Senior IR & SecOps Engineer

Tel Aviv

JFrog

The JFrog Platform gives you an end-to-end pipeline to control the flow of your binaries from build to production. Power your software updates to the edge

View all jobs at JFrog

Apply now Apply later

At JFrog, we’re reinventing DevOps to help the world’s greatest companies innovate -- and we want you along for the ride. This is a special place with a unique combination of brilliance, spirit and just all-around great people. Here, if you’re willing to do more, your career can take off. And since software plays a central role in everyone’s lives, you’ll be part of an important mission. Thousands of customers, including 75% of the Fortune 100, trust JFrog to manage, accelerate, and secure their software delivery from code to production -- a concept we call “liquid software.” Wouldn't it be amazing if you could join us on our journey?

As a SecOps Engineer at JFrog, you will lead the response process regarding security threats facing the company. You will help further develop the Incident Response program that protects JFrog today and in the future. We are looking for an experienced, highly motivated leader who embraces the opportunity to influence and evangelize security across the organization.

As a Senior IR & SecOps Engineer at JFrog, you will... 
  • Drive key business KPIs
  • Plan, design, build, and execute JFrog’s security engineering operations
  • Perform and hande incident triage by determining scope, urgency, and potential impact thereafter; identifying the specific vulnerability while recommending actions for quick remediation
  • Partner with teams in the company to drive holistic and comprehensive fixes for systemic issues
  • Build and maintain the groups’ domain leadership with the latest technology trends related to DevSecOps Engineering 
  • Identify new security threats by conducting continuous monitoring, vulnerability assessments, and log analysis
  • Provide on-call security support as needed
To be a Senior IR & SecOps Engineer at JFrog you need...
  • 5+ years of relevant industry experience in security, solid knowledge of information security principles, and practices
  • Proven experience with attack and mitigation methods in complex cloud environments (AWS/GCP/Azure)
  • Proven experience with performing risk management and prioritization for leading remediation processes for internal teams (e.g. SREs, DevOps, et.c)
  • Proven experience designing, tinkering with, and tailoring vulnerability management, SaaS security posture/CASB, asset management,and device posture platforms
  • Proven experience in at least 4 of the following domains:
    • Patch management
    • SSO/SAML
    • Secure Access/Zero Trust + 802.1x
    • Endpoint Protection - EDR \ XDR
    • IDM/IAM
    • Email Protection
Security monitoring and analytics (e.g. ELK/Splunk)
  • In-depth technical knowledge of IT operating systems and technologies,and knowledge in securing containerized environments (Docker, K8s)  
  • Experience building security tools and processes using your preferred coding language (we mainly use Python or Go) for critical infrastructure protection, monitoring, and remediation
Apply now Apply later
  • Share this job via
  • 𝕏
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: Analytics AWS Azure C CASB Cloud DevOps DevSecOps Docker EDR ELK GCP IAM Incident response KPIs Kubernetes Log analysis Monitoring Python Risk management SaaS SAML SecOps Splunk SSO Vulnerability management XDR Zero Trust

Region: Middle East
Country: Israel

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.