Cyber Security Architect
Israel
Varonis
The world's only fully automated DSPM. Continuously discover and classify critical data, remove exposures, and stop threats in real-time with AI-powered automation.- Conduct architecture reviews for both designed and deployed environments, identifying security flaws and proposing mitigation plans.
- Evaluate and enhance security posture by fortifying infrastructure resilience and implementing best-practice organizational procedures.
- Develop and implement practical solutions for security issues, such as firewall policy reviews, segmentation recommendations, and Microsoft AD-tier Model implementation.
- Stay abreast of emerging security solutions and technologies through research and advocacy.
- Act as an incident responder for post-breach triage.
- 3+ of hands-on experience securing large organizational networks, including expertise in security controls, OS hardening, and network devices' security.
- Deep understanding of Microsoft IT, both on-premises and cloud infrastructure (e.g., Azure AD, Office365, AD, GPO, protocols).
- Practical experience in Firewall management from different vendors.
- Knowledge of network security systems, including VPN, WAF, IPS, AV, EDR/XDR, NAC, DLP, and device control.
- Knowledge of authentication and network security protocols, including SSL/TLS, OAuth, SAML, SSH, HTTPS, LDAP, Kerberos, and IPsec.
- Practical experience with vulnerability scanning tools.
- Experience in threat detection and management.
- Implementation experience with security monitoring procedures and systems (SOC, SIEM, SOAR).
- Previous management and project leadership experience.
- Advanced technical writing skills.
- Practical experience with cloud environments such as AWS, Azure, GCP.
- Hands-on experience with Kubernetes deployment and hardening.
- Practical experience in consulting services and risk assessment.
- Zero Trust Network Access (ZTNA) design and deployment experience.
- Bachelor’s degree in a relevant field.
- CISSP (Certified Information Systems Security Professional).
- CISM (Certified Information Security Manager).
- CompTIA Security+, CEH (Certified Ethical Hacker).
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: AWS Azure CEH CISM CISSP Cloud CompTIA EDR Firewalls GCP IPS Kerberos Kubernetes LDAP Monitoring Network security Risk assessment SAML SIEM SOAR SOC SSH Threat detection TLS VPN Vulnerabilities XDR Zero Trust ZTNA
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.