jobify_logo ×
  • מִשׁתַמֵשׁ
  • התחברות/הרשמה111
  • עמוד הבית
  • מי אנחנו
  • מעסיקים מובילים
  • פרסום משרה חינם
  • צרו קשר
  • תנאי שימוש
  • מדיניות פרטיות
  • הצהרת נגישות
קרן עזריאלי טקסט בעברית עם סמל אינסוף social_security the_israeli_employment_service work_office המקום
jobify_logo
  • מי אנחנו
  • מעסיקים מובילים
  • פרסום משרה חינם
  • צרו קשר
דילוג לתוכן

עדיין מחפשים עבודה במנועי חיפוש? הגיע הזמן להשתדרג!

במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.

מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.

Offensive Web Security Researcher / Penetration Tester

Reflectiz

Reflectiz Reflectiz

  • רמת גן
  • LinkedIn
LinkedIn

Offensive Web Security Researcher / Penetration Tester

Reflectiz

Reflectiz Reflectiz

  • רמת גן
  • bag_icon מלאה
  • coins_icon 18,000-27,000 ₪ (הערכה מבוססת AI)
    הערכה מבוססת AI ולא שכר של המעסיק
  • LinkedIn
LinkedIn


Reflectiz is a fast-growing cybersecurity company specializing in proactive website security. Our unique remote monitoring technology helps organizations reduce security, privacy, and compliance risks-protecting critical digital assets that traditional solutions can’t fully cover.

Since our founding in 2019, we’ve built a global customer base that includes Fortune 500 enterprises and leading brands across North America, EMEA, and APAC. With strong year-over-year growth and a financially solid foundation, Reflectiz offers both stability and exciting opportunities for personal and professional development. Our teams in Israel and the United States foster an inclusive, collaborative culture that combines innovation with professionalism-allowing us to consistently deliver exceptional value to our customers.

We’re looking for a sharp, passionate, hands-on Security Researcher with a strong understanding of web technologies, a hacker mindset, and a genuine drive to explore, challenge, and advance security technology.

In this role, you’ll research real-world web environments, investigate vulnerabilities and attack techniques, analyze suspicious behaviors, and explore how modern websites and browser-based security mechanisms can be bypassed.

You’ll work closely with our Security and R&D teams, turning research findings into security insights and detection capabilities within the Reflectiz platform..

Responsibilities:

  • Research web security vulnerabilities, attack techniques, and emerging threats
  • Pen testing - Investigate real-world websites and web applications to identify security weaknesses and suspicious behavior
  • Analyze client-side attacks, malicious scripts, third-party components, and web supply-chain risks
  • Research vulnerabilities and attack vectors such as XSS, CSRF, injection techniques, and browser-based attacks
  • Analyze JavaScript execution, DOM behavior, network requests, and browser activity from a security perspective
  • Investigate security mechanisms such as WAFs, bot protection, authentication mechanisms, fingerprinting, and rate limiting
  • Explore bypass techniques and identify weaknesses in existing security controls
  • Develop scripts and research tools to support security investigations and automate analysis
  • Analyze new vulnerabilities and attack techniques and evaluate their potential impact on web environments
  • Translate security research findings into detection methods and security capabilities for the Reflectiz platform
  • Collaborate with Security Researchers and R&D teams on complex security investigations

Requirements:

  • 3+ years of hands-on experience in Pen testing, Security Research, Web Security, Application Security, Offensive Security, or a similar security-focused role
  • Strong understanding of web vulnerabilities, attack techniques, and common web security risks
  • Strong knowledge of modern web technologies, including JavaScript, HTTP/HTTPS, DOM, browser behavior, APIs, and web application architecture
  • Strong investigative mindset and the ability to think like an attacker
  • Ability to independently research complex security problems and turn findings into practical insights
  • Hands-on experience with AI-assisted and agentic coding workflows, using AI tools effectively

Advantage:

  • Experience with browser security or Chromium
  • Experience in penetration testing, vulnerability research, bug bounty, AppSec, or offensive security
  • Familiarity with OWASP methodologies and common web security testing tools
  • Degree in Computer Science or a related technical field


במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.

מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.

שאלות ותשובות עבור משרת Offensive Web Security Researcher / Penetration Tester

בתפקיד חוקר אבטחת ווב התקפי / בודק חדירות ב-Reflectiz, תחקור סביבות ווב אמיתיות, תבדוק פרצות וטכניקות תקיפה, תנתח התנהגויות חשודות ותבחן כיצד ניתן לעקוף מנגנוני אבטחה מודרניים באתרי אינטרנט ובדפדפנים. תעבוד בשיתוף פעולה הדוק עם צוותי האבטחה והמו"פ כדי להפוך ממצאי מחקר לתובנות אבטחה ויכולות זיהוי בפלטפורמת Reflectiz.

