TL;DR
Security Researcher: Researching and analyzing emerging threats across cloud platforms, applications, APIs, and runtime environments with an accent on vulnerability management, threat hunting, and incident response. Focus on building detection logic, analytics, rules, and signatures for vulnerabilities, exposures, and active threats.
Location: Tel Aviv
Company
Orca is a cloud security innovation leader.
What you will do
- Research and analyze emerging threats across cloud platforms, applications, APIs, and runtime environments.
- Investigate attacks and security incidents, then turn findings into improved detections and product capabilities.
- Build detection logic, analytics, rules, and signatures for vulnerabilities, exposures, and active threats.
- Contribute to runtime and cloud security visibility and detection (Linux, containers, Kubernetes).
- Prototype tools and automation to speed up research and improve detection accuracy.
- Share knowledge through internal enablement, blog posts, whitepapers, or conference talks.
Requirements
- 4+ years in security research or security engineering.
- Strong foundation in one or more of: Operating systems (especially Linux), Vulnerability management/research, DFIR, incident response, or threat hunting, Cloud/container/runtime security.
- Strong analytical “attacker mindset” and ability to explain complex findings clearly.
- Proficiency in Python (Go is a plus).
- Experience working with telemetry and data (SQL/Elastic or similar is a plus).
- Comfortable collaborating across teams in English.
Nice to have
- Kubernetes/containers, major clouds (AWS/Azure/GCP).
- eBPF, reverse engineering, offensive security experience.
- Open-source security tooling familiarity, or AI/automation in security workflows.
Culture & Benefits
- Talent has no boundaries.
- High-growth environment.
- Disruptive innovation.
- Respectful and transparent culture.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →