עדיין מחפשים עבודה במנועי חיפוש? הגיע הזמן להשתדרג!
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.
About BlackEdge
BlackEdge is a growing publicly traded financial group operating across mortgages, payments, and corporate financing, providing credit and financing solutions to consumers and businesses.
We combine financial expertise, an entrepreneurial mindset, and technology to develop advanced financial solutions and create meaningful value for our customers.
About the role
We’re looking for a Security Controls & Automation Engineer for a hands-on engineering role, working closely with the CISO and the organization’s GRC stakeholders.
The role combines DevOps, Infrastructure as Code, and information security: translating policy and regulation into measurable technical controls, managing the security configuration of our cloud environments as code with Terraform and Azure Policy, and building the automations that connect security systems to a centralized control platform.
The goal: continuous monitoring of policy compliance, real-time gap detection, and a reliable, organization-wide view of security and compliance posture.
What you’ll be doing
● Managing cloud security configuration as code: developing and maintaining Terraform modules, Azure Policy definitions, and pipeline templates that enforce security baselines at deployment time.
● Working GitOps-style: every infrastructure change goes through Git, pull requests, and code review, with continuous drift detection against deployed resources.
● Building security into CI/CD pipelines in GitHub Actions and Azure DevOps: secret, dependency, container, and IaC scanning, plus approval gates between environments.
● Developing API-based automations and integrations that collect data from security systems into a centralized control platform, and building and operating the platform’s own infrastructure.
● Translating security policies and regulatory requirements into measurable controls, and defining security baselines for Azure, Microsoft 365, SaaS applications, data protection, network, and endpoints.
● Monitoring identities and access (RBAC, least privilege, PIM/PAM, service accounts) and cloud and application configurations against approved baselines.
● Identifying gaps between policy and implementation, tracking remediation with system owners, and building KPIs, KRIs, and management dashboards.
What you’ll need
● At least four years of experience in DevOps, Cloud Engineering, Security Engineering, or IAM.
● Strong hands-on Terraform experience: module design, state management, and multi-environment deployments.
● Experience building and maintaining CI/CD pipelines in GitHub Actions or Azure DevOps, including automated deployment of cloud infrastructure.
● Proven Python development experience, plus PowerShell or Bash scripting, and experience with REST APIs and system integrations.
● Experience operating production environments in Azure, AWS, or GCP, including cloud networking, containers, and application security.
● Hands-on experience with identity and access management: RBAC, least privilege, PIM, PAM, and access governance.
● A solid understanding of security controls, governance, compliance, and risk management, and the ability to translate business and regulatory requirements into measurable technical controls.
Nice to have
● Experience with Microsoft Entra ID, Microsoft 365, Microsoft Graph API, Defender, Sentinel, and Azure Policy.
● Experience with DevSecOps tooling such as Defender for Cloud, GitHub Advanced Security, Checkov, tfsec, or Trivy, and with Azure Landing Zones.
● GitOps experience (Flux or Argo CD) and running Kubernetes / AKS in production.
● Experience with CSPM/SSPM platforms or Identity Governance solutions such as Entra ID Governance, SailPoint, or Saviynt.
● Development experience in C#/.NET or Java.
● Familiarity with SOC operations, data protection and DLP, network security, or endpoint security.
● Certifications such as HashiCorp Certified: Terraform Associate, AZ-400, or AZ-500.
● Experience in a financial or regulated environment.
Ready to build the technology layer that connects security policy, regulation, and security systems within a growing publicly traded financial group? We’d love to meet you.
This is a full-time, office-based position at our Tel Aviv office. The position is open to candidates of all genders.
Please send your CV to [email protected].
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.
שאלות ותשובות עבור משרת Security Controls & Automation Engineer
התפקיד המרכזי של מהנדס/ת אבטחת ובקרת אוטומציה ב-BlackEdge הוא לשלב מומחיות ב-DevOps, Infrastructure as Code ואבטחת מידע. המהנדס/ת יתרגם מדיניות ורגולציה לבקרות טכניות מדידות, ינהל את תצורת האבטחה של סביבות הענן באמצעות Terraform ו-Azure Policy, ויבנה אוטומציות המחברות מערכות אבטחה לפלטפורמת בקרה מרכזית. המטרה היא ניטור רציף של עמידה במדיניות, זיהוי פערים בזמן אמת ותצוגה אמינה וארגונית של מצב האבטחה והציות.
משרות נוספות מומלצות עבורך
-
Cloud Security Architect
-
תל אביב - יפו
Peak Innovation
-
-
Senior Cloud Security Researcher - Security Automation (Cortex)
-
תל אביב - יפו
Cyber Ark Software Ltd
-
-
לארגון רפואי מוביל דרוש/ה Cloud Security Engineer
-
תל אביב - יפו
matrix (מרכז PS)
-
-
GRC Security Specialist
-
תל אביב - יפו
Aman Group
-
-
Technical Product Engineer (Cortex-Cloud)
-
תל אביב - יפו
Cyber Ark Software Ltd
-
-
Technical Product Engineer (Cortex-Cloud)
-
תל אביב - יפו
Palo Alto Networks
-
אונליין
אונליין