לתפקיד זה ב-Reflectiz נדרשות 3+ שנות ניסיון מעשי בבדיקות חדירה, מחקר אבטחה, אבטחת ווב, אבטחת יישומים או תפקיד דומה המתמקד באבטחה התקפית. כמו כן, נדרשת הבנה חזקה של פגיעויות ווב, טכניקות תקיפה וסיכוני אבטחה נפוצים, ידע בטכנולוגיות ווב מודרניות (JavaScript, HTTP/HTTPS, DOM), וחשיבה חוקרת ויכולת לחשוב כמו תוקף.

חוקר אבטחת ווב התקפי / בודק חדירות ב-Reflectiz תורם לפלטפורמה על ידי תרגום ממצאי מחקר אבטחה לשיטות זיהוי ויכולות אבטחה חדשות. זה כולל ניתוח התקפות צד-לקוח, סקריפטים זדוניים, רכיבי צד שלישי וסיכוני שרשרת אספקה של ווב, וכן פיתוח סקריפטים וכלי מחקר לתמיכה בחקירות אבטחה ואוטומציה של ניתוחים, כל זאת כדי לשפר את ההגנה שמספקת הפלטפורמה ללקוחותיה.

משרות נוספות מומלצות עבורך
  • רשימת משאלות

    Red Team Specialist

    • map_icon תל אביב - יפו
    Yael Group

    Yael Group

  • רשימת משאלות

    Red Team Specialist

    • map_icon פתח תקווה
    INTENSITY Global Group

    INTENSITY Global Group

  • רשימת משאלות

    Penetration Tester

    • map_icon תל אביב - יפו
    MADSEC

    MADSEC

  • רשימת משאלות

    Penetration Tester

    • map_icon תל אביב - יפו
    Peak Innovation

    Peak Innovation

  • רשימת משאלות

    Penetration Tester

    • map_icon ראשון לציון
    COMBLACK I.T

    COMBLACK I.T

  • רשימת משאלות

    בודק/ת סייבר ידני/ת

    • map_icon רמת השרון
    Ness

    Ness

לכל המשרות של בודק חדירות

הכשרות רלוונטיות

ITSafe

ITSafe

בודק חוסן

  • map_icon אונליין
  • אונליין
  • clk_icon 12 חודשים
אס.קיו.לינק

אס.קיו.לינק

Penetration Testing

  • map_icon רמת גן
  • בוקר
  • clk_icon 1 חודשים
היחידה ללימודי חוץ

היחידה ללימודי חוץ

Certified Ethical Hacker

  • map_icon אונליין
  • אונליין
  • clk_icon 6 חודשים
מכללת האקריו

מכללת האקריו

קורס סייבר ואבטחת מידע Ethical Hacking

  • map_icon רמת גן
  • ערב
  • clk_icon 14 חודשים

ניתן לצפות במשרות שסימנת בכל שלב תחת התפריט הראשי בקטגוריית 'משרות שאהבתי'

המקום קרן עזריאלי טקסט בעברית עם סמל אינסוף
  • מי אנחנו
  • מעסיקים מובילים
  • צרו קשר
  • תנאי שימוש
  • מדיניות פרטיות
  • הצהרת נגישות

2026 Ⓒ ג'וביפיי - כל הזכויות שמורות

קרן עזריאלי טקסט בעברית עם סמל אינסוף social_security the_israeli_employment_service israel_innovation_authority work_office המקום
המערכת בונה את הפרופיל התעסוקתי שלך

עוד רגע...

המערכת זיהתה ששינית את הנתונים באזור האישי ומעדכנת את ההמלצות על תפקידים ומשרות בהתאם.

מצטערים, לא הצלחנו לנתח בהצלחה את הנתונים שהזנת.
אתם מוזמנים לנסות להזין שוב או להעלות קובץ קורות חיים במידה ויש לכם.
בהצלחה

הגעת להגבלה היומית של שלושה עדכונים בפרופיל האישי ביום

loader

הבקשה שלך נשלחה בהצלחה!

יש באפשרותך לשלוח בקשה לקבלת ייעוץ אישי ללא עלות מיועצת קריירה.

באפשרותך לשלוח בקשה לקבלת ייעוץ אישי ללא עלות

  • בעיה טכנית

  • סיוע בכתיבת קורות חיים או בהכנה לראיון עבודה

  • התאמה של משרות

  • אחר:

פנייתך נשלחה בהצלחה. נציג מטעם ארגון נכי צהל ייצור איתך קשר בהקדם