דלג לתוכן הראשי

Technical CISO

Undisclosedמחוז תל אביב, ישראללא צויןFull-timeדרגה: ליד

פורסם 28 ביוני · 0 מועמדים

שכר לא צוין במשרה זו

שמירה, הגשה או בדיקת התאמה — כמה שניות להקמת חשבון חינם.

תובנת Willbi

התפקיד במילים פשוטות

תפקיד זה משלב בין הנדסת אבטחת מידע מעשית לבין ניהול אסטרטגי של תוכנית אבטחת המידע בארגון, בכפיפות ישירה ל-CTO. במסגרת התפקיד, תוביל את תפעול האבטחה השוטף בסביבת AWS וטכנולוגיות מיקרוסופט, לצד ניהול תהליכי תאימות ורגולציה כמו ISO 27001 ו-SOC 2. כמו כן, תהיה אחראי על כתיבת מדיניות אבטחה, הדרכת עובדים ותמיכה בצוותי הפיתוח וה-DevOps.

חובה
  • 3+ years of experience in Information Security, Security Engineering, SecOps, or similar roles
  • Strong hands-on experience securing AWS environments
  • Hands-on experience managing Microsoft 365 Security (E5), Microsoft Defender, and Entra ID
  • Deep understanding of cloud security architecture and security best practices
  • Experience implementing security controls for ISO 27001, SOC 2, or similar compliance frameworks
יתרון
  • Experience with Infrastructure as Code (Terraform or similar)
  • Experience with EDR/XDR, SIEM, threat detection, and incident response
  • Familiarity with AWS Security Hub, GuardDuty, Microsoft Sentinel, or similar platforms
  • Relevant certifications such as CISSP, CISM, ISO 27001 Lead Implementer/Auditor, AWS Security Specialty, or Microsoft Security certifications

חולץ מתיאור המשרה · מתעדכן אוטומטית

למי זה מתאים

התפקיד מתאים לאנשי אבטחת מידע מנוסים עם רקע טכני חזק ב-AWS ובמערכות האבטחה של Microsoft 365, המעוניינים לשלב עבודה מעשית (Hands-on) עם הובלת אסטרטגיה ותאימות. הוא פחות יתאים למי שמחפש תפקיד ניהולי או תיאורטי בלבד ללא נגיעה ישירה בטכנולוגיה ובתשתיות ענן.

תיאור המשרה המלא

המשרה המקורית · נשמר לעיון

About the Role

An innovative cyber company is looking for a highly Technical CISO to own both the operational and governance aspects of the organization's information security program.

This is a hybrid leadership role combining hands-on security engineering (approximately 60%) with strategic information security management (approximately 40%). Reporting directly to the CTO, you will be responsible for strengthening the company's security posture across cloud environments, Microsoft security technologies, compliance frameworks, and organizational security awareness.

This position is ideal for someone who enjoys staying close to technology while also driving security strategy, governance, and compliance.

Key Responsibilities

Information Security Leadership (40%)

• Own the company's Information Security Management System (ISMS).

• Lead ISO 27001, SOC 2, and other compliance initiatives from planning through certification.

• Define and maintain security policies, standards, and procedures.

• Conduct internal security risk assessments and drive remediation plans.

• Deliver security awareness and training programs across the organization.

• Advise management on information security strategy, risks, and priorities.

• Support customer security reviews, audits, and security questionnaires.

Security Operations (60%)

• Lead the organization's day-to-day security operations.

• Secure and harden AWS cloud infrastructure using security best practices.

• Manage and optimize Microsoft 365 E5 security capabilities, including Microsoft Defender.

• Design and maintain IAM, Conditional Access, and identity security controls.

• Implement cloud security controls, monitoring, and continuous improvement initiatives.

• Support R&D, DevOps, and Product teams in secure architecture and secure development practices.

• Lead incident response activities and coordinate with external security providers when required.

• Develop security automation and operational playbooks.

Requirements

Must-Have

• 3+ years of experience in Information Security, Security Engineering, SecOps, or similar roles.

• Strong hands-on experience securing AWS environments.

• Hands-on experience managing Microsoft 365 Security (E5), Microsoft Defender, and Entra ID.

• Deep understanding of cloud security architecture and security best practices.

• Experience implementing security controls for ISO 27001, SOC 2, or similar compliance frameworks.

• Experience writing and maintaining security policies and procedures.

• Experience leading security awareness initiatives.

• Strong understanding of networking, identity management, endpoint security, and modern security technologies.

• Ability to independently lead cross-functional security projects.

• High level of English communication skills (written and spoken).

Nice to Have

• Experience with Infrastructure as Code (Terraform or similar).

• Experience with EDR/XDR, SIEM, threat detection, and incident response.

• Familiarity with AWS Security Hub, GuardDuty, Microsoft Sentinel, or similar platforms.

• Relevant certifications such as CISSP, CISM, ISO 27001 Lead Implementer/Auditor, AWS Security Specialty, or Microsoft Security certifications.

אודות Undisclosed
פרופיל החברה · בקרוב

ביקורות עובדים · בקרובעוד משרות ב-Undisclosed

שאלות על המשרה

  • המשרה לא ציינה שכר. אנחנו מציגים שכר רק כשהמעסיק מפרסם אותו.
Undisclosed
פורסם 28 ביוני · 0 מועמדים
בדקו את ההתאמה