Risk Assessment & CISO
SECTERIOUS - Cyber security consultancy · Beer Yaakov, Center District, Israel
Apply & track with Apply EdgeCompany Description SecTerious is a specialized cyber security consultancy focused on both offensive and defensive hacking services for a wide range of organizations. The company has built elite teams of information security experts with deep technical backgrounds and hands-on experience. SecTerious applies a unique methodology rooted in the OWASP Top 10 to identify, exploit, and mitigate vulnerabilities across complex environments. Team members are immersed in Dark Web ecosystems and hold Certified Ethical Hacker (CEH) credentials, bringing cutting-edge insights to client engagements. This environment offers security professionals the opportunity to work on challenging projects and continuously advance their skills.Role Description The Risk Assessment & CISO role is a full-time, on-site position based in Beer Yaakov. The individual in this role will lead the design, implementation, and oversight of the organization’s information security strategy, including risk assessment frameworks, security policies, and governance processes. Day-to-day responsibilities include conducting comprehensive risk and threat assessments, overseeing vulnerability management, and coordinating offensive and defensive security activities with technical teams. The role involves advising clients and internal stakeholders on security posture improvements, ensuring compliance with relevant standards and regulations, and managing incident response planning and execution. The Risk Assessment & CISO professional will also provide security awareness guidance, lead security audits, and collaborate with leadership to align cyber security initiatives with business objectives.Qualifications Strong background in information security management, including risk assessment, risk mitigation, and security governance.Hands-on experience with offensive and defensive security practices, such as penetration testing, vulnerability assessment, and incident response.Knowledge of OWASP Top 10, secure application design principles, and common web application vulnerabilities.Familiarity with Dark Web threat landscapes and current cyber attack techniques and tools.Certified Ethical Hacker (CEH) or equivalent security certification; additional certifications (CISSP, CISM, ISO 27001 Lead Implementer/Auditor) are an advantage.Experience defining and implementing security policies, standards, and procedures in complex, tech-driven environments.Ability to communicate complex technical risks clearly to both technical and non-technical stakeholders, including executive leadership.Proven ability to lead cross-functional security initiatives and collaborate with development, operations, and business teams.Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent practical experience.Fluency in English; additional language skills are beneficial. Willingness to work on-site in Beer Yaakov.