SOAR playbooks and security automation initiatives. Participate in all phases of the incident response lifecycle, including detection, analysis, containment, eradication, recovery, and post-incident reviews. Produce high-quality technical documentation, incident reports, and lessons learned to drive continuous improvement. Security Operations & Collaboration Working closely with teams across Security and IT, you will help evolve operational security capabilities while providing practical security guidance across the business. You will: Collaborate with Product Owners, Delivery teams, and business stakeholders to define operational security requirements. Contribute to the development and continuous improvement of operational processes, playbooks, and standard operating procedures. Assess the effectiveness and coverage of logging, monitoring, alerting, and detection capabilities, identifying opportunities for enhancement. Work closely with Security Architecture, Security Engineering, and Governance, Risk & Compliance (GRC) teams to strengthen enterprise-wide security capabilities. Consume and analyse threat intelligence, translating relevant intelligence into actionable detections, hunting activities, and preventive controls. Participate in security reviews for new technologies, projects, and services, providing operational security recommendations. Support the development of operational metrics, reporting, and dashboards to measure the effectiveness of monitoring, detection, and incident response capabilities. Requirements Who we are looking for: We're looking for a security professional who enjoys solving complex technical challenges, thrives in a collaborative environment, and has a passion for continuous improvement. You should have: Hands-on experience working within Information Security Operations. Practical experience supporting Security Operations Centre (SOC) and Incident Response functions. Experience administering, tuning, and maintaining Web Application Firewall (WAF) technologies. Experience investigating and responding to security incidents using established incident response m
Find your next role on Israel's job board.
Browse all jobs