Sobre este puesto de IT Security Engineer en Riskified
About Us
Riskified empowers businesses to unleash ecommerce growth by taking risk off the table. Many of the world’s biggest brands and publicly traded companies selling online rely on Riskified for guaranteed protection against chargebacks, to fight fraud and policy abuse at scale, and to improve customer retention. Developed and managed by the largest team of ecommerce risk analysts, data scientists and researchers, Riskified’s AI-powered fraud and risk intelligence platform analyzes the individual behind each interaction to provide real-time decisions and robust identity-based insights.
Riskified is proud to work with incredible companies in virtually all industries including Booking.com, Acer, Gucci, Lorna Jane, GoPro, and many more.
We thrive in a collaborative work setting, alongside great people, to build and enhance products that matter. Abundant opportunities to create and contribute provide us with a sense of purpose that extends beyond ourselves, leaving a lasting impact. These sentiments capture why we choose Riskified every day.
About the Role
The IT Security team protects endpoints, identities, SaaS applications, and the fast-growing landscape of AI tools and agents used across the company. In this role, you will operate and improve our security stack, handle detection and response across the organization, and drive security controls around identity, endpoints, SaaS, and AI adoption – governing AI assistants, coding agents, and MCP integrations while keeping employees productive. You will report to the IT Security & GRC Lead and work closely with IT, GRC, R&D, external vendors, and the wider security team.
What You'll Be Doing
- Operate and maintain our corporate security stack: EDR (CrowdStrike Falcon), IdP (Okta), MDM (IRU), email security, and browser/SaaS security controls
- Experience hardening endpoints and enforcing device policy via MDM/EDR – security baselines, disk encryption, local admin restrictions, and USB/peripheral controls
- Monitor security alerts, respond to incidents, and perform forensic investigations across endpoints, identities, and SaaS
- Maintain identity security controls – SSO/MFA coverage, privileged access, joiner/mover/leaver, and access reviews
- Secure our SaaS footprint – security posture, configuration monitoring, and third-party integration hygiene across Google Workspace, Slack, Okta, and other core platforms
- Implement and maintain DLP controls across email, endpoints, and SaaS
- Run endpoint patching and vulnerability management, and coordinate remediation with owning teams
- Run POCs and rollouts of IT security tools – evaluating vendors, testing controls, and deploying them in collaboration with IT and external vendors
- Secure the company's use of AI tools – implement guardrails for AI assistants, coding agents, and MCP integrations, and build detections for AI-specific threats such as prompt injection and data exfiltration via connectors
Qualifications
- Experience operating EDR/XDR, IdP/SSO, and MDM platforms (CrowdStrike, Okta, IRU/Jamf or equivalents)
- 4+ years of hands-on experience as a security engineer in a cloud-native / SaaS-first company
- Hands-on experience implementing and tuning DLP controls across email, endpoints,
- Experience in a cloud native high-scale SaaS or fintech environment
- Hands-on experience with LLM-based tools and agents (coding agents, AI assistants, MCP) and a solid understanding of their security risks – prompt injection, tool/connector abuse, data leakage, over-permissioned integrations
- Proven hands-on experience with incident response and forensic investigation in SaaS environments
- Experience assessing SaaS and third-party integrations (OAuth scopes, API access, data flows)
- Strong communicator, able to explain security risks to technical and non-technical stakeholders
- Professional English (written and spoken)
- Bachelor's degree in Computer Science, Information Security, or equivalent practical experience
Life at Riskified
We are a fast-growing and dynamic tech company with 750+ team members globally. We value collaboration and innovative thinking. We’re looking for bright, driven, and passionate people to grow with us.
Our Tel-Aviv team is currently working in a hybrid of remote and in-office work. We have recently moved to our new space in Tel Aviv - check it out here!
Some of our Tel Aviv Benefits & Perks:
- Equity for all employees, Keren Hishtalmut, pension
- Private medical insurance, extra time off for parents and caregivers
- Commuter and parking benefits
- Team events, fully-stocked kitchen,lunch stipend, happy hours, yoga, pilates, functional training, basketball, soccer
- Wide-ranging opportunities to volunteer and make an impact
- Commitment to your professional development with global onboarding, skills-based courses, lunch & learns
- Awesome Riskified gifts and swag!
In the News
Geektime: Riskified Goes Public
Walla!: Happy Hour at the Riskified Offices
Geektime Insider: A look at Riskified Tel Aviv
Globes: Riskified to contribute the highest amount up to date to Tmura
Globes: Riskified is among Israel’s fastest growing companies
TechCrunch: Riskified Prevents Fraud on Your Favorite E-commerce Site
Riskified is deeply committed to the principle of equal opportunity for all individuals. We do not discriminate based on race, color, religion, sex, sexual orientation, national origin, age, disability, veteran status, or any other status protected by law.