עדיין מחפשים עבודה במנועי חיפוש? הגיע הזמן להשתדרג!
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.
About the Role
An innovative cyber company is looking for a highly Technical CISO to own both the operational and governance aspects of the organization's information security program.
This is a hybrid leadership role combining hands-on security engineering (approximately 60%) with strategic information security management (approximately 40%). Reporting directly to the CTO, you will be responsible for strengthening the company's security posture across cloud environments, Microsoft security technologies, compliance frameworks, and organizational security awareness.
This position is ideal for someone who enjoys staying close to technology while also driving security strategy, governance, and compliance.
Key Responsibilities
Information Security Leadership (40%)
- Own the company's Information Security Management System (ISMS).
- Lead ISO 27001, SOC 2, and other compliance initiatives from planning through certification.
- Define and maintain security policies, standards, and procedures.
- Conduct internal security risk assessments and drive remediation plans.
- Deliver security awareness and training programs across the organization.
- Advise management on information security strategy, risks, and priorities.
- Support customer security reviews, audits, and security questionnaires.
Security Operations (60%)
- Lead the organization's day-to-day security operations.
- Secure and harden AWS cloud infrastructure using security best practices.
- Manage and optimize Microsoft 365 E5 security capabilities, including Microsoft Defender.
- Design and maintain IAM, Conditional Access, and identity security controls.
- Implement cloud security controls, monitoring, and continuous improvement initiatives.
- Support R&D, DevOps, and Product teams in secure architecture and secure development practices.
- Lead incident response activities and coordinate with external security providers when required.
- Develop security automation and operational playbooks.
Requirements
Must-Have
- 3+ years of experience in Information Security, Security Engineering, SecOps, or similar roles.
- Strong hands-on experience securing AWS environments.
- Hands-on experience managing Microsoft 365 Security (E5), Microsoft Defender, and Entra ID.
- Deep understanding of cloud security architecture and security best practices.
- Experience implementing security controls for ISO 27001, SOC 2, or similar compliance frameworks.
- Experience writing and maintaining security policies and procedures.
- Experience leading security awareness initiatives.
- Strong understanding of networking, identity management, endpoint security, and modern security technologies.
- Ability to independently lead cross-functional security projects.
- High level of English communication skills (written and spoken).
Nice to Have
- Experience with Infrastructure as Code (Terraform or similar).
- Experience with EDR/XDR, SIEM, threat detection, and incident response.
- Familiarity with AWS Security Hub, GuardDuty, Microsoft Sentinel, or similar platforms.
- Relevant certifications such as CISSP, CISM, ISO 27001 Lead Implementer/Auditor, AWS Security Specialty, or Microsoft Security certifications.
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.
ירושלים
ערב