דלג לתוכן הראשי

SecOps Analyst

Bright Dataנתניה, ישראלהיברידיFull-timeדרגה: דרגת ביניים

פורסם שלשום · 0 מועמדים

שכר לא צוין במשרה זו

שמירה, הגשה או בדיקת התאמה. פתיחת חשבון חינם לוקחת כמה שניות.

תובנת Willbi

התפקיד במילים פשוטות

התפקיד כולל עבודה בצוות SecOps המשתמש בפלטפורמת AI לחקירה וקורלציה של התראות אבטחה בסביבות התשתית, הענן והמוצר. העובד משמש כשכבת השיפוט האנושי המאמתת את החקירות האוטומטיות, ומנהל אירועי אבטחה מאומתים מקצה לקצה. העבודה היומיומית כוללת ביצוע שאילתות וניתוח לוגים ב-Splunk וקבלת החלטות מהירות תחת לחץ.

חובה
  • 2+ years of hands-on experience in a SOC, Incident Response, or Threat Intelligence role
  • Splunk
  • Deep understanding of common attack vectors, MITRE ATT&CK, and enterprise security tools (EDR, IdP, SASE/Firewalls)
  • Demonstrated critical thinking: comfortable questioning AI/automated conclusions rather than accepting them at face value
  • Strong incident command instincts: fast, confident decisions under pressure with incomplete information
יתרון
  • Experience querying application/observability logs in Logz.io or ELK stack
  • Experience with AI-driven or agentic security tools
  • Experience in a SOAR-driven environment
  • Familiarity with investigating cloud-native threats
  • Relevant certifications (e.g., GCIA, GCIH, CySA+)

חולץ מתיאור המשרה · מתעדכן אוטומטית

למי זה מתאים

התפקיד מתאים לבעלי ניסיון מעשי של שנתיים ומעלה ב-SOC, תגובה לאירועים (IR) או מודיעין איומים, עם ידע חזק ב-Splunk ובמסגרת MITRE ATT&CK. הוא פחות מתאים למי שמחפש לעקוב אחר תהליכים אוטומטיים באופן עיוור ללא חשיבה ביקורתית או למי שחסר ניסיון בניתוח לוגים.

תיאור המשרה המלא

המשרה המקורית · נשמר לעיון

We are looking for a highly analytical, decisive SecOps Analyst to join our SecOps Team. Our SOC runs on an agentic AI platform that autonomously investigates and correlates security alerts across our infrastructure, cloud, and product environments. Your role is to be the critical human judgment layer: validating AI-driven investigations and owning confirmed incidents end-to-end. If you take full ownership of a problem until it's truly closed, think critically rather than trusting a tool blindly, and want to operate at the frontier of AI-driven security operations, this role is for you.

Requirements: • 2+ years of hands-on experience in a SOC, Incident Response, or Threat Intelligence role. • Strong experience querying and analyzing logs in Splunk (must). • Deep understanding of common attack vectors, MITRE ATT&CK, and enterprise security tools (EDR, IdP, SASE/Firewalls). • Demonstrated critical thinking: comfortable questioning AI/automated conclusions rather than accepting them at face value. • Strong incident command instincts: fast, confident decisions under pressure with incomplete information. • Excellent written and verbal English communication for documentation and cross-functional incident communication. Advantage • Experience querying application/observability logs in Logz.io or ELK stack. • Experience with AI-driven or agentic security tools. • Experience in a SOAR-driven environment. • Familiarity with investigating cloud-native threats. • Relevant certifications (e.g., GCIA, GCIH, CySA+).

אודות Bright Data
פרופיל החברה · בקרוב

ביקורות עובדים · בקרובעוד משרות ב-Bright Data

שאלות על המשרה

  • המשרה לא ציינה שכר. אנחנו מציגים שכר רק כשהמעסיק מפרסם אותו.
דומות וקשורות
Bright Data
פורסם שלשום · 0 מועמדים
בדקו את ההתאמה