Jobs › Companies › Navan › Senior Security Engineer

Über diese Senior Security Engineer Stelle bei Navan

Navan · Vor Ort · Tel-Aviv, Israel

As a Senior Enterprise Security Engineer, you will be a foundational architect of Navan’s security posture, directly safeguarding our corporate infrastructure, sensitive financial data, and global user base. This is a highly hands-on, configuration-driven role that requires working directly with systems that power our security program in a modern, cloud-native environment.

Your work will be critical in ensuring Navan becomes globally recognized for secure, unparalleled corporate travel and expense management.

What You’ll Do:

  • Vulnerability Management & Exposure Reduction: Architect, manage, and scale the end-to-end vulnerability management program. Oversee continuous asset discovery, vulnerability scanning, threat exposure assessment, and risk-based prioritization (CVSS, EPSS, threat intelligence). Partner closely with infrastructure, engineering, and IT teams to establish SLAs, streamline patch management workflows, and validate effective remediation.
  • Security Incident Response & On-Call Rotation: Participate in the security engineering on-call rotation. Serve as a responder responsible for identifying, scoping, triaging, managing, and mitigating security incidents, followed by leading thorough post-incident reviews and root-cause analyses.
  • Detection & Automation Optimization: Help improve and maintain our existing detection pipeline by providing feedback on alert quality, reviewing current monitoring coverage, and performing direct tuning in SIEM platforms to reduce noise and increase signal fidelity. Evaluate existing SOAR playbooks and workflows, offering recommendations and performing targeted updates to streamline response processes.
  • Identity Governance & Access Control: Define and enforce strong IAM principles (e.g., Least Privilege, Zero Trust) and contribute to identity governance platforms to ensure secure authentication, authorization, and access across the enterprise.
  • Email Security: Strengthen email security by managing alerts and workflows in platforms like Material Security, reviewing post-delivery threats, and improving automated response to suspicious messages and mailbox activity.
  • Cross-Functional Security Leadership: Proactively partner with Engineering, IT, and Compliance teams to embed security best practices early in the lifecycle, align vulnerability SLAs with business risk objectives, and foster a culture of shared security ownership.
  • Process Improvement & Metrics: Establish and track key performance indicators (KPIs) for vulnerability management and incident response. Participate actively in incident and posture reviews, drive continuous operational improvements, and work with external vendors to align system capabilities and security expectations.

What We’re Looking For:

  • 5+ years of hands-on experience in information or enterprise security, preferably within a high-growth tech environment utilizing cloud infrastructure.
  • Proven track record of designing, implementing, or maturing an enterprise-wide Vulnerability Management program, including expertise with modern exposure management and scanning platforms (e.g., Tenable, Qualys, Rapid7, Wiz) and vulnerability remediation workflows.
  • Demonstrated experience in incident response, with a willingness to participate in an on-call rotation to identify, analyze, contain, and resolve active security incidents.
  • Deep, up-to-date knowledge of modern attacker tactics, techniques, and procedures (TTPs), common exploit vectors, and risk prioritization frameworks (CVSS, EPSS, KEV). You excel at translating technical vulnerabilities and risks into clear business context for a range of stakeholders.
  • Ability to review SIEM and EDR/XDR platform outputs, provide constructive feedback on detection efficacy, and execute direct rule tuning and configuration refinements to optimize signal-to-noise ratio.
  • Comfort interfacing with SOAR workflows (e.g., Phantom, Demisto, XSOAR) to suggest optimizations and perform light playbook updates that improve overall team efficiency.
  • Demonstrated expertise in Zero Trust principles, modern identity governance, and access management solutions (e.g., Okta, Ping, or Azure AD).
  • Experience managing email security using platforms like Material Security, including reviewing post-delivery detections and analyzing mailbox activity.
  • Highly collaborative with strong ownership skills, adept at negotiating SLA timelines with engineering/IT partners and contributing actively within a small, focused security team.

 

 

Navan uses AI-assisted Automated Employment Decision Tool (Metaview) to assist with evaluating resumes against job qualifications for this role. All final decisions are made by human recruiters and hiring managers. 

Human oversight: Metaview does not automatically reject candidates or make final hiring decisions. Our recruiters and hiring managers review all outputs and make the final hiring decision regarding every application. 

  • Your rights: If you prefer to have your application reviewed without AI assistance, you may request a human evaluation by entering your email here. Your decision to do so will not affect how your candidacy is evaluated. 

