- Страна
- Израиль
Откликайтесь
на вакансии с ИИ

Security IR Director
Fireblocks — лидер рынка с топовыми клиентами (BNY Mellon, Revolut), что гарантирует работу над сложнейшими кейсами. Позиция уровня Director предполагает высокую степень влияния на стратегию безопасности компании и отличные карьерные перспективы в сфере Web3.
Сложность вакансии
Роль требует исключительного опыта (10+ лет) и подтвержденного навыка управления критическими инцидентами (не менее 15 за последние 5 лет). Высокая сложность обусловлена необходимостью координировать действия топ-менеджмента, юристов и инженеров в условиях экстремального давления в крипто-индустрии.
Анализ зарплаты
Указанная роль директора по ИБ в Израиле (Тель-Авив) в секторе криптографии и финтеха предполагает зарплату выше среднего по рынку из-за дефицита кадров с таким специфическим опытом. Рыночные оценки для уровня Director в кибербезопасности в этом регионе начинаются от 55,000 ILS в месяц.
Сопроводительное письмо
I am writing to express my strong interest in the Security IR Director position at Fireblocks. With over a decade of experience in cybersecurity and a proven track record as an Incident Commander for high-stakes breaches, I have developed the calm, decisive leadership necessary to manage complex crises. My background includes orchestrating cross-functional responses that align technical mitigation with legal, regulatory, and business continuity requirements, ensuring that executive stakeholders remain informed and confident throughout the process.
Fireblocks’ role as a trusted infrastructure provider for major financial institutions resonates with my experience in highly regulated fintech environments. I am particularly drawn to your mission of securing the blockchain ecosystem and am eager to apply my expertise in cloud-native architectures and elite IR methodologies (honed through years of hands-on forensics and threat hunting) to further mature your incident response framework. I look forward to the possibility of leading your crisis management efforts and driving operational excellence across your security organization.
Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в fireblocks уже сейчас
Станьте ключевым звеном в защите мирового лидера цифровых активов — откликайтесь сейчас!
Описание вакансии
The world of digital assets is accelerating in speed, magnitude, and complexity, opening the door to new ways for leveraging the blockchain. Fireblocks’ platform and network provide the simplest and most secure way for companies to work with digital assets and it trusted by some of the largest financial institutions, banks, globally-recognized brands, and Web3 companies in the world, including BNY Mellon, BNP Paribas, ANZ Bank, Revolut, and thousands more.
Role Overview
We are seeking an experienced Incident Response leader to own and lead the company’s response to large-scale, high-impact cyber incidents. This role is responsible not only for technical response, but for cross-company crisis coordination, executive decision support, and ensuring fast, controlled mitigation across engineering, product, legal, communications, and leadership teams.
This is a leadership role for someone who has personally led complex incidents under pressure — including situations involving material business risk, customer impact, regulatory exposure, and executive visibility.
Key Responsibilities
Incident Leadership & Crisis Management
- Serve as the Incident Commander for high-severity cyber incidents, including breaches, supply-chain attacks, insider threats, and platform-wide security events.
- Lead company-wide incident response efforts, coordinating technical, operational, legal, communications, and executive stakeholders.
- Stand up and orchestrate crisis management teams during major incidents, ensuring clear ownership, decision-making, and execution under pressure.
- Drive rapid containment, eradication, and recovery while balancing business continuity, customer impact, and regulatory obligations.
- Act as the primary point of contact to executive leadership during incidents, providing clear, concise, timely, and actionable updates.
Cross-Department Coordination
- Orchestrate response activities across Security, Infrastructure / Cloud Operations, Product & Application Security
- Ensure alignment between technical response actions and business, legal, and regulatory considerations.
- Manage external parties when needed
Preparedness & Operational Excellence
- Own and continuously improve the incident response framework, including severity definitions, escalation paths, and decision authority.
- Design and run executive-level incident simulations and tabletop exercises, including cross-functional and leadership participation.
