748,727open jobs
45,375companies
107,551added this week
Browse all
Salary
≈ $75k – $181k per year (Estimated)
Location
In office (Tel Aviv)
Seniority
Middle · 3+ years exp

Confirmed on the employer's own hiring board on Sep 25, 2026. First seen by Alion on Sep 2, 2026. Cato Networks scores B on the Alion truth index.

Overview
Company
Impact
Profile match
Cato Networks delivers enterprise security and networking in a single cloud platform. The SASE leader creates a seamless and elegant customer experience that effortlessly enables threat prevention, data protection, and timely incident detection an...

Welcome to the future of cloud networking and security!  

Cato Networks is the first company to converge enterprise networking and security into one centralized and global service that is delivered by cloud. It is led by networking and security pioneer Shlomo Kramer (Check Point, Imperva) and early investor (Palo Alto Networks, Exabeam, Trusteer and more). Cato’s unique technology inspired a brand-new product category, later named “SASE” by Gartner and a market expected to reach $28.5 billion by 2028.

This is your opportunity to get on the rocket ship and join a company that is building a cutting-edge enterprise network and secure cloud platform, and is on a fast track to becoming the worldwide market leader - don’t miss it!

As a SOC Analyst, you will be part of the team responsible for real-time monitoring, detection, investigation, and response to security incidents affecting our global infrastructure and services, within a 24x7 operational environment. 

This is a hybrid analyst and operations role. Beyond investigating incidents, you will own significant parts of how the SOC runs: the SIEM platform, the detection rule lifecycle, exclusion and exception handling, response automation, and the AI-assisted workflows we use to accelerate triage and investigation. 

You will be the only SOC analyst based in Israel, while the rest of the analyst team operates from the Philippines. You will act as the SOC’s local anchor - the on-site technical counterpart for the Israel-based Cyber Security, IT, Operations, and R&D teams, and the escalation and knowledge bridge between them and the offshore shifts. The role calls for ownership, independence, and the appetite to build and improve, not only to operate. 

Responsibilities  

  • Monitoring and Detection:  Continuously monitor SIEM, endpoint protection (EDR), IPS, mail security, CASB, cloud, and identity security solutions to identify potential threats. 
  • Incident Response:  Serve as one of the first levels of escalation for security incidents - investigate, contain, and drive resolution before escalating to the senior SecOps members, in accordance with defined procedures and SLAs. 
  • Incident Coordination:  Lead coordination of major incidents until ownership is transferred to the relevant SecOps, IT, Operations, or R&D team; ensure clear communication, escalation, and tracking of action items. 
  • Threat Analysis:  Analyze logs, network traffic, endpoint telemetry, and native (in-tool) alerts to determine root cause, scope, impact, and remediation steps. 
  • SIEM and Detection Engineering:  Own day-to-day operation of the SIEM - data onboarding and ingest pipelines, field mapping and data quality, dashboards and platform health - and write, tune, and maintain detection rules while measuring their effectiveness. 
  • Exclusion and Exception Management:  Own the exclusion and exception lifecycle across the security stack: review requests, assess risk, apply scoped, time-bound exclusions, and revalidate them periodically. 
  • Automation and AI-Assisted Operations:  Build and maintain automations across the SOC toolchain (enrichment, containment, ticketing, reporting), and design, implement, and validate AI/LLM-based workflows for alert triage, investigation support, and documentation - including guardrails and quality control of AI output. 
  • Investigation Documentation:  Create and maintain detailed incident tickets, including investigation audit trail, action items, and timelines. 
  • Technical Leadership:  Act as the senior operational reference for the analyst team: help prioritize workload, assure investigation quality, maintain consistent handling of incidents, escalations, and shift handovers, and mentor analysts on tooling and methodology. 
  • Collaboration:  Work closely with the Cyber Security team, IT, Operations, and R&D locally, and with the offshore SOC team across time zones. 
  • Continuous Improvement:  Drive improvements to detection logic, automation, operational runbooks, and shift handover documentation based on lessons learned from incidents. 
  • Compliance and Reporting:  Support reporting for compliance audits, management reviews, and threat intelligence updates. 

Requirements  

  • 3-5 years of hands-on experience in a SOC or cybersecurity operations role. 
  • Proven experience with a SIEM platform, including detection rule engineering and content development (Advantage: Elastic). 
  • Experience with EDR and additional security tools and platforms (Advantage: CrowdStrike Falcon). 
  • Practical experience using AI/LLM tools in technical workflows, with a clear understanding of their limitations and failure modes. 
  • Broad technical foundation across the SOC domain: threat vectors, malware behavior, network protocols, operating system internals, identity, cloud, and SaaS security controls. 
  • Strong analytical and problem-solving skills, with the ability to correlate events across multiple data sources and think beyond the alert. 
  • High degree of ownership and autonomy - able to operate as the only analyst on site, set priorities independently, and drive tasks to closure. 
  • Excellent communication skills and the ability to work effectively with distributed teams across time zones. 
  • Ability to work effectively on time-sensitive tasks, with a service-oriented approach toward internal stakeholders. 
  • Proficiency in written and verbal English is a must. 

