jobify_logo ×
  • מִשׁתַמֵשׁ
  • התחברות/הרשמה
  • עמוד הבית
  • מי אנחנו
  • מעסיקים מובילים
  • פרסום משרה חינם
  • צרו קשר
  • תנאי שימוש
  • מדיניות פרטיות
  • הצהרת נגישות
קרן עזריאלי טקסט בעברית עם סמל אינסוף social_security the_israeli_employment_service work_office המקום
jobify_logo
  • מי אנחנו
  • מעסיקים מובילים
  • פרסום משרה חינם
  • צרו קשר
דילוג לתוכן

עדיין מחפשים עבודה במנועי חיפוש? הגיע הזמן להשתדרג!

במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.

מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.

SOC Analyst

Cato Networks

Cato Networks

  • תל אביב - יפו
  • Indeed
Indeed

SOC Analyst

Cato Networks

Cato Networks

  • תל אביב - יפו
  • bag_icon מלאה
  • coins_icon 18,000-25,000 ₪ (הערכה מבוססת AI)
    הערכה מבוססת AI ולא שכר של המעסיק
  • Indeed
Indeed

Welcome to the future of cloud networking and security!
Cato Networks is the first company to converge enterprise networking and security into one centralized and global service that is delivered by cloud. It is led by networking and security pioneer Shlomo Kramer (Check Point, Imperva) and early investor (Palo Alto Networks, Exabeam, Trusteer and more). Cato's unique technology inspired a brand-new product category, later named "SASE" by Gartner and a market expected to reach $28.5 billion by 2028.

This is your opportunity to get on the rocket ship and join a company that is building a cutting-edge enterprise network and secure cloud platform, and is on a fast track to becoming the worldwide market leader – don't miss it!

As a SOC Analyst, you will be part of the team responsible for real-time monitoring, detection, investigation, and response to security incidents affecting our global infrastructure and services, within a 24x7 operational environment.
This is a hybrid analyst and operations role. Beyond investigating incidents, you will own significant parts of how the SOC runs: the SIEM platform, the detection rule lifecycle, exclusion and exception handling, response automation, and the AI-assisted workflows we use to accelerate triage and investigation.
You will be the only SOC analyst based in Israel, while the rest of the analyst team operates from the Philippines. You will act as the SOC's local anchor — the on-site technical counterpart for the Israel-based Cyber Security, IT, Operations, and R&D teams, and the escalation and knowledge bridge between them and the offshore shifts. The role calls for ownership, independence, and the appetite to build and improve, not only to operate.
Responsibilities

Monitoring and Detection: Continuously monitor SIEM, endpoint protection (EDR), IPS, mail security, CASB, cloud, and identity security solutions to identify potential threats.

Incident Response: Serve as one of the first levels of escalation for security incidents - investigate, contain, and drive resolution before escalating to the senior SecOps members, in accordance with defined procedures and SLAs.

Incident Coordination: Lead coordination of major incidents until ownership is transferred to the relevant SecOps, IT, Operations, or R&D team; ensure clear communication, escalation, and tracking of action items.

Threat Analysis: Analyze logs, network traffic, endpoint telemetry, and native (in-tool) alerts to determine root cause, scope, impact, and remediation steps.

SIEM and Detection Engineering: Own day-to-day operation of the SIEM - data onboarding and ingest pipelines, field mapping and data quality, dashboards and platform health - and write, tune, and maintain detection rules while measuring their effectiveness.

Exclusion and Exception Management: Own the exclusion and exception lifecycle across the security stack: review requests, assess risk, apply scoped, time-bound exclusions, and revalidate them periodically.

Automation and AI-Assisted Operations: Build and maintain automations across the SOC toolchain (enrichment, containment, ticketing, reporting), and design, implement, and validate AI/LLM-based workflows for alert triage, investigation support, and documentation - including guardrails and quality control of AI output.

Investigation Documentation: Create and maintain detailed incident tickets, including investigation audit trail, action items, and timelines.

Technical Leadership: Act as the senior operational reference for the analyst team: help prioritize workload, assure investigation quality, maintain consistent handling of incidents, escalations, and shift handovers, and mentor analysts on tooling and methodology.

Collaboration: Work closely with the Cyber Security team, IT, Operations, and R&D locally, and with the offshore SOC team across time zones.

Continuous Improvement: Drive improvements to detection logic, automation, operational runbooks, and shift handover documentation based on lessons learned from incidents.

Compliance and Reporting: Support reporting for compliance audits, management reviews, and threat intelligence updates.

Requirements

3–5 years of hands-on experience in a SOC or cybersecurity operations role.

Proven experience with a SIEM platform, including detection rule engineering and content development (Advantage: Elastic).

Experience with EDR and additional security tools and platforms (Advantage: CrowdStrike Falcon).

Practical experience using AI/LLM tools in technical workflows, with a clear understanding of their limitations and failure modes.

Broad technical foundation across the SOC domain: threat vectors, malware behavior, network protocols, operating system internals, identity, cloud, and SaaS security controls.

Strong analytical and problem-solving skills, with the ability to correlate events across multiple data sources and think beyond the alert.

High degree of ownership and autonomy - able to operate as the only analyst on site, set priorities independently, and drive tasks to closure.

Excellent communication skills and the ability to work effectively with distributed teams across time zones.

Ability to work effectively on time-sensitive tasks, with a service-oriented approach toward internal stakeholders.

Proficiency in written and verbal English is a must.

Advantage

Experience building SOAR pipelines or agentic AI workflows in a security context.

Experience with cloud security monitoring (AWS, Azure) and container/Kubernetes telemetry.

Experience working with or supporting an offshore/outsourced SOC team.

