Security Engineer
תיאור המשרה
We are looking for a Security Engineer with 1-2 years of experience to join our Internal Security team.This role combines hands-on cloud and security operations with support for GRC and compliance activities.You will be involved in securing our cloud, SaaS, and AI-driven systems, monitoring security events, and helping maintain our overall security posture. In parallel, you will support customer security questionnaires and compliance processes. What You'll Do:Monitor, triage, and investigate security alerts and incidents across cloud and security tools (EDR, CASB, ZTNA, SaaS security platforms, and identity providers), and support response and remediation activitiesAssist in securing cloud environments (AWS/GCP/Azure), including IAM, access controls, network security, and CI/CD pipeline securityWork closely with DevOps and IT teams to implement and enforce security best practices across infrastructure, endpoints, and SaaS systemsSupport vulnerability management processes, including scanning, prioritization, and remediation trackingSupport risk management processes by identifying, assessing, and tracking risks, including vulnerability management, remediation efforts, and control gapsSupport customer security questionnaires (RFPs/RFIs) with accurate technical responsesAssist in maintaining compliance with frameworks such as SOC 2 and ISO 27001, including preparing audit evidence and documentationRequirements: Who You Are?1-2 years of experience in cybersecurity, cloud security, and security operationsBasic hands-on experience with cloud platforms (AWS, GCP, or Azure)Understanding of core security concepts: IAM, networking, least privilege, and secure configurationsExperience or strong interest in collaborating with DevOps and IT teams, alongside a focus on AI security, data protection, and emerging technologiesFamiliarity with security tools such as EDR, vulnerability scanners, or SaaS security solutionsStrong analytical and troubleshooting skills, with high attention to detail and the ability to manage multiple tasksGood communication skills and ability to work cross-functionallyWillingness to learn and grow in both technical security and GRC domainsNice to Have:Experience with cloud security best practices and securing CI/CD pipelines and infrastructure-as-code (Terraform, etc.)Familiarity with identity systems (Okta, Azure AD, etc.)Familiarity with compliance frameworks such as SOC 2, ISO 27001, or NISTThis position is open to all candidates.
מתעניינים במשרה הזו?