Advantage  

  • Experience building SOAR pipelines or agentic AI workflows in a security context. 
  • Experience with cloud security monitoring (AWS, Azure) and container/Kubernetes telemetry. 
  • Experience working with or supporting an offshore/outsourced SOC team. 
  • Experience with threat intelligence platforms (e.g., MISP) and intel-driven detection. 
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
748,727 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Tel Aviv
GRC Specialist 9 days ago
≈ $74k – $177k per year (Estimated) • In office • 4+ years exp • Bachelor's Degree • Rehovot
Cybersecurity
ISO 27001
CVE
SIEM
DLP
Apply
≈ $97k – $256k per year (Estimated) • Hybrid • Full-Time • Tel Aviv
Rust
C++
AI/ML
Anomaly Detection
DevOps
GCP
Istio
containerd
CRI-O
Envoy
Azure
AWS
Kubernetes
Service Mesh
eBPF
Linux
TCP/IP
Cybersecurity
Snort
Suricata
Apply
≈ $34k – $76k per year (Estimated) • Remote (India) • Full-Time • 7+ years exp • Bengaluru • Chennai
DevOps
GCP
Azure
AWS
IAM
Cybersecurity
ISO 27001
PCI DSS
GDPR
HIPAA
SIEM
DLP
Apply
≈ $32k – $83k per year (Estimated) • Remote (India) • Full-Time • 5+ years exp • Bengaluru • Chennai
PowerShell
Cybersecurity
Microsoft Sentinel
ISO 27001
Microsoft Defender
PCI DSS
GDPR
HIPAA
Microsoft Defender for Cloud
DLP
Management
OneDrive
SharePoint
Apply
≈ $20k – $52k per year (Estimated) • In office • Bachelor's Degree • Moscow
Cybersecurity
ISO 27001
PCI DSS
Apply
≈ $34k – $72k per year (Estimated) • In office • Bengaluru
JavaScript
TypeScript
Node JS
Node JS
Express
Databases
Redis
Apache Kafka
Frontend
Angular
React.js
DevOps
GCP
Azure
CI/CD
AWS
Docker
Kubernetes
Management
Agile
Scrum
Apply
≈ $28k – $60k per year (Estimated) • In office • Bengaluru
JavaScript
TypeScript
Node JS
Node JS
Express
Databases
Redis
Apache Kafka
Frontend
Angular
React.js
DevOps
GCP
Azure
CI/CD
AWS
Docker
Kubernetes
Management
Agile
Scrum
Apply
In office • Bengaluru
JavaScript
TypeScript
Node JS
Node JS
Express
Databases
Redis
Apache Kafka
Frontend
Angular
React.js
DevOps
GCP
Azure
CI/CD
AWS
Management
Agile
Apply
In office • Contractor • London
AI/ML
AI Agents
Apply
≈ $26k – $56k per year (Estimated) • In office • Bengaluru
Java
Java
Spring Boot
Databases
MySQL
Amazon Aurora
DevOps
Rest API
Jenkins
AWS
Amazon EC2
Management
Agile
Scrum
Apply
≈ $103k – $266k per year (Estimated) • In office • 5+ years exp • Tel Aviv
SQL
AI/ML
AI Agents
LLM
Agentic Workflows
Cybersecurity
Exabeam
SIEM
Apply
≈ $83k – $220k per year (Estimated) • In office • Bachelor's Degree • Tel Aviv
Python
Ruby
DevOps
TCP/IP
DNS
Cybersecurity
Cyber Kill Chain
Exabeam
SIEM
Apply
Security Researcher 2 days ago
≈ $37k – $90k per year (Estimated) • Hybrid • 3+ years exp • Prague
Python
SQL
AI/ML
Pandas
NumPy
LLM
DevOps
TCP/IP
DNS
Cybersecurity
Wireshark
Burp Suite
Exabeam
DLP
Apply
≈ $143k – $271k per year (Estimated) • In office • 7+ years exp
Cybersecurity
Exabeam
DLP
Management
Agile
Apply
$350k – $380k per year • In office • San Francisco
Cybersecurity
Exabeam
Apply
≈ $119k – $268k per year (Estimated) • Hybrid • Full-Time • 5+ years exp • Tel Aviv
AI/ML
AI Agents
Agentic Workflows
Cybersecurity
Okta
Zero Trust
Microsoft Entra ID
DLP
OWASP
Chips/EDA
PoC Library
Management
Monday.com
Apply
≈ $64k – $124k per year (Estimated) • In office • Full-Time • 3+ years exp • Tel Aviv
SQL
Apply
≈ $42k – $85k per year (Estimated) • Equity • In office • Full-Time • Tel Aviv
AI/ML
DPO
DevOps
Windows
Game Dev
Unity
Management
Confluence
Jira
Gmail
Google Calendar
Microsoft Office
Apply
≈ $88k – $205k per year (Estimated) • In office • Tel Aviv
DevOps
Kubernetes
Cybersecurity
Wiz
Design
Figma
Apply
In office • 7+ years exp • Bachelor's Degree • Tel Aviv
Python
Go
JavaScript
Java
TypeScript
Node JS
Scala
Scala
Play Framework
Databases
PostgreSQL
Redis
ElasticSearch
Apache Kafka
AI/ML
Spark
Frontend
Redux
React.js
Mobile
React Native
DevOps
AWS
Docker
Kubernetes
Apply
See all jobs
This is one of many
748,727 more open roles from verified company boards, updated every day.