Riskified empowers businesses to unleash ecommerce growth by taking risk off the table. Many of the world’s biggest brands and publicly traded companies selling online rely on Riskified for guaranteed protection against chargebacks, to fight fraud and policy abuse at scale, and to improve customer retention. Developed and managed by the largest team of ecommerce risk analysts, data scientists and researchers, Riskified’s AI-powered fraud and risk intelligence platform analyzes the individual behind each interaction to provide real-time decisions and robust identity-based insights.
Riskified is proud to work with incredible companies in virtually all industries including Booking.com, Acer, Gucci, Lorna Jane, GoPro, and many more.
We thrive in a collaborative work setting, alongside great people, to build and enhance products that matter. Abundant opportunities to create and contribute provide us with a sense of purpose that extends beyond ourselves, leaving a lasting impact. These sentiments capture why we choose Riskified every day.
About the Role
The IT Security team protects endpoints, identities, SaaS applications, and the fast-growing landscape of AI tools and agents used across the company. In this role, you will operate and improve our security stack, handle detection and response across the organization, and drive security controls around identity, endpoints, SaaS, and AI adoption – governing AI assistants, coding agents, and MCP integrations while keeping employees productive. You will report to the IT Security & GRC Lead and work closely with IT, GRC, R&D, external vendors, and the wider security team.
What You'll Be Doing- Operate and maintain our corporate security stack: EDR (CrowdStrike Falcon), IdP (Okta), MDM (IRU), email security, and browser/SaaS security controls
- Experience hardening endpoints and enforcing device policy via MDM/EDR – security baselines, disk encryption, local admin restrictions, and USB/peripheral controls
- Monitor security alerts, respond to incidents, and perform forensic investigations across endpoints, identities, and SaaS
- Maintain identity security controls – SSO/MFA coverage, privileged access, joiner/mover/leaver, and access reviews
- Secure our SaaS footprint – security posture, configuration monitoring, and third-party integration hygiene across Google Workspace, Slack, Okta, and other core platforms
- Implement and maintain DLP controls across email, endpoints, and SaaS
- Run endpoint patching and vulnerability management, and coordinate remediation with owning teams
- Run POCs and rollouts of IT security tools – evaluating vendors, testing controls, and deploying them in collaboration with IT and external vendors
- Secure the company's use of AI tools – implement guardrails for AI assistants, coding agents, and MCP integrations, and build detections for AI-specific threats such as prompt injection and data exfiltration via connectors
Qualifications
- Experience operating EDR/XDR, IdP/SSO, and MDM platforms (CrowdStrike, Okta, IRU/Jamf or equivalents)
- 4+ years of hands-on experience as a security engineer in a cloud-native / SaaS-first company
- Hands-on experience implementing and tuning DLP controls across email, endpoints,
- Experience in a cloud native high-scale SaaS or fintech environment
- Hands-on experience with LLM-based tools and agents (coding agents, AI assistants, MCP) and a solid understanding of their security risks – prompt injection, tool/connector abuse, data leakage, over-permissioned integrations
- Proven hands-on experience with incident response and forensic investigation in SaaS environments
- Experience assessing SaaS and third-party integrations (OAuth scopes, API access, data flows)
- Strong communicator, able to explain security risks to technical and non-technical stakeholders
- Professional English (written and spoken)
- Bachelor's degree in Computer Science, Information Security, or equivalent practical experience
We are a fast-growing and dynamic tech company with 750+ team members globally. We value collaboration and innovative thinking. We’re looking for bright, driven, and passionate people to grow with us.
Our Tel-Aviv team is currently working in a hybrid of remote and in-office work. We have recently moved to our new space in Tel Aviv - check it out here!
Some of our Tel Aviv Benefits & Perks:
- Equity for all employees, Keren Hishtalmut, pension
- Private medical insurance, extra time off for parents and caregivers
- Commuter and parking benefits
- Team events, fully-stocked kitchen,lunch stipend, happy hours, yoga, pilates, functional training, basketball, soccer
- Wide-ranging opportunities to volunteer and make an impact
- Commitment to your professional development with global onboarding, skills-based courses, lunch & learns
- Awesome Riskified gifts and swag!
In the News
Geektime: Riskified Goes Public
Walla!: Happy Hour at the Riskified Offices
Geektime Insider: A look at Riskified Tel Aviv
Globes: Riskified to contribute the highest amount up to date to Tmura
Globes: Riskified is among Israel’s fastest growing companies
TechCrunch: Riskified Prevents Fraud on Your Favorite E-commerce Site
Riskified is deeply committed to the principle of equal opportunity for all individuals. We do not discriminate based on race, color, religion, sex, sexual orientation, national origin, age, disability, veteran status, or any other status protected by law.
Skills Required
- Experience operating EDR/XDR, IdP/SSO, and MDM platforms such as CrowdStrike, Okta, and IRU or Jamf
- 4+ years of hands-on experience as a security engineer in a cloud-native or SaaS-first company
- Hands-on experience implementing and tuning DLP controls across email and endpoints
- Experience in a cloud-native, high-scale SaaS or fintech environment
- Hands-on experience with LLM-based tools and agents, including coding agents, AI assistants, and MCP
- Understanding of prompt injection, tool or connector abuse, data leakage, and over-permissioned integrations
- Proven hands-on experience with incident response and forensic investigation in SaaS environments
- Experience assessing SaaS and third-party integrations, including OAuth scopes, API access, and data flows
- Strong communication skills with technical and non-technical stakeholders
- Professional written and spoken English
- Bachelor's degree in Computer Science, Information Security, or equivalent practical experience
Riskified Compensation & Benefits Highlights
-
Healthcare Strength — Medical, dental, and vision insurance begin on the first day, with mental‑health support and wellness resources also highlighted. This early eligibility and breadth indicate a robust healthcare foundation.
-
Retirement Support — U.S. roles include a 401(k) with company matching and immediate vesting, while Israel packages include pension contributions and Keren Hishtalmut. Safe‑harbor details (e.g., 100% up to 4% of pay) underscore a structured approach to long‑term savings.
-
Equity Value & Accessibility — Equity is offered to all employees, expanding total compensation beyond base pay. Some materials also reference employee stock purchase participation in certain locations.
Riskified Insights
What We Do
Riskified (NYSE:RSKD) empowers businesses to unleash ecommerce growth by outsmarting risk. Many of the world’s biggest brands and publicly traded companies selling online rely on Riskified for guaranteed protection against chargebacks, to fight fraud and policy abuse at scale, and to improve customer retention. Developed and managed by the largest team of ecommerce risk analysts, data scientists and researchers, Riskified’s AI-powered fraud and risk intelligence platform analyzes the individual behind each interaction to provide real-time decisions and robust identity-based insights. Riskified is proud to work with incredible companies in virtually all industries including Acer, Gucci, Lorna Jane, GoPro, and many more. We thrive in a collaborative work setting, alongside great people, to build and enhance products that matter. Abundant opportunities to create and contribute provide us with a sense of purpose that extends beyond ourselves, leaving a lasting impact. These sentiments capture why we choose Riskified every day.
Why Work With Us
Riskified empowers businesses to realize the full potential of eCommerce by making it safe, accessible, and frictionless. Our members are proud to work on products that provide innovative solutions to real-world problems. It’s an exciting and collaborative environment, and the company invests just as much in its employees as it does in its clients.
Gallery
Riskified Offices
Hybrid Workspace
Employees engage in a combination of remote and on-site work.
Our hybrid policy allows employees to work both at home and in our office to provide flexibility and enhance collaboration amongst teams. Our NYC team works in a hybrid work model of 3 days in office and 2 days remote.
















