עדיין מחפשים עבודה במנועי חיפוש? הגיע הזמן להשתדרג!
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.
Company Overview:
Cellebrite’s (Nasdaq: CLBT) mission is to enable its customers to protect and save lives, accelerate justice, and preserve privacy in communities around the world. Cellebrite is a global leader in Digital Intelligence solutions for the public and private sectors, empowering organizations to master the complexities of legally sanctioned digital investigations by streamlining intelligence processes. Trusted by thousands of leading agencies and companies globally, Cellebrite’s Digital Intelligence platform and solutions transform how customers collect, review, analyze, and manage investigative digital data in legally sanctioned investigations.
Role Overview :
We’re expanding our Threat Ops team and seeking a Security Analyst with a focus on Threat Hunting to join our first line of defense. Our team investigates and responds to security incidents, creates alerting rules, administers various security products, and oversees integration and automation projects.
Requirements:
- Monitor security events and perform incident response and documentation.
- Automate tier1 incident response process.
- Regularly review Siem rule base and perform tuning and create new rules based on trending cyber attack methods
- Threat Hunting – search for suspicious activities and existing threats based on non-monitored scopes
- Vulnerability Managment – Generate reports using vulnerability scanning tools and collaborate with stakeholders to ensure progress
- Generate reports for IT administrators, business managers, and security leaders to evaluate the efficacy of the security policies.
- Advise and implement necessary changes required to counter the attack or improvise security standards.
- Document incidents to contribute to incident response and disaster recovery plans.
- Perform internal and external security audits.
Qualifications:
- Cybersecurity course or certification
- Experience in similar SIEM/SOC roles. (Mssp, SOC on-prem, IR team)
- Proven experience with SIEM (Rules, Parsing, Correlation, Investigation) - MUST.
- Proven experience with Palo Alto Xsoar (Playbook implementation) - MUST.
- Proven experience with Threat Hunting - MUST.
- Familiarity with methodologies, such as Cyber Kill Chain and MITRE ATT&CK. – MUST
- Experienced with multi-cloud platforms (Azure, AWS) – Advantage
- Experienced with EDR System (Crowdstrike – Advantage)
- Strong knowledge of the TCP/IP topology, network protocols, active directory, and File permissions.
- Experienced with network and security systems (network device, security device, endpoint devices, EDR, FW).
- Experience with writing incident response reports.
- OS Fundamentals: Windows, Linux, Mac-an advantaged.
- Scripting: Powershell, Python-an advantaged.
- Code Language: Regex, JSON, XML-an advantaged.
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.
פתח תקווה
בוקר