עדיין מחפשים עבודה במנועי חיפוש? הגיע הזמן להשתדרג!
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.
About the job
Join a financial services and financial‑technology company that combines a regulated bank with modern, API‑based infrastructure for fintech and digital businesses..
What You'll Be Doing
You'll be the architect of guardrails, tooling, and policies that make AI both secure and useful for product and internal teams
- Design enterprise AI guardrails across Azure and AWS (e.g., Azure AI Studio/Azure OpenAI, Amazon Bedrock/SageMaker): content filtering, PII redaction, prompt/response validation, and policy enforcement services.
- Implement data minimization controls for GenAI/RAG workloads: context filtering, least‐privileged retrieval, document-level ACL enforcement, vector store hardening, and secure token/secret handling.
- Threat model AI systems (apps, agents, RAG, fine-tuning pipelines) using frameworks like STRIDE and the OWASP Top 10 for LLM Apps; define misuse scenarios (prompt injection/jailbreaks/data exfiltration) and build mitigations.
- Build monitoring and telemetry: privacy-preserving prompt/response logging, sensitive-data detection, safety/eval dashboards, drift/abuse signals, and incident hooks into our SIEM.
- Integrate AI security into the SDLC: reusable libraries, pre-commit checks, CI/CD gates, policy-as-code, and secure-by-default reference architectures for product teams.
- Evaluate third‑party AI vendors and internal apps: security reviews, data residency and retention requirements, SSO/SCIM integrations, DPA/TPRM inputs, and continuous control testing.
- Partner across Security, Data, Privacy, and Engineering to map AI controls to FFIEC, SOC 2, and PCI DSS; document control evidence for audits.
- Lead/participate in AI red‑teaming: automated jailbreak/prompt‑injection tests, safety benchmarks, purple‑team exercises, and response playbooks for AI incidents.
- Enable the org with concise guidelines, examples, and training on safe AI development and usage.
Requirements
- 5+ years in Security Engineering/AppSec/Cloud Security (or similar), including 1–2+ years securing AI/ML or data‑intensive systems (GenAI preferred).
- Hands‑on experience with AWS and/or Azure and modern app stacks (Python/TypeScript, REST/gRPC, containers/Kubernetes, IaC such as Terraform).
- Practical understanding of LLM attack surfaces (prompt injection, data leakage via tools, training/fine‑tune poisoning, model supply chain) and mitigation patterns.
- Familiarity with identity and access for AI workloads (OAuth2/OIDC, service principals, role tokens, PIM), and secure secret management/KMS.
- Experience implementing observability/telemetry and routing findings to SIEM; comfort balancing privacy with traceability.
- Ability to translate controls into developer-friendly libraries, docs, and CI/CD checks; strong written communication in English and Hebrew.
- Comfort working in a regulated environment and mapping controls to frameworks (FFIEC, SOC 2, PCI DSS).
Job No. 417936
CV to [email protected]
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.
שאלות ותשובות עבור משרת Security Engineer
מהנדס אבטחה בקבוצת נישה יהיה אחראי על תכנון והטמעת מנגנוני הגנה, כלים ומדיניות שיבטיחו שאבטחת AI תהיה יעילה ושימושית עבור צוותי המוצר והצוותים הפנימיים. זה כולל עיצוב מנגנוני הגנה ארגוניים ל-AI ב-Azure וב-AWS, יישום בקרות מזעור נתונים עבור עומסי עבודה של GenAI/RAG, ומידול איומים למערכות AI תוך שימוש בפריימוורקים כמו STRIDE ו-OWASP Top 10 עבור יישומי LLM.
משרות נוספות מומלצות עבורך
-
לארגון בטחוני בלוד, דרוש/ה מפתח אוטומציות בסייבר
-
תל אביב - יפו
תיגבור - מאגר כח אדם מקצועי זמני בע''מ
-
-
מיישם/ת אבטחת מידע
-
ירושלים
G-Stat
-
-
Cyber Automation Engineer (37046)
-
תל אביב - יפו
מרטנס | Mertens – מקבוצת מלם תים
-
-
Security Engineer
-
תל אביב - יפו
comblack
-
-
מיישמ.ת סייבר ותקשורת
-
תל אביב - יפו
בית החולים איכילוב
-
-
מיישמ.ת הגנת סייבר
-
ירושלים
Mertens – Malam Team
-
ירושלים
בוקר