Please refer to our Candidate Privacy Notice for more information about our processing of personal data, and your rights.

Bereit, sich bei Navan zu bewerben?
Bei Navan bewerben

Über Navan

ABOUT TRIPACTIONS

TripActions is the fastest-growing corporate travel platform disrupting a $1.5T industry and shaping the future of business travel.

TripActions is a story of inspiration born of frustration. Road warriors and co-founders Ariel Cohen and Ilan Twig believed that companies deserved a travel solution that takes the pain out of work trips –– so that their travelers can focus on being productive and meeting in-person, not wasting valuable time booking travel. So in 2015, they created TripActions. Since then, we’ve been a mission to power the face-to-face, in-person connections that move people, ideas and businesses forward.

TripActions’ platform offers a vast selection of inventory that travelers can choose from, a personalized, intuitive user interface driven by machine learning, and 24/7 proactive real human, customer support. Companies enjoy complete travel program visibility, over 30% cost savings on average and seamless integrations with their HR and expense systems.

Globally, TripActions has grown to over 600 employees across 7 offices in 4 countries. We support over 1,500 customers, with innovative brands like Lyft, Dropbox, Sara Lee Frozen Bakery, Allbirds, Robinhood and the ACLU relying on TripActions for their business travel needs. As one of Silicon Valley’s newest “unicorns”, TripActions has a valuation north of $1B and a total of $232M in funding. We’ve recently received $154M in our Series C funding round –– led by new investor Andreessen Horowitz, with participation from repeat investors Lightspeed Venture Partners, Zeev Ventures and SGVC.

TripActions was recently recognized as one of Fast Company’s Most Innovative Companies for 2019, #12 in LinkedIn’s Top Startups 2018 and #3 in the U.S. for Happiest Employees by Comparably.

We’re redefining what it means to travel for work. Come help us build the future of business travel.

Alle Jobs bei Navan ansehen →

Ähnliche Jobs

Tipalti
Senior Product Security Engineer
Tipalti
⚡ Früh bewerben Tel Aviv District, Israel Hybrid
● Neu 👁 Gesehen ✓ Beworben vor 1 Wo.
Tipalti
Product Security Engineer
Tipalti
⚡ Früh bewerben Tel Aviv District, Israel Hybrid
● Neu 👁 Gesehen ✓ Beworben vor 3 Wo.
Tipalti
Senior Cyber Security Engineer
Tipalti
⚡ Früh bewerben Tel Aviv District, Israel Hybrid
● Neu 👁 Gesehen ✓ Beworben vor 1 Mon.
Veo
Senior Product Security Engineer
Veo
⚡ Früh bewerben Copenhagen Office Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 39 Min.
Backbase
Senior Cloud Security Engineer
Backbase
⚡ Früh bewerben Amsterdam Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 1 Std.
TraceLink, Inc
Product Security Engineer, Senior
TraceLink, Inc
⚡ Früh bewerben APAC - India - Pune Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 2 Std.
OPSWAT
AI Security Engineer
OPSWAT
⚡ Früh bewerben Ho Chi Minh City, Ho Chi Minh... Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 2 Std.
OPSWAT
Technical Support Engineer in Japan (Network, Cybersecurity)
OPSWAT
⚡ Früh bewerben Tokyo Prefecture, Japan Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 2 Std.
AG
Senior Security Engineer
Apex Group
⚡ Früh bewerben Pune - Baner Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 2 Std.

Registrieren für Vorschläge, die auf die von Ihnen geöffneten Jobs und gespeicherten Suchen zugeschnitten sind.

Mehr Jobs bei Navan

Alle Jobs bei Navan ansehen →

Jetzt bewerben
🤖

Moment — langsam

JobsRadar wurde für echte Menschen gebaut, die eine schwere Zeit bei der Jobsuche haben — nicht für automatisierte Anfragen. Sie klicken viel zu schnell und sind jetzt vorübergehend blockiert.

Kommen Sie später wieder. Wenn Sie wirklich auf Jobsuche sind, stehen wir hinter Ihnen — verhalten Sie sich einfach wie ein Mensch.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Verschaffe dir einen Vorsprung bei der Jobsuche.

Tritt unserem Telegram-Kanal bei für das, was dir hilft, die Stelle zu bekommen — Gehaltsbenchmarks, den wöchentlichen Marktpuls und neue Feature-Drops. Kein Spam, nur Signal.

Dem Kanal beitreten — kostenlos