SecOps Engineer
abra · Center, Center District, Remote, Hybrid
מיד-לבלהיברידימשרה מלאהסייבר ואבטחה
הגשת מועמדות באתר החברה
אומתה כפתוחה אצל המעסיק לפני 1 שעות · פורסמה לפני 15 ימים
דרישות
information securitycheck pointsiemnetworkingdns
יתרון
apexcloudflareedrcrowdstrikesentinelonegenaianomaly detection
תיאור המשרה
Description
abra professional services is seeking a SecOps / Security Operations Specialist.
We are looking for a skilled SecOps / Security Operations Specialist to join an information security team and operate, maintain, and support advanced security tools and technologies.
This role requires hands-on experience in SecOps / SOC, firewall management, WAF and DDoS protection, PAM / identity management, EDR/XDR, email security, incident response, and the use of AI technologies for cyber investigation and threat detection.
A full-time position based in Israel.
Key Responsibilities:
- Operate, configure, maintain, update, and manage policies and rules in Check Point firewalls.
- Manage, configure, and maintain WAF and DDoS protection systems, including Radware, Reblaze, and Cloudflare.
- Operate, manage, and maintain CyberArk PAM, identity, and access management processes.
- Manage and maintain Trend Micro products, including Vision One / Apex One, investigate EDR/XDR alerts, and operate email security systems against phishing and malware.
- Work with SOC teams, respond to alerts, perform initial incident response investigations, and support remediation processes.
- Use Generative AI / AI and automation tools to analyze security alerts, investigate logs, identify anomalies, and understand new security risks in environments that integrate AI tools.
Requirements
- 3+ years of hands-on experience in SecOps, Security Operations, SOC Tier 2, SOC Tier 3, or a similar Information Security role - mandatory
- Hands-on experience with Check Point Firewalls, including configuration, policy/rule management, maintenance, and troubleshooting - mandatory
- Hands-on experience with CyberArk PAM - mandatory
- Hands-on experience with EDR/XDR solutions and security alert investigation - mandatory
- Experience working with WAF solutions - mandatory
- Experience with security incident investigation and remediation - mandatory
- Familiarity with SOC environments and SIEM/SOAR platforms - mandatory
- Strong understanding of networking and security protocols, including:
- TCP/IP
- HTTP/HTTPS
- DNS
- SSL/TLS
- Ability to troubleshoot security and network-related issues in production environments.
Nice to Have
- Experience with Trend Micro Vision One / Apex One.
- Experience with Radware, Reblaze, or Cloudflare WAF/DDoS solutions.
- Experience with alternative EDR/XDR platforms such as Microsoft Defender for Endpoint, CrowdStrike, or SentinelOne.
- Experience with additional WAF technologies such as Imperva, F5, or Akamai.
- Familiarity with AI-driven security tools and AI-assisted SOC operations.
- Understanding of security risks related to AI environments, including:
- Prompt Injection
- Data Leakage
- Misuse of Generative AI
- Experience using AI or automation tools for log analysis, threat detection, incident investigation, or anomaly detection.