Experience with threat intelligence platforms (e.g., MISP) and intel-driven detection.


במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.

מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.

שאלות ותשובות עבור משרת SOC Analyst

כאנליסט SOC ב-Cato Networks, תהיה אחראי על ניטור, זיהוי, חקירה ותגובה לאירועי אבטחה בזמן אמת המשפיעים על התשתית והשירותים הגלובליים של החברה. התפקיד כולל גם בעלות על תפעול ה-SOC, כולל פלטפורמת ה-SIEM, מחזור חיי כללי הזיהוי, טיפול בחריגים, אוטומציה של תגובות וזרימות עבודה מבוססות AI. בנוסף, תהווה עוגן מקומי בישראל, ותגשר בין הצוותים המקומיים לצוות האנליסטים בפיליפינים.

לתפקיד אנליסט SOC ב-Cato Networks נדרשות 3-5 שנות ניסיון מעשי בתחום ה-SOC או תפעול אבטחת סייבר. יש צורך בניסיון מוכח עם פלטפורמת SIEM (יתרון ל-Elastic), כולל הנדסת כללי זיהוי ופיתוח תוכן, וכן ניסיון עם כלי אבטחה נוספים כמו EDR (יתרון ל-CrowdStrike Falcon). נדרש גם ניסיון מעשי בשימוש בכלי AI/LLM בזרימות עבודה טכניות, הבנה רחבה של וקטורי איום, פרוטוקולי רשת, אבטחת ענן ו-SaaS, ויכולות אנליטיות ופתרון בעיות חזקות.

אנליסט SOC ב-Cato Networks תורם לשיפור מתמיד על ידי הנעת שיפורים בלוגיקת הזיהוי, אוטומציה, ספרי הפעלה ותיעוד העברת משמרות, בהתבסס על לקחים שנלמדו מאירועים. התפקיד כולל גם בנייה ותחזוקה של אוטומציות בכל שרשרת הכלים של ה-SOC, ותכנון, הטמעה ואימות של זרימות עבודה מבוססות AI/LLM לתעדוף התראות, תמיכה בחקירות ותיעוד, תוך הקפדה על בקרת איכות של פלט ה-AI. בנוסף, האנליסט תומך בדיווח לביקורות תאימות, סקירות הנהלה ועדכוני מודיעין איומים.

משרות נוספות מומלצות עבורך
  • רשימת משאלות

    SOC Analyst

    • map_icon תל אביב - יפו
    QualityAI

    QualityAI

  • רשימת משאלות

    BDO מגייסת SOC Analyst

    • map_icon הרצליה
    bdo זיו האפט

    bdo זיו האפט

  • רשימת משאלות

    חצי משרה- איש מערכות אבטחת מידע בחברה ממשלתית במרכז

    • map_icon רמת גן
    ליאקום מערכות

    ליאקום מערכות

  • רשימת משאלות

    SOC Analyst (36921)

    • map_icon תל אביב - יפו
    מרטנס | Mertens – מקבוצת מלם תים

    מרטנס | Mertens – מקבוצת מלם תים

  • רשימת משאלות

    SOC Analyst (37475)

    • map_icon תל אביב - יפו
    מרטנס | Mertens – מקבוצת מלם תים

    מרטנס | Mertens – מקבוצת מלם תים

  • רשימת משאלות

    אנליסט.ית SOC

    • map_icon תל אביב - יפו
    matrix (מוצרים)

    matrix (מוצרים)

לכל המשרות של אנליסט SOC

הכשרות רלוונטיות

ITSafe

ITSafe

אנליסט SOC

  • map_icon אונליין
  • אונליין
  • clk_icon 12 חודשים
ITQ Ltd

ITQ Ltd

מסלול סייבר מורחב

  • map_icon אונליין
  • בוקר
  • clk_icon 3 חודשים
  • סיבסוד סבסוד
  • השמה השמה
קרנליוס

קרנליוס

Linux Malware Analysis Workshop

קרנליוס

קרנליוס

CHSAE – Certified Hands-on SOC Analyst Expert and IR

ניתן לצפות במשרות שסימנת בכל שלב תחת התפריט הראשי בקטגוריית 'משרות שאהבתי'

המקום קרן עזריאלי טקסט בעברית עם סמל אינסוף
  • מי אנחנו
  • מעסיקים מובילים
  • צרו קשר
  • תנאי שימוש
  • מדיניות פרטיות
  • הצהרת נגישות

2026 Ⓒ ג'וביפיי - כל הזכויות שמורות

קרן עזריאלי טקסט בעברית עם סמל אינסוף social_security the_israeli_employment_service israel_innovation_authority work_office המקום
המערכת בונה את הפרופיל התעסוקתי שלך

עוד רגע...

המערכת זיהתה ששינית את הנתונים באזור האישי ומעדכנת את ההמלצות על תפקידים ומשרות בהתאם.

מצטערים, לא הצלחנו לנתח בהצלחה את הנתונים שהזנת.
אתם מוזמנים לנסות להזין שוב או להעלות קובץ קורות חיים במידה ויש לכם.
בהצלחה

הגעת להגבלה היומית של שלושה עדכונים בפרופיל האישי ביום

loader

הבקשה שלך נשלחה בהצלחה!

יש באפשרותך לשלוח בקשה לקבלת ייעוץ אישי ללא עלות מיועצת קריירה.

באפשרותך לשלוח בקשה לקבלת ייעוץ אישי ללא עלות

  • בעיה טכנית

  • סיוע בכתיבת קורות חיים או בהכנה לראיון עבודה

  • התאמה של משרות

  • אחר:

פנייתך נשלחה בהצלחה. נציג מטעם ארגון נכי צהל ייצור איתך קשר בהקדם