- Ensure high-quality post-incident reviews that result in measurable improvements to controls, detection, and response readiness.
- Define and track incident response metrics (MTTD, MTTR, blast radius, decision latency).
- Track and follow-up on lessons learned and enhancements to ensure implementation and continuous improvement.
Required Experience & Qualifications
- 10+ years in cybersecurity, with significant incident response management experience.
- Proven experience leading large-scale, cross-company cyber incidents, including incidents involving:
- Multiple engineering and operational teams
- Executive leadership and board-level visibility
- Demonstrated experience acting as Incident Commander or equivalent role during major security events for at least 15 incidents in the past 5 years.
- Strong understanding of:
- Cloud and SaaS architectures
- Identity, access control, and infrastructure security
- Detection and response technologies (SIEM, EDR, cloud-native tools)
- Offensive background
- Ability to translate technical facts into business impact and risk-based decisions.
Critical Skills & Attributes
- Crisis leadership: Calm, decisive, and structured under extreme pressure.
- Authority without ego: Able to lead across departments without formal reporting lines.
- Executive communication: Clear, concise, and credible with senior leadership.
- Systems thinker: Understands how technical, human, and process failures compound during incidents.
- Bias for action: Moves quickly while maintaining discipline and documentation.
- Analytical thinking: Attention to details and ability to connect multiple dots into a concise and accurate picture.
- Previous experience at Mandiant, Sygnia, CrowdStrike, Unit 42, or similar elite IR teams
- Experience in crypto, fintech, custody, payments, or highly regulated environments
- Hands-on background in forensics, threat hunting, or security engineering
Nice to Have
- Experience in crypto, fintech, cloud infrastructure, or highly regulated environments
- Experience supporting regulatory notifications and post-incident audits
- Background in forensics, threat intelligence, or security engineering
- Familiarity with NIST, ISO 27035, or similar incident response frameworks (practical application, not checkbox compliance)
Fireblocks' mission is to enable every business to easily and securely access digital assets and cryptocurrencies. In order to do that, we strongly believe our workforce should be as diverse as our clients, and this is why we embrace diversity and inclusion in all its forms.
Please see our candidate privacy policy here.
Создайте идеальное резюме с помощью ИИ-агента

Навыки
- Crisis Management
- NIST
- Fintech
- Incident Response
- Cloud Security
- Forensics
- SIEM
- Threat Hunting
- EDR
- SaaS Security
- Blockchain
- ISO 27035
Возможные вопросы на собеседовании
Проверка практического опыта управления кризисом и способности принимать решения под давлением.
Опишите самый сложный инцидент, в котором вы выступали в роли Incident Commander. Какие критические решения вам пришлось принять и как вы управляли ожиданиями руководства?
Оценка способности кандидата выходить за рамки технических задач и учитывать бизнес-риски.
Как вы балансируете необходимость немедленной изоляции скомпрометированной системы с требованиями непрерывности бизнеса в высоконагруженной финтех-платформе?
Проверка навыков кросс-функционального взаимодействия.
Как вы вовлекаете юридический отдел и PR-службу в процесс реагирования на инцидент, чтобы минимизировать регуляторные и репутационные риски?
Оценка стратегического мышления и стремления к улучшению процессов.
Каким образом вы выстраиваете процесс Post-Incident Review, чтобы убедиться, что извлеченные уроки действительно внедряются в архитектуру продукта, а не остаются на бумаге?
Проверка специфических знаний в области Web3 и облачных технологий.
Какие специфические векторы атак на кастодиальные сервисы цифровых активов вы считаете наиболее опасными сегодня и как это влияет на вашу стратегию мониторинга?
Похожие вакансии
Director of IT & Security
Director of IT & Security
Associate Director, Information Security Engineer
Director of Cybersecurity / Information Security
Senior Information Security (ИБ)
Senior Android Security / Reverse Engineer (HTTPS Traffic, Google Services)
1000+ офферов получено
Устали искать работу? Мы найдём её за вас
Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!
- Страна
- Израиль