עדיין מחפשים עבודה במנועי חיפוש? הגיע הזמן להשתדרג!
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.
Plus500 is a world-leading online trading platform with hundreds of thousands of active users placing millions of trades a month. It is our mission to disrupt the age-old trade markets by building digital technologies that make trading around the world accessible, efficient, and joyful.
About the Job
In this role which involves strategic qualities as well as a hands-on approach, you will be responsible for the entire security landscape of our organization with focus on our application and production environment such as:
Infrastructure level security (Network, Endpoints etc..)
Application-level security and DevSecOps practices
GRC
All to ensure the security and reliability of our platform in the presence of ongoing cyber events or security threats.
In this role, you will collaborate with Developers, DevOps, Product Managers, Regulation and Compliance officers, IT, Operations and many more company-wide stakeholders.
What you’ll do
Design, deploy and operate technologies to assist in detection, prevention, and analysis of security threats.
Responsible for the security of the various production environments and involved infrastructure such as WAF, Firewall, Network Security Tools, Data Protection Tools, SIEM and more.
Promote Cloud Security (CNAP, CASB etc..) aspects
Lead Penetration Testing tools adoption and audits
Lead application-level security initiatives in areas such as: authentication, authorization, bot defense, secret management, secured APIs, and more.
Collaborate with R&D engineering teams on designing and implementation of new features.
Establish DevSecOps practices in our CI/CD pipelines and automation processes including vulnerability & source code scanning
Own Security Standards adoption such as NIST, ISO, COBIT and Lead GRC (governance, risk and compliance) aspects - Company wide Policies and Procedures complying with law and regulations.
Promote Cybersecurity Education both Training and Awareness programs.
Requirements:
Who you are
Hands-on experience as a cybersecurity engineer with extensive knowledge in network security, application security and IT/Infrastructure security.
Solid background with web-based application security including WAF, IIS, REST, HTTP, APIs, OWASP, etc.
Solid background in cybersecurity management processes including vulnerability management, risk management, GRC, etc.
Ability to lead and manage a multitude of ongoing projects and tasks with multiple stakeholders across the organization.
Advantage: one or more of the certifications: CISSP, CCSA, CISA, CISM
Compensation and Benefits
Along with competitive pay, as a full-time Plus employee, you are eligible for the following benefits:
Yearly Bonus and RSU grants based on performance
Online\On-Site Courses, attend public conferences, and many other growth and learning opportunities.
Health Insurance
Gym, Pilates, Yoga, and others
Cibus\10Bis
Tickets to our sponsored team's games
Social events
Where you'll be
We offer a hybrid work policy : 3 on-site plus 2 flexible days.
Work is located at the Matam, Haifa R&D Center.
Plus500 is a publicly listed company, we welcome you to read and learn about our business strategy, strengths, and results on our investor relations page.
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.
משרות נוספות מומלצות עבורך
-
Security Engineer
-
ירושלים
COMBLACK I.T
-
-
Security Engineer
-
מיקום לא צוין
Sunbit
-
-
Senior Security Engineer (Cortex)
-
פתח תקווה
TeraSky
-
-
Senior Security Engineer, Security Incident Response Team (SIRT) - EMEA
-
תל אביב - יפו
GitLab
-
-
Senior Threat Detection Engineer - Mobile
-
הרצליה
Dataflow Forensics
-
-
Security Engineer
-
תל אביב - יפו
Salt Security
-
ירושלים
בוקר