עדיין מחפשים עבודה במנועי חיפוש? הגיע הזמן להשתדרג!
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.
Plus500 is a world-leading online trading platform with hundreds of thousands of active users placing millions of trades a month. It is our mission to disrupt the age-old trade markets by building digital technologies that make trading around the world accessible, efficient, and joyful.
About The Job
In this role which involves strategic qualities as well as a hands-on approach, you will be responsible for the entire security landscape of our organization with focus on our application and production environment such as:
- Infrastructure level security (Network, Endpoints etc..)
- Application-level security and DevSecOps practices
- GRC
In this role, you will collaborate with Developers, DevOps, Product Managers, Regulation and Compliance officers, IT, Operations and many more company-wide stakeholders.
What You’ll Do
- Design, deploy and operate technologies to assist in detection, prevention, and analysis of security threats.
- Responsible for the security of the various production environments and involved infrastructure such as WAF, Firewall, Network Security Tools, Data Protection Tools, SIEM and more.
- Promote Cloud Security (CNAP, CASB etc..) aspects
- Lead Penetration Testing tools adoption and audits
- Lead application-level security initiatives in areas such as: authentication, authorization, bot defense, secret management, secured APIs, and more.
- Collaborate with R&D engineering teams on designing and implementation of new features.
- Establish DevSecOps practices in our CI/CD pipelines and automation processes including vulnerability & source code scanning
- Own Security Standards adoption such as NIST, ISO, COBIT and Lead GRC (governance, risk and compliance) aspects - Company wide Policies and Procedures complying with law and regulations.
- Promote Cybersecurity Education both Training and Awareness programs.
Who You Are
- Hands-on experience as a cybersecurity engineer with extensive knowledge in network security, application security and IT/Infrastructure security.
- Solid background with web-based application security including WAF, IIS, REST, HTTP, APIs, OWASP, etc.
- Solid background in cybersecurity management processes including vulnerability management, risk management, GRC, etc.
- Ability to lead and manage a multitude of ongoing projects and tasks with multiple stakeholders across the organization.
- Advantage: one or more of the certifications: CISSP, CCSA, CISA, CISM
Along with competitive pay, as a full-time Plus employee, you are eligible for the following benefits:
- Yearly Bonus and RSU grants based on performance
- Online\On-Site Courses, attend public conferences, and many other growth and learning opportunities.
- Health Insurance
- Gym, Pilates, Yoga, and others
- Cibus\10Bis
- Tickets to our sponsored team's games
- Social events
- We offer a hybrid work policy : 3 on-site plus 2 flexible days.
- Work is located at the Matam, Haifa R&D Center.
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.
משרות נוספות מומלצות עבורך
-
Security Engineer
-
ירושלים
COMBLACK I.T
-
-
Security Engineer
-
מיקום לא צוין
Sunbit
-
-
Senior Security Engineer (Cortex)
-
פתח תקווה
TeraSky
-
-
Senior Security Engineer, Security Incident Response Team (SIRT) - EMEA
-
תל אביב - יפו
GitLab
-
-
Senior Threat Detection Engineer - Mobile
-
הרצליה
Dataflow Forensics
-
-
Security Engineer
-
תל אביב - יפו
Salt Security
-
ירושלים
בוקר