SecOps Security Engineer
פורסם היום · 0 מועמדים
תיאור המשרה המלא
המשרה המקורית · נשמר לעיוןRole Overview: As the SecOps Security Engineer at Cellebrite, you will be part of a team of security professionals responsible for defining and executing our security operations strategy, driving initiatives to enhance our overall security posture. You will identify security issues and risks, develop mitigation plans, and implement security-focused tools and services. You will also be responsible for developing and interpreting security policies and procedures, delivering training materials, and evaluating and recommending new and emerging security products and technologies. Additionally, you will participate in tier 3 security operations support and incident handling. Responsibilities: • Design, implement, and maintain security tools and controls across endpoint, identity, cloud, and network layers. • Identify security gaps and risks across the environment and develop and execute mitigation plans. • Manage and tune security platforms including EDR/EPP, PAM/EPM, NAC, VPN, web Proxy, and identity providers (Okta, Entra ID). • Administer and optimize Palo Alto firewall and Prisma Access (and Strata Cloud Manager, where applicable) policies and egress controls. • Monitor cloud environments for misconfigurations and risk using CSPM/DSPM tooling (e.g., Wiz), across AWS and other cloud providers. • Develop, document, and maintain security policies, procedures, and standards, and deliver related training materials to stakeholders. • Provide tier 3 security operations support, including advanced troubleshooting and incident handling/response. • Apply the MITRE ATT&CK framework to map threats, build detection logic, and inform mitigation strategies. • Evaluate and recommend new and emerging security products and technologies to strengthen the organization's security posture. • Conduct proof-of-concept (POC) evaluations on various security products, leading each POC end to end from scoping through evaluation and recommendation. • Leverage AI-powered tools and automation (e.g., Claude Code, LLM-based workflows) to improve efficiency in security operations, while applying MCP and AI guardrail principles to ensure secure, governed use of AI tooling. • Write and maintain scripts (Python, Bash, Batch) to automate security operations, reporting, and remediation tasks. • Collaborate cross-functionally with IT, R&D, and compliance teams to align security initiatives with business needs. • Mentor other team members as needed, sharing knowledge and best practices to strengthen overall team capability.
Requirements: • At least 5 years hands-on experience deploying, managing, and supporting security infrastructure in a highly available 24x7 environment from a global company. • Experience with different security solutions including web Proxy, Okta, Entra ID, EDR/EPP, NAC, VPN, EPS, PAM/EPM, PKI, etc. • Proven knowledge of Palo Alto firewalls and Prisma Access; knowledge of Strata Cloud Manager (SCM) is an added value. • Experience providing security solutions within complex environments (physical, virtual, SaaS, and IaaS). • Experience with cloud security across AWS, and similar experience/knowledge with other cloud providers such as Microsoft Azure and Google Cloud Platform (GCP). • Experience with cloud security posture and data security posture tools (e.g., Wiz, CSPM/DSPM). • Working knowledge of networking fundamentals as they relate to security (e.g., TCP/IP, DNS, VPN tunneling, network segmentation, basic routing/firewalling concepts). • Proven scripting capabilities (Python, Bash, Batch). • Advanced AI skills, including hands-on experience leveraging AI-powered tools (e.g., Claude Code, LLM-based automation) to streamline security operations, policy development, and workflow efficiency, along with knowledge of Model Context Protocol (MCP) and AI guardrails for secure and governed AI tool integration. • Knowledge of the MITRE ATT&CK framework, including mapping threats/IOAs and applying it to detection and mitigation strategies. • Professional certifications such as CISSP, CISM, or equivalent. • Bachelor's degree in Computer Science, Information Security, or a related field – an advantage. • High level troubleshooting skills. • Team player with excellent interpersonal skills. • Excellent written and verbal communication skills in both English and Hebrew. #LI-HI1
שאלות על המשרה
- המשרה לא ציינה שכר. אנחנו מציגים שכר רק כשהמעסיק מפרסם אותו.
- היברידי